hostlauncher.exe

LGU+ Biz 원격지원

LG Uplus Corporation

Publisher:
LG Uplus Corp.  (signed by LG Uplus Corporation)

Product:
LGU+ Biz 원격지원

Description:
LGU+ Biz 원격지원 Lanucher

Version:
2015.11.19.1

MD5:
6d8f14abec5f5cdca1e8bf39486666e8

SHA-1:
279075dd466f790d8616f435a8ec2ef3d8f73de3

SHA-256:
17ce93380de46aa39f2052fc9f22a6f4becf16fcb70cc0175f1a542ed1554b9e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/21/2025 3:55:36 AM UTC  (today)

File size:
2.2 MB (2,320,824 bytes)

Product version:
2015.11.19.1

Copyright:
Copyright 2015 LG Uplus Corp. All Rights Reserved

Original file name:
AnyHelpLauncher

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\hostlauncher.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
1/6/2016 9:00:00 AM

Valid to:
10/5/2016 8:59:59 AM

Subject:
CN=LG Uplus Corporation, O=LG Uplus Corporation, L=Jung-gu, S=Seoul, C=KR

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
73B229C453F7520317DAA8EB150C2F1C

File PE Metadata
Compilation timestamp:
2/29/2016 7:48:55 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
49152:KB56PQuJKmE53kirG54ffGpsgfTSm1cJtljOJd9OnuNc/k0rcnK:Kb2Q5mm3kirG5cfGpsgTGrlKJd9OnL1o

Entry address:
0x13AD0E

Entry point:
E8, E8, 94, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, 30, 13, 5C, 00, 75, 02, F3, C3, E9, E3, 67, 00, 00, 55, 8B, EC, FF, 75, 0C, 6A, 00, FF, 75, 08, 68, 64, 4A, 54, 00, E8, 05, 00, 00, 00, 83, C4, 10, 5D, C3, 55, 8B, EC, 83, EC, 20, 57, 6A, 07, 33, D2, 8D, 7D, E4, 59, 33, C0, 89, 55, E0, F3, AB, 5F, 39, 45, 0C, 75, 15, E8, 65, 34, 00, 00, C7, 00, 16, 00, 00, 00, E8, 6D, 9B, 00, 00, 83, C8, FF, EB, 27, FF, 75, 14, 8D, 45, E0, C7, 45, E4, FF, FF, FF, 7F, FF, 75, 10, C7, 45, EC, 42, 00, 00, 00, FF, 75, 0C, 89, 55...
 
[+]

Entropy:
6.5732

Code size:
1.4 MB (1,472,000 bytes)

The file hostlauncher.exe has been seen being distributed by the following URL.

Scan hostlauncher.exe - Powered by Reason Core Security