lineage2installer.exe

Lineage II

NCsoft Corp.

The program is a setup application that uses the InstallShield Setup installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
NC Interactive, LLC  (signed by NCsoft Corp.)

Product:
Lineage II

Description:
Lineage II Installer

Version:
4.0.0.2

MD5:
9f7abd162e4c739275eed9fc41ed97c8

SHA-1:
ba84fb35ee8dacbeed21c40f9b8e2f3438b36a78

SHA-256:
403c0601043bd93e4433e23c7d9035fb2e10d51097662043fe3313b218605f71

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/12/2025 7:05:00 PM UTC  (today)

File size:
4.8 MB (4,984,744 bytes)

Product version:
4.0.0.2

Copyright:
Copyright © 2013 NC Interactive, LLC

Original file name:
InstallShield Setup.exe

File type:
Executable application (Win32 EXE)

Installer:
InstallShield Setup

Language:
English (United States)

Digital Signature
Signed by:

Authority:
SGssl

Valid from:
3/8/2013 1:00:00 AM

Valid to:
3/9/2014 12:59:59 AM

Subject:
CN=NCsoft Corp., O=NCsoft Corp., STREET="507 Teheran-ro,", L=Gangnam-gu, S=Seoul, PostalCode=135880, C=KR

Issuer:
CN=SGTRUST CODE SIGNING CA, O=SGssl, C=KR

Serial number:
28E31647F215B601F8116284B271809B

File PE Metadata
Compilation timestamp:
10/5/2010 10:39:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:qucWxPD6V30FYS0Qiok32T5LG/KgBpL2Ej1/0Cm9ZucWx+:EAWaqS0Qi45LmXpL2EFeZA+

Entry address:
0x3D90D

Entry point:
55, 8B, EC, 6A, FF, 68, A8, 75, 46, 00, 68, 38, F0, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 8C, 63, 46, 00, 33, D2, 8A, D4, 89, 15, 44, D7, 47, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 40, D7, 47, 00, C1, E1, 08, 03, CA, 89, 0D, 3C, D7, 47, 00, C1, E8, 10, A3, 38, D7, 47, 00, 6A, 01, E8, 0E, 2A, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C2, 00, 00, 00, 59, E8, 8F, 0F, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B1, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
403.5 KB (413,184 bytes)

The file lineage2installer.exe has been seen being distributed by the following 10 URLs.

http://dw.uptodown.com/dwn/rMA8rMpMrQsgcIbBjC_wT0mNZCDP8eSZCMzt7ryV8PAYgzEKzqPg-mLQwJnB8vaxzLNnbtZHKbbzsJqZUWgIgFtazmI9spY0mN-GiS-6zFMpTvmxxrV5C6W25sOoP1gr/kWt_APhcXTo8x971myIawYfhTIysiAjQK8YWLmCa7lypNZ67VOE6TkHsqUhetvCfhiiJ3FkHPaZVZaDky1xwNSPRkBIJDua1nw_Ob2P6eQkfD1extoQD7m2Rbk8icTax/pozFko-ZiLuuNC9dD0QjEgd_lgvkAxPMGazt5ckW6X3h_1bmXNAU7iyd9tL_He4RopbeVSjFwEtHnZ_K0PzQsTk3DBSf6SsGraUxthj2QhwIGYT3wemy4hKqDSqEQD1-/.../

http://download1810.mediafire.com/5car982az4zg/.../Lineage2Installer.exe

http://download1810.mediafire.com/6j3imysb6btg/.../Lineage2Installer.exe

http://dw.uptodown.com/dwn/zd9WHBBqnH_Ls_Z1DFjyzHQGYVLTPH098w4BbKDsMhUPzBw1EKAarYDwA-LUL5hYAaEJBpCG-SDAEyqCgRNwILeUP0qzVN0ysSw2pDOA4yCpn5C13jtJpYwC7O0cpMZx/_o0wf9tu5LDYSqF5S7O9RQ7kt59JIg0ZzIhpAAaWrpdQans5DtlmxNiZAopavoZdIvMjtvdzFCMIw_K64hyjiuVpxS3USBDVJH6ysD1FGxUXA5JB9NYFA7-RGkzTdYhN/.../

Scan lineage2installer.exe - Powered by Reason Core Security