lineinst.exe

LINE

NHN Japan Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from v6.emicam.net and multiple other hosts.
Publisher:
NHN Japan  (signed by NHN Japan Corporation)

Product:
LINE

Version:
3.0.0.10

MD5:
0c707f651525b802ef556f6ec58d5a4f

SHA-1:
0f3c02b34953c6bb9b3edaac809e56d0261c1cda

SHA-256:
abd7477819f30c4bbd6644fd48410e7c10932d6f3969af9e35263a9823686231

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:01:41 AM UTC  (today)

File size:
11.2 MB (11,692,656 bytes)

Product version:
3.0.0.10

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\lineinst.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/22/2012 8:00:00 AM

Valid to:
12/22/2013 7:59:59 AM

Subject:
CN=NHN Japan Corporation, OU=Hangame Division1, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NHN Japan Corporation, L=Shibuya, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7592D0FBD0AAE618C3D6191974FE408D

File PE Metadata
Compilation timestamp:
6/25/2012 5:24:36 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:Q6wHz1SgEF8/G2iBx165loEaGAUvau7Fl7lxzuZoTDgcsdEHcDcvK:QlEHDtBx1gtb7LXYcT8DcS

Entry address:
0xB14B

Entry point:
E8, 7E, 2E, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 5D, E9, CE, 18, 00, 00, 8B, FF, 51, C7, 01, 64, BA, 41, 00, E8, F6, 2E, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, CC, FF, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 83, C1, 09, 51, 83, C0, 09, 50, E8, 3A, 2F, 00, 00, F7, D8, 59, 1B, C0, 59, 40, 5D, C2, 04, 00, FF, 35, 88, 1B, 42, 00, E8, C0, 28, 00, 00, 59, 85, C0, 74, 02, FF, D0, 6A, 19, E8, D3, 1E, 00, 00, 6A...
 
[+]

Entropy:
7.9948  (probably packed)

Code size:
98.5 KB (100,864 bytes)

The file lineinst.exe has been discovered within the following program.

LINE  by NHN Corp.
Publisher's description - “A global messaging service loved in over 230 countries worldwide. Stay in touch with your friends, whenever, and wherever you are! Use LINE on your smartphone while on the move and from the PC while in the office or at home.”
line.naver.jp
About 8% of users remove it
 
Powered by Should I Remove It?

The file lineinst.exe has been seen being distributed by the following 3 URLs.

Scan lineinst.exe - Powered by Reason Core Security