_Launcher.exe

NCLauncher

NCsoft

This file is installed with the program NCsoft Launcher.
Publisher:
NCsoft  (signed and verified)

Product:
NCLauncher

Version:
1.6.6.0

MD5:
2729c1c55a46dced31da03a41db4db62

SHA-1:
24f0e47fa82d869cf620a97a14089f4fdb0eea9a

SHA-256:
65e0acbcd4c3c7adc77418dfeed01403592df98b827661ca87927523ecc52f0d

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
1/15/2025 8:14:34 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.Clod989.Trojan
1.3.0.4959

File size:
3.3 MB (3,411,248 bytes)

Product version:
1.6.6.0

Copyright:
Copyright NCsoft© 2012

Original file name:
_Launcher.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\assembly\dl3\h01k9xbk.gxy\qw3w0231.znr\009c404f\585b2712_f02ecd01\_launcher.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/21/2011 7:00:00 PM

Valid to:
6/20/2012 6:59:59 PM

Subject:
CN=NCsoft, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NCsoft, L=Austin, S=Texas, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2EAFB6D41EA27C07768A0955F68776D4

File PE Metadata
Compilation timestamp:
4/29/2012 8:35:21 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:B806k3k2Ea9iusMcUZq/RZLouwrFf55TCT:BT6k3kEnuwrFf55TCT

Entry address:
0x340C76

Entry point:
FF, 25, 84, 0C, 74, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, 0C, 34, 00, 00, 00, 00, 00, 00, 00, 00, 00, 59, EC, 9D, 4F, 00, 00, 00, 00, 02, 00, 00, 00, 8E, 00, 00, 00, A8, 0C, 34, 00, A8, EE, 33, 00, 52, 53, 44, 53, F4, 98, DB, F7, 77, 25, EE, 43, 95, BA, FA, F1, 30, 39, AC, AE, 01, 00, 00, 00, 44, 3A, 5C, 61, 75, 74, 6F, 62, 75, 69, 6C, 64, 5C, 63, 6F, 72, 65, 2D, 64, 69, 73, 74, 5C, 50, 6C, 61, 74, 66, 6F, 72, 6D, 32, 5C, 70, 6C, 61, 74, 66, 6F, 72, 6D, 5C, 61, 70, 70, 6C, 69, 63, 61, 74, 69, 6F, 6E, 5C...
 
[+]

Entropy:
5.9500

Code size:
3.2 MB (3,403,264 bytes)

The file _Launcher.exe has been discovered within the following programs.

NCsoft Launcher  by NCsoft Corporation, Ltd.
Publisher's description - “The NCSOFT Launcher lets you launch NCSOFT games, download new NCSOFT games, automatically download game updates without interrupting your gameplay, and keep up with the latest NCSOFT news.”
us.ncsoft.com
About 6% of users remove it
 
Powered by Should I Remove It?

Scan _Launcher.exe - Powered by Reason Core Security