item_20150805_21495_win_p03rcx.exe

Samsung BIOS Windows Update Program

Samsung Electronics CO., LTD.

This is a setup program which is used to install the application. The file has been seen being downloaded from sbuservice.samsungmobile.com.
Publisher:
Samsung Electronics  (signed by Samsung Electronics CO., LTD.)

Product:
Samsung BIOS Windows Update Program

Description:
Samsung PC BIOS update program

Version:
4.19.0.0

MD5:
49de05aa118dbc4c1873fff18a3d2a66

SHA-1:
5eec0799d5ee8644491e37391c59b5a81495c3fb

SHA-256:
132db54c7799ea35c37c57260f8f1bab9adfe3e5491d530dc60634bcd0260638

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
3/10/2025 3:20:41 AM UTC  (today)

File size:
5.6 MB (5,887,824 bytes)

Copyright:
Samsung Electronics. All rights reserved.

Original file name:
UnPacker.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\samsung\swupdate\temp\packages\7c6ab631-6593-4993-8de1-76c258616203\item_20150805_21495_win_p03rcx.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/28/2013 10:00:00 PM

Valid to:
1/27/2017 9:59:59 PM

Subject:
CN="Samsung Electronics CO., LTD.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Samsung Electronics CO., LTD.", L=Suwon, S=Kyungki-Do, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
209BDBEAF16C06F5544AB9A1BFD32C38

File PE Metadata
Compilation timestamp:
5/6/2015 1:26:30 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
98304:AU/u/9sultaQtfnaE42/XYwHtdk349rfjMaqhmPB/TFDG624GTgBqidILop6kiy0:AUstaiLZHtdk3gLs2B/TFDX2CBq+I6lE

Entry address:
0x132BB3

Entry point:
E8, D3, A5, 00, 00, E9, 7F, FE, FF, FF, 56, 6A, 04, 6A, 20, E8, 46, AB, 00, 00, 59, 59, 8B, F0, 56, FF, 15, 20, F4, 55, 00, A3, D0, 58, 5D, 00, A3, CC, 58, 5D, 00, 85, F6, 75, 05, 6A, 18, 58, 5E, C3, 83, 26, 00, 33, C0, 5E, C3, 6A, 0C, 68, D0, 13, 5B, 00, E8, 48, 5B, 00, 00, 83, 65, E4, 00, E8, A6, 7A, 00, 00, 83, 65, FC, 00, FF, 75, 08, E8, 23, 00, 00, 00, 59, 8B, F0, 89, 75, E4, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 8B, C6, E8, 5F, 5B, 00, 00, C3, 8B, 75, E4, E8, 81, 7A, 00, 00, C3, 55, 8B, EC...
 
[+]

Code size:
1.4 MB (1,432,576 bytes)

The file item_20150805_21495_win_p03rcx.exe has been seen being distributed by the following URL.