UA.exe
UA by Samsung Electronics CO. (Signed)
Warning 3 antivirus scanners has detected malware in various versions of UA.exe.
Overview
There are 2 versions of ua.exe in the wild, the latest version being 1.0.0.1. ua.exe is run as a standard windows process with the logged in user's account privileges. The average file size is about 852.61 KB. The file is a digitally signed and issued to Samsung Electronics CO. by VeriSign. Some variations of the file have been seen to be installed with the program Verizon Wireless Software Utility Application for Android - Samsung from Samsung Electronics CO., LTD.. During the process's lifecycle, the typical CPU resource utilization is about 0.0018% including both foreground and background operations, the average private memory consumption is about 36.25 MB with the maximum memory reaching around 38.77 MB. Addionally, typically read and write I/O disk operations is about 532.83 KB per minute for reads and 152.2 KB per minute for writes.
Details |
File name: | ua.exe |
Publisher: | SAMSUNG Electornics Co., Ltd. |
Product name: | UA |
Description: | Verizon 2.0 UA for Android |
Typical file path: | C:\users\user\appdata\roaming\verizon\ua_ar\ua.exe |
Certificate |
Issued to: | Samsung Electronics CO. |
Authority (CA): | VeriSign |
Effective date: | Sunday, December 5, 2010 |
Expiration date: | Saturday, December 21, 2013 |
Programs installed in
(Note, the programs listed below are for all versions of UA.)
|
Samsung Electronics CO., LTD. |
|
This program is designed to update your Verizon mobile device Android OS if you cannot you the over-the-air update mechanism. This will utilize upgrades through a connection to the PC's USB port (driv...
Malware detections
Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
Bkav Security |
1.3.0.4246 |
HW32.CDB.3148 |
1.0.0.1 |
Bkav Security |
1.3.0.4246 |
HW32.CDB.0c6c |
1.0.0.1 |
McAfee Gateway Anti-Malware |
v2013-dat |
Heuristic.BehavesLike.Win32.Suspicious-BAY.G |
1.0.0.1 |
All file variations of ua.exe