How to remove oem.exe
oem.exe
The module oem.exe has been detected as Hack.AutoKMS
File Details
Product Name: | oem |
MD5: | d078205b1721b935c5bf43d2071678dc |
Size: | 2 MB |
First Published: | 2017-05-21 14:10:10 (7 years ago) |
Latest Published: | 2024-04-07 23:01:39 (10 months ago) |
Status: | Hack.AutoKMS (on last analysis) | |
Analysis Date: | 2024-04-07 23:01:39 (10 months ago) |
Common Places:
%temp%\rarsfx0 |
%temp%\rarsfx1 |
%temp% |
%sysdrive%\new folder\elmasry\appdata\local\temp |
%sysdrive%\gorkem\karşıdan yüklemeler\programlar |
%temp% |
%temp% |
%temp% |
%temp% |
%temp% |
Geography:
23.6% | ||
11.5% | ||
8.8% | ||
4.7% | ||
4.1% | ||
4.1% | ||
4.1% | ||
2.7% | ||
2.7% | ||
2.7% | ||
2.7% | ||
2.0% | ||
2.0% | ||
2.0% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
1.4% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% | ||
0.7% |
OS Version:
Windows 7 | 64.4% | |
Windows 10 | 35.6% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0029611e |
.NET Info:
MVID: | 818a7c38-c304-4d5f-92a9-b2b17bac7bb4 |
Typelib ID: | 2ea5cb53-5f2b-43b5-99ee-5f587cb80993 |
PE Sections:
Name | Size of data | MD5 |
.text | 2703872 | 2e411f3a5bb626eaa980226ba1341a71 |
.sdata | 512 | 964a21e7450d6d7968fad9d36b195e52 |
.rsrc | 3584 | 4756994e8a86514449e64ab89edc80d7 |
.reloc | 512 | 4135c58594c2e63d682506b4fa761242 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for oem.exe