oaui.exe

Emsisoft Online Armor

Emsisoft GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘@OnlineArmor GUI’. This is installed with Online Armor 6.0.
Publisher:
Emsisoft GmbH  (signed and verified)

Product:
Emsisoft Online Armor

Description:
Online Armor Component

Version:
7.0.0.1866

MD5:
8792f13fd4eee4c1c8c93086011a1a0a

SHA-1:
259c7f9370907b8e18d48dd00e8bb52e7be83d60

SHA-256:
05dbd7292083d6063c81bc4b26e919111395210ad9ab1ddeceec474eacaf48fa

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/22/2024 9:15:15 PM UTC  (today)

File size:
7.2 MB (7,558,464 bytes)

Product version:
7.0.0.1866

Copyright:
(C) 2010-2013 Emsisoft GmbH

File type:
Executable application (Win32 EXE)

Language:
English (Australia)

Common path:
C:\Program Files\online armor\oaui.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
4/12/2012 2:00:00 AM

Valid to:
6/16/2015 2:00:00 PM

Subject:
CN=Emsisoft GmbH, O=Emsisoft GmbH, L=Thalgau, C=AT

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0D264BA95F92C7A55D53EC2B551DE980

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:UanKc//////taBs9CFLmdzrmiylzhUe/pv6q4lWfIN4IgbTvuJfOonWm:LeBLLczqiIeexSq4QAeHz2fOMWm

Entry address:
0x446090

Entry point:
55, 8B, EC, B9, 08, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, B0, 49, 44, 5B, E8, 04, 1E, BC, FF, 33, C0, 55, 68, 8B, 65, 44, 5B, 64, FF, 30, 64, 89, 20, B8, A4, 65, 44, 5B, E8, E0, DC, C6, FF, 84, C0, 74, 0A, 68, D0, 07, 00, 00, E8, BA, 29, BC, FF, E8, 15, D4, C3, FF, E8, 64, CB, C3, FF, E8, BB, 1D, D0, FF, 33, C0, 55, 68, 54, 65, 44, 5B, 64, FF, 30, 64, 89, 20, 6A, 00, 68, 00, 01, 00, 00, E8, 49, 29, BC, FF, 68, 00, 00, 80, 00, 68, 00, 00, 40, 00, E8, 5A, 25, BC, FF, 50, E8, 3C, 29, BC, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4.3 MB (4,478,976 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
@OnlineArmor GUI

Command:
"C:\programme\online armor\oaui.exe"


The file oaui.exe has been discovered within the following program.

Online Armor 6.0  by Emsisoft GmbH
Publisher's description - “Online Armor's range of firewall products are designed to fit every need. Our free version provides great security for those on a tight budget.”
www.emsisoft.com
11% remove it
 
Powered by Should I Remove It?

Scan oaui.exe - Powered by Reason Core Security