omadmclient.exe

  • File Path: C:\Windows\system32\omadmclient.exe
  • Description: Host Process for OMA-DM Client

Hashes

Type Hash
MD5 976713BD9379685B2ED4F64C1C8E4EC9
SHA1 AD828BCB37875F3EEC2E17F8B7201AA394DB5DF8
SHA256 C4FA3F2B3569CF99E865709D437E2D60D432AB4D48DFCC56B0DD2F316BC76F42
SHA384 67F540E100340BA627208689A185752E5CFC58C7C8BD1CB817287DFA5EC7EB12A87C7C8D71F1967E507B6167278CD412
SHA512 C20A88F1A11D5EB3A6F3EDE31EF04CB1F47A7CD31027FA6AF0AC6584FEB5630F2DE79724616833AB387C9F5640BEF7496CDD78E77BCC818CA67B73E2C0A669D4
SSDEEP 6144:59To+0WweMP/89Qra08RNp2DHQNNzGdVC2gQQOQ2Fj8hk:vo+0fdM9W8bp2D2Caij+
IMP 79279C5010EF9943019EDA59666C2560
PESHA1 5A4D31C42AA5DA619F3AF7C8D377A1181BAD22E9
PE256 0BD2FA045D8B9FC3FDC5FEADA98EDE1005714D1B3CC341E4703F4E34B05335B4

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\advapi32.dll
C:\Windows\System32\bcrypt.dll
C:\Windows\System32\bcryptPrimitives.dll
C:\Windows\System32\cfgmgr32.dll
C:\Windows\System32\combase.dll
C:\Windows\system32\coredpus.dll
C:\Windows\System32\CRYPT32.dll
C:\Windows\System32\CRYPTSP.dll
C:\Windows\system32\DEVOBJ.dll
C:\Windows\system32\DMCfgUtils.dll
C:\Windows\system32\DMCmnUtils.dll
C:\Windows\system32\dmEnrollEngine.DLL
C:\Windows\system32\dmenterprisediagnostics.dll
C:\Windows\system32\dmiso8601utils.dll
C:\Windows\system32\DMOleAutUtils.dll
C:\Windows\system32\dmxmlhelputils.dll
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\iri.dll
C:\Windows\System32\kernel.appcore.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\MSASN1.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\system32\msvcp110_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\OLEAUT32.dll
C:\Windows\system32\omadmapi.dll
C:\Windows\system32\omadmclient.exe
C:\Windows\system32\policymanager.dll
C:\Windows\System32\powrprof.dll
C:\Windows\System32\profapi.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\System32\shcore.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\system32\USERENV.dll
C:\Windows\system32\XmlLite.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: omadmclient.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.17763.1432 (WinBuild.160101.0800)
  • Product Version: 10.0.17763.1432
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/c4fa3f2b3569cf99e865709d437e2d60d432ab4d48dfcc56b0dd2f316bc76f42/detection/

MIT License. Copyright (c) 2020-2021 Strontic.