Spy

Win32/Spy.KeyLogger.OIM (file analysis)

Malware Removal

The Win32/Spy.KeyLogger.OIM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.KeyLogger.OIM virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid

How to determine Win32/Spy.KeyLogger.OIM?


File Info:

name: 12F0656B0A13234F4E61.mlw
path: /opt/CAPEv2/storage/binaries/63d115703e18ff07450ebe3189b80d5a588a7e4ff806219c469a5f28ad5e4a59
crc32: 65389D17
md5: 12f0656b0a13234f4e61a9226c453dcd
sha1: 7f9a8fe469f746625ba01838d41de336814f9a78
sha256: 63d115703e18ff07450ebe3189b80d5a588a7e4ff806219c469a5f28ad5e4a59
sha512: 99a0ae6a54e7e8dfa702cc28baf4838bfbbc6b432604c161cf9616c47172fd8dfff757ac37b5bf1514c40000aa1f4557542abcb6692db1f6bc1456925252d0b0
ssdeep: 384:XUboWNv017nA5uEqUixFwQutishNhXWvry8lNwyDRKYs3PpdcQsCau3jwLOD4yAR:qN817A5uTv6iEberjpmPQn6MLkPn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AC23C703E528A273F581CAB119358BA905A73D7155648E037B86BE5C1E73B83ADF0B1F
sha3_384: 95aec99a988f0ea653f79794b2a96380ab0b2b6f64f6c532e7fd8e2cfadec6fa976a5440c9f3038aaa77ee546e21509d
ep_bytes: 68681a4000e8eeffffff000000000000
timestamp: 2013-10-03 11:26:06

Version Info:

Translation: 0x0409 0x04b0
CompanyName: VLKNN
ProductName: Project1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Korogluu
OriginalFilename: Korogluu.exe

Win32/Spy.KeyLogger.OIM also known as:

CAT-QuickHealTrojan.IGENERIC
SkyhighBehavesLike.Win32.Infected.pt
Cylanceunsafe
K7AntiVirusSpyware ( 00491d2a1 )
AlibabaTrojanSpy:Win32/KeyLogger.92a338ca
K7GWSpyware ( 00491d2a1 )
ESET-NOD32Win32/Spy.KeyLogger.OIM
CynetMalicious (score: 100)
APEXMalicious
KasperskyUDS:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Graftor.csoccx
AvastWin32:Malware-gen
TrendMicroTROJ_SPNR.15C414
SophosMal/Generic-S
IkarusTrojan-Spy.Agent
Antiy-AVLTrojan/Win32.SGeneric
KingsoftWin32.Trojan.Generic.a
XcitiumMalware@#2gvpbsu9auhg2
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:Trojan.Win32.Generic
GDataWin32.Trojan.Agent.FVVDPY
GoogleDetected
McAfeeArtemis!12F0656B0A13
VBA32BScope.Trojan.Sabsik
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_SPNR.15C414
RisingSpyware.KeyLogger!1.9946 (CLASSIC)
YandexTrojan.Graftor!swWe9lYyb8w
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/KeyLogger.OIM!tr.spy
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Win32/Spy.KeyLogger.OIM?

Win32/Spy.KeyLogger.OIM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment