Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegSetValueExA, RegDeleteValueA, RegOpenKeyExA, RegQueryValueExA
kernel32.dll
Sleep, IsBadReadPtr, HeapFree, CreateFileA, DuplicateHandle, GetCurrentThread, GetCurrentProcess, lstrcatA, HeapAlloc, GetProcessHeap, GetTickCount, lstrcmpiA, lstrcpyA, lstrlenA, WaitForSingleObject, Process32Next, Process32First, CreateToolhelp32Snapshot, WaitForMultipleObjects, CreateMutexA, GetWindowsDirectoryA, GetFullPathNameA, GetModuleFileNameA, GetVersionExA, GetExitCodeProcess, CreateProcessA, ResetEvent, SetEvent, CreateEventA, GetLastError, OpenProcess, CloseHandle, GetStartupInfoA
ksproxy.ax
KsSynchronousDeviceControl
msvcrt.dll
DllMain
setupapi.dll
SetupDiEnumDeviceInterfaces, SetupDiGetDeviceRegistryPropertyA, SetupDiGetClassDevsExA, SetupDiEnumDeviceInfo, SetupDiGetClassDevsA, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceInterfaceDetailA, SetupDiOpenDevRegKey
shlwapi.dll
StrStrIA
user32.dll
PostQuitMessage, GetWindowLongA, DispatchMessageA, TranslateMessage, IsDialogMessageA, IsWindow, GetMessageA, CreateDialogParamA, BroadcastSystemMessageA, RegisterWindowMessageA, DestroyWindow, PostMessageA, SetWindowLongA

OEM13Mon.exe

By Creative Technology Ltd

Remove OEM13Mon.exe
Version:   1.00.01.00
MD5:   8f48849314ef6af4e0b925539e52b16f
SHA1:   5fcca2a006f818cf570c03cdf35cd6bb801c3f64
SHA256:   4427c3fecd30c0f8d03e81111fd906e91b87ea1151ae828793e02e5fcc80bcc4

Overview

oem13mon.exe executes as a process with the local user's privileges. It is set to be start when the PC boots and any user logs into Windows (added to the Run registry key for the all users under the local machine).

DetailsDetails

File name:oem13mon.exe
Publisher:Creative Technology Ltd.
Description:Live! Cam Console Auto Launcher
Typical file path:C:\windows\oem13mon.exe
File version:1.00.01.00
Size:36 KB (36,864 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'OEM13Mon.exe' → C:\Windows\OEM13Mon.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00197534%
0.028634%
Kernel CPU:0.00163801%
0.013761%
User CPU:0.00033733%
0.014873%
Context switches:6/sec
284/sec
Memory
Private memory:1.18 MB
21.59 MB
Private (maximum):4.76 MB
Private (minimum):2.69 MB
Non-paged memory:1.18 MB
21.59 MB
Virtual memory:49.85 MB
140.96 MB
Virtual memory (peak):52.65 MB
169.69 MB
Working set:3.05 MB
18.61 MB
Working set (peak):4.88 MB
37.95 MB
Resource allocations
Threads:3
12
Handles:80
600
GUI GDI count:13
103
GUI GDI peak:15
142
GUI USER count:9
49
GUI USER peak:12
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:"C:\windows\oem13mon.exe"
Owner:User

ResourcesThreads

Averages
 
OEM13Mon.exe (main module)
CPU cycles:11,564,650/sec
5,741,424/sec
Context switches:2/sec
79/sec
Memory:36 KB
1.16 MB
msvcrt.dll
CPU cycles:440,878/sec
Context switches:1/sec
Memory:708 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8 Pro 66.67%
Windows 8 Enterprise 33.33%

Distribution by countryDistribution by country

United Kingdom installs about 66.67% of oem13mon.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE