How to remove OrbitumUpdater.exe
- File Details
- Overview
- Analysis
OrbitumUpdater.exe
The module OrbitumUpdater.exe has been detected as Trojan.Downloader
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
7790f37335a5a475543744f4794fd9e6 |
| Size: |
2 MB |
| First Published: |
2017-08-02 00:06:06 (8 years ago) |
| Latest Published: |
2022-08-03 23:28:27 (3 years ago) |
| Status: |
Trojan.Downloader (on last analysis) |
|
| Analysis Date: |
2022-08-03 23:28:27 (3 years ago) |
Overview
| %localappdata%\orbitum\application\orbitumupdater |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
| %localappdata%\orbitum\application |
|
59.6% |
|
|
17.0% |
|
|
5.3% |
|
|
4.7% |
|
|
3.5% |
|
|
3.5% |
|
|
1.8% |
|
|
1.2% |
|
|
1.2% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
| Windows 10 |
44.4% |
|
| Windows 7 |
40.4% |
|
| Windows 8.1 |
13.5% |
|
| Windows 8 |
1.2% |
|
| Windows Vista |
0.6% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x001a253d |
| Name |
Size of data |
MD5 |
| .text |
1992704 |
a7d37350ccf5682088751f7ceff16cc3 |
| .rdata |
305664 |
58f2b665865515437c8a34bb2b0b6f75 |
| .data |
80896 |
4425932814041e14444d9f04f54a679b |
| .gfids |
1024 |
a9b6d685ba18da1035cfe714d4396f63 |
| .tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
| .rsrc |
252928 |
3e8904bf77560f173eff16eae2c2035c |
| .reloc |
81408 |
2b23fbc3c59cc37128936b1adf997747 |