How to remove orbitdm a.exe
- File Details
- Overview
- Analysis
orbitdm a.exe
The module orbitdm a.exe has been detected as Risk.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3590ae7b810f7572e47bcb336098953a |
Size: |
2 MB |
First Published: |
2017-05-22 11:15:07 (7 years ago) |
Latest Published: |
2020-05-13 05:10:19 (4 years ago) |
Status: |
Risk.Downloader (on last analysis) |
|
Analysis Date: |
2020-05-13 05:10:19 (4 years ago) |
Overview
%programfiles%\orbitdownloader |
%sysdrive%\adwcleaner\quarantine\exuieaoeii |
%sysdrive%\adwcleaner\quarantine |
%programfiles% |
%sysdrive%\2-f-2-backups\локальный диск (c)\устройство(c)\programdata\martau\total uninstall 6\backup\orbit downloader.analyzed.zip\c:\program files (x86) |
%sysdrive%\total commander\programm\internet |
%sysdrive%\programs\internet |
%sysdrive% |
%sysdrive%\adwcleaner\quarantine\files |
%programfiles% |
orbitdm.exe |
orbitdm a.exe |
orbitdm.exe.vir |
Iran |
27.3% |
|
Taiwan |
11.6% |
|
Thailand |
8.1% |
|
Russia |
7.0% |
|
Hungary |
6.4% |
|
Italy |
4.7% |
|
Indonesia |
3.5% |
|
Hong Kong |
3.5% |
|
Japan |
2.3% |
|
Ukraine |
2.3% |
|
Germany |
2.3% |
|
Israel |
2.3% |
|
Vietnam |
2.3% |
|
Turkey |
1.7% |
|
Former Yugoslav Republic of Macedonia |
1.2% |
|
Nepal |
1.2% |
|
South Korea |
1.2% |
|
Iraq |
1.2% |
|
Libya |
1.2% |
|
Serbia |
1.2% |
|
Azerbaijan |
1.2% |
|
Georgia |
1.2% |
|
France |
1.2% |
|
Oman |
1.2% |
|
Myanmar |
1.2% |
|
India |
1.2% |
|
Czech Republic |
0.6% |
|
Windows 10 |
40.8% |
|
Windows 7 |
32.8% |
|
Windows 8.1 |
14.9% |
|
Windows XP |
8.6% |
|
Windows 8 |
1.7% |
|
Windows Vista |
1.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0015d258 |
Name |
Size of data |
MD5 |
.text |
1490944 |
bbc579d06e13f794d7f66be3e2a95b40 |
.rdata |
122880 |
2126b964f1924127654c34d4212a0b12 |
.data |
49152 |
5cb2e6a24121142d13c257b4c6223dcc |
.rsrc |
995328 |
178acc5837e48acea3788f7a2494d4f2 |