How to remove orbitdm.exe
- File Details
- Overview
- Analysis
orbitdm.exe
The module orbitdm.exe has been detected as Risk.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
ec0614aa9e6df62383b497b37cb133fd |
Size: |
1 MB |
First Published: |
2017-09-17 04:04:15 (7 years ago) |
Latest Published: |
2020-05-23 05:22:25 (4 years ago) |
Status: |
Risk.Downloader (on last analysis) |
|
Analysis Date: |
2020-05-23 05:22:25 (4 years ago) |
Overview
%programfiles%\orbitdownloader |
%programfiles% |
%sysdrive%\system volume information\_restore{8a99abc0-3d55-4e6e-9414-e8bcfd718cff}\rp36 |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
23.5% |
|
|
17.6% |
|
|
11.8% |
|
|
11.8% |
|
|
11.8% |
|
|
11.8% |
|
|
5.9% |
|
|
5.9% |
|
Windows 7 |
58.8% |
|
Windows 10 |
35.3% |
|
Windows XP |
5.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000dabf2 |
Name |
Size of data |
MD5 |
.text |
937984 |
f2dd04b8f5c166013f5b34ace090454c |
.rdata |
77824 |
8bb73d8cdeaf514cff5f95a2398faec7 |
.data |
20480 |
d553f3e2a02db66ec941748f8a6e157f |
.rsrc |
675840 |
737380521d33d4c17ddd4e8779640541 |