Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
2, 6, 0, 7 |
23.08% |
|
2, 6, 0, 4 |
7.69% |
|
2, 6, 0, 4 |
7.69% |
|
2, 6, 0, 4 |
7.69% |
|
2, 6, 0, 4 |
7.69% |
|
2, 6, 0, 4 |
23.08% |
|
2, 6, 0, 4 |
7.69% |
|
2, 6, 0, 4 |
7.69% |
|
2, 6, 0, 4 |
7.69% |
|
Relationships
Orbitnet.exe
P2P service of Orbit Downloader by KORAM GAMES LIMITED (Signed)
Version: | 2, 6, 0, 4 |
MD5: | b8ad5a9d9352bbdb759e5bff70092769 |
SHA1: | dc030c43774b732bbd6726bdc1b4cf78332c7320 |
SHA256: | a4fe524bfafe6d9b17e4a5a630c617288bfa0ee910c04e72dcf46369a4ed98cc |
Warning 8 antivirus scanners has detected malware.
Overview
orbitnet.exe is malware that executes as a process with the local user's privileges typically within the context of its parent
orbitdm.exe (Orbit Downloader by KORAM GAMES LIMITED). It has been configured with a firewall exception which allows both inbound and outbound network communication without being blocked. This is typically installed with the program Orbit Downloader published by www.orbitdownloader.com. The file is digitally signed by KORAM GAMES LIMITED which was issued by the VeriSign certificate authority (CA).
Details
File name: | orbitnet.exe |
Publisher: | Orbitdownloader.com |
Product name: | P2P service of Orbit Downloader |
Typical file path: | C:\Program Files\orbitdownloader\orbitnet.exe |
File version: | 2, 6, 0, 4 |
Size: | 544 KB (557,056 bytes) |
Build date: | 5/1/2013 11:06 PM |
Certificate |
Issued to: | KORAM GAMES LIMITED |
Authority (CA): | VeriSign |
Effective date: | Thursday, November 8, 2012 |
Expiration date: | Wednesday, January 8, 2014 |
Digital DNA |
File packed: | No |
.NET CLR: | No |
More details
Programs
The following program will install this file
Orbit Downloader is a download manager for Windows that has the ability to grab and download embedded Flash Video files from sites like YouTube, Dailymotion, Metacafe, etc. Orbit Downloader also accelerates downloads by acting as a peer-to-peer client, utilizing bandwidth of other users. Orbit Downloader is an advertising-supported product since it may change the web browser's homepage upon installation and also offers to install softwa...
Behaviors
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
- Firewall exception for 'C:\Program Files\Orbitdownloader\orbitnet.exe'
- Firewall exception for 'C:\Program Files\Orbitdownloader\orbitnet.exe'
- Firewall exception for 'C:\Program Files\Orbitdownloader\orbitnet.exe'
Network connections
Access through an approved Windows firewall exception
[UDP] listens on port 20129
Malware detections
Based on 40+ industry antivirus scanners, 8 of them detected the following malware.
Antivirus engine | Engine version | Detection |
Antiy Labs AVL |
2.0.3.7 |
NetTool/Win32.GushUnleashed |
BitDefender |
7.2 |
Application.Orbitnet.A |
Commtouch |
5.4.1.7 |
W32/Trojan.UIAQ-1767 |
F-Secure |
11.0.19100.45 |
Application.Orbitnet.A |
G Data |
13.9.22 |
Application.Orbitnet.A |
Ikarus |
T3.1.5.4.0 |
Application.Orbitnet |
Kaspersky |
9.0.0.837 |
not-a-virus:NetTool.Win32.GushUnleashed.a |
eScan by MicroWorld |
12.0.250.0 |
Application.Orbitnet.A |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00019947% | |
Kernel CPU: | 0.00008833% | |
User CPU: | 0.00011113% | |
Kernel CPU time: | 62 ms/min | |
Memory |
Private memory: | 3.3 MB | |
Private (maximum): | 8.36 MB | |
Private (minimum): | 8.11 MB | |
Non-paged memory: | 3.3 MB | |
Virtual memory: | 81.64 MB | |
Virtual memory (peak): | 86.64 MB | |
Working set: | 8.2 MB | |
Working set (peak): | 8.36 MB | |
Resource allocations |
Threads: | 6 | |
Handles: | 148 | |
GUI GDI count: | 9 | |
GUI GDI peak: | 10 | |
GUI USER count: | 5 | |
GUI USER peak: | 5 | |
Process properties
Distribution by Windows OS
OS version | distribution |
Microsoft Windows XP |
30.77% |
|
Windows 7 Home Premium |
15.38% |
|
Windows 7 Professional |
15.38% |
|
Windows 7 Ultimate |
15.38% |
|
Windows Seven Black Edition |
7.69% |
|
Windows 8 |
7.69% |
|
Windows 8 Pro |
7.69% |
|
Distribution by country
United States installs about 30.77% of P2P service of Orbit Downloader.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Toshiba |
33.33% |
|
ASUS |
16.67% |
|
Hewlett-Packard |
16.67% |
|
Dell |
16.67% |
|
GIGABYTE |
16.67% |
|