Orbiter.dll

Orbiter

ClientConnect LTD

The file belongs to the ClientConnect (Conduit/Perion) platform, a utility that bundles and monetizes search toolbars and browser add-ons. The module Orbiter.dll by ClientConnect has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Client Connect LTD  (signed by ClientConnect LTD)

Product:
Orbiter

Version:
1.0.1.4

MD5:
c9fc668e4fcd7f1ba5babfb63a0b9111

SHA-1:
0087fe3ae827372c4049bde70f617320695c2d44

SHA-256:
df29cff009008cd4fe5a8a986e092642c06f10650687879be49c2d04d4ff0862

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Part of the Conduit/ClientConnect toolbar/extension distribution.

Analysis date:
8/13/2020 2:14:41 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Conduit.ClientCo (M)
16.3.9.14

File size:
481 KB (492,496 bytes)

Product version:
1.0.1.4

Copyright:
(c) 2014 ClientConnect Ltd.

Original file name:
Orbiter.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\orbtr\orbiter.dll

Digital Signature
Authority:
Symantec Corporation

Valid from:
7/30/2014 2:00:00 AM

Valid to:
7/31/2016 1:59:59 AM

Subject:
CN=ClientConnect LTD, OU=orbiter, O=ClientConnect LTD, L=Nezz Ziona, S=Israel, C=JP

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6E08571F7C2C630E2F418F38E3B31674

File PE Metadata
Compilation timestamp:
8/12/2014 3:54:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
12288:eR77uTamgbs2yak1+lD9pL+H9581051RrkJNJ2obrLjCNU:A82Fk1+l7+d57nJkJjPeU

Entry address:
0x2CCAE

Entry point:
FA, 8C, D6, 3F, 1C, 58, B2, B8, 5F, 52, BC, AB, C7, 06, 9F, 1E, 24, D7, 63, 53, B9, 1A, 1C, 7A, AF, 51, C1, F2, 8D, BD, 24, 9D, 69, 65, B3, 35, EE, 44, 44, A5, 16, 7A, 16, 6C, 96, 4F, 0C, AE, BE, 3A, 54, ED, 5B, B2, F7, A4, 4B, 83, 67, BB, 1D, 55, 5A, 89, 3A, F9, A0, 9B, 4B, 86, 69, 61, C3, D4, 5A, 75, E1, 24, B3, CE, 76, 5E, 70, 27, 51, AD, 42, D2, 6E, AD, 45, B4, 72, 96, 79, B2, 34, E9, D7, B8, 82, 8A, 7C, F9, F9, 1E, 7D, 52, E6, A5, A5, 91, 6A, C1, 1F, 41, 95, C4, 99, CC, 4E, 85, 99, 69, 73, C3, C8, 46...
 
[+]

Code size:
354.5 KB (363,008 bytes)

Remove Orbiter.dll - Powered by Reason Core Security