Orbit Downloader

Orbit Downloader

http://www.orbitdownloader.com/

Orbit Downloader, leader of download manager revolution, is devoted to new generation web (web2.0) downloading, such as video/music/streaming media from Myspace, YouTube, Imeem, Pandora, Rapidshare, support RTMP. And to make general downloading easier and faster.

The Windows boot time has become slow than usually. Difference= 5 sec (-15%).

ORBITDM.EXE
Description: Orbit Downloader Orbitdownloader.com Orbit Downloader 4, 1, 0, 7
MD5= 26EA33E043ED7D9C9DD36006EDCB31F2
File is signed and the signature was verified.
File size= 2637624
Related registry changes:
HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4250488A-CB24-0893-C066-B1AEA57BCFF2}\APPNAME: “ORBITDM.EXE
HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\DRAGDROP\{2BDB5D05-9A0B-4256-80AF-A920F8C01AE1}}\APPNAME: “ORBITDM.EXE
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ORBIT_IS1\DISPLAYICON: “C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITDM.EXE
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\STANDARDPROFILE\AUTHORIZEDAPPLICATIONS\LIST\C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITDM.EXE: “C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITDM.EXE:*:ENABLED:ORBIT”
ORBITCTH.DLL
Description: Orbitcth Orbitdownloader.com Orbitcth 2, 4, 0, 11
MD5= 945FF5245DC60558FAE120FC7883BBF4
File is signed and the signature was verified.
File size= 237368
Related registry changes:
HKLM\SOFTWARE\CLASSES\CLSID\{000123B4-9B42-4900-B3F7-F4B073EFC214}\INPROCSERVER32\: “C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITCTH.DLL
HKLM\SOFTWARE\CLASSES\CLSID\{7854F00C-DC77-477E-A10E-603F48442D3B}\INPROCSERVER32\: “C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITCTH.DLL
HKLM\SOFTWARE\CLASSES\TYPELIB\{BCDDE143-FAE3-4C57-B22B-C4E8678CFDC0}\1.0\0\WIN32\: “C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITCTH.DLL
ORBITMXT.DLL/
Description: File is deleted or hidden by rootkit or could not be located.
Related registry changes:
HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MENUEXT\&DOWNLOAD BY ORBIT\: “RES://C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITMXT.DLL/201″
HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MENUEXT\&GRAB VIDEO BY ORBIT\: “RES://C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITMXT.DLL/204″
HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MENUEXT\DO&WNLOAD SELECTED BY ORBIT\: “RES://C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITMXT.DLL/203″
HKCU\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MENUEXT\DOWN&LOAD ALL BY ORBIT\: “RES://C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITMXT.DLL/202″
GRABPRO.DLL
Description: Grab Pro Grab Pro 1, 0, 0, 29
MD5= A9F718482802D97A1E9CA647595750A9
File is signed and the signature was verified.
File size= 696000
Related registry changes:
HKLM\SOFTWARE\CLASSES\CLSID\{C55BBCD6-41AD-48AD-9953-3609C48EACC7}\INPROCSERVER32\: “C:\PROGRAM FILES\ORBITDOWNLOADER\GRABPRO.DLL
HKLM\SOFTWARE\CLASSES\TYPELIB\{8091D09E-B01D-4D32-AC66-BBF8916BB1CF}\1.0\0\WIN32\: “C:\PROGRAM FILES\ORBITDOWNLOADER\GRABPRO.DLL

Modified during installation:

~+ [INTERNET EXPLORER] [CURRENT HOME PAGE] :HKCU START PAGE=HTTP://SEARCH.ORBITDOWNLOADER.COM
~- [INTERNET EXPLORER] [CURRENT HOME PAGE] :HKCU START PAGE=HTTP://WWW.GOOGLE.COM/

FILES ADDED:191

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\ORBIT.LNK
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\BOOKMARKBACKUPS\BOOKMARKS-2012-05-16.JSON
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\ADDONS.SQLITE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\EXTENSIONS\{35379F86-8CCB-4724-AE33-4278DE266C70}
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\SESSIONSTORE.BAK
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\AUTOUPDATE_RESPONSE.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\BROWSER.JS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\DICTIONARIES\DICTIONARIES.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OVERRIDE_DOWNLOADED.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\ADCONFIG.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1335513440.GIF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1335513452.GIF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1335513466.GIF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1335513489.GIF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1335513499.GIF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1335524713.GIF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1336474406.PNG
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1336544593.PNG
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\1336961222.PNG
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS\AD.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPSAD.ZIP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\CONF.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\DHTPREF.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\DOWNLOADLIST.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\FILESAVE.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\FLINK\F1REANIMATOR.LNK
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\GRABCONF.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\ADOBE FLASH PLAYER 10 ACTIVEX.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\BOOTRACER.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\FAR MANAGER.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\GOOGLE CHROME.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\INTERNET EXPLORER.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\MOZILLA FIREFOX.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\MOZILLA MAINTENANCE SERVICE.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\OPERA.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\ORBIT DOWNLOADER.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\REANIMATOR.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\VMWARE TOOLS.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\WINDOWS MEDIA FORMAT 11 RUNTIME.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON\WINDOWS MEDIA PLAYER.ICO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\NCONF.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\SCLIST.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\SITELOGIN.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\SLIST.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\SOFTI.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\UPDATESLIST.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\USER.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\PROGSENSE\USER.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DESKTOP\ORBIT.LNK
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CACHE\C\DB\8B6DFD01
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000A.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000B.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000C.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000D.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000E.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000H.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000I.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000J.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000K.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000L.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\G_0000\OPR0000M.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\ICONS\HTTP%3A%2F%2FWWW.ORBITDOWNLOADER.COM%2FFAVICON.PNG
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\ICONS\WWW.ORBITDOWNLOADER.COM.IDX
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\TEMPORARY_DOWNLOADS\OVERRIDE_DOWNLOADED.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\CHE2.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\CHE4.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\PRG1.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\PRG3.TMP
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\~DFD05C.TMP
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\ORBIT.LNK
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\ORBIT\HOMEPAGE.URL
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\ORBIT\ORBIT.LNK
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\ORBIT\UNINSTALL ORBIT.LNK
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\NPORBIT.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\CHROME\GRABPRO.JAR
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\CHROME.MANIFEST
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\COMPONENTS\GRABKERNEL.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\COMPONENTS\GRABXPCOM.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\COMPONENTS\GRABXPCOM.XPT
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\COMPONENTS\WINFILE.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\INSTALL.RDF
C:\PROGRAM FILES\ORBITDOWNLOADER\BANURL.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\CHANGELOG.TXT
C:\PROGRAM FILES\ORBITDOWNLOADER\DOWNLOAD.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\GDIPLUS.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\GRAB.EXE
C:\PROGRAM FILES\ORBITDOWNLOADER\GRABDLL.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\GRABKERNEL.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\GRABPRO.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\IDHT.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\12.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\ASKBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\BACKIMG.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\CLIENTBACK.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\CLIENTIMG.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\CLOSEBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\CONFIGBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\DEFBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\HANDDOWN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\HANDUP.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\LOGOIMG.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\MAXBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\MINBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\NO_ICON.ICO
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\REFRESHBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SCROLLBAR.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SEARCHCLEARBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SEARCHCLEARBTNS.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SEARCHINPUT.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SEARCHTYPEBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SEARCHTYPEBTNS.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SOFTINFOBACK.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SOFTINFOBK.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SOFTLISTBACK.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SOFTTITLEIMG.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SORTDOWN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SORTNOMAL.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\SORTUP.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\TABBTN1.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\TABBTN1S.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\TABBTN2.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\TABBTN2S.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\TITLEIMG.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\TITLELINEBODER.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\USERNAME.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\VISITBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\VOTEIMG.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\VOTENAME.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\WAIT.GIF
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\WAIT.HTML
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\WAITUPDATA.GIF
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE\WRITEBTN.PNG
C:\PROGRAM FILES\ORBITDOWNLOADER\LANG.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBAFR.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBARA.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBBGR.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBCAT.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBCHS.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBCHT.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBCSY.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBDEU.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBELL.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBENG.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBESN.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBESO.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBESV.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBFAR.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBFIN.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBFRA.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBHEB.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBHRV.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBHUN.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBIND.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBITA.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBJPN.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBKOR.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBMKI.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBNLD.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBNOR.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBPLK.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBPTB.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBPTG.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBROM.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBRUS.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBSKY.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBSQI.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBSRB.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBSWE.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBTHA.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBTRK.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBUKR.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE\OBVIT.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\LAYOUT\CLIENT.XML
C:\PROGRAM FILES\ORBITDOWNLOADER\LAYOUT\LAYERWND.XML
C:\PROGRAM FILES\ORBITDOWNLOADER\LAYOUT\MAIN.XML
C:\PROGRAM FILES\ORBITDOWNLOADER\LIBEAY32.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\MSVCP71.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\MSVCR71.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITCTH.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITDM.EXE
C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITMXT.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\ORBITNET.EXE
C:\PROGRAM FILES\ORBITDOWNLOADER\SACTION.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\SITEINFO.INI
C:\PROGRAM FILES\ORBITDOWNLOADER\SOFTUPDATER.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\SSLEAY32.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\UNINS000.DAT
C:\PROGRAM FILES\ORBITDOWNLOADER\UNINS000.EXE
C:\PROGRAM FILES\ORBITDOWNLOADER\WINFILE.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\WTLCTRL.DLL
C:\PROGRAM FILES\ORBITDOWNLOADER\XLAYOUT.DLL

FILES[ATTR]MODIFIED:61

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CERT8.DB
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\COMPATIBILITY.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\COOKIES.SQLITE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\EXTENSIONS.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\EXTENSIONS.SQLITE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\KEY3.DB
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\LOCALSTORE.RDF
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\PLACES.SQLITE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\PREFS.JS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\SESSIONSTORE.JS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\URLCLASSIFIERKEY3.TXT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\COOKIES4.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\DOWNLOAD.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\GLOBAL_HISTORY.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPCACRT6.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPERAPREFS.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPICACRT6.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPRAND.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPSSL6.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPTRUST.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\OPUNTRUST.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\SESSIONS\AUTOSAVE.WIN
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\SESSIONS\AUTOSAVE.WIN.BAK
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\TASKS.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\TIPS.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\TYPED_HISTORY.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\VLINK4.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\WEBSERVER\USERS.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\IETLDCACHE\INDEX.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\FEEDS\FEEDSSTORE.FEEDSDB-MS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\FEEDS\MICROSOFT FEEDS~\MICROSOFT AT HOME~.FEED-MS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\FEEDS\MICROSOFT FEEDS~\MICROSOFT AT WORK~.FEED-MS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\FEEDS\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\INTERNET EXPLORER SUGGESTED SITES~.FEED-MS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\FEEDS\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WEBSLICES~\WEB SLICE GALLERY~.FEED-MS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\FEEDS CACHE\INDEX.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CACHE\_CACHE_001_
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CACHE\_CACHE_002_
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CACHE\_CACHE_003_
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CACHE\_CACHE_MAP_
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\STARTUPCACHE\STARTUPCACHE.4.LITTLE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\URLCLASSIFIER.PSET
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\URLCLASSIFIER3.SQLITE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\APPLICATION_CACHE\CACHE_GROUPS.XML
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\APPLICATION_CACHE\MCACHE\DCACHE4.URL
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\APPLICATION_CACHE\MCACHE\VLINK4.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\DCACHE4.URL
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\REVOCATION\DCACHE4.URL
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\CACHE\REVOCATION\VLINK4.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\ICONS\HTTP%3A%2F%2FWWW.OPERA.COM%2FFAVICON.PNG
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\ICONS\WWW.OPERA.COM.IDX
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\MAIL\OMAILBASE.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\OPCACHE\DCACHE4.URL
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\VPS\0000\ADOC.BX
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\VPS\0000\MD.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\VPS\0000\URL.AXX
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\VPS\0000\W.AXX
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\VPS\0000\WB.VX
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\WIDGETS\WIDGETS.DAT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\CE4CF87733651BF1F44DD1E02FC1A8E8
C:\WINDOWS\TASKS\GOOGLEUPDATETASKUSERS-1-5-21-1659004503-1708537768-1801674531-500UA.JOB
C:\WINDOWS\TASKS\USER_FEED_SYNCHRONIZATION-{600E3BA8-8EF5-4554-94FE-DB90950D3DEB}.JOB

FOLDERS ADDED:23

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\EXTENSIONS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\OPERA\OPERA\DICTIONARIES
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\GRABPRO
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ADCONFIG\TIPS
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\FLINK
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\ORBIT\ICON
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\PROGSENSE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\EOWSE1HO.DEFAULT\CACHE\C\DB
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\APPLICATION DATA\OPERA\OPERA\TEMPORARY_DOWNLOADS
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\ORBIT
C:\PROGRAM FILES\ORBITDOWNLOADER
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\CHROME
C:\PROGRAM FILES\ORBITDOWNLOADER\ADDONS\ONECLICKYOUTUBEDOWNLOADER\COMPONENTS
C:\PROGRAM FILES\ORBITDOWNLOADER\CACHE
C:\PROGRAM FILES\ORBITDOWNLOADER\IMAGE
C:\PROGRAM FILES\ORBITDOWNLOADER\LANGUAGE
C:\PROGRAM FILES\ORBITDOWNLOADER\LAYOUT
C:\PROGRAM FILES\ORBITDOWNLOADER\UPDATE
C:\DOWNLOADS

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit is required. Reviews. EULA. Privacy Policy.

Leave a Reply