orbd.exe
- File Path:
C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\bin\orbd.exe
- Description: OpenJDK Platform binary
Hashes
Type | Hash |
---|---|
MD5 | B7D6DFE20B64D0E89E2CAAC0918C7ABF |
SHA1 | 9E3F11D52399A41B36896323F8E89587A9712A00 |
SHA256 | 4BB5C8B01ACA8785DBE7A64224420A3DCAE8FB621EC05D0BF470B875A3CCE086 |
SHA384 | 5C9970FA94CF960192AF82C9D2D7059A5D7CDB497EF9C38C455D6215633433D74C9869E3BB3112F734FD2983C1F37BDA |
SHA512 | FA9098801F09285982A1565CBC062D93EA285CC865AEDCB64BDC60DBF3D36BC199475BBFAE5A31C33F9DBF94990FD82913A945C81FA1846C35C47BC9D1531704 |
SSDEEP | 192:tvmg3lzXv9K/IKEfoQjgeEM4yK6CYlLWwsUg4DNjnsB4D8a9sgfxIZH/b:x759KwKNQjgeEkK6jSt0nB8Dgf2hT |
IMP | 2C43CDA2243B5AF72E180E8D1F09446D |
PESHA1 | BCD40864D6989C196D03A97115CDC89308829E99 |
PE256 | EB1EAE75BCD68A88E32A851069711C21CA267557ACC501AC6A6A07C2FA978F01 |
Runtime Data
Child Processes:
conhost.exe
Open Handles:
Path | Type |
---|---|
(R-D) C:\Users\user\AppData\Local\Temp\hsperfdata_user\6196 | File |
(R-D) C:\Windows\System32\en-US\kernel32.dll.mui | File |
(RW-) C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\lib\ext\dnsns.jar | File |
(RW-) C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\lib\ext\jfxrt.jar | File |
(RW-) C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\lib\jfr.jar | File |
(RW-) C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\lib\jsse.jar | File |
(RW-) C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\lib\resources.jar | File |
(RW-) C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\lib\rt.jar | File |
(RW-) C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_ca04af081b815d21 | File |
(RW-) C:\xCyclopedia | File |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 | Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 | Section |
\Sessions\1\BaseNamedObjects\hsperfdata_user_6196 | Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters | Section |
Loaded Modules:
Path |
---|
C:\Program Files\Amazon Corretto\jdk1.8.0_265\jre\bin\orbd.exe |
C:\Windows\System32\KERNEL32.DLL |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\SYSTEM32\ntdll.dll |
Signature
- Status: Signature verified.
- Serial:
2F83C35B5136353D68CE9EB669FD1B0B
- Thumbprint:
4BAD227329ADEF18F215B6475FB7948E1629B505
- Issuer: CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US
- Subject: CN=Amazon.com Services LLC, OU=Software Services, O=Amazon.com Services LLC, L=Seattle, S=Washington, C=US
File Metadata
- Original Filename: orbd.exe
- Product Name: OpenJDK Platform 8
- Company Name: Amazon.com Inc.
- File Version: 8.0.2650.1
- Product Version: 8.0.2650.1
- Language: Language Neutral
- Legal Copyright: Copyright 2020
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/68
- VirusTotal Link: https://www.virustotal.com/gui/file/4bb5c8b01aca8785dbe7a64224420a3dcae8fb621ec05d0bf470b875a3cce086/detection/
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.