Troj/Orifice-H is a backdoor Trojan.
Troj/Orifice-H copies itself to the Windows System folder as NETLINK32.EXE
and creates the following registry entry in order to run on system startup:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\netlink32.exe
Troj/Orifice-H runs in the background and waits for backdoor commands via
the appropriate client.