Impove
boot up time

Run a free scan to diagnose your PC
Start Test!

ACADPROC.DLL is Trojan VbCrypt

January 18, 2012 by NightWatcher
Filed under: Malware 
Install UnHackMe Install RegRun

Is the file ACADPROC.DLL located on your computer? Then your computer is infected.
We do suggest you should remove ACADPROC.DLL from your computer as soon as possible.
ACADPROC.DLL is Trojan/Backdoor.
Kill the process ACADPROC.DLL and remove ACADPROC.DLL from the Windows startup.

Malware Analysis of ACADPROC.DLL
Full path on a computer: %SysDir%\AppPathch\AcAdProc.dll

Detected by UnHackMe:

Item Name: {058948E5-48F4-9CAC-3932-5429EF042A97}
Author:
Related File: %SYSDIR%\APPPATHCH\ACADPROC.DLL
Type: ActiveSetup

Removal Results: Success
Number of reboot: 1

ACADPROC.DLL is known as:

Trojan.VbCrypt

ACADPROC.DLL hash:

  • MD5: 1ca22978dab915b8e7011406bcd26998
How to quickly detect ACADPROC.DLL presence?

Registry:
  • HKLM\Software\Microsoft\Active Setup\Installed Components\{058948E5-48F4-9CAC-3932-5429EF042A97}\stubpath: “%SysDir%\AppPathch\AcAdProc.dll s”
Folders:
  • %SysDir%\AppPathch
Files:
  • %Recent%\1029442762_small.lnk
  • %Recent%\system32.lnk
  • %SysDir%\1029442762_small.jpg
  • %SysDir%\AppPathch\AcAdProc.dll
  • %SysDir%\KirAA_CleeeaN.exe

Remove it now!

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!