We checked up the file ACRORDE32.EXE and found it hazardous.
The file ACRORDE32.EXE must be deleted from the system immediately.
Kill the process ACRORDE32.EXE and remove ACRORDE32.EXE from the Windows startup.
Malware Analysis of ACRORDE32.EXE
Full path on a computer: %Temp%\AcroRde32.exe
Detected by UnHackMe:
Item Name: UpdatWinCCC
Author:
Current Setting: %TEMP%\ACRORDE32.EXE
Type: Registry Run
Item Name: AcroRde32.exe
Author: Unknown
Related File: %TEMP%\ACRORDE32.EXE
Type: Running Processes
Removal Results: Success
Number of reboot: 1
ACRORDE32.EXE is known as:
Trojan.Banker
ACRORDE32.EXE hash:
- MD5: efa37290f98083a3894b450766bb4ac8
How to quickly detect ACRORDE32.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\UpdatWinCCC: “%Temp%\AcroRde32.exe”
Files:
- %Temp%\AcroRde32.exe
- %Temp%\CDELoop.tl
- %Temp%\funcs.dll