Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

11.0.07.79 6.10%
11.0.06.70 1.22%
11.0.04.63 13.41%
11.0.03.37 6.10%
11.0.02.0 1.22%
11.0.01.36 8.54%
11.0.0.379 9.76%
10.1.8.24 3.66%
10.1.7.27 8.54%
10.1.6.1 1.22%
10.1.5.33 4.88%
10.1.4.38 15.85%
10.1.0.534 3.66%
10.0.0.396 1.22%
9.5.3.305 1.22%
9.5.2.295 4.88%
9.2.0.124 1.22%
9.0.0.2008061200 1.22%
8.3.1.289 1.22%
8.1.0.2007051100 2.44%
7.0.0.0 1.22%
6.0.1.2003110300 1.22%

Relationships

Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExA, RegOpenKeyA, RegQueryValueA, RegOpenKeyW, RegQueryValueExW, RegCloseKey, RegOpenKeyExA, CryptGenKey, GetSecurityInfo, SetEntriesInAclW, SetSecurityInfo, GetTokenInformation, AllocateAndInitializeSid, OpenProcessToken, EqualSid, FreeSid, RegCreateKeyW, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW, RegCreateKeyExW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegOpenKeyExW, RegEnumValueW, ConvertSidToStringSidW, RegDisablePredefinedCache, RevertToSelf, SetThreadToken, CreateProcessAsUserW, SetTokenInformation, GetLengthSid, ConvertStringSidToSidW, GetSecurityDescriptorSacl, DuplicateTokenEx, CreateRestrictedToken, DuplicateToken, LookupPrivilegeValueW, CopySid, CreateWellKnownSid, AccessCheck, MapGenericMask, GetNamedSecurityInfoW, OpenThreadToken, CheckTokenMembership, CryptGetProvParam, CryptSetProvParam, CryptGenRandom, CryptDecrypt, CryptHashData, CryptSignHashA, CryptSignHashW, CryptGetHashParam, CryptSetKeyParam, CryptAcquireContextA, CryptAcquireContextW, CryptImportKey, CryptGetUserKey, CryptCreateHash, CryptReleaseContext, CryptDestroyKey, CryptDestroyHash, RegFlushKey, RegQueryValueW
gdi32.dll
CreateBitmap, CreateCompatibleBitmap, GetMapMode, BitBlt, GetTextMetricsW, CreateEnhMetaFileW, CreateMetaFileW, SetMapMode, SetWindowOrgEx, SetWindowExtEx, SetViewportExtEx, StretchDIBits, CloseEnhMetaFile, DeleteEnhMetaFile, SetBkColor, GetCurrentObject, GetRgnBox, CreateRectRgn, CombineRgn, SetPolyFillMode, GetObjectType, SetDIBits, CloseMetaFile, DeleteMetaFile, GetEnhMetaFileHeader, GetObjectW, GetDIBits, GetEnhMetaFileBits, GetWorldTransform, EnumEnhMetaFile, PlayEnhMetaFileRecord, SetWorldTransform, ModifyWorldTransform, SetEnhMetaFileBits, PlayEnhMetaFile, SelectObject, GetFontData, CreateScalableFontResourceW, RemoveFontResourceW, DeleteDC, DeleteObject, CreateFontIndirectW, CreateDCW, GetClipBox, GetTextColor, GetTextAlign, GetBkMode, GetStretchBltMode, GetPolyFillMode, GetMiterLimit, AddFontResourceW, ExtEscape, Escape, ResetDCW, EndDoc, EndPage, StartPage, AbortDoc, StartDocW, CreateDCA, CreateICW, DPtoLP, GetTextExtentPoint32W, GetStockObject, GetBkColor, CreateSolidBrush, CreateCompatibleDC, GetDeviceCaps
kernel32.dll
CloseHandle, UnmapViewOfFile, CreateFileA, VirtualQueryEx, GetCurrentProcess, MapViewOfFile, CreateFileMappingW, GetFileAttributesA, FindClose, FindNextFileA, FindFirstFileA, ReadFile, SetFilePointer, GetTempPathA, GetWindowsDirectoryA, GetSystemDirectoryA, GetModuleFileNameA, SizeofResource, LockResource, LoadResource, FindResourceW, GetSystemInfo, MultiByteToWideChar, LoadLibraryW, FreeLibrary, GetProcAddress, GetSystemDirectoryW, GetModuleHandleW, WaitForSingleObject, CreateSemaphoreW, ReleaseSemaphore, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, RaiseException, GetVersionExA, IsDebuggerPresent, OutputDebugStringA, GetVersionExW, HeapSize, GetProcessHeap, GetCurrentThreadId, FindResourceExW, GetCurrentProcessId, GetThreadLocale, GetLocaleInfoA, GetACP, GetSystemTimeAsFileTime, Sleep, InterlockedCompareExchange, GetStartupInfoW, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, QueryPerformanceCounter, GetTickCount, InterlockedExchange, DllMain, CreateFileMappingA, LoadLibraryA, GetModuleHandleA, CreateSemaphoreA, GetStartupInfoA, VirtualProtect, GetCommandLineA, ExitProcess, WriteFile, GetStdHandle, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetLastError, GetEnvironmentStringsW, SetHandleCount, GetFileType, HeapCreate, VirtualFree, GetOEMCP, GetCPInfo, VirtualAlloc, RtlUnwind, VirtualQuery, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
CoCreateInstance, CoTaskMemFree, CLSIDFromString, GetHGlobalFromStream, CoMarshalInterface, CreateStreamOnHGlobal, StringFromCLSID, CoTaskMemRealloc, CoInitialize, StringFromGUID2, OleLockRunning, CoGetClassObject, OleInitialize, OleUninitialize, CoInitializeEx, CoLockObjectExternal, CoTaskMemAlloc, CLSIDFromProgID, CoRevokeClassObject, ReadClassStg, GetConvertStg, WriteFmtUserTypeStg, WriteClassStg, CreateDataAdviseHolder, CreateOleAdviseHolder, CoDisconnectObject, CoRegisterClassObject, CoResumeClassObjects, CoUninitialize, CoUnmarshalInterface, ReleaseStgMedium, MkParseDisplayName, CreateBindCtx
secur32.dll
FreeContextBuffer, FreeCredentialsHandle, InitializeSecurityContextA, AcquireCredentialsHandleA, DeleteSecurityContext
shell32.dll
SHGetMalloc, SHGetPathFromIDListA, SHGetSpecialFolderLocation, SHGetFolderPathW, ShellExecuteExW, SHGetFileInfoW, FindExecutableW, SHBrowseForFolderW, SHGetPathFromIDListW, ShellExecuteW, SHCreateDirectoryExW, CommandLineToArgvW
shlwapi.dll
PathRemoveBackslashW, PathAddBackslashW, PathCreateFromUrlW, PathFindFileNameW, UrlCanonicalizeW, PathIsUNCW, PathFindExtensionW, PathCombineW, PathIsDirectoryW, AssocQueryStringW, UrlGetPartW, PathIsRelativeW, PathFileExistsW, PathRemoveFileSpecW, PathAppendW, SHDeleteKeyW, PathIsURLW, UrlIsW, StrStrIW, StrStrIA
user32.dll
MessageBoxW, SendMessageW, FindWindowW, UnregisterClassA, GetDC, ReleaseDC, RegisterClipboardFormatW, DispatchMessageW, PeekMessageW, TranslateMessage, MsgWaitForMultipleObjects, DdeDisconnect, DdeConnect, DdeCreateDataHandle, DdeAddData, SystemParametersInfoW, GetThreadDesktop, GetProcessWindowStation, CloseWindowStation, GetDesktopWindow, CreateWindowStationW, CreateDesktopW, GetUserObjectInformationW, PostThreadMessageW, GetActiveWindow, SetTimer, GetAsyncKeyState, UnregisterClassW, RegisterClassW, EnableWindow, SetWindowTextW, GetWindowInfo, EnumChildWindows, GetRawInputDeviceList, GetRawInputDeviceInfoW, SetWindowPos, GetWindowRect, GetWindowTextW, GetWindowTextLengthW, CreateIconFromResourceEx, UnhookWindowsHookEx, SetDlgItemTextW, SetWindowsHookExW, GetParent, GetClassNameW, FindWindowExW, DdeClientTransaction, SetActiveWindow, IsWindowEnabled, CloseWindow, GetClipboardFormatNameA, GetClipboardData, OpenClipboard, CloseClipboard, EmptyClipboard, SetClipboardData, IsClipboardFormatAvailable, EnumClipboardFormats, CountClipboardFormats, GetClipboardFormatNameW, GetClipboardSequenceNumber, GetClipboardOwner, GetOpenClipboardWindow, GetClipboardViewer, LoadCursorW, LoadIconW, SetFocus, GetFocus, SendDlgItemMessageW, MoveWindow, GetClientRect, UpdateWindow, GetClassInfoExW, IsChild, GetMessageW, GetSysColor, ClientToScreen, ScreenToClient, InvalidateRect, InvalidateRgn, RedrawWindow, SetCapture, ReleaseCapture, FillRect, CallWindowProcW, EndPaint, BeginPaint, DestroyAcceleratorTable, CreateAcceleratorTableW, IsDialogMessageW, MapWindowPoints, GetMonitorInfoW, MonitorFromWindow, SetCursor, LoadBitmapW, SetWindowContextHelpId, MapDialogRect, CreateDialogIndirectParamW, GetWindowDC, SetPropW, PostQuitMessage, GetPropW, DdeGetData, EnumThreadWindows, SetForegroundWindow, IsWindowVisible, DdeInitializeW, DdeUninitialize, DdeFreeStringHandle, DdeCreateStringHandleW, DdeNameService, FindWindowA, RegisterWindowMessageA, SetWindowLongW, ShowWindow, SetProcessWindowStation, SetThreadDesktop, OpenInputDesktop, CloseDesktop, DefWindowProcW, CreateWindowExW, RegisterClassExW, RegisterWindowMessageW, PostMessageW, DestroyWindow, EnumWindows, IsWindow, UserHandleGrantAccess, SetParent, GetWindowLongW, GetWindow, BringWindowToTop, GetSystemMetrics, GetForegroundWindow, EndDialog, GetDlgItem, AllowSetForegroundWindow, CharNextW, DialogBoxParamW, GetGUIThreadInfo, GetWindowThreadProcessId, GetPriorityClipboardFormat, ChangeClipboardChain, SetClipboardViewer, RegisterClipboardFormatA, SendNotifyMessageW, wsprintfW, SendMessageA, MessageBoxA

AcroRd32.exe

Adobe Reader by Adobe Systems (Signed)

Remove AcroRd32.exe
Version:   9.5.2.295
MD5:   0b81540a7a179f2c3a4abf904e0b5b21
SHA1:   be045637fa8fe80b05468c05235970c45c59c32a
SHA256:   d7d2dcfbdf193554489ad1d2b7e214baf4bb38e3ec06802971e7a4dece71720f

What is AcroRd32.exe?

Adobe Acrobat is a set of application software developed by Adobe Systems to view, create, manipulate, print and manage files in Portable Document Format (PDF).

Overview

AcroRd32.exe executes as a process with the local user's privileges. It has been configured with a firewall exception which allows both inbound and outbound network communication without being blocked. It is installed with a couple of know programs including Adobe Photoshop CS6 published by Adobe Systems Incorporated, Adobe Photoshop CS5 from Adobe Systems Incorporated and Adobe Photoshop CS5 by Adobe Systems Incorporated. The file is digitally signed by Adobe Systems which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:AcroRd32.exe
Publisher:Adobe Systems Incorporated
Product name:Adobe Reader
Description:Adobe Reader 9.0
Typical file path:C:\Program Files\adobe\reader 9.0\reader\acrord32.exe
File version:9.5.2.295
Size:349.45 KB (357,840 bytes)
Certificate
Issued to:Adobe Systems
Authority (CA):VeriSign
Effective date:Monday, September 18, 2006
Expiration date:Thursday, November 5, 2009
Digital DNA
PE subsystem:Windows GUI
Entropy:5.351788
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Adobe Systems Incorporated
12% remove
Adobe Photoshop CS6 is the industry-standard image editing software, used worldwide by professional photographers, amateur photographers, and designers who want to perfect their digital images.
Adobe Systems Incorporated
7% remove
CS5 introduces new tools such as the Content-Aware Fill, Refine Edge, Mixer Brush, Bristle Tips and Puppet Warp. CS5 and CS5 Extended were made available through Adobe's online store, Adobe Authorized Resellers and Adobe direct sales. Both CS5 and CS5 Extended are offered as either a stand-alone application or feature of Adobe Creative Suite 5. CS5 Extended includes everything in CS5 plus features in 3D and video editing. A new material...
Adobe Systems Incorporated
10% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.
Adobe Systems Incorporated
11% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.
Adobe Systems Incorporated
11% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.
Adobe Systems Incorporated
8% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.
Adobe Systems Incorporated
11% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.
Adobe Systems Incorporated
5% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.
Adobe Systems Incorporated
5% remove
Adobe Acrobat and Reader are a set of applications designed to view, create, manipulate, print and manage files in Portable Document Format (PDF). Acrobat and Reader are widely used as a method of presenting information with a fixed layout similar to a paper publication. Adobe also allows Acrobat plug-ins to be developed by third parties, which can add extra functions to the Acrobat program.

BehaviorsBehaviors

Scheduled tasks
  • The task '{7BA77A3A-9000-4A31-AA85-9153D38FD7C7}' runs on registration in the path '\{7BA77A3A-9000-4A31-AA85-9153D38FD7C7}'
  • The job '{C38D5D8F-604E-43D3-8739-B66C1B490541}' runs on registration in the path '\{C38D5D8F-604E-43D3-8739-B66C1B490541}'
  • The job '{A5EA3B4C-A5F1-4E0E-8F40-35BCB2C35E59}' runs on registration in the path '\{A5EA3B4C-A5F1-4E0E-8F40-35BCB2C35E59}'
  • The task '{95B0BB98-D891-4F39-B1BF-E5875B328A92}' runs on registration in the path '\{95B0BB98-D891-4F39-B1BF-E5875B328A92}'
  • The job '{4BD76361-419D-4920-8936-F6F03D4420BA}' runs on registration in the path '\{4BD76361-419D-4920-8936-F6F03D4420BA}'
  • The task '{9F90E156-3443-4F55-BDE7-83312D6A3B97}' runs on registration in the path '\{9F90E156-3443-4F55-BDE7-83312D6A3B97}'
  • Entry path '\{BCBC90BC-7132-43D2-93A1-EB18C7AB46D2}'
  • Entry path '\{B6D33AB2-D5BE-4A57-84A7-1AD706526772}'
  • Entry path '\{951A0EC2-87B8-4DCA-88D3-96A448B71B78}'
  • Entry path '\{6BA3BAE6-9367-4952-B0C7-5AA62F8977DC}'
  • Entry path '\{56E820C4-C882-4899-9AE3-1810142BA6BA}'
  • Entry path '\{4A05E0BF-EDDF-4C3B-B51B-35C63CA19FC6}'
  • Entry path '\{2505ED7D-D0A4-4A7E-B9E8-5FFDFDB6F802}'
  • Entry path '\{0FCB99A3-188B-4F9E-B845-7C85CD0392B6}'
  • Entry path '\{867D4E1F-80BE-4A2D-8157-1A8705020099}'
  • Entry path '\{3323ED45-BDD5-46DD-B0D0-49B72DE4D5E4}'
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe'
  • Firewall exception for 'C:\Program Files\Adobe\Acrobat 6.0\Reader\AcroRd32.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00220380%
0.028634%
Kernel CPU:0.00040734%
0.013761%
User CPU:0.00179646%
0.014873%
Kernel CPU time:2,929 ms/min
100,923,805ms/min
CPU cycles:15,608,032/sec
17,470,203/sec
Context switches:248/sec
284/sec
Memory
Private memory:70.22 MB
21.59 MB
Private (maximum):51.15 MB
Private (minimum):3.35 MB
Non-paged memory:70.22 MB
21.59 MB
Virtual memory:205.45 MB
140.96 MB
Virtual memory (peak):302.54 MB
169.69 MB
Working set:4.44 MB
18.61 MB
Working set (peak):180.77 MB
37.95 MB
Page faults:309,426/min
2,039/min
I/O
I/O read transfer:12.43 KB/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:12 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:112 Bytes/sec
448.09 KB/min
I/O other operations:9/sec
1,671/min
Resource allocations
Threads:14
12
Handles:279
600
GUI GDI count:174
103
GUI GDI peak:283
142
GUI USER count:168
49
GUI USER peak:268
71

BehaviorsProcess properties

Integrety level:Undefined
Platform:64-bit
Command lines:
  • "C:\Program Files\adobe\reader 9.0\reader\acrord32.exe" "C:\sakasik besm allah insha allah\ya rab inshaa allah\benghazi mall\ahlimall.pdf"
  • "C:\Program Files\adobe\reader 9.0\reader\acrord32.exe" "C:\users\user\appdata\local\microsoft\windows\temporary internet files\low\content.ie5\hzjcpwjn\variable_1121160528_001[1].pdf"
Owner:User
Parent processes:

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 42.68%
Windows 8 9.76%
Windows 8 Pro 8.54%
Windows 7 Professional 8.54%
Windows 7 Ultimate 7.32%
Microsoft Windows XP 6.10%
Windows 7 Starter 3.66%
Windows XP Professional 3.66%
Windows 8.1 Pro 2.44%
Windows 7 Home Basic 2.44%
Windows 8.1 N 1.22%
Windows Vista Ultimate 1.22%
Windows Vista Home Premium 1.22%
Windows Vista Home Basic 1.22%

Distribution by countryDistribution by country

United States installs about 48.68% of Adobe Reader.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 28.57%
Hewlett-Packard 16.07%
Acer 16.07%
Dell 10.71%
Sony 7.14%
Toshiba 7.14%
GIGABYTE 7.14%
Intel 7.14%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE