Should I block it?

90%
90% of PCs block this file from running.
Possible reason:
Multiple malware detections

VersionsAdditional versions

831c2 7.14%
84848 14.29%
11268 2.38%
319c8 2.38%
de671 2.38%
12b84 2.38%
8378f 2.38%
c8ae3 2.38%
22722 7.14%
bada1 7.14%
a966d 4.76%
5cdef 2.38%
cb029 2.38%
316c1 2.38%
431dc 9.52%
7ac7b 2.38%
9ece5 2.38%
66522 2.38%
99197 4.76%
0b84a 2.38%
5c5d8 2.38%
372b2 2.38%
9fedd 2.38%
8a6ee 2.38%
91b99 2.38%
(Note, Bandoo Media publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
kernel32.dll
AddVectoredExceptionHandler, RemoveVectoredExceptionHandler, GetProcAddress, GetModuleHandleW, OpenThread, GetCurrentThreadId, GetThreadContext, SetThreadContext, CloseHandle, GetModuleFileNameW, WriteProcessMemory, VirtualAllocEx, VirtualFreeEx, VirtualProtectEx, Process32FirstW, CreateToolhelp32Snapshot, Process32NextW, GetCurrentProcessId, OpenEventW, OpenProcess, GetWindowsDirectoryW, CreateProcessW, WaitForSingleObject, CreateEventA, SetEvent, InterlockedIncrement, InterlockedDecrement, WideCharToMultiByte, InterlockedCompareExchange, InterlockedExchange, MultiByteToWideChar, GetStringTypeW, Sleep, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, EncodePointer, DecodePointer, SetEndOfFile, CreateFileW, DeviceIoControl, GetLastError, GetFileAttributesW, SetLastError, GetModuleHandleA, AreFileApisANSI, LocalFree, FormatMessageA, HeapFree, GetCommandLineA, RaiseException, RtlUnwind, HeapAlloc, LCMapStringW, GetCPInfo, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, IsProcessorFeaturePresent, HeapSize, ExitProcess, WriteFile, GetStdHandle, GetLocaleInfoW, HeapCreate, HeapDestroy, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, GetACP, GetOEMCP, IsValidCodePage, SetHandleCount, InitializeCriticalSectionAndSpinCount, GetFileType, GetStartupInfoW, GetConsoleCP, GetConsoleMode, SetFilePointer, ReadFile, FlushFileBuffers, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetTickCount, GetSystemTimeAsFileTime, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, HeapReAlloc, LoadLibraryW, WriteConsoleW, SetStdHandle, GetProcessHeap, OpenEventA, ResetEvent, GetTimeFormatA, GetDateFormatA, CompareStringW, GetTimeZoneInformation, SetEnvironmentVariableA
Export table
CreateProcessNotify
switch_processor_mode

apcrtldr.dll

By Bandoo Media (Signed)

Remove apcrtldr.dll
MD5:   848488ba36d32def59b5807addb73ac4
SHA1:   67f405e93a8edc01849b407789dc871c31723607
SHA256:   afbc39593b7123d300818d77294030914341f40b5027a829e6a222f1849fb4b8
Warning 3 antivirus scanners has detected malware.

Overview

apcrtldr.dll is malware that is loaded as dynamic link library that runs in the context of a process. The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Bandoo Media which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:apcrtldr.dll
Typical file path:C:\Program Files\search results toolbar\datamngr\x64\apcrtldr.dll
Size:463 KB (474,112 bytes)
Build date:5/8/2013 9:50 PM
Certificate
Issued to:Bandoo Media
Authority (CA):Thawte
Effective date:Wednesday, September 19, 2012
Expiration date:Monday, November 3, 2014
Digital DNA
File packed:No
Code language:Microsoft Visual C# / Basic .NET
.NET CLR:Yes
.NET NGENed:No
More details

MalwareMalware detections

Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engineEngine versionDetection
Comodo Internet Security 16757 TrojWare.Win32.Injector.STB
ESET NOD32 7.8681 Win32/Toolbar.SearchSuite.C
Ikarus T3.1.5.4.0 not-a-virus:AdWare.Win32.Searcher

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 40.00%
Windows 8 Pro 22.50%
Windows 7 Home Premium 15.00%
Microsoft Windows XP 5.00%
Windows Seven Black Edition 5.00%
Windows 8 Single Language 5.00%
Windows 7 Professional 5.00%
Windows 8 Enterprise 2.50%

Distribution by countryDistribution by country

United States installs about 17.50% of apcrtldr.dll.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 20.83%
ASUS 20.83%
Hewlett-Packard 18.75%
Acer 18.75%
Toshiba 8.33%
GIGABYTE 6.25%
Sahara 4.17%
American Megatrends 2.08%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE