ACDaemon.exe

ArcSoft Connect

ArcSoft, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ArcSoft Connection Service’.
Publisher:
ArcSoft Inc.  (signed by ArcSoft, Inc.)

Product:
ArcSoft Connect

Description:
ArcSoft Connect Daemon

Version:
1.1.0.43

MD5:
d809c596df06c14266b1632a9dcfd775

SHA-1:
544ea32853ea462040bf6d04e3c197392baccf8d

SHA-256:
bf83cdf6c16710cde82ddba484b709590443aa2906e91dac6316379289f9caec

Scanner detections:
14 / 68

Status:
Clean  (14 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 11:00:36 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Win32.Floxif.A
354

avast!
Win32:Pioneer-C
2014.9-160215

AVG
Win32/Floxif.A
2017.0.2832

Dr.Web
Win32.FloodFix.7
9.0.1.046

Emsisoft Anti-Malware
Win32.Floxif
8.16.02.15.07

ESET NOD32
Win32/Floxif.H virus
10.7.0.302.0

F-Prot
W32/Floxif.B
v6.4.6.5.141

F-Secure
Win32.Floxif.A
11.2016-15-02_2

Kaspersky
Virus.Win32.Pioneer
14.0.0.656

McAfee
Trojan.Dropper-FIY!3FB3F02B68E1
5600.6488

Microsoft Security Essentials
Threat.Undefined
1.213.3521.0

Norman
Win32.Floxif.A
11.20160215

Sophos
Virus 'W32/Floxif-C'
5.22

VIPRE Antivirus
Threat.4760052
46426

File size:
271 KB (277,453 bytes)

Product version:
1.1.0.43

Copyright:
Copyright (C) ArcSoft 2007

Original file name:
ACDaemon.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\arcsoft\connection service\bin\acdaemon.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/23/2007 5:00:00 PM

Valid to:
8/14/2010 4:59:59 PM

Subject:
CN="ArcSoft, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="ArcSoft, Inc.", L=Fremont, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
38B5A40BC3E8552B45588D0EB9B5F330

File PE Metadata
Compilation timestamp:
7/5/2009 7:48:23 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:css/KMeJsDf1ijCNR8XG3s+unU3JAEwVwUrTLR:w/VUgR8W88ZAE2rZ

Entry address:
0x19987

Entry point:
E9, CE, 48, 00, 00, 68, B8, 45, 42, 00, 68, 64, E0, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, AC, 41, 42, 00, 33, D2, 8A, D4, 89, 15, AC, D8, 42, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, A8, D8, 42, 00, C1, E1, 08, 03, CA, 89, 0D, A4, D8, 42, 00, C1, E8, 10, A3, A0, D8, 42, 00, 6A, 01, E8, 05, 34, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C2, 00, 00, 00, 59, E8, 95, 30, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B1, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
6.8483

Packer / compiler:
Xtreme-Protector v1.05

Code size:
140 KB (143,360 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ArcSoft Connection Service

Command:
C:\Program Files\common files\arcsoft\connection service\bin\acdaemon.exe


Scan ACDaemon.exe - Powered by Reason Core Security