PUA

PUP.Optional.PCAcceleratePro.DDS removal instruction

Malware Removal

The PUP.Optional.PCAcceleratePro.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.PCAcceleratePro.DDS virus can do?

  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Arabic (Qatar)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Detects Bochs through the presence of a registry key
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine PUP.Optional.PCAcceleratePro.DDS?


File Info:

name: 72FA5CC833712070BA1D.mlw
path: /opt/CAPEv2/storage/binaries/3a5345d4a12bdf2c67625eea353d5b1bec6c1ffae06feb1135a153dc68350e6a
crc32: 5AB51E55
md5: 72fa5cc833712070ba1da0b5f069c3e5
sha1: ec0a69fccc4749282764a22f5180adf9b7cba09a
sha256: 3a5345d4a12bdf2c67625eea353d5b1bec6c1ffae06feb1135a153dc68350e6a
sha512: a23c864f65837d642410acd87f8ef3248083cce048370f4bf0a444dd67a13b62783b1c47395db937f0d36015c5c6256901e4c5fee342125881240b843af95c47
ssdeep: 196608:FDfo2Hx3zMXXebpPQKcGPRIHFa2dWctf5m7+87+Ue+E:FDfo2Hx3zMXXebpPQKcSRu987+87+Uex
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T148867D103DE44142E26F45B0BD4EF23411FD5FB8FB1E919BAAA47F940D306E92A2F51A
sha3_384: e0b57642f137cfe0ca5d88653e036110b3d4751169cff683196c0aefcd84259fc969a1f209f927cc5e240e0bfbca1360
ep_bytes: e891120000e960feffffc70118ef7300
timestamp: 2019-06-15 19:48:42

Version Info:

CompanyName: DIGI MICROSERVICE LIMITED
FileDescription: P-C-A-P
InternalName: P-C-A-P.exe
OriginalFilename: P-C-A-P.exe
ProductName: P-C-A-P
FileVersion: 1.0.4.43
LegalCopyright: Copyright DIGI MICROSERVICE LIMITED 2018
ProductVersion: 1.0.4.43
Translation: 0x0409 0x04b0

PUP.Optional.PCAcceleratePro.DDS also known as:

CyrenCloudW32/Trojan.DZL.gen!Eldorado
BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Jaik.37717
FireEyeGeneric.mg.72fa5cc833712070
ALYacGen:Variant.Jaik.37717
MalwarebytesPUP.Optional.PCAcceleratePro.DDS
ZillyaAdware.PCAcceleratePro.Win32.251
SangforSuspicious.Win32.Save.ins
K7AntiVirusAdware ( 00560eac1 )
AlibabaAdWare:Win32/PCAcceleratePro.d9570a6d
K7GWAdware ( 00560eac1 )
CrowdStrikewin/grayware_confidence_100% (W)
CyrenW32/Trojan.DZL.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.PCAcceleratePro.K
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Jaik.37717
NANO-AntivirusTrojan.Win32.Steam.fzkbel
AvastWin32:Adware-gen [Adw]
TencentMalware.Win32.Gencirc.115a72f4
EmsisoftGen:Variant.Jaik.37717 (B)
DrWebTrojan.PWS.Steam.16672
VIPREGen:Variant.Jaik.37717
TrendMicroTROJ_GEN.R002C0WET23
McAfee-GW-EditionBehavesLike.Win32.Dropper.wh
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Jaik.37717
JiangminHoax.PCAccelerator.n
WebrootW32.Malware.Gen
GoogleDetected
AviraADWARE/PCAccerleratePro.oppnd
Antiy-AVLGrayWare/Win32.Puwaders
ArcabitTrojan.Jaik.D9355
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R277201
McAfeeArtemis!72FA5CC83371
MAXmalware (ai score=84)
VBA32BScope.Adware.Downware
TrendMicro-HouseCallTROJ_GEN.R002C0WET23
RisingTrojan.Generic@AI.80 (RDMK:6ufJcUDPcxM07JlhZFYfTQ)
YandexTrojan.GenAsa!tjYq6uUekRk
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Steam.672!tr
AVGWin32:Adware-gen [Adw]
Cybereasonmalicious.833712
DeepInstinctMALICIOUS

How to remove PUP.Optional.PCAcceleratePro.DDS?

PUP.Optional.PCAcceleratePro.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment