Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

8.0.0.232 3.13%
8.0.0.196 3.13%
8.0.0.97 53.13%
8.0.0.72 9.38%
8.0.0.65 21.88%
7.0.2.28 3.13%
7.0.1.70 3.13%
5.2.0.124 3.13%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetSidSubAuthorityCount, ControlService, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, LogonUserW, ImpersonateLoggedOnUser, OpenProcessToken, DuplicateToken, RevertToSelf, AddAccessDeniedAce, AddAccessAllowedAce, GetLengthSid, InitializeAcl, ReportEventW, DeregisterEventSource, OpenEventLogW, RegisterEventSourceW, RegQueryInfoKeyW, RegEnumKeyExW, AllocateAndInitializeSid, LookupAccountSidW, FreeSid, IsValidSid, GetSidIdentifierAuthority, GetSidSubAuthority, RegCreateKeyExW, RegOpenKeyExW, RegQueryValueExW, CryptAcquireContextW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, CryptSetProvParam, CryptGetUserKey, CryptGenKey, CryptExportKey, CryptDestroyKey, CryptReleaseContext, CloseEventLog, ReadEventLogW, RegOpenKeyW, StartServiceW, GetServiceDisplayNameW, RegCreateKeyW, RegSetValueExW, RegCloseKey, OpenSCManagerW, CreateServiceW, ChangeServiceConfig2W, CloseServiceHandle, RegDeleteValueW, OpenServiceW, QueryServiceStatus, DeleteService
athcfg20resu.dll
GetAcapiResApi
crypt32.dll
CryptAcquireCertificatePrivateKey, CertGetIssuerCertificateFromStore, CertGetEnhancedKeyUsage, CertFindExtension, CertEnumCertificatesInStore, CertFreeCertificateContext, CertGetNameStringW, CertGetCertificateContextProperty, CryptDecodeObject, CertFindRDNAttr, CertRDNValueToStrW, CertOpenStore, CertOpenSystemStoreW, CertFindCertificateInStore, CertVerifyTimeValidity, CertCloseStore
iphlpapi.dll
GetAdaptersInfo, GetNetworkParams, IpRenewAddress, GetInterfaceInfo, IpReleaseAddress, GetIpAddrTable, GetIfTable, GetPerAdapterInfo
kernel32.dll
WriteFile, ReadFile, GetOverlappedResult, CreateFileW, GlobalFree, GetLocalTime, GetComputerNameW, GetFileSizeEx, SetFileAttributesW, DeleteFileW, CreateDirectoryExW, GetEnvironmentVariableW, WaitForMultipleObjects, GetComputerNameExW, FileTimeToSystemTime, GetDateFormatW, GetTimeFormatW, GlobalAlloc, CreateThread, SuspendThread, GetLocaleInfoW, TerminateThread, WaitForSingleObject, GetExitCodeThread, ResumeThread, VirtualAlloc, VirtualFree, lstrlenA, MultiByteToWideChar, OpenEventW, ResetEvent, SetEvent, SetConsoleCtrlHandler, SwitchToThread, GetVersionExW, GetCommandLineW, AllocConsole, CreateMutexW, FormatMessageW, ReleaseMutex, FreeConsole, GetModuleFileNameW, FreeLibrary, OutputDebugStringA, GetModuleHandleW, GetModuleHandleA, LoadLibraryW, SetLastError, GetProcAddress, TlsFree, LeaveCriticalSection, EnterCriticalSection, lstrlenW, WideCharToMultiByte, GetTickCount, GetLastError, TlsAlloc, LocalAlloc, TlsSetValue, TlsGetValue, LocalFree, Sleep, InterlockedDecrement, InterlockedIncrement, DeleteCriticalSection, CloseHandle, CreateEventW, CreateWaitableTimerW, InitializeCriticalSection, SetFilePointerEx, FlushFileBuffers, ReadFileEx, WriteFileEx, WaitForMultipleObjectsEx, HeapFree, GetProcessHeap, HeapAlloc, DuplicateHandle, GetCurrentProcess, SetWaitableTimer, CancelWaitableTimer, GetCurrentThreadId, OpenProcess, GetStartupInfoW, OpenMutexW, QueryDosDeviceA, DeviceIoControl
mfc42u.dll
DllMain
msvcp60.dll
DllMain
msvcrt.dll
DllMain
ole32.dll
CoCreateInstance, CLSIDFromString, CoUninitialize, CoInitialize, OleRun, CoInitializeEx
pdh.dll
PdhAddCounterW, PdhOpenQueryW, PdhGetFormattedCounterValue, PdhCollectQueryData, PdhCloseQuery
psapi.dll
GetModuleBaseNameW, EnumProcesses
rpcrt4.dll
NdrPointerFree, NdrSimpleStructUnmarshall, NdrConformantArrayMarshall, NdrConformantArrayBufferSize, NdrAllocate, NdrPointerUnmarshall, NdrConformantArrayUnmarshall, NdrServerInitializeNew, NdrConvert, NdrSimpleTypeUnmarshall, NdrPointerMarshall, NdrPointerBufferSize, NdrSimpleStructMarshall, RpcRaiseException, I_RpcGetBuffer, RpcMgmtStopServerListening, RpcMgmtWaitServerListen, RpcServerUnregisterIf, RpcServerUseProtseqEpW, RpcServerRegisterIf, RpcServerListen, NdrConformantArrayFree
setupapi.dll
CM_Get_DevNode_Status, SetupDiGetDeviceInstanceIdW, SetupDiEnumDeviceInfo, SetupDiGetClassDevsW, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceRegistryPropertyW
shell32.dll
SHGetFolderPathW
user32.dll
DestroyWindow, DispatchMessageW, DefWindowProcW, PeekMessageW, PostThreadMessageW, CloseDesktop, GetDesktopWindow, GetProcessWindowStation, GetThreadDesktop, OpenWindowStationW, SetProcessWindowStation, CloseWindowStation, OpenDesktopW, SetThreadDesktop, RegisterDeviceNotificationW, UnregisterDeviceNotification, MsgWaitForMultipleObjectsEx, KillTimer, SetTimer, EnableWindow, EnumThreadWindows, SendMessageW, MessageBoxW, PostMessageW, CreateWindowExW, RegisterClassW, LoadCursorW, LoadIconW, GetMessageW, TranslateMessage, IsWindow
userenv.dll
GetUserProfileDirectoryW, GetAllUsersProfileDirectoryW, UnloadUserProfile
winscard.dll
SCardConnectW, SCardListReadersW, SCardEstablishContext, SCardReconnect, SCardReleaseContext, SCardTransmit, g_rgSCardT0Pci, g_rgSCardT1Pci, SCardDisconnect, SCardGetAttrib, SCardFreeMemory
ws2_32.dll
WSAAddressToStringW, WSAStringToAddressW

acs.exe

Atheros Configuration Service (ACS) by Atheros Communications Inc. (Signed)

Remove acs.exe
Version:   8.0.0.72
MD5:   75265152c2a2d1cbd2df180d63081d01
SHA1:   6824a8dcb833190c57e73b3d0bf6502846a99e1a
SHA256:   d6795876444adc794445bdcb5b8f3df6770a3ca225962e736de03d50aa39f867

What is acs.exe?

The Atheros Configuration Service (ACS) is a Windows Service that handles wireless configuration and authentication. It is also an alternate to the built-in Windows Wireless Zero Config (WZC) service.

Overview

acs.exe runs as a service under the name Atheros beállítási szolgáltatás (ACS) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Atheros Communications Inc. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:acs.exe
Publisher:Atheros
Product name:Atheros Configuration Service (ACS)
Description:ACS
Typical file path:C:\Windows\System32\acs.exe
File version:8.0.0.72
Size:484.08 KB (495,700 bytes)
Certificate
Issued to:Atheros Communications Inc.
Authority (CA):VeriSign
Expiration date:Friday, January 4, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'ACS' (Atheros beállítási szolgáltatás)
  • ACS
Network connections
  • [UDP] listens on port 9977

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.09486886%
    0.028634%
    Kernel CPU:0.04938201%
    0.013761%
    User CPU:0.04548685%
    0.014873%
    Kernel CPU time:3,719 ms/min
    100,923,805ms/min
    Context switches:348/sec
    284/sec
    Memory
    Private memory:7.89 MB
    21.59 MB
    Private (maximum):9.48 MB
    Private (minimum):6.31 MB
    Non-paged memory:7.89 MB
    21.59 MB
    Virtual memory:73.81 MB
    140.96 MB
    Virtual memory (peak):74.31 MB
    169.69 MB
    Working set:6.6 MB
    18.61 MB
    Working set (peak):9.48 MB
    37.95 MB
    Page faults:4,315/min
    2,039/min
    I/O
    I/O read transfer:116.69 KB/sec
    1.02 MB/min
    I/O read operations:33/sec
    343/min
    I/O write transfer:72 Bytes/sec
    274.99 KB/min
    I/O write operations:3/sec
    227/min
    I/O other transfer:47.91 KB/sec
    448.09 KB/min
    I/O other operations:1,120/sec
    1,671/min
    Resource allocations
    Threads:14
    12
    Handles:492
    600
    GUI GDI count:4
    103
    GUI USER count:6
    49

    BehaviorsProcess properties

    Integrety level:Undefined
    Platform:32-bit
    Command line:C:\Windows\System32\acs.exe
    Owner:SYSTEM
    Windows Service
    Service name:ACS
    Display name:Atheros beállítási szolgáltatás
    Description:“Gives access to single sign on and a mechanism to communicate with the supplicant for security negotiation.”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    msvcrt.dll
    Total CPU:0.06519402%
    0.272967%
    Kernel CPU:0.02068219%
    0.107585%
    User CPU:0.04451183%
    0.165382%
    Context switches:6/sec
    79/sec
    Memory:352 KB
    1.16 MB
    dsa.dll (Devicescape Windows WPA Supplicant (Core 0.4.3) by Devicescape)
    Total CPU:0.06073699%
    Kernel CPU:0.00000000%
    User CPU:0.06073699%
    Context switches:6/sec
    Memory:1.48 MB
    acs.exe (main module)
    Total CPU:0.04005028%
    Kernel CPU:0.03337359%
    User CPU:0.00667669%
    Context switches:2/sec
    Memory:488 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Microsoft Windows XP 100.00%

    Distribution by countryDistribution by country

    United States installs about 24.14% of Atheros Configuration Service (ACS).

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 37.50%
    Toshiba 18.75%
    Compaq 12.50%
    MSI 12.50%
    American Megatrends 9.38%
    Hewlett-Packard 9.38%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE