Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

8.0.0.232 3.13%
8.0.0.196 3.13%
8.0.0.97 53.13%
8.0.0.72 9.38%
8.0.0.65 21.88%
7.0.2.28 3.13%
7.0.1.70 3.13%
5.2.0.124 3.13%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetSidSubAuthorityCount, ControlService, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, LogonUserW, ImpersonateLoggedOnUser, OpenProcessToken, DuplicateToken, RevertToSelf, AddAccessDeniedAce, AddAccessAllowedAce, GetLengthSid, InitializeAcl, ReportEventW, DeregisterEventSource, OpenEventLogW, RegisterEventSourceW, RegQueryInfoKeyW, RegEnumKeyExW, AllocateAndInitializeSid, LookupAccountSidW, FreeSid, IsValidSid, GetSidIdentifierAuthority, GetSidSubAuthority, RegCreateKeyExW, RegOpenKeyExW, RegQueryValueExW, CryptAcquireContextW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, CryptSetProvParam, CryptGetUserKey, CryptGenKey, CryptExportKey, CryptDestroyKey, CryptReleaseContext, CloseEventLog, ReadEventLogW, RegOpenKeyW, StartServiceW, GetServiceDisplayNameW, RegCreateKeyW, RegSetValueExW, RegCloseKey, OpenSCManagerW, CreateServiceW, ChangeServiceConfig2W, CloseServiceHandle, RegDeleteValueW, OpenServiceW, QueryServiceStatus, DeleteService
athcfg20resu.dll
GetAcapiResApi
crypt32.dll
CryptAcquireCertificatePrivateKey, CertGetIssuerCertificateFromStore, CertGetEnhancedKeyUsage, CertFindExtension, CertEnumCertificatesInStore, CertFreeCertificateContext, CertGetNameStringW, CertGetCertificateContextProperty, CryptDecodeObject, CertFindRDNAttr, CertRDNValueToStrW, CertOpenStore, CertOpenSystemStoreW, CertFindCertificateInStore, CertVerifyTimeValidity, CertCloseStore
iphlpapi.dll
GetAdaptersInfo, GetNetworkParams, IpRenewAddress, GetInterfaceInfo, IpReleaseAddress, GetIpAddrTable, GetIfTable, GetPerAdapterInfo
kernel32.dll
WriteFile, ReadFile, GetOverlappedResult, CreateFileW, GlobalFree, GetLocalTime, GetComputerNameW, GetFileSizeEx, SetFileAttributesW, DeleteFileW, CreateDirectoryExW, GetEnvironmentVariableW, WaitForMultipleObjects, GetComputerNameExW, FileTimeToSystemTime, GetDateFormatW, GetTimeFormatW, GlobalAlloc, CreateThread, SuspendThread, GetLocaleInfoW, TerminateThread, WaitForSingleObject, GetExitCodeThread, ResumeThread, VirtualAlloc, VirtualFree, lstrlenA, MultiByteToWideChar, OpenEventW, ResetEvent, SetEvent, SetConsoleCtrlHandler, SwitchToThread, GetVersionExW, GetCommandLineW, AllocConsole, CreateMutexW, FormatMessageW, ReleaseMutex, FreeConsole, GetModuleFileNameW, FreeLibrary, OutputDebugStringA, GetModuleHandleW, GetModuleHandleA, LoadLibraryW, SetLastError, GetProcAddress, TlsFree, LeaveCriticalSection, EnterCriticalSection, lstrlenW, WideCharToMultiByte, GetTickCount, GetLastError, TlsAlloc, LocalAlloc, TlsSetValue, TlsGetValue, LocalFree, Sleep, InterlockedDecrement, InterlockedIncrement, DeleteCriticalSection, CloseHandle, CreateEventW, CreateWaitableTimerW, InitializeCriticalSection, SetFilePointerEx, FlushFileBuffers, ReadFileEx, WriteFileEx, WaitForMultipleObjectsEx, HeapFree, GetProcessHeap, HeapAlloc, DuplicateHandle, GetCurrentProcess, SetWaitableTimer, CancelWaitableTimer, GetCurrentThreadId, OpenProcess, GetStartupInfoW, OpenMutexW, QueryDosDeviceA, DeviceIoControl
mfc42u.dll
DllMain
msvcp60.dll
DllMain
msvcrt.dll
DllMain
ole32.dll
CoCreateInstance, CLSIDFromString, CoUninitialize, CoInitialize, OleRun, CoInitializeEx
pdh.dll
PdhAddCounterW, PdhOpenQueryW, PdhGetFormattedCounterValue, PdhCollectQueryData, PdhCloseQuery
psapi.dll
GetModuleBaseNameW, EnumProcesses
rpcrt4.dll
NdrPointerFree, NdrSimpleStructUnmarshall, NdrConformantArrayMarshall, NdrConformantArrayBufferSize, NdrAllocate, NdrPointerUnmarshall, NdrConformantArrayUnmarshall, NdrServerInitializeNew, NdrConvert, NdrSimpleTypeUnmarshall, NdrPointerMarshall, NdrPointerBufferSize, NdrSimpleStructMarshall, RpcRaiseException, I_RpcGetBuffer, RpcMgmtStopServerListening, RpcMgmtWaitServerListen, RpcServerUnregisterIf, RpcServerUseProtseqEpW, RpcServerRegisterIf, RpcServerListen, NdrConformantArrayFree
setupapi.dll
CM_Get_DevNode_Status, SetupDiGetDeviceInstanceIdW, SetupDiEnumDeviceInfo, SetupDiGetClassDevsW, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceRegistryPropertyW
shell32.dll
SHGetFolderPathW
user32.dll
DestroyWindow, DispatchMessageW, DefWindowProcW, PeekMessageW, PostThreadMessageW, CloseDesktop, GetDesktopWindow, GetProcessWindowStation, GetThreadDesktop, OpenWindowStationW, SetProcessWindowStation, CloseWindowStation, OpenDesktopW, SetThreadDesktop, RegisterDeviceNotificationW, UnregisterDeviceNotification, MsgWaitForMultipleObjectsEx, KillTimer, SetTimer, EnableWindow, EnumThreadWindows, SendMessageW, MessageBoxW, PostMessageW, CreateWindowExW, RegisterClassW, LoadCursorW, LoadIconW, GetMessageW, TranslateMessage, IsWindow
userenv.dll
GetUserProfileDirectoryW, GetAllUsersProfileDirectoryW, UnloadUserProfile
winscard.dll
SCardConnectW, SCardListReadersW, SCardEstablishContext, SCardReconnect, SCardReleaseContext, SCardTransmit, g_rgSCardT0Pci, g_rgSCardT1Pci, SCardDisconnect, SCardGetAttrib, SCardFreeMemory
ws2_32.dll
WSAAddressToStringW, WSAStringToAddressW

acs.exe

Atheros Configuration Service (ACS) by Atheros Communications Inc. (Signed)

Remove acs.exe
Version:   8.0.0.196
MD5:   82400ac5d5101d8e119a52984432b573
SHA1:   0d2a9b92cfa5d0b7f9399eab141595b9efc42cde

What is acs.exe?

The Atheros Configuration Service (ACS) is a Windows Service that handles wireless configuration and authentication. It is also an alternate to the built-in Windows Wireless Zero Config (WZC) service.

Overview

acs.exe runs as a service under the name Atheros beállítási szolgáltatás (ACS) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Atheros Communications Inc. which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:acs.exe
Publisher:Atheros
Product name:Atheros Configuration Service (ACS)
Description:ACS
Typical file path:C:\Windows\System32\acs.exe
File version:8.0.0.196
Size:488.08 KB (499,797 bytes)
Build date:3/28/2011 8:12 AM
Certificate
Issued to:Atheros Communications Inc.
Authority (CA):VeriSign
Expiration date:Friday, January 4, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'ACS' (Atheros beállítási szolgáltatás)
  • ACS
Network connections
  • [UDP] listens on port 9977

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.01547392%
    0.028634%
    Kernel CPU:0.00935248%
    0.013761%
    User CPU:0.00612144%
    0.014873%
    Kernel CPU time:11,984,375 ms/min
    100,923,805ms/min
    Context switches:260/sec
    284/sec
    Memory
    Private memory:7.82 MB
    21.59 MB
    Private (maximum):9.3 MB
    Private (minimum):9.29 MB
    Non-paged memory:7.82 MB
    21.59 MB
    Virtual memory:74.35 MB
    140.96 MB
    Virtual memory (peak):75.35 MB
    169.69 MB
    Working set:9.29 MB
    18.61 MB
    Working set (peak):9.3 MB
    37.95 MB
    Page faults:2,627/min
    2,039/min
    I/O
    I/O read transfer:799 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:0 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:29.67 KB/sec
    448.09 KB/min
    I/O other operations:626/sec
    1,671/min
    Resource allocations
    Threads:15
    12
    Handles:216
    600
    GUI GDI count:4
    103
    GUI USER count:6
    49

    BehaviorsProcess properties

    Integrety level:Undefined
    Platform:32-bit
    Command line:C:\Windows\System32\acs.exe
    Owner:SYSTEM
    Windows Service
    Service name:ACS
    Display name:Atheros beállítási szolgáltatás
    Description:“Gives access to single sign on and a mechanism to communicate with the supplicant for security negotiation.”
    Type:Win32OwnProcess
    Parent process:services.exe (by Microsoft)

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Microsoft Windows XP 100.00%

    Distribution by countryDistribution by country

    United States installs about 24.14% of Atheros Configuration Service (ACS).

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 37.50%
    Toshiba 18.75%
    Compaq 12.50%
    MSI 12.50%
    American Megatrends 9.38%
    Hewlett-Packard 9.38%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE