Categories: Malware

Win32/Keygen.ACS potentially unsafe removal tips

The Win32/Keygen.ACS potentially unsafe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Keygen.ACS potentially unsafe virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Hungarian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Keygen.ACS potentially unsafe?


File Info:

crc32: 2637F4C3md5: d76d457e0e11b830814a5a27aada830aname: xfcdts2017.exesha1: b588def1882fa0d67e15c08d5ad8facdf7183199sha256: b768838eec2ba1e4c4f9b1f44c4844a29fa0722966e1348b5d3ca200d6374360sha512: 1dc08dc523218cd7a2abd8fc8d61ce5e49663c6d3f8570ffb970b1da03dd3bf9d0ce7992932c390b6609971722005ae3c09c1e3285b4ec989b31ab619bb10eefssdeep: 6144:vsY1SDIhOeBggCzoiSLq2lQEqIppRRPcyjtQWRKsCEJ//3lyJAmx5S:vhseloElpf2yuWRE4/3lyW0type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Win32/Keygen.ACS potentially unsafe also known as:

MicroWorld-eScan Trojan.GenericKD.41462615
CAT-QuickHeal Trojan.IGENERIC
McAfee Artemis!D76D457E0E11
Cylance Unsafe
VIPRE Trojan.Win32.Generic!BT
AegisLab Trojan.Win32.Malicious.4!c
K7AntiVirus Unwanted-Program ( 004d38111 )
BitDefender Trojan.GenericKD.41462615
K7GW Unwanted-Program ( 004d38111 )
Cybereason malicious.1882fa
Arcabit Trojan.Generic.D278AB57
TrendMicro TROJ_GEN.R002C0DGB19
ESET-NOD32 a variant of Win32/Keygen.ACS potentially unsafe
APEX Malicious
Paloalto generic.ml
Alibaba RiskWare:Win32/Bluteal.40819664
SUPERAntiSpyware Hack.Tool/Gen-KeyGen
Endgame malicious (moderate confidence)
Emsisoft Trojan.GenericKD.41462615 (B)
Comodo Malware@#2ems2xfntc1aj
MaxSecure Trojan.Malware.21919340.susgen
Zillya Trojan.Keygen.Win32.808
Invincea heuristic
McAfee-GW-Edition BehavesLike.Win32.Dropper.fc
Fortinet Riskware/KeyGen
Trapmine malicious.high.ml.score
FireEye Generic.mg.d76d457e0e11b830
Sophos Keygen (PUA)
Ikarus PUA.Crack
Webroot W32.Adware.Gen
MAX malware (ai score=94)
Antiy-AVL Trojan/Win32.BTSGeneric
Microsoft Trojan:Win32/Bluteal.B!rfn
ALYac Trojan.GenericKD.41462615
Ad-Aware Trojan.GenericKD.41462615
Panda Trj/CI.A
TrendMicro-HouseCall TROJ_GEN.R002H0CCD20
Rising Trojan.Bluteal!8.EFE7 (CLOUD)
Yandex PUP.Agent!
SentinelOne DFI – Suspicious PE
GData Trojan.GenericKD.41462615
BitDefenderTheta Gen:NN.ZelphiF.34106.xmGfa4GNJngO
AVG FileRepMetagen [Malware]
Avast FileRepMetagen [Malware]
CrowdStrike win/malicious_confidence_60% (W)

How to remove Win32/Keygen.ACS potentially unsafe?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Generik.SLXLLT (file analysis)

The Generik.SLXLLT is considered dangerous by lots of security experts. When this infection is active,…

2 mins ago

Trojan-Dropper.Win32.Agent.tgljob malicious file

The Trojan-Dropper.Win32.Agent.tgljob is considered dangerous by lots of security experts. When this infection is active,…

33 mins ago

Ransom:MSIL/Hibotibo.AA!MTB information

The Ransom:MSIL/Hibotibo.AA!MTB is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Trojan-Dropper.Win32.Agent.tgbcwu removal guide

The Trojan-Dropper.Win32.Agent.tgbcwu is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Worm.Win32.Vobfus.axhs removal guide

The Worm.Win32.Vobfus.axhs is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Trojan.Dropper.AAAM (B) (file analysis)

The Trojan.Dropper.AAAM (B) is considered dangerous by lots of security experts. When this infection is…

2 hours ago