acengine.exe

acengine.exe

Abengine

The application acengine.exe has been detected as a potentially unwanted program by 25 anti-malware scanners. It runs as a separate (within the context of its own process) windows Service named “acengine”.
Publisher:
Abengine

Product:
acengine.exe

Version:
2.3.6.13

MD5:
ccc283197771854dbd2105175136bf0b

SHA-1:
a2c85835558c93a6ac275b4666cd5de1b6f4d321

SHA-256:
25bd9d9ec5df930415489edc2f3066ce2c61d773e574e6b0cf3e2e3c44b40e69

Scanner detections:
25 / 68

Status:
Potentially unwanted

Analysis date:
3/12/2026 8:43:17 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Mikey.27888
416

Agnitum Outpost
Riskware.Komodia
7.1.1

Avira AntiVirus
TR/Dropper.A.16635
8.3.2.4

Arcabit
Trojan.Adware.Mikey.D6CF0
1.0.0.629

avast!
Win32:Adware-gen [Adw]
2014.9-151216

AVG
Dropper.Generic9
2016.0.2894

Baidu Antivirus
Hacktool.Win32.Komodia
4.0.3.151216

Bitdefender
Gen:Variant.Adware.Mikey.27888
1.0.20.1750

Clam AntiVirus
Win.Adware.Agent-59366
0.98/21511

Dr.Web
Adware.Superfish.261
9.0.1.0350

Emsisoft Anti-Malware
Gen:Variant.Adware.Mikey.27888
8.15.12.16.10

ESET NOD32
Win32/Packed.Komodia.E suspicious (variant)
9.12532

Fortinet FortiGate
PossibleThreat
12/16/2015

F-Secure
Gen:Variant.Adware.Mikey
11.2015-16-12_4

G Data
Win32.Adware.FastSearch
15.11.25

K7 AntiVirus
Trojan
13.212.18076

Malwarebytes
Trojan.Agent
v2015.12.16.10

McAfee
Artemis!CCC283197771
5600.6550

MicroWorld eScan
Gen:Variant.Adware.Mikey.27888
16.0.0.1050

NANO AntiVirus
Riskware.Win32.Superfish.dypend
1.0.10.5081

Qihoo 360 Security
QVM10.1.Malware.Gen
1.0.0.1077

Trend Micro
TROJ_GEN.R02JC0OKD15
10.465.16

VIPRE Antivirus
Trojan.Win32.Generic
45756

ViRobot
Trojan.Win32.U.Agent.2330376[h]
2014.3.20.0

Zillya! Antivirus
Adware.Agent.Win32.84431
2.0.0.2557

File size:
2.2 MB (2,330,376 bytes)

Product version:
2.3.6.13

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\fast-search\acengine.exe

File PE Metadata
Compilation timestamp:
11/7/2015 6:22:45 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
49152:o3LArvw9rG9CGu9CbPeXVLoL7vzjeFATshlCk1FG80qOUtv:IA0JxGu9SPeXi+GsLCk1o3qOc

Entry address:
0x2A8D

Entry point:
E8, AC, 1F, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 51, C7, 01, 20, 82, 40, 00, E8, 34, 20, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, 01, 05, 00, 00, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 74, 2D, FF, 75, 08, 6A, 00, FF, 35, 90, C6, 40, 00, FF, 15, 44, 80, 40, 00, 85, C0, 75, 18, 56, E8, 2C, 21, 00, 00, 8B, F0, FF, 15, 60, 80, 40, 00, 50, E8, DC, 20, 00, 00, 59, 89, 06, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB...
 
[+]

Code size:
25.5 KB (26,112 bytes)

Service
Display name:
acengine

Description:
acengine protects your browser

Type:
Win32OwnProcess

Depends on:
RPCSS


The executing file has been seen to make the following network communications in live environments.

TCP (HTTP SSL):
Connects to server-54-240-172-63.cdg50.r.cloudfront.net  (54.240.172.63:443)

TCP (HTTP SSL):
Connects to par03s15-in-f99.1e100.net  (216.58.211.99:443)

TCP (HTTP SSL):
Connects to par03s15-in-f14.1e100.net  (216.58.211.110:443)

TCP (HTTP SSL):
Connects to par03s15-in-f13.1e100.net  (216.58.211.109:443)

TCP (HTTP SSL):
Connects to par03s14-in-f10.1e100.net  (216.58.211.74:443)

TCP (HTTP):
Connects to a88-221-83-99.deploy.akamaitechnologies.com  (88.221.83.99:80)

TCP (HTTP SSL):
Connects to a88-221-83-96.deploy.akamaitechnologies.com  (88.221.83.96:443)

TCP (HTTP SSL):
Connects to a88-221-83-89.deploy.akamaitechnologies.com  (88.221.83.89:443)

TCP (HTTP SSL):
Connects to a2-16-117-179.deploy.akamaitechnologies.com  (2.16.117.179:443)

TCP (HTTP SSL):
Connects to a2-16-117-168.deploy.akamaitechnologies.com  (2.16.117.168:443)

TCP (HTTP SSL):
Connects to a2-16-117-163.deploy.akamaitechnologies.com  (2.16.117.163:443)

TCP (HTTP SSL):
Connects to a2-16-117-161.deploy.akamaitechnologies.com  (2.16.117.161:443)

TCP (HTTP SSL):
Connects to a2-16-117-136.deploy.akamaitechnologies.com  (2.16.117.136:443)

TCP (HTTP SSL):
Connects to a2-16-117-122.deploy.akamaitechnologies.com  (2.16.117.122:443)

TCP (HTTP SSL):
Connects to a2-16-117-114.deploy.akamaitechnologies.com  (2.16.117.114:443)

TCP (HTTP SSL):
Connects to 68-110.206-83.static-ip.oleane.fr  (83.206.110.68:443)

Remove acengine.exe - Powered by Reason Core Security