fsorsp.exe

F-Secure ORSP Client

F-Secure Corporation

It runs as a separate (within the context of its own process) windows Service named “F-Secure ORSP Client”.
Publisher:
F-Secure Corporation  (signed and verified)

Product:
F-Secure ORSP Client

Description:
F-Secure ORSP Service

Version:
1.0.15 build 100

MD5:
4d6f1f2834f380183f47cdececd96bdc

SHA-1:
972b0adc5092e16b5dc44d04f031212cee9fb684

SHA-256:
38005832fe7207f3b80d855dcd73e9d939bc20e02ab21f4bac2e34cd5a42a85b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 4:40:06 PM UTC  (today)

File size:
54.7 KB (55,984 bytes)

Product version:
1.0.15 build 100

Copyright:
© 2007-2009, F-Secure Corporation

Original file name:
fsorsp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\f-secure\orsp client\fsorsp.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/11/2009 1:00:00 AM

Valid to:
12/15/2012 12:59:59 AM

Subject:
CN=F-Secure Corporation, OU=Research and Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=F-Secure Corporation, L=Helsinki, S=Helsinki, C=FI

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2F1A6062C185D3F39D3FCFE44A8CF232

File PE Metadata
Compilation timestamp:
10/15/2009 2:02:56 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
768:6xiaM8ukWfC7bjoldi1kgj+sg6u++EtHxgDLWMmiybCpe:D8xoykpMRtHxgDaDzCc

Entry address:
0x122A

Entry point:
E8, F7, 16, 00, 00, E9, 40, FE, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 38, B0, 40, 00, 89, 0D, 34, B0, 40, 00, 89, 15, 30, B0, 40, 00, 89, 1D, 2C, B0, 40, 00, 89, 35, 28, B0, 40, 00, 89, 3D, 24, B0, 40, 00, 66, 8C, 15, 50, B0, 40, 00, 66, 8C, 0D, 44, B0, 40, 00, 66, 8C, 1D, 20, B0, 40, 00, 66, 8C, 05, 1C, B0, 40, 00, 66, 8C, 25, 18, B0, 40, 00, 66, 8C, 2D, 14, B0, 40, 00, 9C, 8F, 05, 48, B0, 40, 00, 8B, 45, 00, A3, 3C, B0, 40, 00, 8B, 45, 04, A3, 40, B0, 40, 00, 8D, 45, 08, A3, 4C, B0, 40, 00, 8B...
 
[+]

Code size:
28 KB (28,672 bytes)

Service
Display name:
F-Secure ORSP Client

Service name:
FSORSPClient

Type:
Win32OwnProcess