oasrv.exe

Online Armor Firewall

Tall Emu

It runs as a separate (within the context of its own process) windows Service named “Online Armor”.
Publisher:
Tall Emu  (signed and verified)

Product:
Online Armor Firewall

Description:
Online Armor Component

Version:
3.5.0.32

MD5:
b4e8c7a7f7651fb91bf7f39667f653e7

SHA-1:
bdef3d38b626620c004400b0569da7acb85b9428

SHA-256:
4c193a10457ccfeeca11425255c2acc0ee8363a3e8249e38bf76d7de4f274d1c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 5:15:51 AM UTC  (today)

File size:
3 MB (3,142,344 bytes)

Product version:
3.5.0.32

Copyright:
Tall Emu 2004-2009

File type:
Executable application (Win32 EXE)

Language:
English (Australia)

Common path:
C:\Program Files\online armor\oasrv.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
2/25/2008 5:55:39 PM

Valid to:
2/25/2010 5:55:39 PM

Subject:
E=support@tallemu.com, CN=Tall Emu, O=Tall Emu, C=AU

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001185185634A

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:cAk9m8mqZpGVeVc//////HaDwuNtb4oLdY5Wk5YkJWT4Xa5+sT:cAk9IqZQVeVc//////HaDt4oLdY5W8Jk

Entry address:
0x223EDC

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, 8C, 2F, 62, 00, E8, 21, 36, DE, FF, E8, E8, 02, E8, FF, 33, C0, 55, 68, 0E, 41, 62, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, F1, 40, 62, 00, 64, FF, 30, 64, 89, 20, 68, 00, 00, 80, 00, 68, 00, 00, 40, 00, E8, 35, 3B, DE, FF, 50, E8, D7, 3E, DE, FF, A1, 9C, B2, 63, 00, 8B, 00, E8, 93, ED, DD, FF, E8, 52, ED, DD, FF, 68, 98, 48, 64, 00, 68, 94, 48, 64, 00, E8, 0F, 3B, DE, FF, 50, E8, E9, 3B, DE, FF, E8, 48, DB, E7, FF, 84, C0, 0F, 84, 62, 01, 00, 00, A1, 2C, AE, 63...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,241,024 bytes)

Service
Display name:
Online Armor

Service name:
SvcOnlineArmor

Type:
Win32OwnProcess

Group:
NetBIOSGroup

Depends on:
RPCSS


Scan oasrv.exe - Powered by Reason Core Security