orangesc.exe

france telecom

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Orange mes contenus’.
Publisher:
F-Secure  (signed by france telecom)

Description:
Orange mes contenus

Version:
1,0,0,36956

MD5:
64d82acdf581d9a32f04ede1b3f6cd20

SHA-1:
e2c24ee404fd6c2d463a6e18d368a600e3e94e07

SHA-256:
5bade8519d9193cbbe4818f1882421a253193264ccb71a5004bcc61d09babdf8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/9/2024 4:24:01 PM UTC  (today)

File size:
12.4 MB (12,991,832 bytes)

Product version:
1,0,0,36956

Copyright:
Copyright © 2010, F-Secure Corporation

File type:
Executable application (Win64 EXE)

Language:
French (France)

Common path:
C:\Program Files\orange\orange mes contenus\orangesc.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/29/2010 2:00:00 AM

Valid to:
7/30/2011 1:59:59 AM

Subject:
CN=france telecom, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Orange France, O=france telecom, L=Paris, S=Ile de France, C=FR

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7243A61B4576C0EDB2409A617B5B5F07

File PE Metadata
Compilation timestamp:
7/6/2011 5:38:10 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
196608:lm6tCTDPY8r/OQyTr56BSRY3KFdu96S2WmKK/IzIW8h4:lm6tC/PY8rWR6BSReKFdu96xI8P4

Entry address:
0x55FFF0

Entry point:
48, 83, EC, 28, E8, A7, 08, 00, 00, 48, 83, C4, 28, E9, BE, FC, FF, FF, FF, 25, 00, 8D, 23, 00, FF, 25, 02, 8D, 23, 00, FF, 25, 04, 8D, 23, 00, FF, 25, 06, 8D, 23, 00, FF, 25, 08, 8D, 23, 00, FF, 25, 0A, 8D, 23, 00, FF, 25, 0C, 8D, 23, 00, FF, 25, 0E, 8D, 23, 00, FF, 25, 10, 8D, 23, 00, CC, CC, CC, CC, CC, CC, CC, CC, 40, 53, 48, 83, EC, 20, 41, 8B, 00, 48, 8B, DA, 4C, 8B, C9, 44, 8B, D8, 4C, 8B, D1, 41, 83, E3, F8, A8, 04, 74, 13, 41, 8B, 40, 08, 4D, 63, 50, 04, F7, D8, 4C, 03, D1, 48, 63, C8, 4C, 23, D1...
 
[+]

Code size:
7.6 MB (7,958,528 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Orange mes contenus

Command:
"C:\Program Files\orange\orange mes contenus\orangesc.exe" \delayed


Scan orangesc.exe - Powered by Reason Core Security