wepsvc.exe

Forcepoint TRITON AP-ENDPOINT

Websense, Inc.

It runs as a windows Service named “Websense Client Agent”.
Publisher:
Forcepoint LLC  (signed by Websense, Inc.)

Product:
Forcepoint™ TRITON® AP-ENDPOINT

Description:
Forcepoint Endpoint

Version:
8, 3, 2509, 1

MD5:
66b16bb5ce0de17d927c687b8d553b81

SHA-1:
527c6f6c58e73559f688d1411db3af9a128c5d6e

SHA-256:
0a50a81d0cd057ba2b70db8375e2284eff5538fda8475d65f43946c967308a2d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2025 8:21:07 AM UTC  (today)

File size:
187.4 KB (191,944 bytes)

Product version:
8, 3, 2509, 1

Copyright:
Copyright (c) 1996 - 2016 Forcepoint LLC All Rights Reserved.

Original file name:
wepsvc.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\websense\websense endpoint\wepsvc.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
10/21/2016 7:00:00 AM

Valid to:
10/23/2018 6:59:59 AM

Subject:
CN="Websense, Inc.", O="Websense, Inc.", L=Austin, S=Texas, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
24D6865B31B122B83CCABD0F505ABB81

File PE Metadata
Compilation timestamp:
11/18/2016 8:57:35 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

Entry address:
0x1B8F1

Entry point:
E8, 2B, 03, 00, 00, E9, 91, FE, FF, FF, CC, FF, 25, DC, D2, 41, 00, FF, 25, D8, D2, 41, 00, FF, 25, D0, D2, 41, 00, CC, CC, 68, 69, B9, 41, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 18, 90, 42, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, 55, 8B, EC, FF, 75, 14, FF, 75...
 
[+]

Entropy:
6.2422

Code size:
111 KB (113,664 bytes)

Service
Display name:
Websense Client Agent

Service name:
WSDLP

Type:
Win32ShareProcess

Depends on:
Nep QIP


Scan wepsvc.exe - Powered by Reason Core Security