Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2008.0916.0959.59 33.33%
2008.0427.2153.41 33.33%
2008.0427.2153.41 11.11%
2.8.1.20 11.11%
2.8.1.16 11.11%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, StartServiceCtrlDispatcherA, RegisterServiceCtrlHandlerExA, SetServiceStatus, RegOpenKeyExA, RegQueryValueExA, RegCreateKeyExA, RegCloseKey
kernel32.dll
GetProcAddress, LoadLibraryA, FreeLibrary, GetLastError, CreateEventA, CloseHandle, WaitForSingleObject, IsBadWritePtr, GetModuleHandleA, SetEvent, Sleep, GetModuleFileNameA, CreateDirectoryA, ResetEvent, WaitForMultipleObjects, GetTickCount, MapViewOfFile, CreateFileMappingA, UnmapViewOfFile, InterlockedIncrement, InterlockedDecrement, InterlockedExchange, DeviceIoControl, GetCurrentThreadId, FreeResource, LockResource, LoadResource, SizeofResource, FindResourceA, WideCharToMultiByte, CreateMutexA, LocalAlloc, GetLocaleInfoA, IsBadReadPtr, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, ReleaseSemaphore, ReleaseMutex, CreateSemaphoreA, QueryPerformanceFrequency, QueryPerformanceCounter, GetCurrentProcessId, OutputDebugStringA, GetOverlappedResult, GetSystemTimeAsFileTime, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, SetFilePointer, FlushFileBuffers, GetConsoleMode, GetConsoleCP, HeapSize, GetStartupInfoA, GetFileType, SetHandleCount, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, CreateFileA, SetStdHandle, ReadFile, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetEndOfFile, LocalFree, SetLastError, TlsFree, HeapFree, HeapAlloc, RtlUnwind, ExitThread, CreateThread, GetLocalTime, MultiByteToWideChar, GetCommandLineA, GetVersionExA, GetProcessHeap, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RaiseException, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, ExitProcess, WriteFile, GetStdHandle, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, TlsGetValue, TlsAlloc, TlsSetValue
shell32.dll
SHGetFolderPathA
shlwapi.dll
PathFileExistsA, PathAppendA
user32.dll
GetWindowLongA, EndPaint, UnregisterClassA, BeginPaint, DestroyWindow, PostMessageA, DefWindowProcA, CreateWindowExA, RegisterClassExA, GetClassInfoExA, RegisterWindowMessageA, DispatchMessageA, TranslateMessage, PeekMessageA, UnregisterDeviceNotification, RegisterDeviceNotificationA, SetWindowLongA

vfsFPService.exe

vfsEMPIRE by Validity Sensors (Signed)

Remove vfsFPService.exe
Version:   2008.0427.2153.41
MD5:   fdf5ded291c5843b038e0422bdba7178
SHA1:   1a646773fbad96939f43a28a892c44ccb763cba2
SHA256:   5ff512164000f3c1188ff4f5f7093362ed06d0ea659fcabd704f2f5d01b155b3

Overview

vfsfpservice.exe runs as a service under the name vfsFPService (vfsFPService) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Validity Sensors which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:vfsfpservice.exe
Publisher:Validity Sensors, Inc.
Product name:vfsEMPIRE
Description:Validity Sensors Fingerprint Service
Typical file path:C:\Windows\System32\vfsfpservice.exe
File version:2008.0427.2153.41
Product version:Release 2.7.0 Build 39 2008.0427.2153.41
Size:700.3 KB (717,104 bytes)
Certificate
Issued to:Validity Sensors
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • vfsFPService
  • 'vfsFPService' (Validity Fingerprint Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00041951%
0.028634%
Kernel CPU:0.00025916%
0.013761%
User CPU:0.00016035%
0.014873%
Kernel CPU time:9,641 ms/min
100,923,805ms/min
CPU cycles:1,014,684/sec
17,470,203/sec
Memory
Private memory:9.59 MB
21.59 MB
Private (maximum):11.63 MB
Private (minimum):9.68 MB
Non-paged memory:9.59 MB
21.59 MB
Virtual memory:77.95 MB
140.96 MB
Virtual memory (peak):79.67 MB
169.69 MB
Working set:11.47 MB
18.61 MB
Working set (peak):14.63 MB
37.95 MB
Page faults:541,547/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:330.23 KB/sec
448.09 KB/min
I/O other operations:16/sec
1,671/min
Resource allocations
Threads:9
12
Handles:272
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:C:\Windows\System32\vfsfpservice.exe
Owner:SYSTEM
Windows Service
Service name:vfsFPService
Display name:vfsFPService
Description:“Validity Fingerprint Service”
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 33.33%
Windows 7 Ultimate 22.22%
Windows 8 Pro with Media Center 11.11%
Windows 7 Professional 11.11%
Windows 7 Home Premium 11.11%
Windows 8 Pro 11.11%

Distribution by countryDistribution by country

Lebanon installs about 22.22% of vfsEMPIRE.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE