beservice.exe

Bastian Suter

This is a setup program which is used to install the application. The file has been seen being downloaded from www.battleye.com and multiple other hosts.
Publisher:
Bastian Suter  (signed and verified)

MD5:
d5789e882d62745a8df8b3110d977d2d

SHA-1:
0a780f12f737e174b04daa1142f9ff9fa2a2b1fd

SHA-256:
43a5467d4665a0814ad230f6439de96796ef8c3d30eb099d64ecfaea2a040ba2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 6:15:50 PM UTC  (today)

File size:
899.5 KB (921,088 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\steam\steamapps\common\arma 3\battleye\beservice.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
7/15/2015 1:00:00 AM

Valid to:
12/30/2016 12:00:00 PM

Subject:
CN=Bastian Suter, O=Bastian Suter, L=Tübingen, S=Baden-Württemberg, C=DE

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
036EEE651CB75C856158F1A4B933288B

File PE Metadata
Compilation timestamp:
7/21/2015 2:53:35 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
24576:ldpA7poyA3V3/iAlxvMa+qzbF502d4kVbcZkKezFpiH:ld0VoiAla2bF5/b46KepwH

Entry address:
0x174863

Entry point:
E9, 34, 2A, 00, 00, 27, 56, 66, D3, D8, 57, 66, 0F, C8, 0F, BC, C5, F6, D4, D0, F0, 53, D2, DC, 2F, 52, 80, DC, 92, 8B, 45, 08, 55, 9C, E8, 5C, 36, 00, 00, 55, F6, DD, A9, A7, DA, 62, 8C, 6F, F3, 8D, 49, BD, 1F, 25, 24, 7A, 8F, 94, 68, 50, BE, 42, 0B, 90, F0, FC, 51, 1A, 02, EA, 1F, 33, 9E, 32, F3, 2F, FA, AC, A6, 6F, D2, A9, 81, 2B, 37, D9, 62, 7E, 90, C9, E8, 60, 65, 3E, C9, F0, 87, 20, 28, AA, 04, 2B, 59, 04, 0C, 24, B2, B3, C5, 7B, E4, C7, D2, 6A, FC, 5B, C5, 5C, 13, 3B, 42, 19, 2D, A6, A9, C9, 79, 85...
 
[+]

Entropy:
7.8381

Packer / compiler:
Xtreme-Protector v1.05

Code size:
96 KB (98,304 bytes)

The file beservice.exe has been seen being distributed by the following 2 URLs.

http://www.battleye.com/downloads/.../BEService.exe

Scan beservice.exe - Powered by Reason Core Security