beservice.exe

Bastian Suter

It runs as a separate (within the context of its own process) windows Service named “BattlEye Service”.
Publisher:
Bastian Suter  (signed and verified)

MD5:
32d9115b8b67a1602add4473a08e02ee

SHA-1:
8f5386f89fe337864404cc93e2a15a63611c7bc8

SHA-256:
d98cfd439e848df7970978f03ea41ca56d272d1c50ccabcffb578a837cf228c9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:16:23 AM UTC  (today)

File size:
1.1 MB (1,137,536 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\common files\battleye\beservice.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
3/4/2014 6:00:00 PM

Valid to:
5/13/2015 7:00:00 AM

Subject:
CN=Bastian Suter, O=Bastian Suter, L=Tübingen, S=Baden-Württemberg, C=DE

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0F01D40307832B7F6747D7AB752213DC

File PE Metadata
Compilation timestamp:
5/5/2015 9:17:42 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
24576:U3Sl1c/hsS+BmHjmzQTCNpBxR/ySb/Kxj7ctbOvNs:8Sl/JMTuHxpySb/U7ct2W

Entry address:
0x1DE344

Entry point:
E9, 3D, F8, FF, FF, 48, 8D, 05, 87, 6C, F1, FF, E9, 08, 09, F1, FF, E9, 51, 6E, F0, FF, E9, 09, 68, F0, FF, 00, 0E, 6D, 0E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 8F, 86, 0E, 00, 00, 20, 0F, 00, 1E, 6D, 0E, 00, 00, 00, 00, 00, 00, 00, 00, 00, F0, 79, 0E, 00, 10, 20, 0F, 00, 2E, 6D, 0E, 00, 00, 00, 00, 00, 00, 00, 00, 00, DB, 69, 0E, 00, 20, 20, 0F, 00, 3E, 6D, 0E, 00, 00, 00, 00, 00, 00, 00, 00, 00, E0, F3, 0C, 00, 30, 20, 0F, 00, 56, 6D, 0E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 53, 13, 0F, 00, 48, 20, 0F, 00...
 
[+]

Entropy:
7.8705

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
109.5 KB (112,128 bytes)

Service
Display name:
BattlEye Service

Service name:
BEService

Type:
Win32OwnProcess


Scan beservice.exe - Powered by Reason Core Security