beclient.dll

MD5:
7822482458f5318f2aeda6c51be74560

SHA-1:
64909cf5aabc7b3e1d6d7e1b8056e9730cc301ed

SHA-256:
09ccec97a8b1c4a1a2a186fb262b51fbd9751759ffa2e48a6087b7d28e0e0392

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
1/13/2025 1:33:52 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Heuristic-KPP
v6.4.7.1.166

File size:
176 KB (180,224 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\arma 2 oa\battleye\beclient.dll

File PE Metadata
Compilation timestamp:
5/14/2013 7:32:28 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:fAsKTpbEDOIe/7C1DRwmlSa5dElWB3LIyecR47t9JyWG9/H7TRJ+tB3S2j/IVnop:f1DUC1GGeILkcj9/bWtBPz1tmkQel9

Entry address:
0x8BD3

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, 23, 54, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, 55, 8B, EC, 51, 56, 8B, 75, 0C, 56, E8, 4D, 32, 00, 00, 89, 45, 0C, 8B, 46, 0C, A8, 82, 59, 75, 17, E8, A9, FC, FF, FF, C7, 00, 09, 00, 00, 00, 83, 4E, 0C, 20, 83, C8, FF, E9, 2D, 01, 00, 00, A8, 40, 74, 0D, E8, 8E, FC, FF, FF, C7, 00, 22, 00, 00, 00, EB, E3, 53, 33, DB, A8, 01, 74, 16, A8, 10, 89, 5E, 04, 0F, 84, 85, 00, 00, 00, 8B, 4E, 08, 83, E0, FE, 89, 0E, 89, 46, 0C, 8B...
 
[+]

Entropy:
5.7846

Code size:
76 KB (77,824 bytes)

The file beclient.dll has been discovered within the following program.

BattlEye for OA Uninstall  by BattlEye Innovations
Publisher's description - “The BattlEye system consists of the BE Client and the BE Server that communicate with each other through the game's netcode. In addition, there is the BE Master which is queried for new core software and cheat detection updates.”
www.battleye.com
3% remove it
 
Powered by Should I Remove It?

The file beclient.dll has been seen being distributed by the following URL.

Scan beclient.dll - Powered by Reason Core Security