beservice.exe

Bastian Suter

This is a setup program which is used to install the application. It runs as a separate (within the context of its own process) windows Service named “BattlEye Service”. The file has been seen being downloaded from www.battleye.com.
Publisher:
Bastian Suter  (signed and verified)

MD5:
2ee42e7539bbf4252f7f47b288e61cea

SHA-1:
452d76f1c0f6a89148ca39d92e6f8e593966a77e

SHA-256:
2113a7c825ae2d222fd80d092baa254ab3efa8a2f58ec8325837a6bc611bc715

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/13/2025 1:35:38 PM UTC  (today)

File size:
1.1 MB (1,128,448 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\common files\battleye\beservice.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
7/15/2015 2:00:00 AM

Valid to:
12/30/2016 1:00:00 PM

Subject:
CN=Bastian Suter, O=Bastian Suter, L=Tübingen, S=Baden-Württemberg, C=DE

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
036EEE651CB75C856158F1A4B933288B

File PE Metadata
Compilation timestamp:
7/23/2015 3:00:28 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
24576:BRXr7+FAWRBkt0h2qQ4QKZBOzDi5fRSipF:BRXkAeet0Iz4QHe5fMipF

Entry address:
0x1B9C48

Entry point:
0F, 8B, E6, 2B, 00, 00, 68, 4E, BD, 1B, 40, E9, E4, B1, FB, FF, 5F, 44, D5, F6, 32, 06, 8C, C3, 6F, 7F, 0B, 94, F5, 25, 1E, B1, FF, 39, F7, 41, 08, C3, 6E, 5D, 2E, A1, 6A, 65, 73, C5, 26, A9, 1F, 19, EF, 49, B8, 13, 7D, BB, 80, 4F, A2, 29, 38, 93, 25, 13, 35, 03, A5, 93, AD, 8B, F7, A5, DA, B0, 90, A7, 7D, FC, 51, AA, A3, 86, 3D, FD, 4D, F0, 39, 87, 8C, ED, 6B, C1, 86, EA, AC, 83, 91, 5F, 8B, 3B, 04, FA, 92, 65, 05, BA, 7D, F4, A6, 6E, 9A, 7A, 8E, B2, 44, 8F, 42, 9A, E5, 8D, 1D, 82, 7E, 5E, 4D, E4, BE, 5A...
 
[+]

Code size:
111 KB (113,664 bytes)

Service
Display name:
BattlEye Service

Service name:
BEService

Type:
Win32OwnProcess


The file beservice.exe has been discovered within the following program.

DayZ  by Bohemia Interactive
www.dayzgame.com
About 9% of users remove it
 
Powered by Should I Remove It?

The file beservice.exe has been seen being distributed by the following URL.

Scan beservice.exe - Powered by Reason Core Security