beservice.exe

Bastian Suter

It runs as a separate (within the context of its own process) windows Service named “BattlEye Service”.
Publisher:
Bastian Suter  (signed and verified)

MD5:
c6df0f9d01600fdce777d33038acf79d

SHA-1:
7c72eeffb0067d312f7837d42ceec094cfb13cd1

SHA-256:
a2733b48510a179aa4bfa72810b6329f8e8bee1033a5a1f3e8cf7813443b0e59

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
1/14/2025 11:46:56 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Virus.Win32.Virut.CE
22028

File size:
899.9 KB (921,472 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\common files\battleye\beservice.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
3/5/2014 2:00:00 AM

Valid to:
5/13/2015 3:00:00 PM

Subject:
CN=Bastian Suter, O=Bastian Suter, L=Tübingen, S=Baden-Württemberg, C=DE

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0F01D40307832B7F6747D7AB752213DC

File PE Metadata
Compilation timestamp:
5/5/2015 5:17:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
24576:bANrVbzPrhCZE1PrfkXvvUjk7k2UJp5zBgk/P/:QVbXhCm1PjYQ2UJLOk/3

Entry address:
0xA2117

Entry point:
E9, 00, 00, 00, 00, 9C, 60, 9C, C7, 44, 24, 24, 91, B3, B6, 56, 8D, 64, 24, 24, 0F, 81, 57, 9A, 0D, 00, 60, 60, C7, 44, 24, 3C, 87, 47, 18, 32, 68, 16, 14, FB, 97, FF, 74, 24, 04, 9C, 8D, 64, 24, 48, E9, 54, B5, 0D, 00, 3B, 1A, 03, 33, D0, 92, 6B, B9, 20, DF, B4, A5, 93, 4A, B5, 82, 57, 6C, 41, 5A, 2F, 2C, 01, E2, 4D, 22, F7, EC, C1, AE, 83, 90, FB, AC, 95, 5C, 85, 3F, 1A, 7B, 9E, C3, A7, 58, 46, F9, 3F, 42, 88, BF, 03, 5D, 51, EB, F0, C5, CA, B3, 11, 49, 5D, 23, 80, 34, 61, 43, A7, F2, 59, 8C, 08, BC, A2...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
92 KB (94,208 bytes)

Service
Display name:
BattlEye Service

Service name:
BEService

Type:
Win32OwnProcess


Scan beservice.exe - Powered by Reason Core Security