EasyAntiCheat.exe

EasyAntiCheat!

EasyAntiCheat Solutions

This is a setup program which is used to install the application. The file has been seen being downloaded from easyanticheat.net.
Publisher:
EasyAntiCheat Solutions  (signed and verified)

Product:
EasyAntiCheat!

Version:
4, 2, 7, 0

MD5:
1d148157c81bbb71bd018adbd338d4d0

SHA-1:
34875114d8529c706a17f4e21b3b200546154965

SHA-256:
da9d107e1658e5f29b7fe47695160be83ee85a20bba83aca831cfa78028df3e6

Scanner detections:
5 / 68

Status:
Clean  (5 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/26/2024 4:10:02 PM UTC  (today)

Scan engine
Detection
Engine version

Malwarebytes
Trojan.Spy.Usteal
v2014.10.06.03

NANO AntiVirus
Virus.Win32.Gen.ccmw
0.26.0.53954

Sophos
Mal/EncPk-ND
4.91

Trend Micro House Call
TROJ_GEN.F47V0503
7.2.279

VIPRE Antivirus
Trojan.Win32.Generic
20682

File size:
2.9 MB (3,040,136 bytes)

Product version:
4, 2, 7, 0

Copyright:
Copyright © EasyAntiCheat Solutions 2012

Original file name:
EasyAntiCheat.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\easyanticheat.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/14/2012 4:00:00 AM

Valid to:
5/15/2014 3:59:59 AM

Subject:
CN=EasyAntiCheat Solutions, O=EasyAntiCheat Solutions, STREET=Snellmaninkatu 23 A 6, L=Helsinki, S=Helsinki, PostalCode=00170, C=FI

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D7727FB75721D2360114E0377D3D84CF

File PE Metadata
Compilation timestamp:
12/3/2012 9:40:03 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:8t+xzdynmfAf0ZWcHTOVZiKkpEBDhsolsPHNv9s9wHZ5CgIN0m/Qjc7pyinE:lynmfUAC6GBDhpctvR5Chizjc19E

Entry address:
0x20270

Entry point:
E8, 1E, AB, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 90, 7F, 44, 00, 89, 0D, 8C, 7F, 44, 00, 89, 15, 88, 7F, 44, 00, 89, 1D, 84, 7F, 44, 00, 89, 35, 80, 7F, 44, 00, 89, 3D, 7C, 7F, 44, 00, 66, 8C, 15, A8, 7F, 44, 00, 66, 8C, 0D, 9C, 7F, 44, 00, 66, 8C, 1D, 78, 7F, 44, 00, 66, 8C, 05, 74, 7F, 44, 00, 66, 8C, 25, 70, 7F, 44, 00, 66, 8C, 2D, 6C, 7F, 44, 00, 9C, 8F, 05, A0, 7F, 44, 00, 8B, 45, 00, A3, 94, 7F, 44, 00, 8B, 45, 04, A3, 98, 7F, 44, 00, 8D, 45, 08, A3, A4, 7F, 44...
 
[+]

Code size:
220.5 KB (225,792 bytes)

The file EasyAntiCheat.exe has been seen being distributed by the following URL.

Scan EasyAntiCheat.exe - Powered by Reason Core Security