udd39a1.tmp

EasyAntiCheat Oy

It runs as a Windows 64-bit kernel mode device driver named “EasyAntiCheatSys”.
Publisher:
EasyAntiCheat Oy  (signed and verified)

MD5:
4b881b8571877362d970c5903dad8238

SHA-1:
a39e00c5cf8c8ad7548b77787107bc83d6827c4b

SHA-256:
e40dfe1bdbe473822d7cd99e09335b538f375d74450199ac2006b457130e8a7a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 2:11:28 AM UTC  (today)

File size:
542.5 KB (555,560 bytes)

Common path:
C:\windows\temp\udd39a1.tmp

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/17/2015 6:17:27 PM

Valid to:
2/17/2018 6:17:27 PM

Subject:
CN=EasyAntiCheat Oy, O=EasyAntiCheat Oy, L=Espoo, C=FI

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11218FA852C0CDBDA11EF0C332BFDF937403

File PE Metadata
Compilation timestamp:
3/16/2017 3:21:36 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x272CC

Entry point:
E9, 33, F3, 05, 00, E9, 00, 00, 00, 00, 68, FF, 97, 62, A8, E9, 00, 00, 00, 00, E9, B9, 07, 00, 00, E9, BE, 00, 00, 00, CC, CC, CC, CC, CC, CC, 5C, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 5C, 00, 45, 00, 61, 00, 73, 00, 79, 00, 41, 00, 6E, 00, 74, 00, 69, 00, 43, 00, 68, 00, 65, 00, 61, 00, 74, 00, 00, 00, CC, CC, CC, CC, 5C, 00, 44, 00, 6F, 00, 73, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 73, 00, 5C, 00, 45, 00, 61, 00, 73, 00, 79, 00, 41, 00, 6E, 00, 74, 00, 69, 00, 43, 00, 68, 00...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
114 KB (116,736 bytes)

Driver
Display name:
EasyAntiCheatSys

Type:
Kernel device driver (KernelDriver)


Scan udd39a1.tmp - Powered by Reason Core Security