udde0b9.tmp

EasyAntiCheat Oy

It runs as a Windows 64-bit kernel mode device driver named “EasyAntiCheatSys”.
Publisher:
EasyAntiCheat Oy  (signed and verified)

MD5:
33b0ab9551916b84f9668e7df31e412a

SHA-1:
43c490529faf31a213fdebd2188f28986356ff18

SHA-256:
aeec51ec0613b96d97ed5c647176fb58e2c9abb30412dd7fad582baa6415dffe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 1:42:49 AM UTC  (today)

File size:
539 KB (551,976 bytes)

Common path:
C:\windows\temp\udde0b9.tmp

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/17/2015 6:17:27 PM

Valid to:
2/17/2018 6:17:27 PM

Subject:
CN=EasyAntiCheat Oy, O=EasyAntiCheat Oy, L=Espoo, C=FI

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11218FA852C0CDBDA11EF0C332BFDF937403

File PE Metadata
Compilation timestamp:
3/16/2017 4:21:48 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x272CC

Entry point:
E9, 22, FF, FF, FF, E9, 00, 00, 00, 00, 68, 75, 44, 6D, 72, E9, 00, 00, 00, 00, E9, B9, 07, 00, 00, E9, BE, 00, 00, 00, CC, CC, CC, CC, CC, CC, 5C, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 5C, 00, 45, 00, 61, 00, 73, 00, 79, 00, 41, 00, 6E, 00, 74, 00, 69, 00, 43, 00, 68, 00, 65, 00, 61, 00, 74, 00, 00, 00, CC, CC, CC, CC, 5C, 00, 44, 00, 6F, 00, 73, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 73, 00, 5C, 00, 45, 00, 61, 00, 73, 00, 79, 00, 41, 00, 6E, 00, 74, 00, 69, 00, 43, 00, 68, 00...
 
[+]

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
114 KB (116,736 bytes)

Driver
Display name:
EasyAntiCheatSys

Type:
Kernel device driver (KernelDriver)


Scan udde0b9.tmp - Powered by Reason Core Security