BbDevMgrPs.DLL

RIM handheld driver

BlackBerry Ltd.

The library BbDevMgrPs.DLL, “RIM handheld device manager proxy stub” has been detected as malware by 3 anti-virus scanners.
Publisher:
BlackBerry Limited  (signed by BlackBerry Ltd.)

Product:
RIM handheld driver

Description:
RIM handheld device manager proxy stub

Version:
4.2.0.52

MD5:
b4107ba44fdfe71ead7fb26bc6e67bcd

SHA-1:
9e005f37fe9dd2f4e74d5400700ce9c298f27564

SHA-256:
38c2150ee73bd82af443b5f119aed0be030466b0c604b624539dfc84b5fbf840

Scanner detections:
3 / 68

Status:
Malware

Analysis date:
11/4/2024 5:01:03 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Floxif.H virus
6.3.12010.0

F-Prot
W32/Floxif.B
4.6.5.141

F-Secure
Win32.Floxif.A
5.16.24

File size:
346.7 KB (355,007 bytes)

Product version:
4.2.0.52

Copyright:
Copyright 2014 BlackBerry Limited

Original file name:
BbDevMgrPs.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\common files\research in motion\usb drivers\bbdevmgrps.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/10/2014 5:00:00 PM

Valid to:
6/10/2016 4:59:59 PM

Subject:
CN=BlackBerry Ltd., O=BlackBerry Ltd., L=Waterloo, S=Ontario, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0B1D6F8EA4E9BBEA5358A1FE69A2EC80

File PE Metadata
Compilation timestamp:
10/31/2014 1:55:56 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0xFD70

Entry point:
E9, 49, 91, 00, 00, 0C, 01, 75, 05, E8, 72, C0, 00, 00, 8B, 45, 10, 50, 8B, 4D, 0C, 51, 8B, 55, 08, 52, E8, 11, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 6A, FE, 68, D8, 7F, 03, 10, 68, 00, E8, 00, 10, 64, A1, 00, 00, 00, 00, 50, 83, C4, E8, 53, 56, 57, A1, 60, A5, 03, 10, 31, 45, F8, 33, C5, 50, 8D, 45, F0, 64, A3, 00, 00, 00, 00, 89, 65, E8, C7, 45, E4, 01, 00, 00, 00, 83, 7D, 0C, 00, 75, 10, 83, 3D, AC, B7, 03, 10, 00, 75, 07, 33, C0, E9, 4E, 01, 00, 00...
 
[+]

Entropy:
6.6166

Packer / compiler:
Xtreme-Protector v1.05

Code size:
160 KB (163,840 bytes)

Remove BbDevMgrPs.DLL - Powered by Reason Core Security