PeerManager.exe

RIM Desktop Platform

Research In Motion Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘RIM PeerManager’.
Publisher:
Research In Motion Limited

Product:
RIM Desktop Platform

Description:
BlackBerry Link Peer Manager

Version:
1.2.0.61 (Release build by unknown)

MD5:
ae04351daaeaf7a5c3b57702e1868af5

SHA-1:
d03e45fc51103fbf622c83029d84877f6392382c

SHA-256:
d8eda8b4196a066028e38d5f0fe61d9a5b469530a5197df8455f4933d7f01a25

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/1/2025 8:33:47 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.Ramnit-1847
0.98/23209

File size:
4.3 MB (4,552,704 bytes)

Product version:
1.2.0.61 (Release build by unknown)

Copyright:
© 2001-2012 Research In Motion Limited.

Original file name:
PeerManager.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\research in motion\tunnel manager\peermanager.exe

File PE Metadata
Compilation timestamp:
6/24/2014 12:32:30 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x45A000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 8B, C5, 81, ED, 32, 6F, 01, 20, 2B, 85, 50, 72, 01, 20, 89, 85, 4C, 72, 01, 20, B0, 00, 86, 85, 9E, 74, 01, 20, 3C, 01, 0F, 85, DE, 02, 00, 00, 8B, 85, 4C, 72, 01, 20, 2B, 85, 58, 72, 01, 20, 8B, 00, 89, 85, EA, 73, 01, 20, 8B, 85, 4C, 72, 01, 20, 2B, 85, 5C, 72, 01, 20, 8B, 00, 89, 85, F2, 73, 01, 20, 83, BD, F2, 73, 01, 20, 00, 0F, 84, A9, 02, 00, 00, 83, BD, EA, 73, 01, 20, 00, 0F, 84, 9C, 02, 00, 00, 8D, 85, 8D, 74, 01, 20, 50, FF, 95, EA, 73, 01, 20, 83, F8, 00, 0F, 84, 86...
 
[+]

Entropy:
6.6377

Packer / compiler:
ASPack v1.08.04

Code size:
3.1 MB (3,291,136 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
RIM PeerManager

Command:
"C:\Program Files\common files\research in motion\tunnel manager\peermanager.exe"


Scan PeerManager.exe - Powered by Reason Core Security