Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1,2,0,7488 20.00%
1,1,99,7488 20.00%
1,1,60,7271 20.00%
1,1,50,6622 20.00%
1,0,96,3640 20.00%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
OpenProcessToken, GetTokenInformation, IsValidSid, ConvertSidToStringSidW, RegSetValueExW, RegDeleteValueW, RegOpenKeyExW, RegQueryValueExW, RegCloseKey, GetNamedSecurityInfoW, SetEntriesInAclW, SetNamedSecurityInfoW
comdlg32.dll
GetOpenFileNameW
cryptdll.dll
MD5Init, MD5Update, MD5Final
gdi32.dll
AddFontResourceW
iphlpapi.dll
NotifyAddrChange, GetAdaptersInfo, GetBestRoute, GetIpAddrTable
kernel32.dll
SleepEx, CreateIoCompletionPort, InterlockedCompareExchange, HeapFree, GetProcessHeap, TlsGetValue, TlsSetValue, SetWaitableTimer, HeapAlloc, QueueUserAPC, TerminateThread, GetQueuedCompletionStatus, GetVolumeInformationW, GetWindowsDirectoryW, CreateProcessW, lstrcpynW, MapViewOfFile, CreateFileMappingW, OpenFileMappingW, UnmapViewOfFile, LocalFree, ReadFile, GlobalFree, GlobalSize, GlobalAlloc, GlobalLock, DeleteFileW, InitializeCriticalSectionAndSpinCount, FindResourceW, SetThreadPriority, LockResource, SizeofResource, GetCurrentProcessId, LoadLibraryW, GetProcAddress, FreeLibrary, WideCharToMultiByte, TlsAlloc, GetLastError, InterlockedExchangeAdd, PostQueuedCompletionStatus, TlsFree, RaiseException, ResumeThread, GetModuleFileNameW, GetLocalTime, GetModuleHandleW, CreateFileW, WriteFile, Sleep, CreateToolhelp32Snapshot, Process32FirstW, Process32NextW, OpenProcess, TerminateProcess, GetVersionExW, DeleteCriticalSection, WaitForMultipleObjects, CreateSemaphoreA, ReleaseSemaphore, GetSystemTimeAsFileTime, GetFileAttributesExW, CreateEventW, SetFilePointer, FindResourceExW, GetFileSize, WaitForSingleObject, GlobalUnlock, CreateThread, LoadLibraryA, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, GetStartupInfoW, CreateWaitableTimerA, SystemTimeToFileTime, ResetEvent, OpenEventA, LCMapStringW, GetStringTypeExW, GetUserDefaultLCID, LoadResource, InterlockedDecrement, InterlockedIncrement, InterlockedExchange, GetTickCount, SetEvent, CloseHandle, CreateEventA, SetLastError, GetCurrentThreadId, MultiByteToWideChar, GetCurrentProcess, FlushInstructionCache, LeaveCriticalSection, EnterCriticalSection, FormatMessageA, HeapSize, HeapReAlloc, HeapDestroy, InitializeCriticalSection
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoUninitialize, CoInitialize, StringFromGUID2, CoTaskMemFree, CLSIDFromString
overlay.dll
_RemoveHook@0, _InstallHook@0
psapi.dll
GetModuleBaseNameW
shell32.dll
ShellExecuteW, ShellExecuteExW, SHOpenFolderAndSelectItems, CommandLineToArgvW, SHGetSpecialFolderLocation, Shell_NotifyIconW, SHGetPathFromIDListW
shlwapi.dll
StrCmpW, PathFindFileNameW, PathRemoveExtensionW
sqlite3.dll
sqlite3_bind_int, sqlite3_bind_text, sqlite3_changes, sqlite3_step, sqlite3_column_type, sqlite3_column_name, sqlite3_column_text, sqlite3_prepare, sqlite3_bind_int64, sqlite3_reset, sqlite3_finalize, sqlite3_errmsg, sqlite3_busy_timeout, sqlite3_close, sqlite3_column_count, sqlite3_free, sqlite3_mprintf, sqlite3_exec, sqlite3_column_int, sqlite3_column_int64, sqlite3_open
user32.dll
DestroyIcon, PostMessageW, BringWindowToTop, AttachThreadInput, GetWindowPlacement, GetWindowLongW, LoadImageW, SetClassLongW, MoveWindow, GetCursorPos, RegisterClipboardFormatW, CloseClipboard, SetClipboardData, OpenClipboard, LoadStringW, UnregisterClassA, GetClipboardData, IsClipboardFormatAvailable, EmptyClipboard, ShowWindow, MonitorFromPoint, SystemParametersInfoW, wsprintfW, IsZoomed, GetKeyState, CallNextHookEx, SetWindowsHookExW, RegisterWindowMessageW, IsIconic, GetWindowTextW, SetTimer, KillTimer, DefWindowProcW, CallWindowProcW, FlashWindow, GetAncestor, GetParent, GetWindowRect, TranslateMessage, TranslateAcceleratorW, LoadAcceleratorsW, SetWindowLongW, PostQuitMessage, DestroyWindow, GetClassInfoExW, LoadCursorW, RegisterClassExW, CreateWindowExW, OffsetRect, EnableWindow, IsWindowEnabled, IsWindowVisible, EnumThreadWindows, SetForegroundWindow, SetActiveWindow, GetWindowThreadProcessId, IsWindow, GetForegroundWindow, GetActiveWindow, ReleaseCapture, SetWindowPos, GetCapture, DispatchMessageW, GetMessageW, GetMonitorInfoW, SendMessageW
wininet.dll
InternetOpenW, InternetConnectW, InternetReadFile, InternetSetOptionW, HttpOpenRequestW, InternetCloseHandle, InternetGetLastResponseInfoW, InternetCrackUrlW, HttpQueryInfoW, HttpSendRequestW
ws2_32.dll
WSASocketW, WSAAddressToStringA, WSAStringToAddressA, WSAIoctl, getnameinfo, getaddrinfo, WSARecv, WSASend, freeaddrinfo

BBTalk.exe

BTalk by Garena Online Pte Ltd (Signed)

Remove BBTalk.exe
Version:   1,1,99,7488
MD5:   daf5972add0578aef83b1aece49f8f75
SHA1:   789fbfe7bd24288eca6d3fcc8dec6b54bece9500

Overview

bbtalk.exe executes as a process with the local user's privileges typically within the context of its parent ggdllhost.exe (RUNDLL32 by Garena Online Pte Ltd). This is typically installed with the program Garena+ published by Garena Online Pte Ltd.. The file is digitally signed by Garena Online Pte Ltd which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:bbtalk.exe
Product name:BTalk
Description:Garena Talk
Typical file path:C:\Program Files\garena plus\bbtalk\bbtalk.exe
File version:1,1,99,7488
Product version:1,1,99
Size:6.41 MB (6,718,256 bytes)
Build date:6/12/2014 9:40 AM
Certificate
Issued to:Garena Online Pte Ltd
Authority (CA):VeriSign
Expiration date:Friday, March 11, 2557
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Garena Online Pte Ltd.
20% remove
Garena+ is an online social gaming platform which you can download for free and use to connect with millions of other gamers around the world. Using the Garena+, you can play various titles such as BlackShot, Heroes of Newerth, League of Legends and many other great titles. In addition to providing an esports playground for popular classics such as DotA and Age of Empire, Garena also introduced latest premium online games on Garena+...
Network connections
  • [TCP] a23-201-102-83.deploy.static.akamaitechnologies.com (23.201.102.83:80)
  • [UDP] listens on port 50951

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00099439%
    0.028634%
    Kernel CPU:0.00047292%
    0.013761%
    User CPU:0.00052147%
    0.014873%
    Kernel CPU time:12,527 ms/min
    100,923,805ms/min
    CPU cycles:24,738,164/sec
    17,470,203/sec
    Memory
    Private memory:38.05 MB
    21.59 MB
    Private (maximum):55.01 MB
    Private (minimum):848 KB
    Non-paged memory:38.05 MB
    21.59 MB
    Virtual memory:264.41 MB
    140.96 MB
    Virtual memory (peak):281.62 MB
    169.69 MB
    Working set:12.88 MB
    18.61 MB
    Working set (peak):58.82 MB
    37.95 MB
    Page faults:841,034/min
    2,039/min
    I/O
    I/O read transfer:2.02 KB/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:480 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:154.21 KB/sec
    448.09 KB/min
    I/O other operations:9,863/sec
    1,671/min
    Resource allocations
    Threads:23
    12
    Handles:799
    600
    GUI GDI count:252
    103
    GUI GDI peak:264
    142
    GUI USER count:55
    49
    GUI USER peak:60
    71

    BehaviorsProcess properties

    Integrety level:High
    Platform:64-bit
    Command line:"C:\Program Files\garena plus\bbtalk\bbtalk.exe" -login calvin59 1bf46edaf8e4359c752c0336fdca66f4688af180f09acd4d43776b7e52e338fc -encrypt -md5 -version_check 2013040401 -systemtray -lang vn -region vn
    Owner:User
    Parent process:ggdllhost.exe (RUNDLL32 by Garena Online Pte Ltd)

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 8 40.00%
    Windows 7 Ultimate 20.00%
    Windows 7 Home Premium 20.00%
    Microsoft Windows XP 20.00%

    Distribution by countryDistribution by country

    Taiwan installs about 40.00% of BTalk.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Acer 33.33%
    Toshiba 33.33%
    Hewlett-Packard 16.67%
    GIGABYTE 16.67%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE