datamngr.dll

Bandoo Media, Inc

The module datamngr.dll by Bandoo Media, Inc has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Windows iLivid Toolbar by Bandoo Media Inc which is a potentially unwanted software program.
Publisher:
Bandoo Media, Inc  (signed and verified)

MD5:
d66fb3cd5c98149d25b7168592662073

SHA-1:
8f2b155a0e1280f1a5931c497eee2a269a6328e1

SHA-256:
4ff695f422a33e9f7e4312b311b1c3b533b455609cd19b8cf244a7818248e988

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/17/2024 11:27:18 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.BandooToolbar.BandooMedia (M)
16.1.25.1

File size:
1.2 MB (1,236,368 bytes)

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\windows ilivid toolbar\datamngr\datamngr.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/3/2010 1:00:00 AM

Valid to:
11/3/2012 12:59:59 AM

Subject:
CN="Bandoo Media, Inc", O="Bandoo Media, Inc", L=Panama City, S=Panama, C=PA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7AD02DB75E76EA8D8CF4A4D1C2591229

File PE Metadata
Compilation timestamp:
8/9/2011 8:05:09 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:Dn+2Gp/CSRTTP4ND63rid9UEkDz1Ch1/5uLHbmzwHc:D2BCSRN7Ch1BuL7mzwHc

Entry address:
0xDB123

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, A8, 81, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 00, 01, 00, 00, 72, 0E, 83, 3D, 24, 3B, 12, 10, 00, 74, 05, E9, 4C, 82, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10...
 
[+]

Code size:
999.5 KB (1,023,488 bytes)

The file datamngr.dll has been discovered within the following program.

Windows iLivid Toolbar  by Bandoo Media Inc
This toolbar is typiclaly bundled with the installation of the free iLivid software. Windows iLivid Toolbar by Bandoo for Intenet Explorer collects and stores information about your web browsing habits in order to suggest services or provide advertising via the toolbar.
www.ilivid.com
79% remove it
 
Powered by Should I Remove It?

Remove datamngr.dll - Powered by Reason Core Security