Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

VersionsAdditional versions

2,6,1249,132 50.00%
2,4,897,176 25.00%
2,3,813,156 25.00%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
CloseServiceHandle, RegisterEventSourceA, StartServiceW, ChangeServiceConfig2W, CreateServiceW, RegEnumValueW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegQueryInfoKeyW, RegEnumKeyExW, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, GetTokenInformation, DuplicateTokenEx, CreateProcessAsUserW, SetServiceStatus, RegEnumKeyW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, ConvertStringSecurityDescriptorToSecurityDescriptorA, GetSecurityDescriptorSacl, SetSecurityDescriptorSacl, RegSetValueExW, RegQueryValueExW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, DeregisterEventSource, IsValidSid, ConvertSidToStringSidW, GetLengthSid, InitializeAcl, ReportEventA, AddAce, OpenThreadToken, OpenProcessToken, GetSecurityInfo, GetAclInformation, GetAce, DeleteAce, SetSecurityInfo, RegDeleteKeyW, RegDeleteValueW, DeleteService, ControlService, OpenServiceW, OpenSCManagerW, QueryServiceConfigW, ChangeServiceConfigW
gdi32.dll
CreateDIBSection, CreateFontIndirectW, GetObjectW, DeleteObject, SelectObject, SetBkMode, SetTextColor, Rectangle, CreatePen, RoundRect, CreateSolidBrush, CreatePatternBrush, CreateCompatibleDC, BitBlt, CreateCompatibleBitmap, DeleteDC
kernel32.dll
DllMain
ole32.dll
StringFromGUID2, CoInitializeEx, CoInitializeSecurity, CoInitialize, CoUninitialize, CoCreateInstance, CoSetProxyBlanket
rpcrt4.dll
UuidFromStringA
shell32.dll
SHFileOperationW, CommandLineToArgvW, SHGetSpecialFolderPathW
shlwapi.dll
PathFileExistsW, PathAddExtensionW, PathAppendW, PathFindExtensionW, PathRemoveExtensionW, PathStripPathW, StrCpyW, PathFindFileNameW, PathIsDirectoryW, PathRemoveFileSpecW, StrCmpW, SHGetValueW, StrCmpNIW, PathIsRootW, PathRenameExtensionW, PathStripToRootW, PathRemoveFileSpecA
user32.dll
GetParent, InvalidateRect, EndPaint, BeginPaint, GetClientRect, GetWindowTextLengthW, MessageBoxA, GetClassInfoExW, LoadCursorW, IsWindow, FindWindowW, DestroyWindow, GetSysColorBrush, CreateWindowExW, GetUserObjectInformationW, GetProcessWindowStation, GetDesktopWindow, MessageBoxW, SetFocus, SetWindowPos, MapWindowPoints, GetMonitorInfoW, MonitorFromWindow, GetWindow, UnregisterClassA, GetWindowTextW, DrawTextW, GetSystemMetrics, LoadImageW, DialogBoxParamW, GetSysColor, GetWindowRect, GetDC, GetCursorPos, TrackMouseEvent, GetTopWindow, ChildWindowFromPoint, ReleaseDC, FillRect, SetLayeredWindowAttributes, GetActiveWindow, LoadStringA, KillTimer, ShowWindow, ScreenToClient, MoveWindow, EndDialog, GetDlgItem, SendMessageW, SetWindowTextW, SetTimer, PeekMessageW, GetMessageW, TranslateMessage, DispatchMessageW, SystemParametersInfoW, CallWindowProcW, GetWindowLongW, SetWindowLongW, DefWindowProcW, SetWindowsHookExW, UnhookWindowsHookEx, RegisterClassExW
userenv.dll
CreateEnvironmentBlock
uxtheme.dll
DrawThemeParentBackground, DrawThemeBackground, OpenThemeData, CloseThemeData, IsThemeBackgroundPartiallyTransparent
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
winhttp.dll
WinHttpReadData, WinHttpQueryDataAvailable, WinHttpAddRequestHeaders, WinHttpOpen, WinHttpConnect, WinHttpSetStatusCallback, WinHttpSetOption, WinHttpGetIEProxyConfigForCurrentUser, WinHttpCloseHandle, WinHttpSendRequest, WinHttpOpenRequest, WinHttpQueryHeaders, WinHttpReceiveResponse, WinHttpGetProxyForUrl
wtsapi32.dll
WTSQueryUserToken

etypemngr.exe

Application Manager by Bit89 Inc. (Signed)

Remove etypemngr.exe
Version:   2,6,1249,132
MD5:   d9c8dc2d7ec28e3ff25c99ef17c8631a
SHA1:   3bed57b45ffa1a6df55dcee3e749834a3342305e
SHA256:   67941cddbc7fe0a6f913541ed9eda6dcd73bed38281c498764077491501d62d4
Warning 19 antivirus scanners has detected malware.

What is etypemngr.exe?

The PerformerSoft Browser Manager (Application Manager) program classified mostly as exhibiting adware like actions, is bundled with PerformerSoft products including PC Performer. Browser Manager is designed to protect its bundled programs and make sure they remain installed or unchanged by other thrid party programs. The Browser Manager program was developed by Bit89 (Bit89.com) a know adware maker.

About etypemngr.exe (from Bit89 Inc.)

eType is your online multi-language dictionary with translations and word substitutes to virtually any language in the world. eType is your writing guide that auto-completes your words as you type the

DetailsDetails

File name:etypemngr.exe
Publisher:PerformerSoft LLC
Product name:Application Manager
Typical file path:C:\ProgramData\etype manager\2.3.813.156\{52de144c-c70b-4e0a-9b16-29a2e18c255e}\etypemngr.exe
File version:2,6,1249,132
Size:2.66 MB (2,787,280 bytes)
Build date:3/22/2013 3:09 PM
Certificate
Issued to:Bit89 Inc.
Authority (CA):GoDaddy.com
Effective date:Tuesday, September 4, 2012
Expiration date:Friday, September 4, 2015
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Bit89 Inc
  88% remove
PerformerSoft BrowserProtect is a third party web browser add-in classified mostly as a potentially unwanted software application that used to be bundled with PerformerSoft products including PC Performer. The maker of this program is a known adware/malware distributor, so caution should be taken. The PerformerSoft BrowserProtect (Browser Manager) program classified mostly as exhibiting adware like actions, is bundled with PerformerSoft...
Bit89 Inc
  85% remove
Browser Manager is a third party web browser add-in classified as a potentially unwanted application that used to be bundled with PerformerSoft products including PC Performer. At one point PerformerSoft was attempting to monetize their products with the Bit89 line of browser adware products (but this might not be the case any longer.) Bit89.com, the maker of this program is a known adware/malware distributor, so caution should be taken...
Performersoft Inc
  69% remove
PC Performer Manager is bundled with various PC Performer registry optimization products.

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' as a shared service by the Service Host (svchost.exe)
  • Browser Manager
  • 'eType Manager'

MalwareMalware detections

Based on 40+ industry antivirus scanners, 19 of them detected the following malware.
Antivirus engineEngine versionDetection
Avira AntiVir 7.11.103.178 APPL/BProtector.Gen
Antiy Labs AVL 2.0.3.7 Trojan/Win32.Generic
avast! 8.0.1489.320 Win32:BProtect-A [PUP]
AVG 13.0.0.3169 Skodna.Generic_r.FK
Comodo Internet Security 16986 TrojWare.Win32.bProtector.~A
Dr.Web 8.13.10.1 Adware.BGuard.18
ESET NOD32 7.8832 a variant of Win32/bProtector.A
G Data 13.10.22 Win32.Application.BHO.A
Kaspersky 9.0.0.837 HEUR:Trojan.Win32.Generic
Kingsoft 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.PerformerSoft.A
McAfee 5.600.1067 Adware-Bprotect.b
McAfee Gateway Anti-Malware v2013-dat Artemis!D9C8DC2D7EC2
PC Tools 9.0.0.2 Adware.GoonSquad!rem
Sophos 4.93.0 BProtector
Symantec 20131.1.5.61 Adware.GoonSquad
Trend Micro 9.740.0.1012 TROJ_GEN.R0CBC0OIH13
Trend Micro HouseCall 9.700.0.1001 ADW_BPROTECT
VIPRE Antivirus 21744 Bprotector (fs)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00000660%
0.028634%
Kernel CPU:0.00000194%
0.013761%
User CPU:0.00000467%
0.014873%
Kernel CPU time:2,062,021,218 ms/min
100,923,805ms/min
Memory
Private memory:4.01 MB
21.59 MB
Private (maximum):7.08 MB
Private (minimum):1.58 MB
Non-paged memory:4.01 MB
21.59 MB
Virtual memory:182.63 MB
140.96 MB
Virtual memory (peak):216.29 MB
169.69 MB
Working set:2.51 MB
18.61 MB
Working set (peak):7.19 MB
37.95 MB
Resource allocations
Threads:13
12
Handles:286
600
GUI GDI count:12
103
GUI GDI peak:14
142
GUI USER count:5
49
GUI USER peak:7
71

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command lines:
  • "C:\ProgramData\etype manager\2.6.1249.132\{16cdff19-861d-48e3-a751-d99a27784753}\etypemngr.exe"
  • "C:\ProgramData\etype manager\2.6.1249.132\{16cdff19-861d-48e3-a751-d99a27784753}\etypemngr.exe" /protect
Owner:User
Windows Service
Service name:eType Manager
Display name:Browser Manager
Type:Win32ShareProcess
Parent processes:

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate N 50.00%
Windows Vista Home Premium 25.00%
Windows 7 Ultimate 25.00%

Distribution by countryDistribution by country

United States installs about 50.00% of Application Manager.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 66.67%
Hewlett-Packard 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE