Should I block it?
90% of PCs block this file from running.
Possible reason:
Multiple malware detections
Additional versions
Relationships
PE file structure |
Show functions |
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
nsisClearAcceptedOffers
nsisGetCurrentOfferAccepted
nsisGetCurrentOfferProductName
nsisGetInstallInBackGround
nsisGetOfferCount
nsisGetOffersAccepted
nsisGetWaitForExit
nsisInitialize
nsisPrepareOffers
nsisProcessResults
nsisSetCurrentOfferAccepted
nsisSetInstallInBackGround
nsisSetOfferWindow
nsisSetWaitForExit
nsisShowAllOffers
nsisShowNextOffer
nsisShowPreviousOffer
nsisUninitialize
RunOfferManagerAgentW
RunScriptW
ShowOffersW
BunndleOfferManager.dll
Bunndle Offer Manager by Bunndle
Version: | 2.2.0.0 |
MD5: | e15030d3e5e3acae6b3588574d161a21 |
SHA1: | fd32bce411ea0a3fe06deabb8971ba14beb45fbd |
SHA256: | 85436f2b3dd1e815470ceb655dfbf6f1fbe0cb0cbdf57ec87f81d5831fdf5231 |
Warning 3 antivirus scanners has detected malware.
What is BunndleOfferManager.dll?
Bunndle Offer Manager is a process from Bunndle, Inc. is that is run on system boot and executed through the Windows command processor. Bundle Offer Manager is related to Run Offer Manager Agent. This process is potentially malicios and connects to utorrent.com to download various installations.
Overview
BunndleOfferManager.dll is malware that executes as a process with the local user's privileges.
Details
File name: | BunndleOfferManager.dll |
Publisher: | Bunndle, Inc. |
Product name: | Bunndle Offer Manager |
Description: | Bunndle Offer Manager v2.0.0.7 |
Typical file path: | C:\Documents and Settings\user\Local Settings\Temp\Bunndle\BunndleOfferManager.dll |
Original name: | BunndleOfferManager |
File version: | 2.2.0.0 |
Size: | 148 KB (151,552 bytes) |
Digital DNA |
PE subsystem: | Windows Console |
File packed: | Yes |
.NET CLR: | No |
More details
Malware detections
Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engine | Engine version | Detection |
Comodo Internet Security |
16526 |
Application.Win32.Bundle.h |
ESET NOD32 |
7.8513 |
a variant of Win32/Bunndle |
ViRobot |
2011.4.7.4223 |
Trojan.Win32.A.NSAnti.151552.I |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00015619% | |
Kernel CPU: | 0.00008532% | |
User CPU: | 0.00007087% | |
Kernel CPU time: | 641 ms/min | |
CPU cycles: | 136,740/sec | |
Memory |
Private memory: | 5.04 MB | |
Private (maximum): | 10.88 MB | |
Private (minimum): | 6.88 MB | |
Non-paged memory: | 5.04 MB | |
Virtual memory: | 80.11 MB | |
Virtual memory (peak): | 113.6 MB | |
Working set: | 7.37 MB | |
Working set (peak): | 11.02 MB | |
Page faults: | 3,360/min | |
I/O |
I/O read transfer: | 4.01 KB/sec | |
I/O read operations: | 6/sec | |
I/O write transfer: | 73.88 KB/sec | |
I/O write operations: | 10/sec | |
I/O other transfer: | 62.8 KB/sec | |
I/O other operations: | 4/sec | |
Resource allocations |
Threads: | 6 | |
Handles: | 280 | |
GUI GDI count: | 15 | |
GUI GDI peak: | 16 | |
GUI USER count: | 8 | |
GUI USER peak: | 9 | |
Process properties
Integrety level: | High |
Platform: | 32-bit |
Command line: | "C:\Windows\System32\rundll32.exe" C:\users\user\appdata\local\temp\bunndle\bunndl~1.dll,runoffermanageragentw |
Owner: | User |
Threads
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate |
50.00% |
|
Microsoft Windows XP |
25.00% |
|
Windows 8 Pro with Media Center |
25.00% |
|
Distribution by country
United States installs about 75.00% of Bunndle Offer Manager.