Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, LookupAccountNameW, ConvertSidToStringSidW, IsValidSid, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCloseKey
dbghelp.dll
ImageNtHeader
kernel32.dll
CreateEventW, CreateSemaphoreA, ReleaseSemaphore, OpenMutexW, PulseEvent, GetCurrentProcessId, WaitForMultipleObjects, GetProcessHeap, HeapFree, LocalFree, HeapAlloc, LoadLibraryA, DuplicateHandle, GetCurrentProcess, lstrlenW, CopyFileW, DeleteFileW, FreeLibrary, VirtualQuery, SetLastError, GetModuleHandleA, VirtualAlloc, InterlockedCompareExchange, ResumeThread, FlushInstructionCache, GetThreadContext, SetThreadContext, SuspendThread, GetModuleFileNameW, WideCharToMultiByte, MultiByteToWideChar, GetCommandLineW, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, GetVersionExW, AreFileApisANSI, SetFilePointer, SetEndOfFile, FlushFileBuffers, UnlockFile, LockFile, GetFileAttributesA, DeleteFileA, GetFileAttributesW, LoadLibraryW, QueryPerformanceCounter, GetTickCount, GetSystemTime, LockFileEx, GetTempPathA, GetTempPathW, FormatMessageA, FormatMessageW, GetFullPathNameA, GetFullPathNameW, GetDiskFreeSpaceA, GetDiskFreeSpaceW, CreateFileA, CompareStringA, WriteConsoleW, GetConsoleOutputCP, GetProcAddress, GetCurrentThread, TlsAlloc, GetCurrentThreadId, TlsSetValue, TlsGetValue, IsBadWritePtr, OpenEventW, WriteFile, ReadFile, GetLastError, GetFileSize, CreateFileW, GetModuleHandleW, RemoveVectoredExceptionHandler, InterlockedExchange, VirtualProtect, IsBadReadPtr, AddVectoredExceptionHandler, SetEvent, CreateEventA, CloseHandle, WaitForSingleObject, GetSystemTimeAsFileTime, CompareStringW, SetEnvironmentVariableA, Sleep, WriteConsoleA, SetStdHandle, InterlockedIncrement, InterlockedDecrement, HeapDestroy, HeapReAlloc, HeapSize, ReleaseMutex, TlsFree, CreateMutexA, ResetEvent, SystemTimeToFileTime, SetWaitableTimer, CreateWaitableTimerA, GetUserDefaultLCID, GetStringTypeExA, LCMapStringA, LCMapStringW, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCommandLineA, RaiseException, RtlUnwind, GetCPInfo, GetStringTypeW, ExitThread, CreateThread, ExitProcess, GetStdHandle, GetModuleFileNameA, HeapCreate, VirtualFree, GetACP, GetOEMCP, IsValidCodePage, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetTimeZoneInformation, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, GetStringTypeA, InitializeCriticalSectionAndSpinCount, GetLocaleInfoW, GetConsoleCP, GetConsoleMode
user32.dll
GetWindowThreadProcessId, FindWindowExW, LoadStringA
wtsapi32.dll
WTSQuerySessionInformationW, WTSFreeMemory

datamngr.dll

By Musiclab (Signed)

Remove datamngr.dll
MD5:   a82937697b030e61fc4dea81fff05f5d
SHA1:   77af1bb97c33feca190bf25e5589b65b95338151

Overview

datamngr.dll is loaded as dynamic link library that runs in the context of a process. It is installed with a couple of know programs including Wincore MediaBar published by Musiclab, LLC and BearShare published by Musiclab, LLC. The file is digitally signed by Musiclab which was issued by the Thawte Consulting (Pty) Ltd. certificate authority (CA). This particular version is usually found on Windows Vista (TM) Home Premium (6.0.6002.131072).

DetailsDetails

File name:datamngr.dll
Typical file path:C:\Program Files\BearShare Applications\MediaBar\Datamngr\datamngr.dll
Size:1.18 MB (1,234,872 bytes)
Certificate
Issued to:Musiclab
Authority (CA):Thawte Consulting (Pty) Ltd.
Expiration date:Tuesday, June 5, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Musiclab, LLC
  82% remove
Wincore Mediabar is a type of browser hijacker instaled in Google Chrome, Internet Explorer, and Mozilla Firefox browsers and modifies DNS settings in MS Windows hosts file in order to redirect your legitimate search traffic to associated 'parnter' advertising sites. Wincore Mediabar alters the system registry to enable itself immediate activation when Windows is loaded. Wincore Mediabar is bundled with a number of unwanted programs.
Musiclab, LLC
29% remove
BearShare is a peer-to-peer file sharing application originally created by Free Peers, Inc. for Microsoft Windows and also a rebranded version of iMesh by MusicLab, LLC, tightly integrated with their music subscription service. Three variants of the original BearShare gnutella servent were distributed by Free Peers: Free, Lite and Pro. The Free version had higher performance limits than the Lite version but contained some bundled potent...

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE