How to remove StartMenuIndexer.exe
- File Details
- Overview
- Analysis
StartMenuIndexer.exe
The module StartMenuIndexer.exe has been detected as PUP.Pokki
File Details
Product Name: |
|
Company Name: |
|
MD5: |
86b849a6aa0cf711f500528a964c33f2 |
Size: |
2 MB |
First Published: |
2017-05-24 17:03:55 (7 years ago) |
Latest Published: |
2022-05-06 23:49:51 (2 years ago) |
Status: |
PUP.Pokki (on last analysis) |
|
Analysis Date: |
2022-05-06 23:49:51 (2 years ago) |
Overview
Signed By: |
Pokki |
Status: |
Valid |
%localappdata%\pokki\engine |
%sysdrive%\adwcleaner\quarantine\files\zzpehwpqvddxbvcphwxftrkintlzcmtj\engine |
%sysdrive%\adwcleaner\quarantine\files\smxwhldktsjpvqrhdqitxrnqfdllhyzw\engine |
%sysdrive%\adwcleaner\quarantine\files\rzlabypwqahhshslrrhyisaaqvdanffs\engine |
%sysdrive%\adwcleaner\quarantine\files\rencgubmsetfltuqokxzompwhvvkfxcf\engine |
%sysdrive%\adwcleaner\quarantine\files\jgvcuymswhogmitmbabxkxguavovpueg\engine |
%sysdrive%\windows.old\users\default\appdata\local\pokki\engine |
%sysdrive%\adwcleaner\quarantine\rywtiizs2t\engine |
%localappdata%\pokki |
%sysdrive%\windows.old\users\default\appdata\local\pokki |
|
21.2% |
|
|
10.6% |
|
|
10.6% |
|
|
9.1% |
|
|
6.1% |
|
|
3.8% |
|
|
3.8% |
|
|
3.8% |
|
|
3.8% |
|
|
3.0% |
|
|
3.0% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 10 |
53.4% |
|
Windows 8.1 |
45.9% |
|
Windows 7 |
0.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x001be338 |
Name |
Size of data |
MD5 |
.text |
2211840 |
2200d38c62f384ec38428e1e39542902 |
.rdata |
616448 |
c339a9ea0eb0ad953fe3291bee4a0005 |
.data |
31232 |
8d51b4222a81dc3f7401bfe5fe449a8f |
.pdata |
133632 |
75d95cd2252a59feaf5b52da8dd26104 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
text |
3072 |
c0c17cf4942e08feb0b06b679c3d58b3 |
data |
10240 |
a6643ae545092962a14d7bee1a5b20fe |
.rsrc |
58368 |
a3610c67f13ee7b64933a3f490d96b24 |
.reloc |
12800 |
89f310537b96508fac28933174aa250f |