How to remove StartMenuIndexer.exe
- File Details
- Overview
- Analysis
StartMenuIndexer.exe
The module StartMenuIndexer.exe has been detected as PUP.Pokki
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
86b849a6aa0cf711f500528a964c33f2 |
| Size: |
2 MB |
| First Published: |
2017-05-24 17:03:55 (8 years ago) |
| Latest Published: |
2022-05-06 23:49:51 (3 years ago) |
| Status: |
PUP.Pokki (on last analysis) |
|
| Analysis Date: |
2022-05-06 23:49:51 (3 years ago) |
Overview
| Signed By: |
Pokki |
| Status: |
Valid |
| %localappdata%\pokki\engine |
| %sysdrive%\adwcleaner\quarantine\files\zzpehwpqvddxbvcphwxftrkintlzcmtj\engine |
| %sysdrive%\adwcleaner\quarantine\files\smxwhldktsjpvqrhdqitxrnqfdllhyzw\engine |
| %sysdrive%\adwcleaner\quarantine\files\rzlabypwqahhshslrrhyisaaqvdanffs\engine |
| %sysdrive%\adwcleaner\quarantine\files\rencgubmsetfltuqokxzompwhvvkfxcf\engine |
| %sysdrive%\adwcleaner\quarantine\files\jgvcuymswhogmitmbabxkxguavovpueg\engine |
| %sysdrive%\windows.old\users\default\appdata\local\pokki\engine |
| %sysdrive%\adwcleaner\quarantine\rywtiizs2t\engine |
| %localappdata%\pokki |
| %sysdrive%\windows.old\users\default\appdata\local\pokki |
|
21.2% |
|
|
10.6% |
|
|
10.6% |
|
|
9.1% |
|
|
6.1% |
|
|
3.8% |
|
|
3.8% |
|
|
3.8% |
|
|
3.8% |
|
|
3.0% |
|
|
3.0% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
| Windows 10 |
53.4% |
|
| Windows 8.1 |
45.9% |
|
| Windows 7 |
0.8% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x001be338 |
| Name |
Size of data |
MD5 |
| .text |
2211840 |
2200d38c62f384ec38428e1e39542902 |
| .rdata |
616448 |
c339a9ea0eb0ad953fe3291bee4a0005 |
| .data |
31232 |
8d51b4222a81dc3f7401bfe5fe449a8f |
| .pdata |
133632 |
75d95cd2252a59feaf5b52da8dd26104 |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| text |
3072 |
c0c17cf4942e08feb0b06b679c3d58b3 |
| data |
10240 |
a6643ae545092962a14d7bee1a5b20fe |
| .rsrc |
58368 |
a3610c67f13ee7b64933a3f490d96b24 |
| .reloc |
12800 |
89f310537b96508fac28933174aa250f |