How to remove libPokki (1).dll
- File Details
- Overview
- Analysis
libPokki (1).dll
The module libPokki (1).dll has been detected as Adware.SweetIM
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f9a6fde3c592529d81853e650a69b314 |
Size: |
47 MB |
First Published: |
2017-05-28 11:08:36 (6 years ago) |
Latest Published: |
2021-11-03 21:32:04 (2 years ago) |
Status: |
Adware.SweetIM (on last analysis) |
|
Analysis Date: |
2021-11-03 21:32:04 (2 years ago) |
Overview
%localappdata%\host app service\engine |
%sysdrive%\windows.old\users\default\appdata\local\host app service\engine |
%localappdata%\host app service |
%sysdrive%\adwcleaner\quarantine\1xvpfvjcrg |
%sysdrive%\adwcleaner\quarantine\x3cf3ednhm |
%sysdrive%\adwcleaner\quarantine\3solbph71y |
%sysdrive%\adwcleaner\quarantine\rqf69azbla |
%sysdrive%\adwcleaner\quarantine\rywtiizs2t |
%sysdrive%\adwcleaner\quarantine\files\cguzbtliuktxooqdbhbypdnylltxfpcg |
%windir%\serviceprofiles\networkservice\appdata\local\host app service |
libPokki.dll |
libPokki (1).dll |
$R53PPT0.dll |
|
11.9% |
|
|
6.3% |
|
|
6.1% |
|
|
6.1% |
|
|
5.5% |
|
|
4.2% |
|
|
4.0% |
|
|
3.6% |
|
|
3.4% |
|
|
3.2% |
|
|
2.8% |
|
|
2.6% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.2% |
|
|
2.0% |
|
|
1.8% |
|
|
1.6% |
|
|
1.4% |
|
|
1.4% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x015bbe83 |
Name |
Size of data |
MD5 |
.text |
35950592 |
69749a3fc9a2b50289af3dbc95accbe1 |
.rdata |
7007744 |
3a50bef98dcd9353f571beee8ffc8e2c |
.data |
297984 |
2229adf499cecaa8aaf23f7404cb7534 |
.unwante |
4096 |
585cda0d797c04ceb1ba155eb6ea0606 |
.rodata |
3072 |
b28368d27f2dc1ebb0beed51469d4642 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
4257792 |
8d0b33801489e86b79be7ec6e26ccaec |
.reloc |
1787904 |
d0cd399405c8ec845a83a3b441819e4a |