How to remove libPokki (1).dll
- File Details
- Overview
- Analysis
libPokki (1).dll
The module libPokki (1).dll has been detected as Adware.SweetIM
File Details
MD5: |
0ded43808d5b0613e64e1b2ae5f23e76 |
Size: |
42 MB |
First Published: |
2017-05-21 04:03:40 (8 years ago) |
Latest Published: |
2024-01-31 23:22:03 (a year ago) |
Status: |
Adware.SweetIM (on last analysis) |
|
Analysis Date: |
2024-01-31 23:22:03 (a year ago) |
Overview
%localappdata%\host app service\engine |
%sysdrive%\adwcleaner\quarantine\files\rjzdcyxugzpfohmyrolwiiepmzngqtpt\engine |
%sysdrive%\adwcleaner\quarantine\files\skategcojdojcuwdjttjowqoysdfjwzd\engine |
%sysdrive%\windows.old\users\alex\appdata\local\host app service\engine |
%sysdrive%\adwcleaner\quarantine\files\ihqdhxyvaxhjetzgqzdvcqcbscdrpsyv\engine |
%sysdrive%\adwcleaner\quarantine\files\kbkmwvrlyjviwfwrjnqaczmncapaovrr\engine |
%sysdrive%\adwcleaner\quarantine\files\gvvrutowqvglpiyubwknialpoldnvmdd\engine |
%sysdrive%\adwcleaner\quarantine\files\tyfdmgkqunzwczhvfptiordmfzcxjcib\engine |
%sysdrive%\adwcleaner\quarantine\files\lyxwczwtyhczqggtmvniewitjmmzwizv\engine |
%localappdata%\host app service\engine-old |
libPokki.dll |
libPokki (1).dll |
libPokki (1).dll#5D1240F54B29E155 |
Poland |
14.7% |
|
Turkey |
7.3% |
|
Taiwan |
6.9% |
|
Czech Republic |
5.3% |
|
United Kingdom |
4.9% |
|
Spain |
4.9% |
|
United States |
4.5% |
|
Germany |
4.1% |
|
Hong Kong |
3.7% |
|
Mexico |
3.7% |
|
Brazil |
2.9% |
|
Australia |
2.4% |
|
Sweden |
2.4% |
|
Saudi Arabia |
2.4% |
|
Israel |
2.4% |
|
Kazakhstan |
2.0% |
|
Italy |
1.6% |
|
Thailand |
1.6% |
|
Ukraine |
1.6% |
|
India |
1.2% |
|
Norway |
1.2% |
|
Netherlands |
1.2% |
|
Switzerland |
1.2% |
|
Malaysia |
1.2% |
|
Portugal |
1.2% |
|
Iran |
0.8% |
|
Russia |
0.8% |
|
Indonesia |
0.8% |
|
New Zealand |
0.8% |
|
Greece |
0.8% |
|
South Korea |
0.8% |
|
Slovakia |
0.8% |
|
Belgium |
0.8% |
|
Chile |
0.8% |
|
Romania |
0.4% |
|
Philippines |
0.4% |
|
Ireland |
0.4% |
|
Finland |
0.4% |
|
South Africa |
0.4% |
|
Vietnam |
0.4% |
|
China |
0.4% |
|
Dominican Republic |
0.4% |
|
Hungary |
0.4% |
|
Burundi |
0.4% |
|
Canada |
0.4% |
|
Zambia |
0.4% |
|
Peru |
0.4% |
|
Bosnia and Herzegovina |
0.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x015a0ed3 |
Name |
Size of data |
MD5 |
.text |
35776512 |
f581610492ed081fea86f452d89cda14 |
.rdata |
6891008 |
2084145d28f014eaafdcb7f32e52b07e |
.data |
295936 |
dfdbc3cccb7127e2f1e7c6b71951616d |
.unwante |
4096 |
d9e6c587aa9686b625fa3723226ed688 |
.rodata |
3072 |
b28368d27f2dc1ebb0beed51469d4642 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
512 |
955fc3a5fd43d56c8c5ee044a6c5b1f2 |
.reloc |
1767424 |
91c239d7b1008db8fe3e28cfa96c1f2b |