How to remove pokkidownloadhelper.exe
- File Details
- Overview
- Analysis
pokkidownloadhelper.exe
The module pokkidownloadhelper.exe has been detected as Hijack.IE
File Details
Product Name: |
|
Company Name: |
|
MD5: |
1ee09b017194c41267ee59efa1c56827 |
Size: |
889 KB |
First Published: |
2017-05-22 10:22:17 (8 years ago) |
Latest Published: |
2021-12-01 21:07:30 (3 years ago) |
Status: |
Hijack.IE (on last analysis) |
|
Analysis Date: |
2021-12-01 21:07:30 (3 years ago) |
Overview
Signed By: |
Pokki |
Status: |
Valid |
%localappdata%\sweetlabs app platform\download helper |
%localappdata%\pokki\download helper |
%localappdata%\sweetlabs app platform |
%localappdata%\pokki |
%profile%\.k\local settings\application data\pokki |
%sysdrive%\adwcleaner\quarantine\c\users\frank\appdata\local\pokki |
%sysdrive%\adwcleaner\quarantine\c\users\jorge\appdata\local\pokki |
%localappdata%\pokki |
%sysdrive%\adwcleaner\quarantine\files\zdkqxvqdzhayxnrwkpucolnrryrmvthn |
%localappdata%\pokki |
PokkiDownloadHelper.exe |
pokkidownloadhelper.exe |
PokkiDownloadHelper.exe.vir |
India |
32.9% |
|
Taiwan |
12.2% |
|
Iran |
9.8% |
|
Turkey |
5.7% |
|
Thailand |
5.3% |
|
Indonesia |
4.9% |
|
United States |
4.9% |
|
Russia |
3.7% |
|
Ukraine |
2.8% |
|
Vietnam |
2.4% |
|
Kazakhstan |
2.4% |
|
Romania |
1.6% |
|
Italy |
1.2% |
|
Croatia |
1.2% |
|
Mexico |
1.2% |
|
Malaysia |
1.2% |
|
Canada |
0.8% |
|
Bosnia and Herzegovina |
0.8% |
|
France |
0.8% |
|
Papua New Guinea |
0.8% |
|
Egypt |
0.4% |
|
Algeria |
0.4% |
|
Poland |
0.4% |
|
Hong Kong |
0.4% |
|
Singapore |
0.4% |
|
United Kingdom |
0.4% |
|
Argentina |
0.4% |
|
Chile |
0.4% |
|
Windows 8.1 |
40.4% |
|
Windows 7 |
34.0% |
|
Windows 10 |
21.6% |
|
Windows 8 |
4.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0007516b |
Name |
Size of data |
MD5 |
.text |
633856 |
94b8bfa442ff6bbf7020368d3a25e81e |
.rdata |
117248 |
72c899e8e7a35be9497589bff8d0f4d0 |
.data |
21504 |
1b915ab369c78c4d275d34e7abaf8d19 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
81920 |
adeafbce5a6b6652220f4f3a4fbd0e2b |
.reloc |
49152 |
9c96cb5eed5447b7374be58dd5547de2 |