dokanmnt.exe

Pogoplug

Cloud Engines, Inc

It runs as a separate (within the context of its own process) windows Service named “DokanCEMounter”. This is installed with Pogoplug.
Scan dokanmnt.exe - Powered by Reason Core Security
Publisher:
Cloud Engines  (signed by Cloud Engines, Inc)

Product:
Pogoplug

Description:
DokanCE Mounter

Version:
GENERIC - 3.1.0

MD5:
9be28d1e518a35979385c9bd77562bab

SHA-1:
772518dbc06a248465760d68ce0cfbcf2940eca1

SHA-256:
92a68666708583638989a3b2028936c58e969185c56880d2a920800b243785b7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/6/2016 7:15:58 AM UTC  (today)

File size:
131.3 KB (134,464 bytes)

Product version:
GENERIC - 3.1.0

Copyright:
Copyright © 2006-2009 Cloud Engines

Original file name:
dokanmnt.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pogoplug\dokanmnt.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/12/2011 8:00:00 PM

Valid to:
6/22/2014 7:59:59 PM

Subject:
CN="Cloud Engines, Inc", OU=Pogoplug, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Cloud Engines, Inc", L=San Francisco, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0D58B379078D4CFC02E6313E5D94628A

File PE Metadata
Compilation timestamp:
6/21/2011 2:41:47 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:7bATi40qiZOgE1HjMSDD4liMCxvynATGago1qpFZ8SlUFX:7bAeHxOgE1HDDD4liM2qvboCWSEX

Entry address:
0x208C

Entry point:
48, 83, EC, 28, E8, C7, 4E, 00, 00, 48, 83, C4, 28, E9, 12, FE, FF, FF, CC, CC, 48, 8B, C4, 48, 89, 58, 10, 48, 89, 68, 18, 48, 89, 70, 20, 89, 48, 08, 57, 48, 83, EC, 20, 48, 8B, CA, 48, 8B, DA, E8, 9A, 5C, 00, 00, 8B, 4B, 18, 48, 63, F0, F6, C1, 82, 75, 17, E8, 2E, 10, 00, 00, C7, 00, 09, 00, 00, 00, 83, 4B, 18, 20, 83, C8, FF, E9, 34, 01, 00, 00, F6, C1, 40, 74, 0D, E8, 12, 10, 00, 00, C7, 00, 22, 00, 00, 00, EB, E2, 33, FF, F6, C1, 01, 74, 19, 89, 7B, 08, F6, C1, 10, 0F, 84, 89, 00, 00, 00, 48, 8B, 43...
 
[+]

Entropy:
6.3527

Code size:
90.5 KB (92,672 bytes)

Service
Display name:
DokanCEMounter

Type:
Win32OwnProcess

Depends on:
DokanCEDriver


The file dokanmnt.exe has been discovered within the following program.

Pogoplug  by Cloud Engines Inc.
Publisher's description - “Leave your computer at home or the office but quickly access and download all of your files from any Web browser, smartphone or tablet. Share large files and folders instantly, without uploading.”
www.pogoplug.com
About 5% of users remove it
 
Powered by Should I Remove It?

Scan dokanmnt.exe - Powered by Reason Core Security