notes.exe

Power Notes

Maxim Emelyashin

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Power Notes’. This is installed with Power Notes.
Publisher:
Power Soft  (signed by Maxim Emelyashin)

Product:
Power Notes

Version:
3.67.1.4475

MD5:
ba046362326f6e66594e6d2a6558e41f

SHA-1:
6d0d44f556639b2822f27cccb0fabd1c1303766d

SHA-256:
df61626b96cf995e5f027be78213ec50940c23ffb7762f533ced225d0ad9e1f5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 8:15:27 PM UTC  (today)

File size:
6.3 MB (6,572,688 bytes)

Product version:
3.67.1.4475

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\power soft\power notes\notes.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/10/2012 1:00:00 AM

Valid to:
1/10/2015 12:59:59 AM

Subject:
CN=Maxim Emelyashin, O=Maxim Emelyashin, STREET=Krupskoi 1B-60, L=Krasnoyarsk, S=NA, PostalCode=660062, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F2AB57344199D331EDBB29D4BB13230D

File PE Metadata
Compilation timestamp:
8/18/2013 10:54:57 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
196608:wyMEqOW6xlMfD45OgVXIilDbKAV6Z7HISSxwXZe0oEdPoqsChuJIi094ch7A3322:wyMEqOW6xlMfD45OgVXIilDbKAV6Z7Hq

Entry address:
0x2364

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 30, 85, 00, A1, 9F, 30, 85, 00, C1, E0, 02, A3, A3, 30, 85, 00, 52, 6A, 00, E8, 43, EE, 44, 00, 8B, D0, E8, 3A, E9, 43, 00, 5A, E8, 5C, E8, 43, 00, E8, 8B, EA, 43, 00, 6A, 00, E8, 3C, 08, 44, 00, 59, 68, 48, 30, 85, 00, 6A, 00, E8, 1D, EE, 44, 00, A3, A7, 30, 85, 00, 6A, 00, E9, 87, A3, 44, 00, E9, 6E, 08, 44, 00, 33, C0, A0, 91, 30, 85, 00, C3, A1, A7, 30, 85, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, F0, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.7330

Code size:
4.3 MB (4,530,176 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Power Notes

Command:
"C:\Program Files\power soft\power notes\notes.exe"


The file notes.exe has been discovered within the following program.

Power Notes  by Power Soft
Publisher's description - “The program Power Notes is a desktop notes organizer, reminder and scheduler for Windows allowing you to create electronic stickers and display them when the time is due. The program is very easy to use and has low system requirements.”
www.pw-soft.com/notes-organizer/index.html
4% remove it
 
Powered by Should I Remove It?

Scan notes.exe - Powered by Reason Core Security