notes.exe

Power Notes

Maxim Emelyashin

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Power Notes’. This is installed with Power Notes.
Publisher:
Power Soft  (signed by Maxim Emelyashin)

Product:
Power Notes

Version:
3.65.1.4400

MD5:
b43728467e046592f3af06fc1f6846ce

SHA-1:
7b2d2ff49c4be208e4910886df23a30e2e6b782f

SHA-256:
2abca1368eec5c93e6fd94f80d859d20e4645294857112517bbdcdee9ddd0993

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:46:45 PM UTC  (today)

File size:
5.5 MB (5,774,512 bytes)

Product version:
3.65.1.4400

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\power soft\power notes\notes.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/9/2012 6:00:00 PM

Valid to:
1/9/2015 5:59:59 PM

Subject:
CN=Maxim Emelyashin, O=Maxim Emelyashin, STREET=Krupskoi 1B-60, L=Krasnoyarsk, S=NA, PostalCode=660062, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F2AB57344199D331EDBB29D4BB13230D

File PE Metadata
Compilation timestamp:
4/14/2012 3:44:53 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:eqb8y21cqIWoxlMfD45OgVXIilSujBV627HISSxwXZe0oELPoqvRzaBEwp+xp6ZH:C71cqIWoxlMfD45OgVXIilSujBV627Hi

Entry address:
0x2304

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, C0, 79, 00, A1, 9F, C0, 79, 00, C1, E0, 02, A3, A3, C0, 79, 00, 52, 6A, 00, E8, 4D, 8A, 39, 00, 8B, D0, E8, 7E, 57, 38, 00, 5A, E8, A0, 56, 38, 00, E8, CF, 58, 38, 00, 6A, 00, E8, 34, 76, 38, 00, 59, 68, 48, C0, 79, 00, 6A, 00, E8, 27, 8A, 39, 00, A3, A7, C0, 79, 00, 6A, 00, E9, 2F, 1C, 39, 00, E9, 66, 76, 38, 00, 33, C0, A0, 91, C0, 79, 00, C3, A1, A7, C0, 79, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, F0, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.7188

Code size:
3.6 MB (3,780,608 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Power Notes

Command:
"C:\Program Files\power soft\power notes\notes.exe"


The file notes.exe has been discovered within the following program.

Power Notes  by Power Soft
Publisher's description - “The program Power Notes is a desktop notes organizer, reminder and scheduler for Windows allowing you to create electronic stickers and display them when the time is due. The program is very easy to use and has low system requirements.”
www.pw-soft.com/notes-organizer/index.html
4% remove it
 
Powered by Should I Remove It?

Scan notes.exe - Powered by Reason Core Security