notes.exe

Power Notes

Maxim Emelyashin

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Power Notes’. This file is installed with the program Power Notes.
Publisher:
Power Soft  (signed by Maxim Emelyashin)

Product:
Power Notes

Version:
3.63.1.4310

MD5:
0e1e5b57a74bfe104beda6c186687b40

SHA-1:
7de59827a0b5031b1476aaba7d6af59ed7283738

SHA-256:
621ab683eda5bbdfd742514103df8a5ed418312e7d58cd5f3b97f18d7c0f3f7c

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/16/2024 10:34:52 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Suspicious
12959

File size:
5.5 MB (5,735,088 bytes)

Product version:
3.63.1.4310

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\power soft\power notes\notes.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/10/2012 5:30:00 AM

Valid to:
1/10/2015 5:29:59 AM

Subject:
CN=Maxim Emelyashin, O=Maxim Emelyashin, STREET=Krupskoi 1B-60, L=Krasnoyarsk, S=NA, PostalCode=660062, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F2AB57344199D331EDBB29D4BB13230D

File PE Metadata
Compilation timestamp:
1/15/2012 11:04:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:NLZQm3/kfqKWlxlMfD45OgVXIilvTGsV6S7HISFxwXZe0oEaPoqaBmgWtmGZS/Rw:LzkfqKWlxlMfD45OgVXIilvTGsV6S7HP

Entry address:
0x2304

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 80, 79, 00, A1, 9F, 80, 79, 00, C1, E0, 02, A3, A3, 80, 79, 00, 52, 6A, 00, E8, C1, 4B, 39, 00, 8B, D0, E8, F2, 18, 38, 00, 5A, E8, 14, 18, 38, 00, E8, 43, 1A, 38, 00, 6A, 00, E8, A8, 37, 38, 00, 59, 68, 48, 80, 79, 00, 6A, 00, E8, 9B, 4B, 39, 00, A3, A7, 80, 79, 00, 6A, 00, E9, A3, DD, 38, 00, E9, DA, 37, 38, 00, 33, C0, A0, 91, 80, 79, 00, C3, A1, A7, 80, 79, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, F0, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.7099

Code size:
3.6 MB (3,764,224 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Power Notes

Command:
"C:\Program Files\power soft\power notes\notes.exe"


The file notes.exe has been discovered within the following program.

Power Notes  by Power Soft
Publisher's description - “The program Power Notes is a desktop notes organizer, reminder and scheduler for Windows allowing you to create electronic stickers and display them when the time is due. The program is very easy to use and has low system requirements.”
www.pw-soft.com/notes-organizer/index.html
4% remove it
 
Powered by Should I Remove It?

Scan notes.exe - Powered by Reason Core Security