notes.exe

Power Notes

Maxim Emelyashin

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Power Notes’. This is installed with Power Notes.
Publisher:
Power Soft  (signed by Maxim Emelyashin)

Product:
Power Notes

Version:
3.64.1.4350

MD5:
e162e875c6666c5d47c7db3f859a1dc7

SHA-1:
a275354fa514f9917fd71a812aee3a412eed764a

SHA-256:
56302b70f34c45767c4a8993b3426e028df7a1de3dcb8f7b1a1c48e81cfe0014

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:47:42 PM UTC  (today)

File size:
5.5 MB (5,747,888 bytes)

Product version:
3.64.1.4350

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\power soft\power notes\notes.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/10/2012 8:00:00 AM

Valid to:
1/10/2015 7:59:59 AM

Subject:
CN=Maxim Emelyashin, O=Maxim Emelyashin, STREET=Krupskoi 1B-60, L=Krasnoyarsk, S=NA, PostalCode=660062, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F2AB57344199D331EDBB29D4BB13230D

File PE Metadata
Compilation timestamp:
3/8/2012 11:16:25 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:pQZPNsLYrDadqiWXxlMfD45OgVXIilJhoPV6i7HISHxwXZe0oEaPoqa/Wv2VmabD:YP/XadqiWXxlMfD45OgVXIilJhoPV6i+

Entry address:
0x2304

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, B0, 79, 00, A1, 9F, B0, 79, 00, C1, E0, 02, A3, A3, B0, 79, 00, 52, 6A, 00, E8, 45, 71, 39, 00, 8B, D0, E8, 76, 3E, 38, 00, 5A, E8, 98, 3D, 38, 00, E8, C7, 3F, 38, 00, 6A, 00, E8, 2C, 5D, 38, 00, 59, 68, 48, B0, 79, 00, 6A, 00, E8, 1F, 71, 39, 00, A3, A7, B0, 79, 00, 6A, 00, E9, 27, 03, 39, 00, E9, 5E, 5D, 38, 00, 33, C0, A0, 91, B0, 79, 00, C3, A1, A7, B0, 79, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, F0, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.7137

Code size:
3.6 MB (3,776,512 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Power Notes

Command:
"C:\Program Files\power soft\power notes\notes.exe"


The file notes.exe has been discovered within the following program.

Power Notes  by Power Soft
Publisher's description - “The program Power Notes is a desktop notes organizer, reminder and scheduler for Windows allowing you to create electronic stickers and display them when the time is due. The program is very easy to use and has low system requirements.”
www.pw-soft.com/notes-organizer/index.html
4% remove it
 
Powered by Should I Remove It?

Scan notes.exe - Powered by Reason Core Security