Should I block it?

No, this file is 100% safe to run.

Relationships

Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumValueW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegQueryInfoKeyW, RegEnumKeyExW, RegQueryValueExW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken, GetTokenInformation, CheckTokenMembership, CreateWellKnownSid, CopySid, GetLengthSid, DeregisterEventSource, RegisterEventSourceW, ReportEventW, RegDeleteKeyW
comctl32.dll
ImageList_Destroy, ImageList_GetImageCount, _TrackMouseEvent, ImageList_GetIcon, ImageList_Draw, ImageList_DrawEx, ImageList_GetIconSize, DestroyPropertySheetPage, ImageList_Create, ImageList_DrawIndirect, PropertySheetW, ImageList_AddMasked, ImageList_ReplaceIcon, ImageList_LoadImageW, ImageList_GetImageInfo, CreatePropertySheetPageW, InitCommonControlsEx
comdlg32.dll
GetSaveFileNameW, GetFileTitleW, GetOpenFileNameW, ChooseFontW, ChooseColorW, PageSetupDlgW, PrintDlgExW
credui.dll
CredUIPromptForCredentialsW
encrashrep.dll
EnCrashRepSetInfo, EnCrashRepExceptionFilter
enfatink.dll
_ENInkHTMLExporterCreate@16, _ENInkHTMLExporterDelete@4, _ENInkHTMLExporterGetAttach@12, _ENInkCtrlClassNameW@0
fpdfemb.dll
FPDFEMB_CreateDIB, FPDFEMB_GetDIBData, FPDFEMB_CloseDocument, FPDFEMB_GetPageCount, FPDFEMB_LoadPage, FPDFEMB_ClosePage, FPDFEMB_GetPageSize, FPDFEMB_DeviceToPagePoint, FPDFEMB_PageToDevicePoint, FPDFEMB_StartParse, FPDFEMB_Text_LoadPage, FPDFEMB_Text_CloseTextPage, FPDFEMB_Text_GetCharIndexAtPos, FPDFEMB_Text_CountChars, FPDFEMB_Text_GetOrigin, FPDFEMB_Text_GetFontSize, FPDFEMB_Text_GetMatrix, FPDFEMB_Text_CountRects, FPDFEMB_Text_GetRect, FPDFEMB_Text_GetText, FPDFEMB_Text_GetBoundedText, FPDFEMB_Text_GetFont, FPDFEMB_Font_GetAscent, FPDFEMB_Font_GetDescent, FPDFEMB_FindFrom, FPDFEMB_FindNext, FPDFEMB_FindPrev, FPDFEMB_GetSearchPos, FPDFEMB_CountFoundRects, FPDFEMB_GetFoundRect, FPDFEMB_InitEx, FPDFEMB_Exit, FPDFEMB_StartLoadDocument, FPDFEMB_DestroyDIB, FPDFEMB_StartRender
gdi32.dll
SetDIBits, GetEnhMetaFileHeader, CreateEnhMetaFileW, CloseEnhMetaFile, DeleteEnhMetaFile, SelectClipRgn, SetWindowExtEx, SetMapMode, CreateDCW, OffsetWindowOrgEx, PlayEnhMetaFile, GetMapMode, CreateRectRgn, SetRectRgn, EnumFontFamiliesExW, RestoreDC, SaveDC, GetBkColor, SetStretchBltMode, SetBrushOrgEx, GetTextExtentPoint32W, CreateFontW, RoundRect, GetDIBits, CreateDIBitmap, ExtCreateRegion, RectVisible, GetTextMetricsW, CombineRgn, CreateRectRgnIndirect, ExcludeClipRect, GetCurrentObject, GetPixel, SetDIBColorTable, CreateDIBSection, StretchBlt, GetDIBColorTable, LPtoDP, DPtoLP, PatBlt, BitBlt, GetClipBox, CreateCompatibleBitmap, SetWindowOrgEx, CreateCompatibleDC, CreateBitmap, CreatePatternBrush, TextOutW, LineTo, MoveToEx, GetDeviceCaps, Polygon, Rectangle, CreatePen, CreateSolidBrush, ExtTextOutW, SetBkColor, GetStockObject, CreateFontIndirectW, GetObjectW, SetTextColor, SetBkMode, DeleteDC, DeleteObject, SetViewportExtEx, SetViewportOrgEx, SelectObject
gdiplus.dll
GdipCreateBitmapFromHBITMAP, GdiplusShutdown, GdipFree, GdipAlloc, GdipCloneBrush, GdipDrawImage, GdipFillRectangle, GdipDrawRectangle, GdipDeleteGraphics, GdipDisposeImage, GdipGetImageWidth, GdipSaveImageToStream, GdipCloneImage, GdipDrawImageI, GdipGetImageGraphicsContext, GdiplusStartup, GdipBitmapUnlockBits, GdipBitmapLockBits, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStreamICM, GdipCreateBitmapFromStream, GdipGetImagePalette, GdipGetImagePaletteSize, GdipGetImagePixelFormat, GdipGetImageHeight, GdipRotateWorldTransform, GdipTranslateWorldTransform, GdipResetWorldTransform, GdipCreateLineBrushFromRect, GdipDeletePen, GdipCreatePen1, GdipDeleteBrush, GdipSetSmoothingMode, GdipCreateFromHDC, GdipGetImageEncodersSize, GdipGetImageEncoders, GdipCreateBitmapFromFile, GdipCreateBitmapFromFileICM, GdipSaveImageToFile
kernel32.dll
DllMain
libcef.dll
cef_string_utf16_clear, cef_string_utf16_cmp, cef_string_utf16_set, cef_string_utf8_to_utf16, cef_string_wide_to_utf16, cef_string_list_free, cef_string_utf8_clear, cef_drag_data_create, cef_post_data_element_create, cef_string_list_copy, cef_post_data_create, cef_string_list_size, cef_string_list_value, cef_string_multimap_size, cef_string_multimap_key, cef_string_multimap_value, cef_string_map_size, cef_string_map_key, cef_string_map_value, cef_string_multimap_append, cef_string_map_append, cef_string_list_append, cef_stream_reader_create_for_handler, cef_stream_reader_create_for_data, cef_stream_reader_create_for_file, cef_domrange_create, cef_edit_command_group_create, cef_register_plugin, cef_get_web_plugin_info_byname, cef_get_web_plugin_info, cef_register_extension, cef_create_url, cef_post_delayed_task, cef_post_task, cef_visit_storage, cef_register_scheme_handler_factory, cef_build_revision, cef_initialize, cef_parse_url, cef_set_storage_path, cef_delete_storage, cef_set_storage, cef_register_custom_scheme, cef_remove_cross_origin_whitelist_entry, cef_add_cross_origin_whitelist_entry, cef_get_web_plugin_count, cef_currently_on, cef_clear_scheme_handler_factories, cef_clear_cross_origin_whitelist, cef_set_browser_defaults, cef_set_cache_mode, cef_quit_message_loop, cef_run_message_loop, cef_do_message_loop_work, cef_shutdown, cef_string_utf16_to_utf8, cef_request_create, cef_string_userfree_utf16_free, cef_v8value_create_undefined, cef_v8value_create_null, cef_v8value_create_bool, cef_v8value_create_int, cef_v8value_create_double, cef_v8value_create_date, cef_v8value_create_string, cef_v8value_create_object_with_accessor, cef_v8value_create_array, cef_v8value_create_function, cef_string_list_alloc, cef_v8context_in_context, cef_v8context_get_current_context, cef_v8context_get_entered_context, cef_browser_create, cef_browser_create_sync, cef_cookie_manager_get_global_manager, cef_cookie_manager_create_manager, cef_frame_add_user_style_sheet, cef_string_multimap_free, cef_string_multimap_alloc
libhunspell.dll
hunspell_suggest, hunspell_uninitialize, hunspell_get_dic_encoding, hunspell_initialize, hunspell_add_with_affix, hunspell_add, hunspell_spell, hunspell_free_list
libpcre.dll
regfree, regexec, regcomp, pcre_config
libsqlite.dll
sqlite3_bind_parameter_index, sqlite3_column_double, sqlite3_bind_null, sqlite3_table_column_metadata, sqlite3_open, sqlite3_close, sqlite3_busy_timeout, sqlite3_bind_blob, sqlite3_bind_int64, sqlite3_exec, sqlite3_free, sqlite3_column_bytes, sqlite3_column_int64, sqlite3_last_insert_rowid, sqlite3_bind_double, sqlite3_bind_text, sqlite3_step, sqlite3_errmsg, sqlite3_column_text, sqlite3_column_int, sqlite3_column_blob, sqlite3_changes, sqlite3_create_collation, sqlite3_create_function, sqlite3_user_data, sqlite3_get_auxdata, sqlite3_set_auxdata, sqlite3_result_int, sqlite3_result_int64, sqlite3_result_double, sqlite3_result_text, sqlite3_result_blob, sqlite3_result_null, sqlite3_result_error, sqlite3_value_bytes, sqlite3_value_blob, sqlite3_value_int, sqlite3_value_text, sqlite3_prepare_v2, sqlite3_get_autocommit, sqlite3_reset, sqlite3_clear_bindings, sqlite3_finalize, sqlite3_db_handle, sqlite3_bind_int, sqlite3_column_count
libxml2.dll
xmlReaderForMemory, xmlNoNetExternalEntityLoader, xmlSetExternalEntityLoader, xmlNewStringInputStream, xmlTextReaderLocatorLineNumber, xmlTextReaderLocatorBaseURI, xmlTextReaderIsValid, xmlNewInputFromFile, xmlFreeTextReader, xmlTextReaderSetErrorHandler, xmlTextReaderRead
msimg32.dll
TransparentBlt, AlphaBlend, GradientFill
ole32.dll
CLSIDFromProgID, ReleaseStgMedium, CoUninitialize, CoInitializeEx, DoDragDrop, RegisterDragDrop, RevokeDragDrop, PropVariantClear, CreateStreamOnHGlobal, CoTaskMemFree, CoCreateInstance, CoTaskMemRealloc, CoTaskMemAlloc, OleUninitialize, CoCreateGuid, OleInitialize, StringFromGUID2
psapi.dll
GetProcessMemoryInfo
shell32.dll
SHGetDesktopFolder, ShellExecuteExW, SHBrowseForFolderW, SHFileOperationW, SHGetFileInfoW, SHGetSpecialFolderPathW, ShellExecuteW, SHGetSpecialFolderLocation, CommandLineToArgvW, SHGetPathFromIDListW
shlwapi.dll
PathFindFileNameW, UrlCombineW, AssocQueryStringW, PathFindExtensionW, PathIsURLW, UrlCanonicalizeW, PathCombineW, PathGetDriveNumberW, PathIsNetworkPathW, PathBuildRootW, PathCreateFromUrlW, UrlEscapeW, SHStrDupW
user32.dll
DllMain
uxtheme.dll
SetWindowTheme, GetThemeInt, DrawThemeBackground, OpenThemeData, CloseThemeData
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW
wininet.dll
InternetCanonicalizeUrlW, InternetConnectW, HttpOpenRequestW, HttpSendRequestW, HttpSendRequestA, InternetErrorDlg, HttpQueryInfoA, InternetSetCookieW, InternetAttemptConnect, InternetOpenA, InternetSetStatusCallbackA, InternetConnectA, HttpAddRequestHeadersA, InternetGetLastResponseInfoA, InternetOpenUrlA, InternetOpenUrlW, InternetSetOptionW, InternetReadFile, HttpQueryInfoW, InternetQueryDataAvailable, InternetOpenW, InternetCloseHandle, InternetGetConnectedState, InternetQueryOptionW, HttpOpenRequestA, InternetCrackUrlW
winmm.dll
timeGetTime
winspool.drv
ClosePrinter, OpenPrinterW, GetPrinterW
wintrust.dll
WinVerifyTrust

Evernote.exe

Evernote by EVERNOTE CORPORATION (Signed)

Remove Evernote.exe
Version:   4,5,10,7472
MD5:   24b67c2cdf1db07a934596a9b09645a2
SHA1:   8f22a90301446b84d008790163a01ee1ccaa4f3b
SHA256:   b28a16355ce7918d943f4fba79101580c24e90c851fc1baf9affcaaab7a157fa

What is Evernote.exe?

Evernote is a suite of software and services designed for notetaking and archiving. Evernote stores and edits the user's notes on their local machine. Evernote is available in a paid version or a more restricted, advertising-supported, free version. Where suitable hardware is available, Evernote can automatically add geolocation tags to notes.

Overview

evernote.exe executes as a process with the local user's privileges. It is installed with a couple of know programs including Evernote v. 4.5.10 published by Evernote Corp., Evernote v. 4.5.8 from Evernote Corp. and Evernote v. 4.5.8 by Evernote Corp.. The file is digitally signed by EVERNOTE CORPORATION which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:evernote.exe
Publisher:Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041
Product name:Evernote®
Description:Evernote
Typical file path:C:\Program Files\evernote\evernote\evernote.exe
File version:4,5,10,7472
Size:11.17 MB (11,715,424 bytes)
Certificate
Issued to:EVERNOTE CORPORATION
Authority (CA):Thawte
Effective date:Sunday, September 18, 2011
Expiration date:Thursday, November 7, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Evernote Corp.
7% remove
Evernote is a suite of software and services designed for notetaking and archiving. A "note" can be a piece of formatted text, a full webpage or webpage excerpt, a photograph, a voice memo, or a handwritten "ink" note. Notes can also have file attachments. Web clipping support is installed by default on the Internet Explorer and Safari browsers when the Evernote software is installed under Windows. The Evernote email-clipper is automat...
Network connections
  • [TCP] www.evernote.com (204.154.94.81:443)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00037056%
    0.028634%
    Kernel CPU:0.00010526%
    0.013761%
    User CPU:0.00026530%
    0.014873%
    Kernel CPU time:7,195 ms/min
    100,923,805ms/min
    Context switches:6/sec
    284/sec
    Memory
    Private memory:32.72 MB
    21.59 MB
    Private (maximum):68.89 MB
    Private (minimum):5.2 MB
    Non-paged memory:32.72 MB
    21.59 MB
    Virtual memory:248.95 MB
    140.96 MB
    Virtual memory (peak):262.03 MB
    169.69 MB
    Working set:30.75 MB
    18.61 MB
    Working set (peak):71.39 MB
    37.95 MB
    Page faults:612,898/min
    2,039/min
    I/O
    I/O read transfer:5.32 KB/sec
    1.02 MB/min
    I/O read operations:12/sec
    343/min
    I/O write transfer:3.99 KB/sec
    274.99 KB/min
    I/O write operations:2/sec
    227/min
    I/O other transfer:1009 Bytes/sec
    448.09 KB/min
    I/O other operations:30/sec
    1,671/min
    Resource allocations
    Threads:16
    12
    Handles:482
    600
    GUI GDI count:387
    103
    GUI GDI peak:448
    142
    GUI USER count:121
    49
    GUI USER peak:137
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:64-bit
    Command line:"C:\Program Files\evernote\evernote\evernote.exe"
    Owner:User
    Parent process:Explorer.EXE (Windows Explorer by Microsoft)

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Microsoft Windows XP 50.00%
    Windows 8 Pro 50.00%

    Distribution by countryDistribution by country

    United States installs about 50.00% of Evernote®.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 100.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE