Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5,4,1,3962 6.67%
5,0,3,1614 20.00%
4,6,6,8360 20.00%
4,6,4,8136 20.00%
4,6,3,8096 26.67%
4,6,2,7927 6.67%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExW, RegCloseKey, RegQueryValueExW, RegDeleteValueW, RegCreateKeyExW, RegDeleteKeyW, RegOpenKeyExW, RegEnumKeyExW, RegQueryInfoKeyW
comctl32.dll
InitCommonControlsEx
encrashrep.dll
EnCrashRepExceptionFilter
gdi32.dll
ExtTextOutW, SetBkColor, RoundRect, CreateFontIndirectW, DPtoLP, GetDeviceCaps, SetBkMode, CreatePen, CreateSolidBrush, SetDIBColorTable, CreateDIBSection, GetDIBColorTable, StretchBlt, DeleteObject, GetObjectW, SelectObject, BitBlt, DeleteDC, CreateCompatibleDC, CreateCompatibleBitmap, SetTextColor
gdiplus.dll
GdipGetImagePixelFormat, GdipGetImageHeight, GdipGetImageWidth, GdipGetImagePaletteSize, GdipGetImagePalette, GdipBitmapLockBits, GdipBitmapUnlockBits, GdipGetImageGraphicsContext, GdipDeleteGraphics, GdipDrawImageI, GdipCreateBitmapFromStream, GdiplusStartup, GdipGetImageEncodersSize, GdipGetImageEncoders, GdipCreateBitmapFromScan0, GdipCreateBitmapFromHBITMAP, GdipCloneImage, GdipAlloc, GdipFree, GdipDisposeImage, GdipSaveImageToStream, GdiplusShutdown, GdipSaveImageToFile
kernel32.dll
GetTickCount, Sleep, lstrcpynW, GlobalLock, GlobalUnlock, GlobalSize, GlobalAlloc, GetModuleHandleExW, ResumeThread, WideCharToMultiByte, OpenMutexW, QueryPerformanceCounter, QueryPerformanceFrequency, OutputDebugStringW, MulDiv, GetProcessId, GlobalFree, GetFileAttributesExW, DeleteFileW, GetSystemInfo, UnmapViewOfFile, CreateFileMappingW, MapViewOfFile, FormatMessageW, CreateFileW, ReadFile, WriteFile, GetFileSize, SetFilePointer, GetFileSizeEx, SetFilePointerEx, SetEndOfFile, FlushFileBuffers, ExitProcess, GetLocaleInfoW, GetUserDefaultUILanguage, GetCommandLineW, GetEnvironmentStringsW, FreeEnvironmentStringsW, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetModuleFileNameA, GetStdHandle, HeapCreate, ExpandEnvironmentStringsW, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, RtlUnwind, GetStartupInfoW, CreateThread, ExitThread, VirtualQuery, VirtualProtect, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, LoadLibraryA, InterlockedCompareExchange, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, GetFileType, GetStartupInfoA, GetCurrentProcessId, GetSystemTimeAsFileTime, SetStdHandle, CreateFileA, GetModuleHandleA, InitializeCriticalSectionAndSpinCount, GetConsoleCP, GetConsoleMode, GetLocaleInfoA, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, CompareStringW, SetEnvironmentVariableA, SetEnvironmentVariableW, WriteConsoleA, ReleaseMutex, WaitForSingleObject, SetLastError, FlushInstructionCache, GetCurrentProcess, InterlockedExchange, GetCurrentThreadId, CreateMutexW, GetConsoleOutputCP, WriteConsoleW, CloseHandle, FindResourceExW, LockResource, InterlockedIncrement, InterlockedDecrement, GetModuleFileNameW, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, GetLastError, RaiseException, lstrcmpiW, GetModuleHandleW, GetProcAddress, lstrlenW, FreeLibrary, SetErrorMode, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, SetHandleCount
msimg32.dll
TransparentBlt, AlphaBlend
ole32.dll
CoTaskMemAlloc, CoTaskMemRealloc, CoTaskMemFree, OleUninitialize, CoCreateInstance, OleInitialize
shell32.dll
ShellExecuteW, ShellExecuteExW, SHGetSpecialFolderPathW, Shell_NotifyIconW
shlwapi.dll
PathFindExtensionW
user32.dll
EndDialog, GetActiveWindow, GetSysColorBrush, GetSysColor, SetCursor, MoveWindow, DialogBoxIndirectParamW, SystemParametersInfoW, EnableWindow, SetDlgItemTextW, SetWindowTextW, MapWindowPoints, GetDlgItem, SetWindowPos, GetParent, FindWindowW, InvalidateRect, ReleaseCapture, GetCapture, SetFocus, SetCapture, ShowCursor, EndPaint, BeginPaint, GetClientRect, GetWindowDC, RealChildWindowFromPoint, GetKeyState, GetWindowRect, GetWindow, GetDesktopWindow, ClientToScreen, PtInRect, InflateRect, UnionRect, GetCursorPos, ScreenToClient, OffsetRect, EqualRect, IntersectRect, MonitorFromWindow, SetRectEmpty, SetRect, IsRectEmpty, CopyRect, ReleaseDC, GetAncestor, GetFocus, SendInput, SetTimer, RegisterClipboardFormatW, PostThreadMessageW, GetClipboardSequenceNumber, GetClipboardData, EnumClipboardFormats, GetDC, GetMenuStringW, GetSubMenu, LoadMenuW, CheckMenuItem, GetMessagePos, KillTimer, PostQuitMessage, GetWindowTextLengthW, GetWindowTextW, IsWindow, GetClassNameW, GetForegroundWindow, SendMessageTimeoutW, AllowSetForegroundWindow, GetWindowThreadProcessId, UnregisterHotKey, RegisterHotKey, ModifyMenuW, MonitorFromPoint, GetMonitorInfoW, TrackPopupMenu, SetForegroundWindow, SetMenuDefaultItem, DeleteMenu, DestroyMenu, LoadImageW, GetSystemMetrics, SetClipboardData, EmptyClipboard, CloseClipboard, OpenClipboard, PostMessageW, SendMessageW, CallWindowProcW, CreateWindowExW, GetWindowLongW, SetWindowLongW, DestroyIcon, RegisterWindowMessageW, LoadCursorW, GetClassInfoExW, RegisterClassExW, DestroyWindow, PeekMessageW, GetMessageW, TranslateMessage, DispatchMessageW, DefWindowProcW, CharNextW, DrawTextW, UnregisterClassA

EvernoteTray.exe

Evernote by EVERNOTE CORPORATION (Signed)

Remove EvernoteTray.exe
Version:   4,6,3,8096
MD5:   4b6761930db43aea5542a75cdd8df282
SHA1:   6955ecbfd4dddccca83803afae07fcd6f6ccd1bf
SHA256:   4919d7f424e1cc17cf2635955cd94501ec70881fc4821353c962e3fd51c0f93a

Overview

evernotetray.exe executes as a process with the local user's privileges typically within the context of its parent evernote.exe (by EVERNOTE CORPORATION). During installation, it (or a shortcut) is added to the user's startup folder which is designed to automatically launch when the user logs into Windows. It is installed with a couple of know programs including Evernote v. 4.2.3 published by Evernote Corp., Evernote v. 4.6.3 from Evernote Corp. and Evernote v. 4.6.3 by Evernote Corp..

DetailsDetails

File name:evernotetray.exe
Publisher:Evernote Corp., 305 Walnut Street, Redwood City, CA 94063
Product name:Evernote®
Description:Evernote Tray Application
Typical file path:C:\Program Files\evernote\evernote\evernotetray.exe
File version:4,6,3,8096
Size:385.84 KB (395,104 bytes)
Certificate
Issued to:EVERNOTE CORPORATION
Authority (CA):Thawte
Effective date:Sunday, September 18, 2011
Expiration date:Thursday, November 7, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Evernote Corp.
1% remove
Evernote is a suite of software and services designed for notetaking and archiving. A "note" can be a piece of formatted text, a full webpage or webpage excerpt, a photograph, a voice memo, or a handwritten "ink" note. Notes can also have file attachments. Web clipping support is installed by default on the Internet Explorer and Safari browsers when the Evernote software is installed under Windows. The Evernote email-clipper is automat...

BehaviorsBehaviors

User start menu folder
Shortcut pointer placed in '%appdata%\Microsoft\Windows\Start Menu'
  • Shortcut to 'evernotetray.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00007260%
0.028634%
Kernel CPU:0.00004492%
0.013761%
User CPU:0.00002767%
0.014873%
Kernel CPU time:2,132,154 ms/min
100,923,805ms/min
CPU cycles:5,672/sec
17,470,203/sec
Memory
Private memory:1.95 MB
21.59 MB
Private (maximum):6.71 MB
Private (minimum):2.13 MB
Non-paged memory:1.95 MB
21.59 MB
Virtual memory:74.86 MB
140.96 MB
Virtual memory (peak):77.28 MB
169.69 MB
Working set:2.51 MB
18.61 MB
Working set (peak):6.87 MB
37.95 MB
Page faults:1,989/min
2,039/min
I/O
I/O read transfer:8 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:37 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:2
12
Handles:64
600
GUI GDI count:14
103
GUI GDI peak:19
142
GUI USER count:9
49
GUI USER peak:15
71

BehaviorsProcess properties

Tray notification:Yes
Integrety level:Medium
Platform:64-bit
Command lines:
  • "C:\Program Files\evernote\evernote\evernotetray.exe"
  • "C:\users\user\appdata\local\apps\evernote\evernote\evernotetray.exe"
Owner:User
Parent process:evernote.exe (by EVERNOTE CORPORATION)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 40.00%
Windows 8 Pro 26.67%
Windows 7 Professional 20.00%
Windows 8 6.67%
Windows Vista Home Premium 6.67%

Distribution by countryDistribution by country

United States installs about 73.33% of Evernote®.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 31.58%
Lenovo 21.05%
Acer 10.53%
ASUS 10.53%
Dell 10.53%
Toshiba 10.53%
GIGABYTE 5.26%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE