Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5,4,1,3962 6.67%
5,0,3,1614 20.00%
4,6,6,8360 20.00%
4,6,4,8136 20.00%
4,6,3,8096 26.67%
4,6,2,7927 6.67%

Relationships

Parent processes
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExW, RegCloseKey, RegQueryValueExW, RegDeleteValueW, RegCreateKeyExW, RegDeleteKeyW, RegOpenKeyExW, RegEnumKeyExW, RegQueryInfoKeyW
comctl32.dll
InitCommonControlsEx
encrashrep.dll
EnCrashRepExceptionFilter
gdi32.dll
ExtTextOutW, SetBkColor, RoundRect, CreateFontIndirectW, DPtoLP, GetDeviceCaps, SetBkMode, CreatePen, CreateSolidBrush, SetDIBColorTable, CreateDIBSection, GetDIBColorTable, StretchBlt, DeleteObject, GetObjectW, SelectObject, BitBlt, DeleteDC, CreateCompatibleDC, CreateCompatibleBitmap, SetTextColor
gdiplus.dll
GdipGetImagePixelFormat, GdipGetImageHeight, GdipGetImageWidth, GdipGetImagePaletteSize, GdipGetImagePalette, GdipBitmapLockBits, GdipBitmapUnlockBits, GdipGetImageGraphicsContext, GdipDeleteGraphics, GdipDrawImageI, GdipCreateBitmapFromStream, GdiplusStartup, GdipGetImageEncodersSize, GdipGetImageEncoders, GdipCreateBitmapFromScan0, GdipCreateBitmapFromHBITMAP, GdipCloneImage, GdipAlloc, GdipFree, GdipDisposeImage, GdipSaveImageToStream, GdiplusShutdown, GdipSaveImageToFile
kernel32.dll
GetTickCount, Sleep, lstrcpynW, GlobalLock, GlobalUnlock, GlobalSize, GlobalAlloc, GetModuleHandleExW, ResumeThread, WideCharToMultiByte, OpenMutexW, QueryPerformanceCounter, QueryPerformanceFrequency, OutputDebugStringW, MulDiv, GetProcessId, GlobalFree, GetFileAttributesExW, DeleteFileW, GetSystemInfo, UnmapViewOfFile, CreateFileMappingW, MapViewOfFile, FormatMessageW, CreateFileW, ReadFile, WriteFile, GetFileSize, SetFilePointer, GetFileSizeEx, SetFilePointerEx, SetEndOfFile, FlushFileBuffers, ExitProcess, GetLocaleInfoW, GetUserDefaultUILanguage, GetCommandLineW, GetEnvironmentStringsW, FreeEnvironmentStringsW, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetModuleFileNameA, GetStdHandle, HeapCreate, ExpandEnvironmentStringsW, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, RtlUnwind, GetStartupInfoW, CreateThread, ExitThread, VirtualQuery, VirtualProtect, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, LoadLibraryA, InterlockedCompareExchange, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, GetFileType, GetStartupInfoA, GetCurrentProcessId, GetSystemTimeAsFileTime, SetStdHandle, CreateFileA, GetModuleHandleA, InitializeCriticalSectionAndSpinCount, GetConsoleCP, GetConsoleMode, GetLocaleInfoA, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, CompareStringW, SetEnvironmentVariableA, SetEnvironmentVariableW, WriteConsoleA, ReleaseMutex, WaitForSingleObject, SetLastError, FlushInstructionCache, GetCurrentProcess, InterlockedExchange, GetCurrentThreadId, CreateMutexW, GetConsoleOutputCP, WriteConsoleW, CloseHandle, FindResourceExW, LockResource, InterlockedIncrement, InterlockedDecrement, GetModuleFileNameW, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, GetLastError, RaiseException, lstrcmpiW, GetModuleHandleW, GetProcAddress, lstrlenW, FreeLibrary, SetErrorMode, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, SetHandleCount
msimg32.dll
TransparentBlt, AlphaBlend
ole32.dll
CoTaskMemAlloc, CoTaskMemRealloc, CoTaskMemFree, OleUninitialize, CoCreateInstance, OleInitialize
shell32.dll
ShellExecuteW, ShellExecuteExW, SHGetSpecialFolderPathW, Shell_NotifyIconW
shlwapi.dll
PathFindExtensionW
user32.dll
EndDialog, GetActiveWindow, GetSysColorBrush, GetSysColor, SetCursor, MoveWindow, DialogBoxIndirectParamW, SystemParametersInfoW, EnableWindow, SetDlgItemTextW, SetWindowTextW, MapWindowPoints, GetDlgItem, SetWindowPos, GetParent, FindWindowW, InvalidateRect, ReleaseCapture, GetCapture, SetFocus, SetCapture, ShowCursor, EndPaint, BeginPaint, GetClientRect, GetWindowDC, RealChildWindowFromPoint, GetKeyState, GetWindowRect, GetWindow, GetDesktopWindow, ClientToScreen, PtInRect, InflateRect, UnionRect, GetCursorPos, ScreenToClient, OffsetRect, EqualRect, IntersectRect, MonitorFromWindow, SetRectEmpty, SetRect, IsRectEmpty, CopyRect, ReleaseDC, GetAncestor, GetFocus, SendInput, SetTimer, RegisterClipboardFormatW, PostThreadMessageW, GetClipboardSequenceNumber, GetClipboardData, EnumClipboardFormats, GetDC, GetMenuStringW, GetSubMenu, LoadMenuW, CheckMenuItem, GetMessagePos, KillTimer, PostQuitMessage, GetWindowTextLengthW, GetWindowTextW, IsWindow, GetClassNameW, GetForegroundWindow, SendMessageTimeoutW, AllowSetForegroundWindow, GetWindowThreadProcessId, UnregisterHotKey, RegisterHotKey, ModifyMenuW, MonitorFromPoint, GetMonitorInfoW, TrackPopupMenu, SetForegroundWindow, SetMenuDefaultItem, DeleteMenu, DestroyMenu, LoadImageW, GetSystemMetrics, SetClipboardData, EmptyClipboard, CloseClipboard, OpenClipboard, PostMessageW, SendMessageW, CallWindowProcW, CreateWindowExW, GetWindowLongW, SetWindowLongW, DestroyIcon, RegisterWindowMessageW, LoadCursorW, GetClassInfoExW, RegisterClassExW, DestroyWindow, PeekMessageW, GetMessageW, TranslateMessage, DispatchMessageW, DefWindowProcW, CharNextW, DrawTextW, UnregisterClassA

EvernoteTray.exe

Evernote by EVERNOTE CORPORATION (Signed)

Remove EvernoteTray.exe
Version:   5,0,3,1614
MD5:   ad17e521feb35bc8510fba55e7951043
SHA1:   634ad3c652175f3ac25eee6de050b200e6ed7c4b

Overview

evernotetray.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. During installation, it (or a shortcut) is added to the user's startup folder which is designed to automatically launch when the user logs into Windows. It is installed with a couple of know programs including Evernote v. 4.2.3 published by Evernote Corp., Evernote v. 5.0.3 from Evernote Corp. and Evernote v. 5.0.3 by Evernote Corp.. The file is digitally signed by EVERNOTE CORPORATION which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:evernotetray.exe
Publisher:Evernote Corp., 305 Walnut Street, Redwood City, CA 94063
Product name:Evernote®
Description:Evernote Tray Application
Typical file path:C:\Program Files\evernote\evernote\evernotetray.exe
File version:5,0,3,1614
Size:385.34 KB (394,592 bytes)
Build date:10/22/2013 6:10 PM
Certificate
Issued to:EVERNOTE CORPORATION
Authority (CA):Thawte
Effective date:Sunday, September 18, 2011
Expiration date:Thursday, November 7, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Evernote Corp.
1% remove
Evernote is a suite of software and services designed for notetaking and archiving. A "note" can be a piece of formatted text, a full webpage or webpage excerpt, a photograph, a voice memo, or a handwritten "ink" note. Notes can also have file attachments. Web clipping support is installed by default on the Internet Explorer and Safari browsers when the Evernote software is installed under Windows. The Evernote email-clipper is automat...

BehaviorsBehaviors

User start menu folder
Shortcut pointer placed in '%appdata%\Microsoft\Windows\Start Menu'
  • Shortcut to 'evernotetray.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00011935%
0.028634%
Kernel CPU:0.00008644%
0.013761%
User CPU:0.00003291%
0.014873%
Kernel CPU time:460 ms/min
100,923,805ms/min
Memory
Private memory:2.39 MB
21.59 MB
Private (maximum):8.08 MB
Private (minimum):4.22 MB
Non-paged memory:2.39 MB
21.59 MB
Virtual memory:79.54 MB
140.96 MB
Virtual memory (peak):87.46 MB
169.69 MB
Working set:4.42 MB
18.61 MB
Working set (peak):8.08 MB
37.95 MB
Page faults:2,812/min
2,039/min
Resource allocations
Threads:2
12
Handles:120
600
GUI GDI count:12
103
GUI GDI peak:13
142
GUI USER count:8
49
GUI USER peak:9
71

BehaviorsProcess properties

Integrety level:Undefined
Platform:64-bit
Command lines:
  • "C:\users\user\appdata\local\apps\evernote\evernote\evernotetray.exe"
  • "C:\Program Files\evernote\evernote\evernotetray.exe"
Owner:User
Parent processes:

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 40.00%
Windows 8 Pro 26.67%
Windows 7 Professional 20.00%
Windows 8 6.67%
Windows Vista Home Premium 6.67%

Distribution by countryDistribution by country

United States installs about 73.33% of Evernote®.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 31.58%
Lenovo 21.05%
Acer 10.53%
ASUS 10.53%
Dell 10.53%
Toshiba 10.53%
GIGABYTE 5.26%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE