Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegDeleteValueW, RegCreateKeyExW, RegSetValueExW, RegOpenKeyExW, RegEnumKeyExW, RegQueryInfoKeyW, RegCloseKey, RegDeleteKeyW
kernel32.dll
lstrcmpiW, RaiseException, GetLastError, MultiByteToWideChar, SizeofResource, LoadResource, FindResourceW, LoadLibraryExW, GetModuleHandleW, GetModuleFileNameW, GetCurrentThreadId, InterlockedDecrement, GetCommandLineW, Sleep, GetProcAddress, CreateThread, InterlockedIncrement, GetCurrentProcess, LoadLibraryW, TryEnterCriticalSection, WaitForMultipleObjects, SetCurrentDirectoryW, FindFirstFileW, FindNextFileW, FindClose, lstrlenW, DuplicateHandle, GetVersionExW, QueryPerformanceCounter, QueryPerformanceFrequency, OutputDebugStringW, LocalFree, FormatMessageW, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetLocaleInfoW, GetConsoleMode, GetConsoleCP, SetFilePointer, LoadLibraryA, InitializeCriticalSectionAndSpinCount, GetTimeZoneInformation, GetStringTypeA, IsValidLocale, FreeLibrary, SetEvent, WaitForSingleObject, LeaveCriticalSection, EnterCriticalSection, CloseHandle, DeleteCriticalSection, CreateEventW, OpenProcess, InitializeCriticalSection, EnumSystemLocalesA, GetUserDefaultLCID, GetModuleHandleA, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, GetStartupInfoA, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, IsValidCodePage, GetOEMCP, GetACP, SetLastError, SetEnvironmentVariableA, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, HeapSize, GetModuleFileNameA, GetStdHandle, WriteFile, ExitProcess, HeapCreate, HeapReAlloc, VirtualFree, CompareStringW, WideCharToMultiByte, InterlockedCompareExchange, InterlockedExchange, GetLocaleInfoA, HeapAlloc, HeapFree, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetStartupInfoW, RtlUnwind, LCMapStringA, LCMapStringW, GetCPInfo, GetStringTypeW, GetTimeFormatA, GetDateFormatA, CompareStringA
ole32.dll
CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoInitializeSecurity, CoInitializeEx, CoUninitialize, StringFromGUID2, CoCreateInstance, CoRegisterClassObject, CoRevokeClassObject, CoSuspendClassObjects, CoResumeClassObjects
user32.dll
MsgWaitForMultipleObjects, PostThreadMessageW, CharUpperW, GetMessageW, TranslateMessage, DispatchMessageW, SetWindowLongW, GetWindowLongW, CreateWindowExW, DestroyWindow, PostMessageW, DefWindowProcW, PeekMessageW, CharNextW, RegisterClassW

Nori.exe

Nori by TELEFONICA INVESTIGACION Y DESARROLLO (Signed)

Remove Nori.exe
Version:   0.9.2.22
MD5:   d379abfd3e1c454cc7db0a0bcfa1616e
SHA1:   96efbaf2328a2d431788c674a0ce1c92bc518951
SHA256:   b9414bfaece223070eccc7850d286f48ab707b083f63b987206e3a63bc440a5b

Overview

nori.exe executes as a process with the local user's privileges typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). The file is digitally signed by TELEFONICA INVESTIGACION Y DESARROLLO which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:nori.exe
Publisher:Telefónica I+D
Product name:Nori
Description:Nori server
Typical file path:C:\Program Files\o2\nori\nori.exe
File version:0.9.2.22
Size:339.13 KB (347,272 bytes)
Build date:9/18/2009 12:09 PM
Certificate
Issued to:TELEFONICA INVESTIGACION Y DESARROLLO
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.02808097%
0.028634%
Kernel CPU:0.01223507%
0.013761%
User CPU:0.01584590%
0.014873%
Kernel CPU time:124,488,798 ms/min
100,923,805ms/min
Memory
Private memory:4.99 MB
21.59 MB
Private (maximum):12.06 MB
Private (minimum):11.11 MB
Non-paged memory:4.99 MB
21.59 MB
Virtual memory:82.23 MB
140.96 MB
Virtual memory (peak):87.32 MB
169.69 MB
Working set:11.99 MB
18.61 MB
Working set (peak):12.1 MB
37.95 MB
Resource allocations
Threads:12
12
Handles:298
600
GUI GDI count:9
103
GUI GDI peak:10
142
GUI USER count:18
49
GUI USER peak:22
71

BehaviorsProcess properties

Integrety level:High
Platform:32-bit
Command line:"C:\Program Files\o2\nori\nori.exe" -embedding
Owner:User
Parent process:svchost.exe (Host Process for Windows Services by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 100.00%

Distribution by countryDistribution by country

Czech Republic installs about 100.00% of Nori.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE