pando.exe

pando

Pando Networks CA

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Pando’.
Publisher:
Pando Networks  (signed by Pando Networks CA)

Product:
pando

Version:
2,5,2,0

MD5:
e6d307674089c827f12b542d5a4a036d

SHA-1:
fe4316e1a449435d72b313c40b12e7b19e688f82

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 10:45:25 PM UTC  (today)

File size:
10 MB (10,534,992 bytes)

Product version:
2,5,2,0

Copyright:
Copyright Pando Networks 2005-2009

Trademarks:
Pando Networks

Original file name:
pando.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\pando networks\pando\pando.exe

Digital Signature
Authority:
Pando Networks CA

Valid from:
4/29/2006 1:31:28 AM

Valid to:
4/26/2016 1:31:28 AM

Subject:
CN=Pando CA, OU=IT CA, O=Pando Networks CA, L=New York, S=New York, C=US

Issuer:
CN=Pando CA, OU=IT CA, O=Pando Networks CA, L=New York, S=New York, C=US

Serial number:
008704A3A9F8187C07

File PE Metadata
Compilation timestamp:
3/6/2012 3:36:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:XYy+yrUV0XJxvfqWD2JJ9+qmhoGRVEn2P2P3LuEvk:odvV05PD2JJ0E3LuEvk

Entry address:
0x21976C

Entry point:
E8, 57, 07, 00, 00, E9, 37, FD, FF, FF, FF, 25, 4C, F9, 6D, 00, FF, 25, 48, F9, 6D, 00, FF, 25, 40, F9, 6D, 00, FF, 25, 34, F9, 6D, 00, FF, 25, 30, F9, 6D, 00, FF, 25, 28, F9, 6D, 00, FF, 25, 20, F9, 6D, 00, FF, 25, F0, F7, 6D, 00, FF, 25, 18, F9, 6D, 00, FF, 25, 14, F9, 6D, 00, FF, 25, 0C, F9, 6D, 00, FF, 25, 04, F9, 6D, 00, CC, CC, 68, 19, 98, 61, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 84, D7, 7A, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF...
 
[+]

Entropy:
3.7801

Code size:
2.9 MB (3,004,416 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Pando

Command:
C:\Program Files\pando networks\pando\pando.exe \minimized


Scan pando.exe - Powered by Reason Core Security