prestod64.exe

Presto Server

Collobos Software Inc.

It runs as a separate (within the context of its own process) windows Service named “Presto Agent”.
Publisher:
Collobos Software  (signed by Collobos Software Inc.)

Product:
Presto Server

Version:
2.5.2606

MD5:
13e3d928c51ba614f91d46d44619a02b

SHA-1:
1104ae55f50a52132211bf4058e426c6b1f5f953

SHA-256:
de5563cdd4a17f22e7031fb9085540bf8f62e1c9c56468357e4246e3b62a5d5b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 3:35:42 PM UTC  (today)

File size:
19.4 MB (20,392,856 bytes)

Product version:
2.5.2606

Copyright:
Copyright @ Collobos Software 2013-2016. All rights reserved.

Original file name:
prestod.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\collobos\presto\prestod64.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
6/13/2016 8:00:00 PM

Valid to:
6/14/2019 7:59:59 PM

Subject:
CN=Collobos Software Inc., O=Collobos Software Inc., L=Chester, S=Virginia, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6614CE3D8D72183F484E47037C4AC023

File PE Metadata
Compilation timestamp:
11/3/2016 6:31:38 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
14.0

CTPH (ssdeep):
196608:mZ+PIa4c2HQvSMDbNzHeCgiIuRkV2NE28hCe2IhO9i7ReqhZgXUgIZYxAeOOI+3f:ABc2HQvBNbfgiIT43AFh/tteOOI+8Ha

Entry address:
0x6569F0

Entry point:
48, 83, EC, 28, E8, 33, 06, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 48, 8B, C4, 48, 89, 58, 18, 48, 89, 70, 20, 48, 89, 50, 10, 48, 89, 48, 08, 57, 41, 56, 41, 57, 48, 83, EC, 30, 49, 8B, F1, 4D, 8B, F8, 4C, 8B, F2, 48, 8B, F9, 33, DB, 48, 89, 58, E0, 88, 58, D8, 49, 3B, DF, 74, 1F, 48, 8B, CE, E8, 8A, 02, 00, 00, 48, 8B, CF, FF, D6, 49, 03, FE, 48, 89, 7C, 24, 50, 48, FF, C3, 48, 89, 5C, 24, 28, EB, DC, C6, 44, 24, 20, 01, 48, 8B, 5C, 24, 60, 48, 8B, 74, 24, 68, 48, 83, C4, 30, 41, 5F, 41, 5E...
 
[+]

Entropy:
7.1837

Code size:
7.7 MB (8,043,520 bytes)

Service
Display name:
Presto Agent

Type:
Win32OwnProcess

Depends on:
Spooler


Scan prestod64.exe - Powered by Reason Core Security