Should I block it?

45%
45% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

2,5,2,1 8.33%
2,5,2,0 91.67%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
CryptAcquireContextW, ReportEventA, DeregisterEventSource, RegCloseKey, RegOpenKeyExW, CryptGetHashParam, SetNamedSecurityInfoW, CryptDecrypt, CryptDestroyKey, CryptEncrypt, CryptDestroyHash, CryptDeriveKey, CryptHashData, CryptCreateHash, CryptReleaseContext, RegisterEventSourceA, RegEnumValueW, GetCurrentHwProfileW, RegDeleteValueW, RegEnumKeyExW, RegQueryInfoKeyW, RegDeleteKeyW, RegSetValueExW, RegCreateKeyExW, RegQueryValueExW
comctl32.dll
ImageList_Draw, ImageList_LoadImageW, InitCommonControlsEx, ImageList_DrawEx, _TrackMouseEvent
comdlg32.dll
GetOpenFileNameW, GetSaveFileNameW
gdi32.dll
SelectClipRgn, GetCurrentObject, CreateSolidBrush, CreateCompatibleBitmap, BitBlt, GetStockObject, GetDeviceCaps, GetObjectW, SelectObject, CreateBitmap, CreateCompatibleDC, DeleteObject, SetViewportOrgEx, DeleteDC, DPtoLP, CreateRectRgnIndirect, CreateRectRgn, CombineRgn, SetTextColor, SetBkMode, GetTextMetricsW, GetTextExtentPoint32W, CreateFontIndirectW, CreateEllipticRgn, CreatePen, MoveToEx, LineTo, ExtSelectClipRgn, OffsetRgn, SetRectRgn, CreatePolygonRgn, CreateEllipticRgnIndirect, GetClipRgn, RestoreDC, SetWindowOrgEx, SetMapMode, SaveDC, LPtoDP, CreateDCW, DeleteMetaFile, CloseMetaFile, SetWindowExtEx, CreateMetaFileW, CreateRoundRectRgn, SetBkColor, ExtTextOutW
gdiplus.dll
GdipSetLinePresetBlend, GdiplusShutdown, GdiplusStartup, GdipFillRectangle, GdipCreateLineBrush, GdipDrawImageRectI, GdipDrawImageRect, GdipGetImageWidth, GdipGetImageHeight, GdipCreateSolidFill, GdipDrawImageI, GdipDeletePen, GdipCreatePen1, GdipCloneBrush, GdipDeleteBrush, GdipSetSmoothingMode, GdipGetImageGraphicsContext, GdipCreateBitmapFromScan0, GdipDeleteGraphics, GdipCreateFromHDC, GdipCreateBitmapFromStream, GdipCloneImage, GdipAlloc, GdipDisposeImage, GdipFree, GdipGetImagePixelFormat, GdipCloneBitmapAreaI, GdipCreateBitmapFromResource, GdipSetCompositingMode, GdipDrawRectangleI, GdipSetStringFormatTrimming, GdipSetTextRenderingHint, GdipDrawLine, GdipCreateFontFamilyFromName, GdipSetPenDashArray, GdipDrawArc, GdipFillEllipseI, GdipWarpPath, GdipCreateHatchBrush, GdipTransformPath, GdipRotateMatrix, GdipSetMatrixElements, GdipFillPolygon, GdipDrawPolygon, GdipTransformMatrixPoints, GdipTranslateMatrix, GdipDeleteFontFamily, GdipCreateFont, GdipDeleteFont, GdipDrawRectangle, GdipFillRectangleI, GdipDrawImage, GdipTranslateWorldTransform, GdipDrawString, GdipMeasureString, GdipCreateBitmapFromHBITMAP, GdipDeleteMatrix, GdipCreateMatrix, GdipGetFontSize, GdipAddPathString, GdipSetStringFormatLineAlign, GdipSetStringFormatAlign, GdipCreatePath, GdipDeletePath, GdipAddPathRectangle, GdipClosePathFigure, GdipAddPathArc, GdipDrawPath, GdipFillPath, GdipGetImageEncodersSize, GdipGetImageEncoders, GdipDrawLineI, GdipCreateTexture, GdipSaveImageToStream, GdipCreateStringFormat, GdipDeleteStringFormat
iphlpapi.dll
GetAdaptersInfo
kernel32.dll
SizeofResource, LockResource, LoadResource, GlobalAlloc, GlobalLock, FindResourceW, FlushInstructionCache, GetCurrentThreadId, EnterCriticalSection, LeaveCriticalSection, GlobalUnlock, RaiseException, GetCurrentProcess, GlobalFree, LoadLibraryExW, GetLastError, lstrcmpiW, FreeLibrary, lstrlenW, FindResourceExW, GetModuleHandleA, lstrcpynA, FlushConsoleInputBuffer, GetVersionExA, GlobalMemoryStatus, GetStdHandle, GetFileType, GetVersion, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, GetStartupInfoW, CreateWaitableTimerA, SystemTimeToFileTime, ResumeThread, ResetEvent, OpenEventA, GetCurrentProcessId, LCMapStringA, GetStringTypeExA, GetUserDefaultLCID, FormatMessageA, LocalFree, CopyFileW, MoveFileW, CreateDirectoryA, DeleteFileA, RemoveDirectoryA, CreateDirectoryW, RemoveDirectoryW, GetFileAttributesExW, GetFileAttributesA, HeapSize, HeapReAlloc, HeapDestroy, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, LoadLibraryA, FlushFileBuffers, WriteFile, SetFilePointer, ReadFile, SetFilePointerEx, DeviceIoControl, GetFileInformationByHandle, SetEndOfFile, CreateWaitableTimerW, SleepEx, TlsGetValue, TlsSetValue, InterlockedCompareExchange, PostQueuedCompletionStatus, SetWaitableTimer, GetQueuedCompletionStatus, WaitForMultipleObjects, TerminateThread, QueueUserAPC, CreateIoCompletionPort, HeapAlloc, CreateSemaphoreA, DuplicateHandle, MultiByteToWideChar, HeapFree, GetProcessHeap, GetSystemTimeAsFileTime, InitializeCriticalSectionAndSpinCount, GetEnvironmentVariableW, GetTickCount, GlobalHandle, GetTempFileNameW, GetFileAttributesW, SetFileAttributesW, CreateFileW, GetDiskFreeSpaceExW, GlobalMemoryStatusEx, GetTimeZoneInformation, GetLocaleInfoW, MapViewOfFile, FormatMessageW, CreateFileMappingW, ReleaseSemaphore, UnmapViewOfFile, lstrlenA, lstrcpyA, WideCharToMultiByte, FindClose, FindNextFileW, FindFirstFileW, TlsFree, TlsAlloc, InterlockedExchangeAdd, GetVersionExW, CreateEventA, SetEvent, lstrcpyW, CompareStringW, lstrcpynW, Sleep, CreateEventW, WaitForSingleObject, CloseHandle, GetCommandLineW, lstrcmpW, MulDiv, SetLastError, DeleteFileW, GetTempPathW, GetProcAddress, InterlockedExchange, LoadLibraryW, CreateMutexW, OutputDebugStringA, InitializeCriticalSection, DeleteCriticalSection, InterlockedIncrement, InterlockedDecrement, GetModuleFileNameW, GetModuleHandleW
msvcp90.dll
DllMain
msvcr90.dll
DllMain
mswsock.dll
GetAcceptExSockaddrs, AcceptEx
ole32.dll
CoCreateInstance, CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, OleInitialize, OleUninitialize, StringFromGUID2, OleLockRunning, CoGetClassObject, CLSIDFromProgID, CLSIDFromString, CoRegisterClassObject, CoResumeClassObjects, CoRevokeClassObject, ReleaseStgMedium, RegisterDragDrop, OleRegEnumVerbs, OleRegGetUserType, OleSaveToStream, WriteClassStm, OleLoadFromStream, CreateStreamOnHGlobal, CreateDataAdviseHolder, OleRegGetMiscStatus, CreateOleAdviseHolder
pdh.dll
PdhGetFormattedCounterValue, PdhCollectQueryData, PdhAddCounterW, PdhOpenQueryW, PdhExpandWildCardPathW, PdhLookupPerfNameByIndexW, PdhCloseQuery
rpcrt4.dll
UuidCreate
sensapi.dll
IsNetworkAlive
shell32.dll
SHGetFolderLocation, SHGetDesktopFolder, SHGetMalloc, SHBindToParent, SHBrowseForFolderW, SHGetPathFromIDListW, SHFileOperationW, DragQueryFileW, SHCreateDirectoryExW, SHGetFolderPathA, ShellExecuteExW, DragQueryPoint, Shell_NotifyIconW, SHGetSpecialFolderLocation, SHGetFileInfoW, ShellExecuteW, SHGetFolderPathW
shlwapi.dll
UrlEscapeW, PathRemoveFileSpecW, UrlUnescapeW
urlmon.dll
URLDownloadToCacheFileW
user32.dll
DllMain
winhttp.dll
WinHttpOpen, WinHttpSetStatusCallback, WinHttpCloseHandle, WinHttpGetProxyForUrl
wininet.dll
InternetQueryOptionW, DetectAutoProxyUrl
ws2_32.dll
WSARecv, WSASocketW, freeaddrinfo, WSASend, WSAAddressToStringA, getaddrinfo, WSAStringToAddressA, WSASendTo, WSARecvFrom

pando.exe

pando by Pando Networks (Signed)

Remove pando.exe
Version:   2,5,2,0
MD5:   e8e17cde71741d9d276bd1701706ebb3
SHA1:   a9df5c2b9d1e22c8fe0ed65475b5dd5134567d24
SHA256:   472ad2a697e00916e69db1f7c1fe4c5f1fb807b654f151313a8956f37cd97356

What is pando.exe?

Pando is proprietary software for P2P file sharing. It's mainly aimed at sending files using both peer-to-peer and client–server architectures that would normally be too large to send via more conventional means. Pando functions as a normal BitTorrent client. Pando uses the BitTorrent protocol to transfer files.

Overview

pando.exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It is installed with a couple of know programs including Pando published by Pando Networks Inc. and Pando published by Pando Networks Inc.. The file is digitally signed by Pando Networks which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:pando.exe
Publisher:Pando Networks
Product name:pando
Typical file path:C:\Program Files\pando networks\pando\pando.exe
File version:2,5,2,0
Size:4.71 MB (4,943,952 bytes)
Certificate
Issued to:Pando Networks
Authority (CA):Thawte
Expiration date:Sunday, June 29, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Pando Networks Inc.
25% remove
Pando is a free file sharing software that makes downloading, streaming and sharing large media files fast, easy and fun. Need to email large attachments, IM a folder, or publish your downloadable videos to the Web? Meet Pando. Accelerates and manages downloads of huge files and folders. Publish downloadable videos, photos and audio to any web site. You select the files and/or folders you want to share, and click "Share New". A copy of...

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Pando' → C:\Program Files\Pando Networks\Pando\Pando.exe /Minimized
Network connections
  • [UDP] listens on port 59020
  • [UDP] listens on port 52701

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.05156881%
    0.028634%
    Kernel CPU:0.02441715%
    0.013761%
    User CPU:0.02715166%
    0.014873%
    Kernel CPU time:1,969 ms/min
    100,923,805ms/min
    Context switches:37/sec
    284/sec
    Memory
    Private memory:21.26 MB
    21.59 MB
    Private (maximum):13.81 MB
    Private (minimum):9.04 MB
    Non-paged memory:21.26 MB
    21.59 MB
    Virtual memory:190.62 MB
    140.96 MB
    Virtual memory (peak):216.22 MB
    169.69 MB
    Working set:9.4 MB
    18.61 MB
    Working set (peak):34.12 MB
    37.95 MB
    Resource allocations
    Threads:35
    12
    Handles:693
    600
    GUI GDI count:220
    103
    GUI GDI peak:233
    142
    GUI USER count:112
    49
    GUI USER peak:124
    71

    BehaviorsProcess properties

    Integrety level:Undefined
    Platform:64-bit
    Command line:"C:\Program Files\pando networks\pando\pando.exe"
    Owner:User

    ResourcesThreads

    Averages
     
    MSVCR90.dll
    Total CPU:0.04843330%
    0.272967%
    Kernel CPU:0.01814970%
    0.107585%
    User CPU:0.03028360%
    0.165382%
    CPU cycles:1,036,314/sec
    5,741,424/sec
    Memory:652 KB
    1.16 MB
    Pando.exe (main module)
    Total CPU:0.03434039%
    Kernel CPU:0.01622345%
    User CPU:0.01811694%
    CPU cycles:1,006,171/sec
    Context switches:1/sec
    Memory:4.75 MB
    sendori.dll (Sendori.dll by Sendori)
    Total CPU:0.00219668%
    Kernel CPU:0.00219668%
    User CPU:0.00000000%
    CPU cycles:420,284/sec
    Memory:312 KB
    wow64.dll
    Total CPU:0.00043230%
    Kernel CPU:0.00043230%
    User CPU:0.00000000%
    CPU cycles:20,523/sec
    Memory:252 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 91.67%
    Windows Vista Home Premium 8.33%

    Distribution by countryDistribution by country

    United States installs about 100.00% of pando.
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE