Presetup.exe

POS Payment Termianl

Cold Beat, Inc

Publisher:
Verosa, LLC  (signed by Cold Beat, Inc)

Product:
POS Payment Termianl

Description:
Presetup POS Payment Terminal

Version:
16.5.1.0

MD5:
850347a4934fe20ef0097def3c8e3ff9

SHA-1:
dd9e407daca5f82a22615bfa303021ffcef76378

SHA-256:
f0a3c17bc8c253054d76a2bbbca1e8ec99805c0831bc84df91db715bb305b88e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 2:51:47 AM UTC  (today)

File size:
4 MB (4,219,536 bytes)

Product version:
16.5.1.0

Copyright:
Copyright © 2016

Original file name:
Presetup.exe

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\msia85b.tmp

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
12/6/2013 5:14:46 PM

Valid to:
12/6/2016 5:14:46 PM

Subject:
CN="Cold Beat, Inc", O="Cold Beat, Inc", L=Vancouver, S=Washington, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
4ED532AA73BF03

File PE Metadata
Compilation timestamp:
5/11/2016 3:05:08 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
98304:ZsbhJqE0P3zx7Ww+i0xPHE/MmOA5FNuecNBwjoGyRCmGHfrAX6kDQQ4CRMRAenUT:qFwN0E5IeMuyUUKAenl2PDI/uXkfy4d8

Entry address:
0x40626E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 42, D1, 32, 57, 00, 00, 00, 00, 02, 00, 00, 00, 48, 00, 00, 00, B0, 62, 40, 00, B0, 44, 40, 00, 52, 53, 44, 53, 6D, A4, 95, D4, BB, F8, 0B, 4C, B9, 87, 68, CF, C0, EB, F6, 5A, 01, 00, 00, 00, 66, 3A, 5C, 50, 4F, 53, 5C, 50, 72, 65, 73, 65, 74, 75, 70, 5C, 6F, 62, 6A, 5C, 78, 38, 36, 5C, 52, 65, 6C, 65, 61, 73, 65, 20, 31, 31, 5C, 50, 72, 65...
 
[+]

Entropy:
6.6238

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
4 MB (4,211,712 bytes)

Scan Presetup.exe - Powered by Reason Core Security