pdfpro10tf_7932778.exe

PDF Pro 10

Software Marketing Limited

This is a setup program which is used to install the application. The file has been seen being downloaded from pdfpro10.com and multiple other hosts.
Publisher:
PDF Pro Software  (signed by Software Marketing Limited)

Product:
PDF Pro 10

Version:
9.0.480.0

MD5:
90e833c965f0391ee39ac210d69b2620

SHA-1:
894ae600a013bcefa7fb6f71dd69001d89f12198

SHA-256:
def2015ca6d05d8d2f0daa7e4af281bc812f445bf0283046cd41b4bdb655c15e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/26/2024 9:32:03 PM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

File size:
60.9 MB (63,872,512 bytes)

Product version:
10.9

Copyright:
Copyright © PDF Pro Software 2014

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\pdfpro10tf_7932778.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
1/30/2014 1:00:00 AM

Valid to:
12/21/2016 1:00:00 PM

Subject:
CN=Software Marketing Limited, O=Software Marketing Limited, L=Hong Kong, C=HK, PostalCode=HK, STREET="Suite 1301, 13/F, FWD Financial Centre", STREET=308 Des Voeux Road Central, SERIALNUMBER=1567954, OID.1.3.6.1.4.1.311.60.2.1.3=HK, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
08AD7D8794B27DED11B3B0481CF3430F

File PE Metadata
Compilation timestamp:
1/24/2014 4:23:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1572864:PjzKbqGjBDWMWyhj+rmhW0lLjWBwdzPlJmI/Yl+qha2tSc:Pjy9vWqx80lLaKdzddDc

Entry address:
0x6F617

Entry point:
E8, 14, CB, 00, 00, E9, 79, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 24, D7, 4C, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 24, D7, 4C, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F4, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F...
 
[+]

Code size:
679.5 KB (695,808 bytes)

The file pdfpro10tf_7932778.exe has been seen being distributed by the following 7 URLs.

http://pdfpro10.com/fr/LP/.../download.php

http://pdfpro10.com/fr/LP/.../download.php

temp:PDFPro10tf_765462.exe

Scan pdfpro10tf_7932778.exe - Powered by Reason Core Security