soda_pdf_8_installer.exe

Soda PDF 8 Installer

LULU SOFTWARE LIMITED

This is a setup and installation application. This is the uninstaller utility registered in the Windows Control Panel for the program Soda PDF 8 by LULU Software Limited. The file has been seen being downloaded from downloadoem8.sodapdf.com and multiple other hosts.
Publisher:
LULU SOFTWARE LIMITED  (signed and verified)

Product:
Soda PDF 8 Installer

Version:
8.0.49.26236

MD5:
337a20d2c5b7f9673c1aa6446e681d22

SHA-1:
9e18d8e041bae641cb613c8ec67e1eb33f20a19a

SHA-256:
19ad3333a6cc070b9b6c8826adf6b1c09eb67eb22986c68c0036c7015742b8e5

Scanner detections:
5 / 68

Status:
Clean  (5 possible false positive detections)

Analysis date:
6/22/2025 2:57:56 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Malware-gen
2014.9-151213

Bkav FE
W32.HfsAdware
1.3.0.7237

Dr.Web
riskware program Program.Unwanted.919
9.0.1.05190

F-Secure
Riskware.Application.Agent.KI
11.2015-13-12_1

Zillya! Antivirus
Adware.BrowseFox.Win32.121878
2.0.0.2453

File size:
5.3 MB (5,526,616 bytes)

Product version:
8.0.49.26236

Copyright:
© "LULU Software Limited" 2010-2015. All rights reserved.

Original file name:
PDF Installer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\soda pdf 8\installation\soda_pdf_8_installer.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/19/2014 8:00:00 PM

Valid to:
1/18/2017 6:59:59 PM

Subject:
CN=LULU SOFTWARE LIMITED, O=LULU SOFTWARE LIMITED, L=Ta'Xbiex, S=XBX, C=MT

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0768200E7F5A53461703AE577D989C30

File PE Metadata
Compilation timestamp:
12/10/2015 10:32:56 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:fOWDWGOABJ/Pv2yYjfLhk6eUpZrJKl/IKmh50WktTkAJIFbJKT9BR2IzHppIuK6o:nyov41dpTKWDyExo3RLemTTPFnOTj

Entry address:
0x9487E0

Entry point:
60, BE, 00, B0, 80, 00, 8D, BE, 00, 60, BF, FF, C7, 87, BC, F6, 59, 00, 95, 76, 47, C5, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB...
 
[+]

Entropy:
7.7884

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
5.2 MB (5,496,832 bytes)

Program Uninstaller
Program name:
Soda PDF 8

Display publisher:
LULU Software Limited

Display version:
8.0.49.26236

Uninstall string:
C:\ProgramData\Soda PDF 8\Installation\Soda_PDF_8_Installer.exe /uninstall


The file soda_pdf_8_installer.exe has been seen being distributed by the following 2 URLs.

Scan soda_pdf_8_installer.exe - Powered by Reason Core Security