iview440_x64_setup.exe

IrfanView 64-bit Installer

Irfan Skiljan

This is a setup and installation application.
Publisher:
Irfan Skiljan  (signed and verified)

Product:
IrfanView 64-bit Installer

Version:
4.4.0.0

MD5:
bad0909777212ccf5a17c05637a1135d

SHA-1:
a933c0201f6a45daf4c7a7f6efa674a6e394b5ad

SHA-256:
d8491f6532cb15b880161221eec70b34fa92285befcf3b3fdcc793ea4b587e18

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/2/2024 1:39:10 PM UTC  (today)

File size:
3.2 MB (3,332,960 bytes)

Product version:
4.4.0.0

Copyright:
Copyright © 2015 by Irfan Skiljan, Austria

Original file name:
iview440_x64_setup.exe

File type:
Executable application (Win64 EXE)

Language:
German (Austria)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/26/2013 1:00:00 AM

Valid to:
6/26/2016 12:59:59 AM

Subject:
CN=Irfan Skiljan, O=Irfan Skiljan, STREET=Postfach 48, L=Wiener Neustadt, S=NOE, PostalCode=2700, C=AT

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7163F67568A1E8577394D7EE0780BBB4

File PE Metadata
Compilation timestamp:
8/2/2015 3:18:17 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
49152:ee37F9Voj94VJkOVTLmbZhQmibqNzI+d69W2hMQV+uC11VztuOkuLytvKlFXCCZE:eep96jUJkOVfmFs8ItW2h3ML1VJ8QNZE

Entry address:
0x343F0

Entry point:
48, 83, EC, 28, E8, 0F, C3, 00, 00, 48, 83, C4, 28, E9, 02, 00, 00, 00, CC, CC, 48, 89, 5C, 24, 10, 48, 89, 74, 24, 18, 57, 48, 83, EC, 30, E8, 20, 8D, 00, 00, 0F, B7, F0, B9, 02, 00, 00, 00, E8, 9B, C2, 00, 00, B8, 4D, 5A, 00, 00, 48, 8D, 3D, CF, BB, FC, FF, 66, 39, 05, C8, BB, FC, FF, 74, 04, 33, DB, EB, 31, 48, 63, 05, F7, BB, FC, FF, 48, 03, C7, 81, 38, 50, 45, 00, 00, 75, EA, B9, 0B, 02, 00, 00, 66, 39, 48, 18, 75, DF, 33, DB, 83, B8, 84, 00, 00, 00, 0E, 76, 09, 39, 98, F8, 00, 00, 00, 0F, 95, C3, 89...
 
[+]

Entropy:
7.8912  (probably packed)

Code size:
297.5 KB (304,640 bytes)

The file iview440_x64_setup.exe has been seen being distributed by the following 19 URLs.

&onid=2192&oid=3001-2192_4-76444710&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=digitalphoto/photo-editors&topicbrcrm=&pid=14443958&mfgid=59333&merid=59333&ctype=dm&cval=NONE&devicetype=desktop&pguid=53a0cf5acac2d61698b0ef69&viewguid=ZJ64qLEHlCtAYN-Yyo7YihFzZ1RcyAeUCdgs&destUrl=http://files.downloadnow.com/s/software/14/44/39/.../iview440_x64_setup.exe

&onid=2192&oid=3001-2192_4-76444710&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=digitalphoto/photo-editors&topicbrcrm=&pid=14443958&mfgid=59333&merid=59333&ctype=dm&cval=NONE&devicetype=desktop&pguid=020b38d046e0e1b0c9a690f0&viewguid=ZER7KYBnQnFXgiy9qYMlRBxziXQQaMuH6yTj&destUrl=http://files.downloadnow.com/s/software/14/44/39/.../iview440_x64_setup.exe

https://mega.nz/persistent/.../ZMUyEKoC

&onid=2192&oid=3001-2192_4-76444710&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=digitalphoto/photo-editors&topicbrcrm=&pid=14443958&mfgid=59333&merid=59333&ctype=dm&cval=NONE&devicetype=desktop&pguid=1e78f8646ef939fadfd1c436&viewguid=ZCDUPpaDjS6LiFTK0W6c1p0wCP0w3yPUc9Vj&destUrl=http://files.downloadnow.com/s/software/14/44/39/.../iview440_x64_setup.exe

&onid=2192&oid=3001-2192_4-76444710&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=digitalphoto/photo-editors&topicbrcrm=&pid=14443958&mfgid=59333&merid=59333&ctype=dm&cval=NONE&devicetype=desktop&pguid=644ad9bdcd0c48aa9669bb06&viewguid=Y2bfDHfscipmCNnGX-jM4RbncH4KyeIhebyS&destUrl=http://files.downloadnow.com/s/software/14/44/39/.../iview440_x64_setup.exe

Scan iview440_x64_setup.exe - Powered by Reason Core Security