windjview-2.0.1-setup.exe

WinDjView Setup

Andrew Zhezherun

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Andrew Zhezherun

Product:
WinDjView Setup

Version:
2.0.1

MD5:
2382516e832213ec5afe3941bac1a3c4

SHA-1:
ae271bf8665f47a6175caa8d890173219c815041

SHA-256:
c5364129a6ab86229ef369b2fe57f806e14682551f33b47146d4393d5d55eec1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:07:20 PM UTC  (today)

File size:
14.2 MB (14,940,386 bytes)

Product version:
2.0.1

Copyright:
Copyright (C) 2004-2012 Andrew Zhezherun

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
12/5/2009 3:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:Agj9QaMf2oMLOBQHQl2sfsHBdVsP3p7fmW17Rp1aaODDfP:AA9dwQHQRCdoZ7T7kDfP

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9998

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file windjview-2.0.1-setup.exe has been seen being distributed by the following 50 URLs.

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1474438024&Signature=JGU2LYK3zPViC2Ia7HYf0r2-VdyvauEu3dX7KH35dtTIeoY3c5WHF~WdGJ~k-Ibc0cgeOuxvNOG1ZpSaERw2Fr3Y5xftojfcdyL4lb6~33NUM9D~APAgWLiFQ4xVZ9T~Di~OqT6c4GQG3VpUopNx9euRVeeqQaYNwtsK45ltZo8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

https://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlVQF/kAGRosVxISPTro2GRO9 IeYkLIo64SLYG6m2dmIAw1uRe4i4Fl62bvnYg1Gwacl5ryX/DhdSqPIH5h0pVUd38RFsNt7DKoh912H2MO3C2mDHMBYxhIjfLwZu Ixt9E8eLrb0z/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

http://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlWUhnLt/ljPfVvMaSpYVNJeWEQUaPVZ8zNix7ZFIqiRgS3NaVHmZ1SL6f6VXIShO4zogIBQ1M9 Apgi8BpI K4EWUA2Gi/XtOk1LzraH4R4bvrJPZ685lJcs8TGsquSoa3x749CI0rlrULxWqfhrZvlWCTzVcaAqZ nZciHRymR9rssyKMrK0CYRB3nNoIxB8Zn5w3PdbRzsdL2LJsykRZ5S3ySBOcSgS0Hc6kyiWf4NL/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

https://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlUsTAqxOYughmpb5Ndlirdw27IGZrpJZMMlLZ/sgcockO0k55FcwrpqNHN5eIUxTD4VsJj3xsoxCho/eVsiOyg0A1mN8V2PaRDfgRr5pgOPUfqlFGhiv2N BCjWxLhGe1ccTaq9DoFlzkMXCMPXMR4kB F9rVkID5skOQsRAh1OdRl4hL SbZNJRZZtlkIZTNi7OLUiP3wSijfPhjM95DJSZ/oNTvQCr16/dZXsKx5rABYS3izvQ/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

http://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlXzmVkh64M9UpuyYVO4oF2ogEL9mCh0ob/4IVO7at7Jl0NndIExwcjfHgpQTP0/3XbjOhBtW7MsLjxq6NLiU osqjGSmbPNIVa PLCvmXDZg4g3yDtsQtFVdO8AqZq/FuzcU8L4M/O6CvtVFQPZGqYCpndAI09zdSYuWvbPjLa/ycPtiEkAo2u1eOXGcNMUGpevg0uI3MF1Plr ipftVrixUq2/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1458278054&Signature=N8vSR7LtMKiCprFptPIjCxYOkEluvyhX-wPPnVjAb~81JyaclkRdyVq-vWZS3LQZ1BrxsCDGRZqrWQ0iWYdKd7qTrjny6~t8KVzdnfXKYAVXpMnHtSlIGJvVV8UsyatjNmorsK2qoHyjs9YFk9yPa8R1rY9M4DzYSlujMKKkAtU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_es&type=PROGRAM&Expires=1425415460&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=VqZnL0V2k4pOp~3FyijIf4qJJbKgdDx~HP92dUh4S5MvVMNv78-VmlT9YltWvWwxkZIf4VInAAMVyM4Z5XxIG8ajHUHzvzpC2ESP0IO2n9yvdc7-uzCve~ZwHnRnLcYK-g5qJomqRPLv5cGpbjUOGhuWOxy4yxi0UdgSxuUZveU_&filename=WinDjView-2.0.1-Setup.exe

https://download17.files.attachmail.ru/EC68DF58CC0A454D845B5BCF1C92C339/.../WinDjView-2.0.1-Setup.exe

http://windjview.softonic.com/download-tracker?th=8yS3 KGEYLiw7GKMHzA/trmsvRChbxdrflJq3ZIylWs4HDnapeQKyPmSb/0rX7OLeoTIFjQK2fTLrcXIhc1UWkZNQFkUvA42Xazzc e24vVtk0DzWK7obYfJpW4eVoOijmEV ECTZzj/URWlt/k/bq0SiXRe/zBrxO31WCpgGyo abh6YXMp8sQujcaGvj7mQPDRx491V quVUZK6ksA68Ez4JHHHrJRtVJAZ1rwa0uzKdyzMypYqlHAkdPTJikoJ3TV4GoNUjAsLEKDLx0zvYoeaQwBXMMWuRK7LaCUugwcRt/RKbK 8jro4AnV2ux/JvtOH3nzljKywg4AoHgkz3VK8T7jd GNvgfYVdDGaIA4bq9mRN79UrkovD2ZgG8WzrwUvfY0HJV9Avl3SWRf1nC/CbrbNRvolHbLRf8Y3KPr/uwzAEKC7 Ud 5/QqDOw/.../kdvle1dK5D WMY3lyY6GI8kKmpzeCXd4BanBg616D08xBVN37r6TcQ=

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1474332924&Signature=CAhM1tYra1lTWsxse5q6WpK9dIXkwVN0C-9ee864k8nNjt1~34JZRUgojLyJxiWvYTWHR6DDcicO1u2Dty6IaGg2ivbKCKKHXMg0QTv9MIt9kHEqhbemjfG4rsV5hpVX-1Kv9toP08xrWsr9tcbPPc4OVZupOgDDHPjUHHf0q5E_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1476666054&Signature=QcGA1j5TYegmJTs~EoRkhzjhfiwgDrfOx~D0XxUucs7n5ciMSj84XSP799-iZhcJBQ-DQfXwFxRnUsusxrJPI-Tk~Dcx0v3KI59MG~LlZLez5xlvPaAjHgN8KcxItLfyPa0dZB6k5dmfIDa6ticDGompuqhHkNMYOy92wQBN9vY_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlWfHfqlnuVCDePuxH9otBmS9xw4KNZ6STqdEaLpVNBXzmSrKjq6lp/cDaxyanbffu1 gIeG6Elg1A39zj1zaL8swiRdc5bDYVOpqBt2Pl6pwJWereZjN0saZg exaZNTdsEeXaSjBzwS9gYPXIXmvUB/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

https://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlXr6g6tb3BSfSSkjeNxTlRDJoqHjkj4rRoR0gJYLTFUwjAIHL5ZA7V3V62noInSk7ugZdf46/S3pXk5a/F/2xbya6eyJ6vklHvdDhJzblqzpIhz f hFjy1NpU/7aQMucFDD1FKR/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

http://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlUu61mML3zZ4tbLcmd991 RqMxVNjONgEuEB0BbgNk0kquegronuwakBO YynxUWcgawVRpRLnPUo7hMJQRU33bWUg5LQ3KuXfG449Qld9KIEcF6MZCu/7rbnddZl67Kk4WzYiJip7O7U7G1ifVnVnV6vvwdKVwuumea JW8rrZcwx4K6D64e8BbjLcnvlMwz2QaWTruxwejKAeNOJT0ltR/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

http://windjview.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOMniWtY23bPMLtVDpOQtw5wkTj3zREAbNtoxdSF Aj H mcsF0JElOHLEvcLc2p/wpWOnyVNayENMoMK9Lhq81IYheJ3A2XM1/96XNJnwqyHXVoojr2Sy84ylC5m5RdJpqtrIzLMwi/HtQLckan3BKE523zXEKOMyFIp7xsJ6qRI6AQPBNmRcX46MS064tAxgolUSCxncW40 6EiZrqFW8cBPWu3vtoz4Lp4a5uOgmrisykwROySkzbP6ZZz51nlWRisgZ7Ia1wAsO6Boot ORTy575Y wvkL9ow47DOJ9Mro4TSsswD9il9MSRXC8C3GyNwBoviXDfFDH81s jnB2nSmH7UL1Y3NR/o22zxKu5W7Pt8q3p6Xnmw9jrcc TeAR4NLBCkkPXI024emqVtoU R29SCPsgq5cnFuUI2ps5o/H1iGsL6BUhU8WJpFaSwiT1/ tqRq6Af20Kbi1kjEL/UgEx/.../9cqx7RQEtdM4mFKBnyLGmbZqugTPUjm6EQ3sLkEzRA6yMN8ho32pF0hrxU3gEuo9 YpI=

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1444699451&Signature=DR6WeCpXEZ5xmdgdDesfLfAfI-KahHBV07QOT26EQGZHm-jm3fm4ZClR-alGEoZW6Vr1aSqvW6jAA7V8HsXSb-j6kG4rHj7oraw17LhC0ylQyEHkEOwKZ1EiSQJNu9YcdtPhk1SZCGRLFYHo9Sy3sc5rMKxf6Gmo7cS1kjqnfno_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1426573578&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=f693fyOqJYv5j9idD8cU7yOezgmd-869ZIhJmTKn4IoSvDaxDC1kfjy3r3lMHGSUdCo-~VFFUtVsiX5rf34AED46~AMJZGMojARMKjyjOzrVNe668Zaoh2gHd~3h~H~1daNiZlMaWna5DCqee5aM9nq0DNuoGR7CRe5OTQg8qOQ_&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1448949549&Signature=a9Q60HAfTi3sT54aSxSV-BRX8Cw~7eXvpWh1PxSE6iYehqypEq0tDslnmzXi1HuWjuZRi7vzVVxkztjJiArgAnUe0iIABptoBVkNob91nYUNu308RUvBRaOhNw6oGKI21LLNy61u6mqfAAMZdksfF2akfaRJTimlMWMo2MYDUuE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1450292455&Signature=a9TmaXmMdi9RqGAqXclQYjlGkSqYRN3QL9rlVkcfubTFSZxf6uhbQPGqadpX68g3xEmMVty3rl-a2fFGh0qEkOVkVcUkI~TJRmnjnc1cq4WxYWPvwQWIdkDiKQo-bMzkoCd1u-SKiKgLXsKeOvIaWI9wSUoF1uIBQfc3LT-o5lo_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1476924500&Signature=RYcPRoi3suDB5e7u-f0Rxfzeom2CyVW99X-Yz1oJ35CRxV7Rt0xEOEzcTkX~c9xQ7DUPkI~MoSC-clvTRExz~tvUBMKsg14LyQXwSXNZstlf-phoXkWFRySJMm1S4SWSWYAts9WQHSNlcPoliBKrAh0O~DfPlNb7Th~pno-cOzw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://gsf-cf.softonic.com/ae2/71b/.../file?SD_used=0&channel=WEB&fdh=no&id_file=86101&instance=softonic_en&type=PROGRAM&Expires=1449013464&Signature=YCIUCgUp5~eXfv0aZXk4lTQVBGcov1XQbNn6mUSksCuwxct44E1dN8i~Ojk1GBehJRGiQGUEUHM0wtjmIxTl1vRUkc48N5gKNnYuRPrzw3U2I~QypOiuDSMY-UWr2aKHTwmO7moag6jiZEuvOiMFKxeRFllmD59WoZBncsqL4qw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=WinDjView-2.0.1-Setup.exe

http://moodle.fil.bg.ac.rs/mod/.../view.php?id=18388

Latest 30 of 56 download URLs

Scan windjview-2.0.1-setup.exe - Powered by Reason Core Security