xnview-win-full.exe

XnView

Pierre GOUGELET

The program is a setup application that uses the Inno Setup installer. This is installed with XnView 2.13. The file has been seen being downloaded from 123.briian.com and multiple other hosts.
Publisher:
Gougelet Pierre-e   (signed by Pierre GOUGELET)

Product:
XnView

Description:
XnView Setup

Version:
2.13

MD5:
c897288fa408992a148ecaba2c7c9f2f

SHA-1:
bce328036d13dffa23fa754cbec94d1b087d7ffa

SHA-256:
5ce2d104c224b2294e124bd3f43968cf8bcb7f775de6a57d64cc22a37671257d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:26:04 PM UTC  (today)

File size:
14.3 MB (14,995,648 bytes)

Product version:
2.13

Copyright:
Copyright © 1991-2013 Pierre-e Gougelet

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\xnview-win-full.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Subject:
CN=Pierre GOUGELET, O=Pierre GOUGELET, L=REIMS, C=FR

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
03BC4F9A5332DF7A49624ACB4418E652

File PE Metadata
Compilation timestamp:
6/20/1992 6:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:pbAon0h0yCBkHOhE462JKKf5ybLR25+Qb9NMLINM21TbEHgkfaVagxFZGAmu9Cpa:pL06BkEnboLydJVGHLBg7d0MdIxK

Entry address:
0x9B60

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 66, 95, FF, FF, E8, 6D, A7, FF, FF, E8, 98, C9, FF, FF, E8, DF, C9, FF, FF, E8, 0E, F3, FF, FF, E8, 75, F4, FF, FF, 33, C0, 55, 68, 17, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, E0, A1, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 02, FA, FF, FF, 8D, 55, F0, 33, C0, E8, C8, CF, FF, FF, 8B, 55, F0, B8, F0, CD, 40, 00, E8, 17, 96, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, F0, CD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
7.9993  (probably packed)

Code size:
37 KB (37,888 bytes)

The file xnview-win-full.exe has been discovered within the following program.

XnView 2.13  by Gougelet Pierre-e
Publisher's description - “XnView is a fast multi-format graphics browser, viewer, and converter. It can read more than 400 file formats, e.g. GIF, BMP, JPEG, PNG, TARGA, multipage TIFF, camera RAW, JPEG 2000, MPEG, AVI, QuickTime. EXIF and IPTC metadata are also supported.”
www.xnview.com
About 3% of users remove it
 
Powered by Should I Remove It?

The file xnview-win-full.exe has been seen being distributed by the following 6 URLs.

Scan xnview-win-full.exe - Powered by Reason Core Security