| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2025-May-12 09:09:32 |
| Detected languages |
English - United States
German - Austria |
| Comments | IrfanView 32-bit Installer |
| CompanyName | Irfan Skiljan |
| FileDescription | IrfanView 32-bit Installer |
| FileVersion | 4.72.0.0 |
| InternalName | IrfanView 32-bit Installer |
| LegalCopyright | Copyright © 2025 by Irfan Skiljan, Austria |
| OriginalFilename | iview472_setup.exe |
| ProductName | IrfanView 32-bit Installer |
| ProductVersion | 4.72.0.0 |
| Info | Matching compiler(s): | Microsoft Visual C++ 6.0 - 8.0 |
| Info | Interesting strings found in the binary: |
Contains domain names:
|
| Info | Cryptographic algorithms detected in the binary: | Uses constants related to CRC32 |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Suspicious | The PE is possibly a dropper. | Resources amount for 89.7367% of the executable. |
| Info | The PE is digitally signed. |
Signer: Irfan Skiljan
Issuer: Certum Code Signing 2021 CA |
| Safe | VirusTotal score: 0/72 (Scanned on 2026-03-20 05:00:05) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0x100 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 5 |
| TimeDateStamp | 2025-May-12 09:09:32 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 12.0 |
| SizeOfCode | 0x3ca00 |
| SizeOfInitializedData | 0x32ba00 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00020C3B (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x3e000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 5.1 |
| ImageVersion | 0.0 |
| SubsystemVersion | 5.1 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x36b000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0x373c71 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| KERNEL32.dll |
GetVolumeInformationW
ReadFile SetEndOfFile SetFilePointer WriteFile GetCurrentProcess FindResourceExW SetErrorMode FileTimeToLocalFileTime GetFileAttributesExW GetFileTime LocalFileTimeToFileTime SetFileTime CreateDirectoryW GetLocalTime SetEnvironmentVariableW SetCurrentDirectoryW IsDebuggerPresent IsProcessorFeaturePresent RtlUnwind ExitProcess GetModuleHandleExW HeapQueryInformation GetStdHandle GetStartupInfoW QueryPerformanceCounter GetSystemTimeAsFileTime GetEnvironmentStringsW FreeEnvironmentStringsW UnhandledExceptionFilter SetUnhandledExceptionFilter TerminateProcess IsValidCodePage GetOEMCP GetCPInfo GetDriveTypeW GetConsoleMode ReadConsoleW GetConsoleCP GetStringTypeW SetFilePointerEx GetTimeZoneInformation OutputDebugStringW LCMapStringW SetStdHandle WriteConsoleW SetEnvironmentVariableA DosDateTimeToFileTime GetFullPathNameW FlushFileBuffers FindFirstFileW FindClose CreateFileW DeleteFileW GetCurrentDirectoryW GetUserDefaultUILanguage GetSystemDefaultUILanguage GetLocaleInfoW CompareStringW LocalReAlloc LocalAlloc GlobalHandle GlobalReAlloc TlsFree TlsSetValue TlsGetValue TlsAlloc FileTimeToSystemTime InitializeCriticalSection GlobalFlags WaitForSingleObject CloseHandle VirtualProtect GetPrivateProfileIntW lstrcmpA GetCurrentThread GlobalFindAtomW GlobalAddAtomW LoadLibraryA lstrcmpW GlobalDeleteAtom LoadLibraryExW LoadLibraryExA GetCurrentThreadId LeaveCriticalSection EnterCriticalSection EncodePointer FormatMessageW LocalFree GlobalFree GlobalAlloc GlobalUnlock GlobalLock GetCurrentProcessId SetLastError OutputDebugStringA GetACP Sleep FreeResource GetModuleHandleA LockResource GetTempPathW WritePrivateProfileStringW MultiByteToWideChar GetModuleFileNameW GetVersionExW SizeofResource GetPrivateProfileStringW MoveFileExW LoadResource FindResourceW GetDateFormatW GetEnvironmentVariableW GetProcAddress GetSystemDirectoryW GetModuleHandleW GetCommandLineW lstrcpyW GetWindowsDirectoryW WinExec lstrcatW lstrlenW LoadLibraryW WideCharToMultiByte FreeLibrary DeleteCriticalSection DecodePointer HeapSize GetLastError RaiseException MulDiv InitializeCriticalSectionAndSpinCount GetProcessHeap HeapFree HeapAlloc GetFileType HeapReAlloc |
|---|---|
| USER32.dll |
SetPropW
GetPropW RemovePropW GetWindowTextW GetWindowTextLengthW AdjustWindowRectEx MapWindowPoints GetClassLongW GetClassNameW GetTopWindow GetWindow SetWindowsHookExW UnhookWindowsHookEx CallNextHookEx WinHelpW MonitorFromWindow GetMonitorInfoW ShowWindow SetDlgItemTextW GetDlgItemTextW IsDlgButtonChecked SendDlgItemMessageW SetWindowTextW IsDialogMessageW PostQuitMessage GetAsyncKeyState MapDialogRect GetMessageW TranslateMessage GetCursorPos CreateDialogIndirectParamW EndDialog GetNextDlgTabItem RealChildWindowFromPoint GetSysColorBrush DestroyMenu CharUpperW ValidateRect GetForegroundWindow SetActiveWindow SetMenu GetMenu GetCapture GetKeyState SetFocus GetDlgCtrlID GetDlgItem IsWindowVisible SetWindowPos DestroyWindow CreateWindowExW GetClassInfoExW GetClassInfoW RegisterClassW CallWindowProcW DefWindowProcW PostMessageW GetMessageTime PeekMessageW DispatchMessageW RegisterWindowMessageW GetMenuItemCount GetMenuItemID GetSubMenu ClientToScreen EndPaint BeginPaint TabbedTextOutW GrayStringW DrawTextExW DrawTextW CopyRect GetLastActivePopup GetWindowLongW LoadBitmapW SetMenuItemInfoW GetMenuCheckMarkDimensions SetMenuItemBitmaps EnableMenuItem CheckMenuItem GetFocus SendDlgItemMessageA FillRect DrawIcon RedrawWindow SetForegroundWindow FindWindowExW IsWindowEnabled LoadIconW SystemParametersInfoW GetActiveWindow MessageBoxW GetSystemMetrics UpdateWindow FindWindowW LoadStringW SetCursor SetTimer ScreenToClient GetWindowRect KillTimer GetParent LoadCursorW MessageBeep GetClientRect PtInRect GetDC InflateRect CopyIcon InvalidateRect ReleaseDC SetWindowLongW GetDesktopWindow GetSysColor IsWindow SendMessageW EnableWindow UnregisterClassW GetMessagePos GetWindowThreadProcessId |
| GDI32.dll |
ExtTextOutW
CreateSolidBrush Escape GetClipBox PtVisible RectVisible RestoreDC SaveDC SelectObject SetBkMode SetMapMode SetTextColor TextOutW SetViewportExtEx SetViewportOrgEx SetWindowExtEx OffsetViewportOrgEx ScaleViewportExtEx ScaleWindowExtEx EnumFontFamiliesExW SetBkColor DeleteObject CreateBitmap GetTextExtentPoint32W CreateFontIndirectW GetObjectW GetStockObject DeleteDC CreateDCW GetDeviceCaps |
| ADVAPI32.dll |
RegSetValueExW
RegEnumValueW RegEnumKeyW RegDeleteValueW RegCreateKeyExW RegQueryValueW RegDeleteKeyW RegQueryValueExW RegSetValueW RegCreateKeyW RegCloseKey RegOpenKeyExW |
| COMCTL32.dll |
InitCommonControlsEx
|
| WINSPOOL.DRV (delay-loaded) |
DocumentPropertiesW
OpenPrinterW ClosePrinter |
| Attributes | 0x1 |
|---|---|
| Name | WINSPOOL.DRV |
| ModuleHandle | 0x56538 |
| DelayImportAddressTable | 0x53598 |
| DelayImportNameTable | 0x4e32c |
| BoundDelayImportTable | 0x4e4cc |
| UnloadDelayImportTable | 0 |
| TimeStamp | 1970-Jan-01 00:00:00 |
| &Exit |
| &Done |
| Exit setup? |
| IrfanView Setup |
| Invalid destination directory! |
| Destination directory |
| Can't install all files! |
| Please close all running IrfanView instances and check your destination directory for free space or write protection! |
| (the installer should be started in ADMIN mode, use e.g. right mouse button click on installer) |
| Installation folder: |
| You want to change current associations and to associate one or many file types with IrfanView! |
| Are you REALLY sure!? |
| Warning: IrfanView is running! |
| Please close all IrfanView instances before you install this version! |
| Can't create destination directory! |
| Please check your write permissions and system policies! |
| Try to create the destination folder manually and restart. |
| Connected to %1 |
| Resolving name: %1 |
| Resolved name to %1 |
| Connecting to %1 |
| Redirecting to %1 |
| Getting file information |
| An error occurred parsing the url: %s |
| An error occurred while attempting to download the file, Error:%1 |
| An error occurred connecting to the server, Error:%1 |
| Failed to receive a valid response from the server |
| Failed to receive a valid HTTP response from the server |
| An error occurred while downloading the file, Error:%1 |
| %1% of %2 Completed |
| Retrieving the file |
| %1 of %2 |
| %1 sec |
| %1 min |
| %1 min %2 sec |
| %1 Bytes |
| %1 KB |
| %1 MB |
| %1 (%2 copied) |
| %1 Bytes/Sec |
| %1 KB/Sec |
| An error occured while opening the file to be downloaded, Error:%1 |
| Aborting transfer |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 4.72.0.0 |
| ProductVersion | 4.72.0.0 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | German - Austria |
| Comments | IrfanView 32-bit Installer |
| CompanyName | Irfan Skiljan |
| FileDescription | IrfanView 32-bit Installer |
| FileVersion (#2) | 4.72.0.0 |
| InternalName | IrfanView 32-bit Installer |
| LegalCopyright | Copyright © 2025 by Irfan Skiljan, Austria |
| OriginalFilename | iview472_setup.exe |
| ProductName | IrfanView 32-bit Installer |
| ProductVersion (#2) | 4.72.0.0 |
| Resource LangID | German - Austria |
|---|
| Size | 0x48 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x450550 |
| SEHandlerTable | 0x44bbf0 |
| SEHandlerCount | 107 |
| XOR Key | 0x8b248afe |
|---|---|
| Unmarked objects | 0 |
| C objects (VS2013 UPD5 build 40629) | 13 |
| C++ objects (VS2008 SP1 build 30729) | 1 |
| C objects (VS2008 SP1 build 30729) | 9 |
| Imports (VS2008 SP1 build 30729) | 13 |
| Total imports | 515 |
| ASM objects (VS2013 build 21005) | 26 |
| C objects (VS2013 build 21005) | 181 |
| C++ objects (20806) | 74 |
| C++ objects (VS2013 build 21005) | 62 |
| 229 (VS2013 UPD5 build 40629) | 6 |
| Resource objects (VS2013 build 21005) | 1 |
| Linker (VS2013 UPD5 build 40629) | 1 |
No comments yet.