viewhack

Torrent file viewer: what a .torrent will download, before you open it

Drop a .torrent file to see every file it will put on your disk, with sizes, before a torrent client touches it. You also get the info hash (SHA-1, and SHA-256 for v2 torrents), a magnet link to copy, the trackers and web seeds, the private flag, who made it and when, and a warning for programs, double extensions and "video" releases with no video in them.

The file is read on your device. Nothing is uploaded, and no tracker, peer or DHT node is contacted.

What it shows

The warnings, and what they mean

WarningRaised forWhy it matters
Program or script.exe .scr .bat .cmd .msi .js .vbs .lnk, and .pif .ps1 .vbe .jse .wsf .hta .cplOn Windows, opening any of these runs code with your permissions. Normal in a software download; a red flag in a film, album or e-book.
Double extensiona name such as Film.2024.1080p.mp4.exe or song.mp3 .scrWindows hides known extensions by default, so the file shows as Film.2024.1080p.mp4 with a video-like icon chosen by its maker.
Disguised namean invisible right-to-left override (U+202E) or other bidi control in a nameMovie[U+202E]4pm.exe displays as Movieexe.mp4: the letters after the control are shown backwards.
Unsafe path.., an empty part, a drive letter or a slash inside a nameWritten as is, the file would land outside your download folder. Current clients refuse or rename these.
No video in a video releasea torrent named with 1080p, 720p, 2160p, x264, x265, HEVC, WEB-DL, BluRay, HDTV or S01E02 that holds no .mkv, .mp4, .avi, .mov, .wmv, .webm, .ts, .m2ts, .mpg, .vob or .isoThe classic fake: a "new film" that is really a password-protected archive, a "codec" installer or a link to a "player" site.

A torrent with no warning is not proven safe: an .mkv can still be the wrong film, and a .pdf or .docx can carry its own exploit. The warnings catch the cheap tricks that make up most fakes.

A worked example: Arch Linux's install image

The torrent archlinux-2026.09.01-x86_64.iso.torrent from archlinux.org is 87,307 bytes. It opens as one file, archlinux-2026.09.01-x86_64.iso, of 1,608,286,208 bytes (1.50 GB), split into 3,068 pieces of 512 KB. Its v1 info hash is f45add9d1a5185d8588df7dd6cd89993dd0174fa, the same hash as the magnet link on Arch's download page, which is how you know the file you have is the one Arch published. It lists no tracker at all: clients find peers through the DHT, and through 468 web seeds, which are Arch's ordinary HTTPS mirrors. It was made by mktorrent 1.1 on 2026-09-01 at 17:12 UTC, and raises no warning.

Most of those 87 KB are the piece hashes: 3,068 SHA-1 hashes of 20 bytes each, 61,360 bytes, which is why a .torrent for a large file is still small. A v2 torrent keeps per-file SHA-256 hash trees instead, so the same file gets a v2 hash that has nothing in common with its v1 hash.

What this cannot do