Help and Support
Ask a question, report a problem, request a feature...
<<  Back To Forum

New version ???

by Guest on 2015/10/16 09:54:42 AM    
Here is a good question after the new update why is this showing up as a virus, when all in the past it never did?

Just started doing tonight, after it asked me to update, i actually tried all links. with same result.
by Guest on 2015/10/16 01:02:18 PM    
just check the file signature (right-click and go to properties) and make sure it's signed by Tixati Software Inc.

false positives happen for anti-virus software all the time, some brands are better than others

i had no problems no alerts for 2.23, and it runs perfectly for me
by Guest on 2015/10/16 10:27:06 PM    
I have down loaded it directly from their site, that is what i don't understand.


Each mirror site gives the same error message, which it never did before.
by Guest on 2015/10/16 11:37:11 PM    
Please re-read the first reply and try to think about it more intensely.  Some anti-virus have false alarms, do you understand?  He even told you how to make sure the file was the right one, just to be safe.

You can even be more safe:

Go to virustotal.com, click URL tab, and enter in any of the tixati download links.  It checks against 65 different anti-virus.  NONE of them report a problem.  Not a single one.  So that looks pretty good to me.

Right click the file you've downloaded, and check the signature in the properties.  IF the Authenticode signature checks out as being signed by Tixati, it came from them, you're good to go, end of discussion.

From virustotal, https://www.virustotal.com/en/url/11923c0be50ae7c2620f55d996abc1b1c1a57bc5789beac895eca8b67a65b14d/analysis/
URL: http://download1.tixati.com/download/tixati-2.23-1.win64-install.exe
Detection ratio: 0 / 65
Analysis date: 2015-10-16 21:24:20 UTC ( 4 minutes ago )

URL Scanner Result
CloudStat Clean site
ADMINUSLabs Clean site
AegisLab WebGuard Clean site
AlienVault Clean site
Antiy-AVL Clean site
Avira Clean site
Baidu-International Clean site
BitDefender Clean site
Blueliv Clean site
C-SIRT Clean site
CLEAN MX Clean site
CRDF Clean site
Comodo Site Inspector Clean site
CyberCrime Clean site
Dr.Web Clean site
ESET Clean site
Emsisoft Clean site
Fortinet Clean site
FraudScore Clean site
FraudSense Clean site
G-Data Clean site
Google Safebrowsing Clean site
K7AntiVirus Clean site
Kaspersky Clean site
Malc0de Database Clean site
Malekal Clean site
Malware Domain Blocklist Clean site
MalwareDomainList Clean site
MalwarePatrol Clean site
Malwarebytes hpHosts Clean site
Malwared Clean site
OpenPhish Clean site
Opera Clean site
PalevoTracker Clean site
ParetoLogic Clean site
Phishtank Clean site
Quttera Clean site
Rising Clean site
SCUMWARE.org Clean site
SecureBrain Clean site
Spam404 Clean site
SpyEyeTracker Clean site
Sucuri SiteCheck Clean site
Tencent Clean site
ThreatHive Clean site
Trustwave Clean site
VX Vault Clean site
Web Security Guard Clean site
Websense ThreatSeeker Clean site
Webutation Clean site
Wepawet Clean site
Yandex Safebrowsing Clean site
ZCloudsec Clean site
ZDB Zeus Clean site
ZeroCERT Clean site
Zerofox Clean site
ZeusTracker Clean site
malwares.com URL checker Clean site
zvelo Clean site

The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Publisher Tixati Software Inc.
Signature verification Signed file, verified signature
Signing date 10:36 PM 10/15/2015
Signers
[+] Tixati Software Inc.
[+] StartCom Class 2 Primary Intermediate Object CA
[+] StartCom Certification Authority
Counter signers
[+] GlobalSign TSA for MS Authenticode - G2
[+] GlobalSign Timestamping CA - G2
[+] GlobalSign
Packers identified
F-PROT UPX
PEiD UPX 2.90  -> Markus Oberhumer, Laszlo Molnar & John Reiser
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2015-10-15 21:28:56
Entry Point 0x01F9C300
Number of sections 3
PE sections
Name Virtual address Virtual size Raw size Entropy MD5
UPX0 4096 20213760 0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 20217856 12931072 12928512 7.89 2de6836ec3c5fff460f17b802dfc8e43
.rsrc 33148928 81920 79360 7.34 52ef23350c7001b6651202ff67ffe551
Overlays
MD5 8d7ce164d408b00c6f9809cc207640ca
File type data
Offset 13008896
Size 7280
Entropy 7.46
PE imports
[+] ADVAPI32.dll
[+] GDI32.dll
[+] KERNEL32.DLL
[+] OLEAUT32.dll
[+] SHELL32.dll
[+] SHLWAPI.dll
[+] USER32.dll
[+] WINSPOOL.DRV
[+] comdlg32.dll
[+] ole32.dll
[+] oledlg.dll
Number of PE resources by type
RT_CURSOR 16
RT_GROUP_CURSOR 15
RT_STRING 13
RT_ICON 8
RT_DIALOG 7
BINFILE 4
RT_BITMAP 3
RT_MANIFEST 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 68
ExifTool file metadata
MIMEType
application/octet-stream

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

TimeStamp
2015:10:15 22:28:56+01:00

FileType
Win32 EXE

PEType
PE32

CodeSize
12931072

LinkerVersion
8.0

FileTypeExtension
exe

InitializedDataSize
81920

SubsystemVersion
4.0

EntryPoint
0x1f9c300

OSVersion
4.0

ImageVersion
0.0

UninitializedDataSize
20213760




This web site is powered by Super Simple Server