tixati-2.47-1.win32-install.exe

Tixati Software Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from download3.tixati.com and multiple other hosts.
Publisher:
Tixati Software Inc.  (signed and verified)

MD5:
391182149386ba968b8fbae86959770d

SHA-1:
bf611cf9a6818fa42736fc0b247672d30d0e8318

SHA-256:
7ba5b8d7036447d7c1ea6b1b8d003dd18b10b44cc9fa283d5999cd7f7821561a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:52:45 AM UTC  (today)

File size:
12.7 MB (13,359,768 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\tixati-2.47-1.win32-install.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/26/2016 5:00:00 PM

Valid to:
4/27/2017 4:59:59 PM

Subject:
CN=Tixati Software Inc., O=Tixati Software Inc., POBox=M5E 1W7, STREET=1 Yonge Street Suite 1801, L=Toronto, S=Ontario, PostalCode=M5E 1W7, C=CA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
6E6A65E8390481F174C5E393961B9619

File PE Metadata
Compilation timestamp:
9/27/2016 11:48:21 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:RG8gS4ZsfEhO59vjdYUVgpmtr5O8UzExA8fe:ES4ZseA9vZYuFPYExA8fe

Entry address:
0x1B1E8

Entry point:
E8, 3E, 54, 00, 00, E9, 17, FE, FF, FF, 3B, 0D, F0, EE, 43, 00, 75, 02, F3, C3, E9, BE, 54, 00, 00, B8, 48, EC, 43, 00, C3, A1, A0, 4C, 44, 00, 85, C0, 56, 6A, 14, 5E, 75, 07, B8, 00, 02, 00, 00, EB, 06, 3B, C6, 7D, 07, 8B, C6, A3, A0, 4C, 44, 00, 6A, 04, 50, E8, D5, 55, 00, 00, 85, C0, 59, 59, A3, 94, 3C, 44, 00, 75, 1E, 6A, 04, 56, 89, 35, A0, 4C, 44, 00, E8, BC, 55, 00, 00, 85, C0, 59, 59, A3, 94, 3C, 44, 00, 75, 05, 6A, 1A, 58, 5E, C3, 33, D2, B9, 48, EC, 43, 00, EB, 05, A1, 94, 3C, 44, 00, 89, 0C, 02...
 
[+]

Entropy:
7.9910  (probably packed)

Code size:
196 KB (200,704 bytes)

The file tixati-2.47-1.win32-install.exe has been seen being distributed by the following 10 URLs.

https://download3.tixati.com/.../tixati-2.47-1.win32-install.exe

http://www.filehorse.com/download/file/.../

http://filehippo.com/download/file/.../

http://www.tamindir.com/indir/MjAxNi0xMC0xMyAyMjowNDozOA==/tixati/windows/.../

http://filehippo.com/download/file/.../

http://filehippo.com/download/file/.../

https://download2.tixati.com/.../tixati-2.47-1.win32-install.exe

http://filehippo.com/download/file/.../

https://download1.tixati.com/.../tixati-2.47-1.win32-install.exe

http://dl3.vessoft.com/files2/t/tixati_windows/2.47/.../tixati-2.47-1.win32-install.exe

Scan tixati-2.47-1.win32-install.exe - Powered by Reason Core Security