Sickrage windows installer - virus warning in Windows defender [Screenshot]


#1

Hello.

I tried to download sickrage today, but when I clicked on download, Windows defender went on a frenzy and blocked the download.
It says it is a trojan named Trojan:win32/Tiggre!plock

The text is in swedish, but it says it is a serious threat.

Is it safe to download and run, or what?


#2

I’m going to create a new installer so please hold off till I reply back later today


#3

same problem here today.
SR stoped to work after last update (again…) and I’d install it again but windows defender doens’t permit it.


#4

OK, new windows installer released, you can download from https://www.sickrage.ca/downloads/setup.zip


#5

Please let me know how it works out :slight_smile:


#6

Will try when I get home.

But an explanation would be appreciated, Virustotal reports both malware and coinminer.
Is it a false positive, or is the installer bundled with PUP?


#7

Reports that on what ?


#8

I just ran setup.zip through virus total and it comes back 100% clean
https://www.virustotal.com/#/file/3d763fd72c9caa3a454076a80418e56ad7a7748325daba4db8aa62a3849cb6bf/detection

Feel free to download the setup.zip from the website and run it you’re self as well, thanks!


#9

Hello.

Has the installer changed again?
VirusTotal reports malware and Miner.

To be fair, “only” 2 out of 69 AV-engines recognizes it.

https://www.virustotal.com/#/url/ac7625ec666f549e77b325e08d51b91f2c4d8c82dbc816adeea4e9d2badfb353/detection


#10

Setup was changed few weeks back as the previous engine used to create the installer was causing false positives, these 2 sites that still flag the new installer have yet to manually unflag based on URL.