HitmanPro.ALERT Support and Discussion Thread

Discussion in 'other anti-malware software' started by erikloman, May 25, 2012.

  1. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Of course, just as Alert 3 is compatible with EMET 4.1.
     
  2. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    Joined:
    Dec 22, 2009
    Posts:
    4,872
    Location:
    Outer space
    Does EMET 5.1 already fix the incompatibility with CTP4, or do we need to wait for the RC?
     
  3. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Its best to wait for RC for full compatibility. Its already running in our internal builds.
     
  4. JohnMiller

    JohnMiller Registered Member

    Joined:
    Nov 6, 2014
    Posts:
    49
    I went to check out a separate issue I was having and took a look at the event viewer and hitman pro was constantly spitting the same error.

    Seems like it is a audio driver
    Windows 7 64x
    HP PC

    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
    - <System>
    <Provider Name="HitmanPro.Alert" />
    <EventID Qualifiers="0">600</EventID>
    <Level>2</Level>
    <Task>9</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2014-11-12T13:53:22.000000000Z" />
    <EventRecordID>16979</EventRecordID>
    <Channel>Application</Channel>
    <Computer>++++++</Computer>
    <Security />
    </System>
    - <EventData>
    <Data>C:\Windows\System32\audiodg.exe</Data>
    </EventData>
    </Event>

    Keeps doing this but I cannot find any noticeable effect.
     
  5. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    Joined:
    Dec 22, 2009
    Posts:
    4,872
    Location:
    Outer space
    Ok, thanks.

    I got a Blue screen on computer shutdown from HMPalert.sys
    Win7SP1 32 bit, other security software: WSA 8.0.5.107, DefenseWall PF 3.24, EMET 4.1 Update 1.
    Sending you the minidump through WeTransfer.
     
  6. DX2

    DX2 Guest

    After installing HMPA and clean up with SlimCleaner, HMPA intercepts and staying SlimCleaner is attacking files. My browser isn't open.
     

    Attached Files:

  7. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    SlimCleaner is encrypting and then deleting files. If you are using SlimCleaner, please turn of CryptoGuard because it detects the encrytion of the files before they are deleted.
     
  8. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Wrote you a PM.
     
  9. DX2

    DX2 Guest

    Thanks for the quick reply.
     
  10. DX2

    DX2 Guest

  11. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
  12. DX2

    DX2 Guest


    Thanks Peter, saved me again! lol
     
  13. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    Glad I could help, sorry I didn't have the exact page.
     
  14. JohnMiller

    JohnMiller Registered Member

    Joined:
    Nov 6, 2014
    Posts:
    49
    Any reason zemana antilogger would conflict with CPT 4? Would it be possible to add truecrypt support for the anti-keylogger functionality of hitman?
     
  15. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    Hi John

    The zemana anti logger is sort of reduntant with CPT 4. And yes I have truecrypt protected by HMPA

    Pete
     
  16. JohnMiller

    JohnMiller Registered Member

    Joined:
    Nov 6, 2014
    Posts:
    49
    Thanks pete. So is truecrypt being implemented or is there a way to add it?

    Thanks
    John
     
  17. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    It's simple. Open Truecrypt. Then open the HMPA GUI, select mitigation, and select running applications. Select truecrypt, and I used office mitigations. Works fine.

    Pete
     
  18. JohnMiller

    JohnMiller Registered Member

    Joined:
    Nov 6, 2014
    Posts:
    49
    Oh cool! Didnt even realize that was a option. Guess I need to play around with it some more.

    John
     
  19. harsha_mic

    harsha_mic Registered Member

    Joined:
    Mar 11, 2009
    Posts:
    815
    Location:
    India
    Hi,
    I have recently installed CTP4 version and all is fine till now. Today, i was trying to update my Android to Lollipop. So, installed JRE and tried to update ADB and other relevant drivers through SDK Manager.

    But the process was terminated by HMPA. I believe this is a FP. Did HMP scan as it suggested. Nothing found. So, had to uninstall HMPA to proceed with Android Flashing. Later i installed HMPA back. And when i ran SDK Manager.exe again, it was working properly. No more blocking from HMPA. Please see the screenshots.

    Is there anything i can help you to diagnose this problem.
     

    Attached Files:

  20. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    You cannot install anything when Java is executed _from_the_browser_.

    You can use Java unrestricted from anywhere else.

    This is exactly what you are experiencing. It did not work from the browser and it did work later on.

    As a workaround you can temporarily disable Java mitigations in Alert.

    I will see if we can improve the experience by allowing some Java apps to run from the browser.

    Hope this helps.
     
  21. harsha_mic

    harsha_mic Registered Member

    Joined:
    Mar 11, 2009
    Posts:
    815
    Location:
    India
    thanks eric for the reply.
    So, since i executed JRE from the browser, it flagged? It makes sense. How ever not it tried to disable java mitigation, i tried disabling all the things manually one by one. it still blocked the SDK Manger. Hence i uninstalled. Maybe something in this area needs to be improved. A proper way to temporarily disable protection.

    Edit: Ok, i actually disabled all the apps listed under mitigaton thumbnail. not the mitigation itself. I think i should have done this...:(
     
  22. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    You can temporarily disable all mitigations in all applications by choosing Disable on the blue tile. Once you are done installing, enable it again.
     
  23. harsha_mic

    harsha_mic Registered Member

    Joined:
    Mar 11, 2009
    Posts:
    815
    Location:
    India
    Ok Thank You. Will do it next time, for something like this.
     
  24. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Keep in mind that you do not want to have your web browser have full access to your PC and connected Android phone. It would be a massacre if it did :thumb:
     
  25. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    RC ETA? CTP4 Build 92 is the latest version right?

    *Just tried CTP4 Build 92. Neither Chrome or IE would start even after re-installation, disabling everything, etc. Oh and it activated the trial license on reinstall without my consent.

    *Possible conflicts include EMET 5.1, MBAE 1.05, Avast 2015, and AVG LinkScanner 2015.
     
    Last edited: Nov 16, 2014
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.