HitmanPro.ALERT Support and Discussion Thread

Discussion in 'other anti-malware software' started by erikloman, May 25, 2012.

  1. test

    test Registered Member

    Joined:
    Feb 15, 2010
    Posts:
    499
    Location:
    italy
    +1 (event id 211: Application is up-to-date. Next check in 8 hours.)
     
  2. eddiewood

    eddiewood Registered Member

    Joined:
    Apr 23, 2006
    Posts:
    136
    No that is not a correct assumption. I know from experience that HMP.A still can silently cause issues. The only safe way is to uninstall it (or possibly stop the service).
     
  3. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    We have made quite a few enhancements in 574 in terms of Java applications requiring a lot of memory. Should be fixed now.
     
  4. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Silent Audit still detects an exploit, but does not terminate the application. This to allow the exploit to fully deploy (resulting in an infected machine). This is useful for exploit researchers, hence the name Audit.

    You just need to restart the browser. No need to reboot.
     
  5. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    Latest build 574 is running nicely here. Loving it. Thanks Erik
     
  6. paulderdash

    paulderdash Registered Member

    Joined:
    Dec 27, 2013
    Posts:
    4,644
    Location:
    Under a bushel ...
    No manual update issues here on Win 10 Pro x64 v1511.
     
  7. Victek

    Victek Registered Member

    Joined:
    Nov 30, 2007
    Posts:
    6,219
    Location:
    USA
    Smooth upgrade from build 573; no issues after rebooting :thumb:
     
  8. L10090

    L10090 Registered Member

    Joined:
    Feb 13, 2015
    Posts:
    302
    Location:
    Netherlands
    W7-x64; No issues installing build 574 over build 573, after the reboot all applications are running fine!
     
    Last edited: Nov 30, 2016
  9. eddiewood

    eddiewood Registered Member

    Joined:
    Apr 23, 2006
    Posts:
    136
    It was also an issue with Rapport, putting HMP.A into Silent Audit still prevented Rapport from working so HMP.A was definitely still doing "something". Only uninstalling HMP.A worked for both issues.

    Having experienced this twice with two separate products maybe you can understand why people keep suggesting a true DISABLE function to quickly test compatibility without having to uninstall HMP.A?

    Cheers.
     
  10. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
  11. deugniet

    deugniet Registered Member

    Joined:
    Nov 25, 2013
    Posts:
    1,243
  12. cooper

    cooper Registered Member

    Joined:
    Aug 18, 2007
    Posts:
    7
    Location:
    Germany
    Yes, you are right. This is what I did. I de-installed WinAntiRansom and this helped a lot, many issues I encountered the last days disappeared. And finally I disabled Keystroke Encryption in HMP.A. So far so good. I spend more time with learning how to use HPM.A. I also encountered, the problem with Chrome/Chromium browsers as some previous posters in this Thread. Incompatibility of Sandboxie with Chrome/Chromium Browser(s) and HPM.A. However Firefox works fine.

    I was wondering regarding the LastPass Windows Desktop Application as it is not associated as a Plugin to a Browser, how can this be added to HPM.A. Or to be more clear, which template should be used when added to HPM.A ? Is there some good advice ?
     
  13. Gapliin

    Gapliin Registered Member

    Joined:
    Feb 12, 2012
    Posts:
    81
    Good explanation of exploit mitigation techniques, also a nice comparison with Intercept X (which we know shares most of its code space with HMPA) and other exploit mitigation software: https://www.sophos.com/medialibrary/Gated Assets/white papers/Sophos-Comprehensive-Exploit-Prevention-wpna.aspx
     
  14. Krusty

    Krusty Registered Member

    Joined:
    Feb 3, 2012
    Posts:
    10,240
    Location:
    Among the gum trees
    Excellent! :thumb:
     
  15. Hiltihome

    Hiltihome Registered Member

    Joined:
    Jul 5, 2013
    Posts:
    1,131
    Location:
    Baden Germany
  16. NiteRanger

    NiteRanger Registered Member

    Joined:
    Nov 15, 2016
    Posts:
    651
    Location:
    Far East
    Thanks

    Just updated mine to build 574
     
  17. paulderdash

    paulderdash Registered Member

    Joined:
    Dec 27, 2013
    Posts:
    4,644
    Location:
    Under a bushel ...
  18. HempOil

    HempOil Registered Member

    Joined:
    Jun 15, 2015
    Posts:
    225
    Location:
    Canada
    No problems to report here after upgrading to and running the new build since early yesterday.
     
  19. guest

    guest Guest

    As usual no problems after updating. It's running fine.
    Interesting :thumb:
     
  20. Telos

    Telos Registered Member

    Joined:
    Jul 26, 2016
    Posts:
    171
    Location:
    Frezhnacz
    Just had a weird experience where the keystroke encryption ended up in the master password entry box for Sticky Password.

    When the password was rejected, I figured I must have typo-ed it, but when I demasked the password box figuring I could correct the mistype, it was a jumble of junk (yes, I was sober this time).

    I deleted the entry and began again, and the proper characters found their way into the master password box. Must have been an intermittent glitch. Or a full moon (nope, checked that).
     
  21. ohgood

    ohgood Registered Member

    Joined:
    Apr 3, 2015
    Posts:
    39
    Location:
    cold upper midwest
    Upgrade to 574 is very smooth for me for me as well ... So glad to have found this terrific product, devs and group!

    Edit, add: I may be my imagination - or not - but this build feels very smooth. My system is running great, Chrome & extensions are fine. Thanks Eric & Mark!
    And thanks @Gapliin for sharing the whitepaper.
     
    Last edited: Dec 2, 2016
  22. newyorkjet

    newyorkjet Registered Member

    Joined:
    Jan 17, 2013
    Posts:
    63
    Location:
    UK
    I would like to add my congratulations to the team for their latest digital engineering wizardry. Upgraded to 574 two days ago and everything is running well. Thank you.
     
  23. chrcol

    chrcol Registered Member

    Joined:
    Apr 19, 2006
    Posts:
    982
    Location:
    UK
    couple of issues to report, note I am still on build 567

    OS win 8.1 x64

    I been diagnosing why uplay is broken on my PC, pulling my hair out, hours of searching the internet, until I found one hit blaming hitman pro from here on wilders.

    https://www.wilderssecurity.com/thr...iscussion-thread.324841/page-476#post-2624716

    I added all the ubisoft launcher binaries to the exclusion list and bam it loads.

    Note it was silently failing, hitmanpro alert did not bring up any messages.

    So there is two problems here.

    1 - it is making stuff silently fail, this is very bad.
    2 - the policy of hooking to everything on the system is causing all sorts of issues, that you guys are trying to firefight but its a game of whack a mole.

    The second issue I discovered when adding the exclusions.

    Every time I added a exclusion I was asked if I wanted to remove another exclusion. I selected no, but something is whacky in the process. I will update to the latest version later today.
     
  24. Bowhunter26

    Bowhunter26 Registered Member

    Joined:
    Jun 22, 2016
    Posts:
    39
    Location:
    Arkansas, USA
    Having issues with the latest build 574. Keyboard will not work inside Chrome with Keystroke Encryption enabled. I can disable Keystoke Encryption inside HMPA and the keyboard will work inside Chrome. This problem started with build 574, didn't have any issues with previous builds.
     
  25. Gapliin

    Gapliin Registered Member

    Joined:
    Feb 12, 2012
    Posts:
    81
    CVE-2016-9079 Tor Browser 0-day vs HitmanPro.Alert:
    https://www.youtube.com/watch?v=asz1u9aJ2l8

    Description:
    The video shows an in-the-wild zero-day attack on the Tor Browser, which is based on Mozilla Firefox. The abused vulnerability involves a use-after-free bug and the payload is dropped in-memory, meaning no malicious files are dropped to the disk for antivirus (AV) or machine learning (ML) solutions to investigate - the entire attack run in memory.
    Without using signatures or requiring updates, HitmanPro.Alert protects against these types of attacks.

    Just I like imagined, HMPA shines again. :thumb:
     
    Last edited by a moderator: Dec 5, 2016
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.