Hitman Pro Support and Discussion Thread

Discussion in 'other anti-malware software' started by yashau, Mar 20, 2009.

  1. CincyNightFlyer

    CincyNightFlyer Registered Member

    Joined:
    Mar 17, 2013
    Posts:
    2
    Location:
    United States
    Nope, neither can't even boot to CMOS now

    Originally was able to get into windows by simple boot before fbi citadel blocked, so I'm pretty sure no multi-boot, but what if it was? What would you suggest?
     
    Last edited: Mar 17, 2013
  2. stvs

    stvs Registered Member

    Joined:
    Mar 17, 2013
    Posts:
    34
    Location:
    greece
    hi erik the last 2 days hitmanpro 3.7.2 cant upload files (malware samples folder)
     

    Attached Files:

  3. ronald739

    ronald739 Registered Member

    Joined:
    Nov 9, 2011
    Posts:
    131
    Location:
    Australia
    Hi,

    I,m unable to upload files as well, it says upload failed.

    I,m using build 190 (64bit)
     
  4. pablozi

    pablozi Registered Member

    Joined:
    Oct 24, 2010
    Posts:
    215
    Location:
    nowhere
    Same here. Build 190 x86.
     
  5. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Past weekend or also now?
     
  6. stvs

    stvs Registered Member

    Joined:
    Mar 17, 2013
    Posts:
    34
    Location:
    greece
    past weekend only. now has solved tnx erik:)
     
  7. chabbo

    chabbo Registered Member

    Joined:
    Jun 28, 2009
    Posts:
    370
    Had it to on build 3.7.2 build 190 (64Bit)


    its also detect punkbuster as suspicious:eek:
     
  8. garack

    garack Registered Member

    Joined:
    Jan 15, 2013
    Posts:
    12

    Nope no encryption or Rollbacks. Simple Win764 Desktop Install, no other featuresand a Asus P8P67 Mainboard. One SSD 128 GB, no other drives; No partitions or other OS.

    BTW Scanned a PC and Hitman even with EWS did not find this:

    https://www.virustotal.com/de/file/...51bb7bbfa00a52be1bd408a68c8695d8061/analysis/
     
  9. pablozi

    pablozi Registered Member

    Joined:
    Oct 24, 2010
    Posts:
    215
    Location:
    nowhere
    I have restarted my system and ran scan again. All went smooth this time :thumb:
     
  10. canardblanc

    canardblanc Registered Member

    Joined:
    Mar 18, 2013
    Posts:
    1
    Location:
    USA
    Thank you for your help, in advance.

    Trying to boot a Windows 7 computer from USB thumbdrive with HitmanPro.KickStart 3.7.2 Build 190 (64-bit).

    The USB thumbdrive is recognized by Windows 7 in 'Computer'.
    The BIOS is set to boot from a Removable drive, but does not show the USB thumbdrives wit HitmanPro.KickStart.

    Have used 3 different brands of USB thumbdrives, and 3 different Windows 7 computers. None of the computers boot from any of the USB thumbdrives.

    Any help is appreciated.
     
  11. Confused_7107

    Confused_7107 Registered Member

    Joined:
    Mar 18, 2013
    Posts:
    1
    Location:
    US
    Need help installing HitmanPro

    Hello. I need help. I bought a new Dell inspirion computer that runs windows 8. I had Hitman up and running on my previous computer that ran Windows 7. With the new one, I have been trying to install Hitman literally all day. There are a couple of issues. For one, all of the downloads start then at about 45% they stop. The timer says 45 seconds remaining and this last for about 2 hours until I exit out and start over.

    Issue two. I was able to download from CNET. After the download completed, I clicked on the .exe to install and windows 8 says " This app can't run on your PC"; it did this for both the 32bit and 64bit version. I have removed the anti-virus (Mcaffe) because I thought it was the culprit. It still does not work. Please help. I am pretty sure there is not a virus on this computer. It is brand new out of the box. The only protection I have now is windows defender and the windows firewall.

    Also, if I only use Hitman and Windows Defender, do you feel this is somewhat adequate protection?
     
    Last edited: Mar 18, 2013
  12. malexous

    malexous Registered Member

    Joined:
    Jun 18, 2010
    Posts:
    830
    Location:
    Ireland
    If you scan a single file with "Automatically upload unknown suspicious files to the Scan Cloud" turned off, the scan completes without prompting to upload the suspicious file. If you turn it on and scan the file again, the file will be uploaded to the Scan Cloud. Is this behaviour as expected?
     
  13. Mops21

    Mops21 Registered Member

    Joined:
    Oct 5, 2010
    Posts:
    2,748
    Location:
    Germany
    Hi Erik

    Can you whitelisted the 2 Files please

    Properties
    Name ieframe.dll
    Location C:\Windows\System32
    Size 10.6 MB
    Time 7.0 days ago (2013-03-12 19:36:53)
    Entropy 6.4
    Product Windows® Internet Explorer
    Publisher Microsoft Corporation
    Description Internet Explorer
    Version 8.00.6001.19401
    Copyright © Microsoft Corporation. All rights reserved.
    SHA-256 FD09A20100E34123A6BEED77A869F2D4B4DB70BC0B177838DFE5C3F604503D59

    Scoring (7.0)
    Program starts automatically without user intervention.
    The file is in use by one or more active processes.
    The file is located in a folder that contains core operating system files from Windows. This is not typical for most programs and is only common to system tools, drivers and hacking utilities.
    Time indicates that the file appeared recently on this computer.
    The file is protected by Windows File Protection (WFP). This is typical for critical Windows system files.

    Startup
    HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}
    HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}
    HKU\S-1-5-21-911542882-2029379874-2294310465-1000\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}

    References
    HKLM\SOFTWARE\Classes\CLSID\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}\
    HKU\S-1-5-21-911542882-2029379874-2294310465-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}\


    Properties
    Name ie4uinit.exe
    Location C:\Windows\system32
    Size 170 KB
    Time 7.0 days ago (2013-03-12 19:36:52)
    Entropy 7.3
    Product Windows® Internet Explorer
    Publisher Microsoft Corporation
    Description IE Per-User Initialization Utility
    Version 8.00.6001.19401
    Copyright © Microsoft Corporation. All rights reserved.
    SHA-256 A6EF9904602C384D52080259BB066228BA620432BA242DE3F0937940ACFB04BA

    Scoring (10.0)
    Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
    Program starts automatically without user intervention.
    The file is located in a folder that contains core operating system files from Windows. This is not typical for most programs and is only common to system tools, drivers and hacking utilities.
    Time indicates that the file appeared recently on this computer.
    The file is protected by Windows File Protection (WFP). This is typical for critical Windows system files.

    Startup
    HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}\
    HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}\


    SHA256: fd09a20100e34123a6beed77a869f2d4b4db70bc0b177838dfe5c3f604503d59
    SHA1: e0c377b01be024570771fe5bb69d1c4fdbdecaad
    MD5: f325be9bf7b8b5c443784bc954757391
    Dateigröße: 10.6 MB ( 11111424 bytes )
    Dateiname: IEFRAME.DLL
    Datei-Typ: Win32 DLL
    Erkennungsrate: 0 / 45
    Analyse-Datum: 2013-03-19 19:16:22 UTC ( vor 3 Minuten )

    SHA256: a6ef9904602c384d52080259bb066228ba620432ba242de3f0937940acfb04ba
    SHA1: eaccf3c7723830bc97be2f5d6843273d95f83963
    MD5: a669c1b40e5d23f5ebe7ef498631b7d1
    Dateigröße: 170.0 KB ( 174080 bytes )
    Dateiname: IE4UINIT.EXE
    Datei-Typ: Win32 EXE
    Erkennungsrate: 0 / 45
    Analyse-Datum: 2013-03-19 19:21:29 UTC ( vor 1 Minute )
     

    Attached Files:

  14. Mops21

    Mops21 Registered Member

    Joined:
    Oct 5, 2010
    Posts:
    2,748
    Location:
    Germany
    Hi Erik

    And here is the Scan Log for it

    Code:
    HitmanPro 3.7.2.190
    www.hitmanpro.com
    
       Computer name . . . . : ALEXANDERROB-PC
       Windows . . . . . . . : 6.0.2.6002.X86/2
       User name . . . . . . : AlexanderRob-PC\Alexander Robrecht
       UAC . . . . . . . . . : Enabled
       License . . . . . . . : Free
    
       Scan date . . . . . . : 2013-03-19 20:00:18
       Scan mode . . . . . . : EWS
       Scan duration . . . . : 7m 56s
       Disk access mode  . . : Direct disk access (SRB)
       Cloud . . . . . . . . : Internet
       Reboot  . . . . . . . : No
    
       Threats . . . . . . . : 0
       Traces  . . . . . . . : 13
    
       Objects scanned . . . : 3.819.119
       Files scanned . . . . : 57.641
       Remnants scanned  . . : 2.242.885 files / 1.518.593 keys
    
    Early Warning Scoring _______________________________________________________
    
       C:\Windows\system32\ie4uinit.exe
          Size . . . . . . . : 174.080 bytes
          Age  . . . . . . . : 7.0 days (2013-03-12 19:36:52)
          Entropy  . . . . . : 7.3
          SHA-256  . . . . . : A6EF9904602C384D52080259BB066228BA620432BA242DE3F0937940ACFB04BA
          Product  . . . . . : Windows® Internet Explorer
          Publisher  . . . . : Microsoft Corporation
          Description  . . . : IE Per-User Initialization Utility
          Version  . . . . . : 8.00.6001.19401
          Copyright  . . . . : © Microsoft Corporation. All rights reserved.
          Fuzzy  . . . . . . : 10.0
             Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
             Program starts automatically without user intervention.
             The file is located in a folder that contains core operating system files from Windows. This is not typical for most programs and is only common to system tools, drivers and hacking utilities.
             Time indicates that the file appeared recently on this computer.
             The file is protected by Windows File Protection (WFP). This is typical for critical Windows system files.
          Startup
             HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}\
             HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}\
    
       C:\Windows\System32\ieframe.dll
          Size . . . . . . . : 11.111.424 bytes
          Age  . . . . . . . : 7.0 days (2013-03-12 19:36:53)
          Entropy  . . . . . : 6.4
          SHA-256  . . . . . : FD09A20100E34123A6BEED77A869F2D4B4DB70BC0B177838DFE5C3F604503D59
          Product  . . . . . : Windows® Internet Explorer
          Publisher  . . . . : Microsoft Corporation
          Description  . . . : Internet Explorer
          Version  . . . . . : 8.00.6001.19401
          Copyright  . . . . : © Microsoft Corporation. All rights reserved.
          Fuzzy  . . . . . . : 7.0
             Program starts automatically without user intervention.
             The file is in use by one or more active processes.
             The file is located in a folder that contains core operating system files from Windows. This is not typical for most programs and is only common to system tools, drivers and hacking utilities.
             Time indicates that the file appeared recently on this computer.
             The file is protected by Windows File Protection (WFP). This is typical for critical Windows system files.
          Startup
             HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}
             HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}
             HKU\S-1-5-21-911542882-2029379874-2294310465-1000\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}
          References
             HKLM\SOFTWARE\Classes\CLSID\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}\
             HKU\S-1-5-21-911542882-2029379874-2294310465-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}\
    
    
    
    
     
  15. simmersK00L

    simmersK00L Registered Member

    Joined:
    Mar 20, 2013
    Posts:
    323
    Location:
    USA
    Suddenly my hitman pro (paid) starting scanning very slow. A scan used to take about 3m30s, but it started taking over 12 min, and would scan clean. Running 3.7.2.190 (also tried .191 beta and same slow effect). XP_sp3. I'm aware of the processes running and connections made, nothing new or unusual. I have no idea what's causing slow-down. Other than surfing with sandboxie (paid), only running webroot secure anywhere 8.0.2.118 and novirusthanks_exeradarpro (paid). I also defragged hdd with o&o defrag. Wondering if a wsa updated version caused hitman slow-down, or if it could be nvt, but I've disabled nvt and hitman still scans s l o w. I uninstalled hitman and then reinstalled and same slow scan. hdd is only 40% used. my internet connection is fast and strong so slow down should not be internet connection related. XP scans malware clean with mbam ondemand, eam ondemand, etc. Slowness has bothered me to the extent that I have now uninstalled hitman. Ideas & suggestions, thanks.
     
  16. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    That is a strange problem. I've forwarded this issue to my colleague. You should always get into BIOS. You still have the issue?
     
  17. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    You have created the USB stick by HitmanPro?
    See www.hitmanpro.com/kickstart
     
  18. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Re: Need help installing HitmanPro

    http://get.hitmanpro.com should work.

    Does someone else have this problem? I run Windows 8 myself on my laptop and have no issues.

     
  19. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Maybe your BIOS is unable to boot from USB. For these situations we provide the Sidekick CDROM here:
    http://dl.surfright.nl/Sidekick-ISO.exe
    Documentation here:
    http://dl.surfright.nl/Sidekick-User-Manual.pdf

    All can be found in the right panel on this page:
    http://www.hitmanpro.com/kickstart
     
  20. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    This is a known issue and will be addressed in a future build.
     
  21. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Done. Thanks :thumb:
     
  22. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    If you temporarily disable Scan for Remnants under Settings, the scan should be quicker?
     
  23. Mops21

    Mops21 Registered Member

    Joined:
    Oct 5, 2010
    Posts:
    2,748
    Location:
    Germany
    Hi Erik

    Thank you very much for your Information
     
  24. acr1965

    acr1965 Registered Member

    Joined:
    Oct 12, 2006
    Posts:
    4,995
    Does anyone know if there are plans for Hitman Pro to have an android app scanner sometime in the future? VirusTotal has one but you have to apparently scan each app individually. It would be great to be able to scan my phone with HMP.
     
  25. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    Joined:
    Dec 22, 2009
    Posts:
    4,873
    Location:
    Outer space
    The first second-opinion scanner for Android, I support this :thumb:
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.