Hitman Pro Support and Discussion Thread

Discussion in 'other anti-malware software' started by yashau, Mar 20, 2009.

  1. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Re: Anyone tried out Hitman Pro?

    Did you reboot after uninstall?
     
  2. rolarocka

    rolarocka Guest

    Re: Anyone tried out Hitman Pro?

    Good question. Im going to reboot just to be sure.

    edit Yes after a reboot still shows it. I going to install Prevx and uinstall it again.
     
    Last edited by a moderator: Nov 13, 2009
  3. kasperking

    kasperking Registered Member

    Joined:
    Nov 21, 2008
    Posts:
    406
    Re: Anyone tried out Hitman Pro?

    ummm... rolarocka just curious....which scanning engine/scanner out of nod/prevx/a2 etc flags it btw? i would suspect it is prevx:doubt:
     
  4. rolarocka

    rolarocka Guest

    Re: Anyone tried out Hitman Pro?

    Its a file from prevx. Im just interested to know why its being flagged after prevx is uninstalled. It seems prevx doesnt uninstall it correctly or something else.

    OK with Prevx installed (with reboot) pxsecure.dll is not detected.
    with prevx uninstalled (with reboot) pxsecure.dll is detected.

    :blink:
     
  5. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Re: Anyone tried out Hitman Pro?

    You are running Build 78 ?
     
  6. Eagle Creek

    Eagle Creek Global Moderator

    Joined:
    Jul 27, 2004
    Posts:
    734
    Location:
    The Netherlands
    Re: Anyone tried out Hitman Pro?

    I know persons who complain about HMP leaving a lot of files behind when it's (supposed to be) removed.
     
  7. EliteKiller

    EliteKiller Registered Member

    Joined:
    Jan 18, 2007
    Posts:
    1,138
    Location:
    TX
    Re: Anyone tried out Hitman Pro?

    Interesting that the Prevx file is detected only when uninstalled.
     
  8. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    Re: Anyone tried out Hitman Pro?

    im guessing the driver or w/e the file is wasnt properly removed so Hitman Pro heur is picking it up as something suspicious (like a broken driver)

    thats my guess at least.
     
  9. EliteKiller

    EliteKiller Registered Member

    Joined:
    Jan 18, 2007
    Posts:
    1,138
    Location:
    TX
    Re: Anyone tried out Hitman Pro?

    HMP 3.5.3. build 78 detects chkflsh.exe as malware using the Prevx engine, but I have Prevx 3 paid on the same system yet it scans clean. I am unable to report it as a FP on this scan, but I may have done it previously.
     

    Attached Files:

  10. rolarocka

    rolarocka Guest

    Re: Anyone tried out Hitman Pro?

    Perhaps Prevx doesnt scan that specific folder during that fast scan prevx usually does.
     
  11. rolarocka

    rolarocka Guest

    Re: Anyone tried out Hitman Pro?

    Yes latest.
     
  12. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    Re: Anyone tried out Hitman Pro?

    OR its an FP that was very RECENTLY corrected by prevx.
     
  13. EliteKiller

    EliteKiller Registered Member

    Joined:
    Jan 18, 2007
    Posts:
    1,138
    Location:
    TX
    Re: Anyone tried out Hitman Pro?

    Right-click scanning the folder/file w/ Prevx still comes up clean.
     
  14. dlimanov

    dlimanov Registered Member

    Joined:
    Jun 10, 2009
    Posts:
    204
    Re: Anyone tried out Hitman Pro?

    Try re-scanning with HMP and see if still finds it; I believe there's a delay between Hitman and Prevx engines (and possibly others), something along the 30-minute mark.
    I'm sure Erik will chime in and answer this better. :)
     
  15. EliteKiller

    EliteKiller Registered Member

    Joined:
    Jan 18, 2007
    Posts:
    1,138
    Location:
    TX
    Re: Anyone tried out Hitman Pro?

    I just scanned the folder again, and HMP is still flagging it as malware as per the above screen shot.

    The interesting tidbit is that Prevx classifies the file as malware
    http://spywarefiles.prevx.com/RRHCFA44540225/CHKFLSH.EXE.html

    ChkFlsh checks your Flash Drives on Windows
    http://www.makeuseof.com/tag/chkflsh-checks-your-flash-drives-on-windows/
     
    Last edited: Nov 13, 2009
  16. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Re: Anyone tried out Hitman Pro?

    We have found a new variant of Alureon/TDSS that is in the wild.

    Once infected, no AV can detect or remove this threat. We have tried Prevx, MSE, MSRT, MBAM and most 2010 suites (Norton, Kaspersky, NOD32). No one is able to detect it, let alone remove it.

    Hitman Pro detects it using the alternate disks access mode but it cannot remove it. We are working on a solution that is included in the next release.
     
    Last edited: Nov 15, 2009
  17. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    Re: Anyone tried out Hitman Pro?

    o ok, wow, good to know.
     
  18. EliteKiller

    EliteKiller Registered Member

    Joined:
    Jan 18, 2007
    Posts:
    1,138
    Location:
    TX
    Re: Anyone tried out Hitman Pro?

    The FP for chkflsh.exe appears to be resolved. :D

    erikloman, I wanted to take a moment and thank you for all of your efforts. Your forum contributions are also greatly appreciated. :thumb:
     
  19. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    Re: Anyone tried out Hitman Pro?

    i wonder why erik hasnt been given Dev status on these forums yet :doubt: it wuld make him more noticeable when he posts and more official looking when giving support.
     
  20. andyman35

    andyman35 Registered Member

    Joined:
    Nov 2, 2007
    Posts:
    2,336
    Re: Anyone tried out Hitman Pro?

    I agree Erik is a great example of how vendor support should be :thumb:
     
  21. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    Re: Anyone tried out Hitman Pro?

    And also Joe from Prevx :thumb:

    TH
     
  22. erikloman

    erikloman Developer

    Joined:
    Jun 4, 2009
    Posts:
    3,152
    Location:
    Hengelo, The Netherlands
    Re: Anyone tried out Hitman Pro?

    The TDSS/Alureon rootkit I talked about a few posts back is TDL3 and is thoroughly described here.

    From the article:
    "Beside known features, this threats is exposed with a couple of impressive tricks which help it bypassing personal firewall and staying totally undetected by all AVs and ARKs at the moment."

    This is currently one of the most advanced rootkits that is currently spreading (our Scan Cloud is receiving a lot of droppers).

    The authors of this rootkit really know what they are doing as this is really professional stuff. For example, it has its own Encrypted File System that resides on the last sectors of the disk!
     
  23. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    Re: Anyone tried out Hitman Pro?

    sounds like some pretty nasty stuff.
     
  24. rolarocka

    rolarocka Guest

  25. prairie dog

    prairie dog Registered Member

    Joined:
    Jun 9, 2009
    Posts:
    129
    Re: Anyone tried out Hitman Pro?

    Where are you mostly seeing this ?
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.