hmpalert.exe

HitmanPro.Alert

SurfRight B.V.

This is a setup program which is used to install the application. It runs as a separate (within the context of its own process) windows Service named “HitmanPro.Alert Service”. This is installed with HitmanPro.Alert. The file has been seen being downloaded from dl.cdn.chip.de and multiple other hosts.
Publisher:
SurfRight B.V.  (signed and verified)

Product:
HitmanPro.Alert

Version:
2.6.3.74

MD5:
4aae6bfb751724fef8cfc72171a47043

SHA-1:
b80d32c3c25e5efd6e205570d8b220187cbc36f1

SHA-256:
a8837c5231210406b064e9a2337e172576e90d050c1607ca5a44bec5914c75d9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:22:33 AM UTC  (today)

File size:
1.8 MB (1,861,456 bytes)

Product version:
2.6.3.74

Copyright:
© 2014 SurfRight B.V.

Original file name:
hmpalert.exe

File type:
Executable application (Win32 EXE)

Language:
Standardspråk

Common path:
C:\Program Files\hitmanpro.alert\hmpalert.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/6/2012 1:00:00 AM

Valid to:
1/6/2016 12:59:59 AM

Subject:
CN=SurfRight B.V., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SurfRight B.V., L=Hengelo, S=Overijssel, C=NL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
34A8B19DC8071E4182FB27F9B7EC722A

File PE Metadata
Compilation timestamp:
3/18/2014 10:04:29 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
24576:micdSOMMcocB92RxhxepYNx29bUjrq0cBs0byWe+spuUsXqwcBu42k304iiuE0:sNM5o8qFrq03d3puhXqwNG0

Entry address:
0x32DAB

Entry point:
E8, A5, 6E, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, FF, 75, 0C, 6A, 00, FF, 75, 08, 68, F7, 4B, 43, 00, E8, 05, 00, 00, 00, 83, C4, 10, 5D, C3, 55, 8B, EC, 83, EC, 20, 57, 6A, 07, 33, D2, 8D, 7D, E4, 59, 33, C0, 89, 55, E0, F3, AB, 5F, 39, 45, 0C, 75, 15, E8, 56, 37, 00, 00, C7, 00, 16, 00, 00, 00, E8, 19, 1C, 00, 00, 83, C8, FF, EB, 27, FF, 75, 14, 8D, 45, E0, C7, 45, E4, FF, FF, FF, 7F, FF, 75, 10, C7, 45, EC, 42, 00, 00, 00, FF, 75, 0C, 89, 55, E8, 50, 89, 55, E0, FF, 55, 08, 83, C4, 10, 8B, E5, 5D, C3...
 
[+]

Packer / compiler:
PEQuake V0.06

Code size:
274.5 KB (281,088 bytes)

Service
Display name:
HitmanPro.Alert Service

Service name:
hmpalertsvc

Description:
Web browser intrusion detection, real-time and forensics-based, watching for banking trojans and Man-in-the-Browser attacks.

Type:
Win32OwnProcess

Group:
Base


The file hmpalert.exe has been discovered within the following programs.

HitmanPro.Alert  by SurfRight B.V.
Publisher's description - “HitmanPro.Alert is a free tool that checks the browser integrity and alerts users when secure online banking and shopping is no longer guaranteed. HitmanPro.Alert will instantly detect over 99% of all known and new banking Trojans.”
www.hitmanpro.com/alert
22% remove it
 
Powered by Should I Remove It?

The file hmpalert.exe has been seen being distributed by the following 4 URLs.

Scan hmpalert.exe - Powered by Reason Core Security