hinclient.exe

HIN Client

Health Info Net AG

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HIN Client’.
Publisher:
Health Info Net AG  (signed and verified)

Product:
HIN Client

Description:
Client for connecting to the secure HIN network.

Version:
1.5.0.16

MD5:
e97c323072ad0ba8b35b872664217e32

SHA-1:
57fce776c1a19c77d4a7a782e5ce58aa9231c792

SHA-256:
fac70a8242b5b6cdf350f599b504b904a2440038782af56306921c8febd07270

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/29/2024 9:20:59 AM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Malware.RDM.30!5.24[F1]
23.00.65.151014

File size:
252.8 KB (258,840 bytes)

Product version:
1.5.0-16

Copyright:
Health Info Net AG

Original file name:
hinclient.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\hin client\hinclient.exe

Digital Signature
Authority:
QuoVadis Trustlink Switzerland Ltd.

Valid from:
12/19/2013 1:15:25 PM

Valid to:
12/19/2016 1:14:51 PM

Subject:
E=betrieb@hin.ch, CN=Health Info Net AG, OU=Standard Code Signing Certificate, O=Health Info Net AG, C=CH

Issuer:
CN=QuoVadis Swiss Advanced CA, OU=Issuing Certification Authority, O=QuoVadis Trustlink Switzerland Ltd., C=CH

Serial number:
1EAF4CB9514C40DCEF6A1F1A9724EA621FD7D438

File PE Metadata
Compilation timestamp:
4/17/2015 2:14:30 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:dvXIeCuWUKAG/2HbdFtdCqOQpsUw71U+ZdX+:dvP91nHbdFjCqOYsD1U+ZdX

Entry address:
0x123BB

Entry point:
E8, 34, B8, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, 38, DC, 42, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, 3C, DC, 42, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, DD, 07, 00, 00, 85, C0, 75, 06, B8, A0, DD, 42, 00, C3, 83, C0, 08, C3, E8, CA, 07, 00, 00, 85, C0, 75, 06, B8, A4, DD, 42, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Code size:
147.5 KB (151,040 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HIN Client

Command:
"C:\Program Files\hin client\hinclient.exe" quitifautostartdisabled


Scan hinclient.exe - Powered by Reason Core Security