Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2, 2, 0, 214 5.66%
2, 2, 0, 193 16.98%
2, 2, 0, 173 1.89%
2, 2, 0, 109 3.77%
2, 2, 0, 100 1.89%
2, 2, 0, 100 1.89%
2, 2, 0, 58 1.89%
2, 1, 0, 374 1.89%
2, 1, 0, 374 1.89%
2, 1, 0, 362 11.32%
2, 1, 0, 362 5.66%
2, 1, 0, 296 11.32%
2, 1, 0, 294 3.77%
2, 1, 0, 294 5.66%
2, 1, 0, 284 5.66%
2, 1, 0, 284 9.43%
2, 1, 0, 262 1.89%
2, 1, 0, 215 5.66%
2, 1, 0, 210 1.89%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegisterEventSourceA, ReportEventA, DeregisterEventSource, SetServiceStatus, CreateServiceW, StartServiceCtrlDispatcherW, ControlService, RegisterServiceCtrlHandlerExW, DeleteService, SetEntriesInAclW, RegDeleteValueW, RegSetValueExW, RegOpenKeyExW, RegEnumValueW, FreeSid, AllocateAndInitializeSid, EqualSid, CloseServiceHandle, QueryServiceStatus, QueryServiceConfigW, StartServiceW, LookupAccountSidW, OpenProcessToken, CreateProcessAsUserW, GetTokenInformation, RegCloseKey, RegCreateKeyExW, RegQueryValueExW, RegOpenKeyExA, RegQueryValueExA, ChangeServiceConfigW, OpenServiceW, OpenSCManagerW, GetSecurityInfo, SetSecurityDescriptorSacl, LookupPrivilegeValueW, AdjustTokenPrivileges, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetSecurityDescriptorSacl, SetNamedSecurityInfoW, RegEnumKeyExW
crypt32.dll
CertCloseStore, CryptMsgClose, CryptDecodeObject, CertFreeCertificateContext, CryptMsgGetParam, CryptQueryObject, CertFindCertificateInStore, CertGetNameStringW
dnsapi.dll
DnsRecordListFree, DnsQuery_W
iphlpapi.dll
DeleteIpForwardEntry, GetIpForwardTable, CreateIpForwardEntry, GetIfTable, GetInterfaceInfo, GetPerAdapterInfo, FlushIpNetTable, IpReleaseAddress, GetAdaptersInfo, NotifyAddrChange, NotifyRouteChange, IpRenewAddress
kernel32.dll
EnterCriticalSection, GetCurrentProcessId, GetVersionExW, CreateThread, GlobalFree, CreateProcessW, lstrcmpA, SetLastError, GetProcAddress, GetTempFileNameA, LoadLibraryA, FreeLibrary, GetTempPathA, DeleteFileA, GetComputerNameExW, ResetEvent, GlobalMemoryStatus, GetVersion, SetEnvironmentVariableA, CompareStringW, CompareStringA, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, GetFileAttributesW, GetLocalTime, MoveFileExW, GetTempPathW, GetCurrentThreadId, InitializeCriticalSection, LeaveCriticalSection, DeleteCriticalSection, CreateDirectoryW, GetStdHandle, OpenProcess, GetLocaleInfoA, GetStringTypeW, GetStringTypeA, QueryPerformanceCounter, GetCommandLineW, GetCommandLineA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, LCMapStringW, LCMapStringA, SetStdHandle, GetTimeZoneInformation, GetConsoleMode, GetConsoleCP, HeapCreate, HeapDestroy, VirtualAlloc, VirtualFree, GetModuleFileNameA, HeapSize, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, RtlUnwind, RaiseException, HeapReAlloc, GetNamedPipeHandleStateW, CreateFileW, CreateNamedPipeW, WaitForSingleObject, FlushFileBuffers, ReadFile, WriteFile, GetLastError, ConnectNamedPipe, CloseHandle, ExitProcess, GetModuleHandleA, GetOverlappedResult, CreateEventW, LocalFree, SetEvent, DeviceIoControl, CancelIo, Sleep, InterlockedIncrement, InterlockedDecrement, GetCurrentProcess, GetModuleFileNameW, CopyFileW, lstrcmpW, LoadLibraryW, GetTickCount, SetThreadPriority, FindResourceW, LoadResource, LockResource, GetModuleHandleW, GetCurrentThread, CreateEventA, lstrcpynW, GetSystemDirectoryA, SetErrorMode, GetExitCodeProcess, TerminateProcess, WideCharToMultiByte, MultiByteToWideChar, GetSystemTimeAsFileTime, SetFilePointer, SetEndOfFile, DeleteFileW, SetUnhandledExceptionFilter, FindClose, FindFirstFileW, SetFileAttributesW, FindNextFileW, WaitForMultipleObjects, UnhandledExceptionFilter, IsDebuggerPresent, HeapAlloc, HeapFree, SetConsoleCtrlHandler, GetVersionExA, GetProcessHeap, SetHandleCount, GetFileType, GetStartupInfoA, FileTimeToSystemTime, FileTimeToLocalFileTime, GetFileInformationByHandle, PeekNamedPipe, SetEnvironmentVariableW, GetCurrentDirectoryW, SetCurrentDirectoryW, FindFirstFileA, FlushConsoleInputBuffer, GetDriveTypeA, ReadConsoleInputA, SetConsoleMode, GetFullPathNameA, GetCurrentDirectoryA, DllMain
netapi32.dll
DsRoleGetPrimaryDomainInformation, DsRoleFreeMemory
ole32.dll
CoInitializeEx, CoTaskMemFree, CoUninitialize, CoCreateInstance, CoInitializeSecurity, CoInitialize
setupapi.dll
SetupDiRemoveDevice, SetupDiBuildDriverInfoList, SetupDiCreateDeviceInfoW, SetupDiGetDeviceInstallParamsW, SetupDiSetSelectedDriverW, SetupDiEnumDriverInfoW, SetupDiSetDeviceInstallParamsW, SetupDiCallClassInstaller, SetupDiSetClassInstallParamsW, SetupDiGetDeviceRegistryPropertyW, CM_Get_DevNode_Status, SetupDiEnumDeviceInfo, SetupDiDestroyDeviceInfoList, SetupDiGetClassDevsW, SetupDiGetDeviceInstanceIdW, SetupDiOpenDevRegKey
shell32.dll
SHGetSpecialFolderPathW
urlmon.dll
URLDownloadToFileA
user32.dll
wvsprintfW, DefWindowProcW, RegisterClassW, GetWindowLongW, wsprintfW, CreateWindowExW, PeekMessageW, DispatchMessageW, UnregisterClassW, MessageBoxA, GetDesktopWindow, GetProcessWindowStation, GetUserObjectInformationW, SendMessageTimeoutW, FindWindowW, IsWindow, DestroyWindow, SetWindowLongW, GetSystemMetrics, CharNextExA
userenv.dll
LoadUserProfileW, UnloadUserProfile, CreateEnvironmentBlock, DestroyEnvironmentBlock
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wininet.dll
InternetQueryOptionA, DetectAutoProxyUrl
wintrust.dll
WinVerifyTrust
ws2_32.dll
WSAAddressToStringA, WSACloseEvent, WSAEventSelect, WSACreateEvent, WSAEnumNetworkEvents, WSAResetEvent
wtsapi32.dll
WTSEnumerateSessionsW, WTSFreeMemory, WTSEnumerateProcessesW

hamachi-2.exe

Hamachi Client by LogMeIn (Signed)

Remove hamachi-2.exe
Version:   2, 2, 0, 193
MD5:   5d943a7cdd83f533d41a22e882677c6e
SHA1:   2e7531547e43a3fa843fe7b471afd03c2af32ffd

About hamachi-2.exe (from LogMeIn)

Unmanaged mode allows you and your friends or colleagues to set-up a VPN in a matter of minutes. However you will be limited to a mesh network configuration, and you will miss out on web-based central

Overview

hamachi-2.exe runs as a service under the name LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) with extensive SYSTEM privileges (full administrator access). It is installed with a couple of know programs including LogMeIn Hamachi published by LogMeIn, Inc., Vegas Pro 10.0 (64-bit) from Sony Corporation and Vegas Pro 10.0 (64-bit) by Sony Corporation. The file is digitally signed by LogMeIn which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:hamachi-2.exe
Publisher:LogMeIn Inc.
Product name:Hamachi Client
Description:Hamachi Client Tunneling Engine
Typical file path:C:\Program Files\logmein hamachi\hamachi-2.exe
File version:2, 2, 0, 193
Product version:2, 0, 0, 0
Size:2.12 MB (2,228,048 bytes)
Build date:5/13/2014 9:26 AM
Certificate
Issued to:LogMeIn
Authority (CA):VeriSign
Effective date:Monday, October 5, 2009
Expiration date:Wednesday, October 10, 2012
Digital DNA
PE subsystem:Windows Console
Entropy:6.560198
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Adobe Systems Incorporated
7% remove
Make the impossible possible with the new, more connected After Effects® CC. Get powerful new features like a Live 3D Pipeline that brings CINEMA 4D scenes in as layers — without intermediate rendering. Share work directly from within the application, sync your settings across machines, and get access to new features the moment they're released. Your entire creative world, together in one place. Only in Creative Cloud™. Explore cool new...
LogMeIn, Inc.
7% remove
LogMeIn remote access products use a proprietary remote desktop protocol that is transmitted via SSL. An SSL certificate is created for each remote desktop and is used to cryptographically secure communications between the remote desktop and the accessing computer. Users access remote desktops using either the LogMeIn Ignition stand-alone application or a web portal. The web portal requires either an ActiveX plugin for Internet Explorer...
Riot Games
12% remove
League of Legends (LoL) is a multiplayer online battle arena video game developed and published by Riot Games for Microsoft Windows. Players are formed into 2 even teams of Champions, 3v3 or 5v5. League of Legends is a session-based game. Matchmaking occurs based on the average Elo ratings of each individual players, with slight proprietary adjustments. The game can currently be played in five different modes: Tutorial, Custom, Co-Op v...
Screaming Bee
10% remove
MorphVOX is voice changing software for online games. It will change your voice to match your personality. You can sound like a spryly wood nymph, a bad tempered dwarf or a Sith Lord. MorphVOX even allows you to create your own unique voices, along with providing many free downloadable voice changing packs. MorphVOX Voice Changer can add fun to online communication. Gamers, you have spent many hours grooming your online character to loo...
SIX Networks
5% remove
Want to try out that new mod? Get it with one click & launch it right away. Enjoy all the updates the second they are released. Smart Sync saves you bandwidth and time. Easy access to over 4000 community servers. Configure your server browser, the way you like. Select your favourites or choose Quick Play.
Sony Corporation
8% remove
The Vegas Pro 10 collection offers an efficient and intuitive environment for professional audio and video production, as well as DVD and Blu-ray Disc authoring. This comprehensive suite offers the most robust and progressive platform available for content creation and production. With innovative stereoscopic 3D tools, broad format support, superior video effects processing, unparalleled audio support, and a full complement of editorial...
TeamSpeak Systems GmbH
4% remove
TeamSpeak 3 continues the legacy of the original TeamSpeak communication system previously offered in TeamSpeak Classic (1.5) and TeamSpeak 2. TeamSpeak 3 is not merely an extension of its predecessors but rather a complete rewrite in C++ of its proprietary protocol and core technology. With over nine years of experience and leadership in the VoIP sector, our engineers have created a flexible, powerful, and scalable solution granting yo...
win.rar GmbH
11% remove
WinRAR is a file archiver and data compression utility that supports RAR, and ZIP and can unpack ARJ, LZH, TAR, GZ, ACE, UUE, BZ2, JAR, ISO, EXE and 7z compressed archives. Version 5 uses the RAR5 archive format that cannot be managed by old versions of WinRAR. This format features a maximum 1GB dictionary (only in 64bit version), better multicore support, it removes multimedia, text and itanium binaries special compression algorithms.

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'Hamachi2Svc' (LogMeIn Hamachi Tunneling Engine)
  • Hamachi2Svc
Network connections
  • [TCP] h-app05-05.hamachi.cc (63.251.34.73:12975)
  • [UDP] listens on port 58374

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00017999%
    0.028634%
    Kernel CPU:0.00016076%
    0.013761%
    User CPU:0.00001924%
    0.014873%
    Kernel CPU time:4,044,928 ms/min
    100,923,805ms/min
    CPU cycles:148,098/sec
    17,470,203/sec
    Context switches:10/sec
    284/sec
    Memory
    Private memory:3.45 MB
    21.59 MB
    Private (maximum):8.72 MB
    Private (minimum):6.14 MB
    Non-paged memory:3.45 MB
    21.59 MB
    Virtual memory:95.51 MB
    140.96 MB
    Virtual memory (peak):109.67 MB
    169.69 MB
    Working set:6.82 MB
    18.61 MB
    Working set (peak):10.44 MB
    37.95 MB
    Page faults:50,506/min
    2,039/min
    I/O
    I/O read transfer:98 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:8 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:52 Bytes/sec
    448.09 KB/min
    I/O other operations:2/sec
    1,671/min
    Resource allocations
    Threads:3
    12
    Handles:209
    600

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:"C:\Program Files\logmein hamachi\hamachi-2.exe" -s
    Owner:SYSTEM
    Windows Service
    Service name:Hamachi2Svc
    Display name:LogMeIn Hamachi Tunneling Engine
    Type:Win32OwnProcess, InteractiveProcess
    Parent process:services.exe (by Microsoft)

    ResourcesThreads

    Averages
     
    sechost.dll
    Total CPU:0.10988893%
    0.272967%
    Kernel CPU:0.06235717%
    0.107585%
    User CPU:0.04753175%
    0.165382%
    CPU cycles:4,111,421/sec
    5,741,424/sec
    Context switches:21/sec
    79/sec
    Memory:288 KB
    1.16 MB
    hamachi-2.exe (main module)
    Total CPU:0.00004094%
    Kernel CPU:0.00003322%
    User CPU:0.00000772%
    CPU cycles:1,317/sec
    Memory:2.17 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 33.33%
    Windows 7 Home Premium 21.57%
    Microsoft Windows XP 9.80%
    Windows 8 7.84%
    Windows Vista Home Premium 5.88%
    Windows 7 Professional 5.88%
    Windows 8 Single Language 3.92%
    Windows 8.1 3.92%
    Windows 7 Home Basic 3.92%
    Windows Vista Ultimate 1.96%
    Windows 8 Pro 1.96%

    Distribution by countryDistribution by country

    United States installs about 23.53% of Hamachi Client.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 19.61%
    Hewlett-Packard 15.69%
    Lenovo 15.69%
    Dell 15.69%
    Toshiba 11.76%
    Acer 9.80%
    Sony 7.84%
    Samsung 1.96%
    American Megatrends 1.96%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE