Process Detail


What is ProcInfo.exe ?

ProcInfo.exe is known as TouchpointProcessInfo, it also has the following name InsightsProcessInfo or Microsoft Windows Operating System and it is developed by HP Inc. , it is also developed by . We have seen about 59 different instances of ProcInfo.exe in different location. So far we haven't seen any alert about this product. If you think there is a virus or malware with this product, please submit your feedback at the bottom.

ProcInfo.exe

Something wrong with ProcInfo.exe ?

Is ProcInfo.exe using too much CPU or memory ? It's probably your file has been infected with a virus. Let try the program named DriverIdentifier to see if it helps.

How to remove ProcInfo.exe

If you encounter difficulties with ProcInfo.exe , you can uninstall the associated program (Start > Control Panel > Add/Remove programs

What can you do to fix ProcInfo.exe ?

Let try to run a system scan with Speed Up My PC to see any error, then you can do some other troubleshooting steps.
If you think this is a driver issue, please try DriverDouble.com

Where do we see ProcInfo.exe ?

Here is the list of instances that we see for the process: ProcInfo.exe

  Path Product Name Vendor Version Size MD5
1 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_71e14ca83aa24382\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.1.0 4039 8B01CD897952B922C9AC8D0A7AFD45CB
2 C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f12ec4c7b95b11b9\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.1.0 4040 4220AA5D7DF1E903035E85531F265AD2
3 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_8f3bf40927e0bdea\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.1.0 4040 7179A2437FA52903CECE83A22707E9D1
4 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7a2504441c646f44\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4172 54951E9BAB652597AF7B6D6A6DC37744
5 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_19ec9c352a1b5135\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4172 530D9274C60157682F1A6C0EBBC979B7
6 C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_ed4556cbbd1f3702\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4172 81E11AAF14FE6E3AF8CA20F304866A28
7 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_714bb34a8e64bfef\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4194 10F647E7B015471F3F8D813DC4893882
8 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_60f6efe6019b267f\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.1.0 4019 D8A3B4497D50CB822048B4294FA541D7
9 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_af7111bac9b4c33e\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.1.0 4040 D9F9BF2267019D74E1F59C5BBBF7F5F7
10 C:\Program Files\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 3312 2C3591D527E912DEEDD5C053ADD664F8
11 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4193 D96FB282E753EC698378ED353BE70A92
12 C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_281f8bbd4a2569a5\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4193 22FC3565A0B73CA7260A4EAC6CC2A224
13 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b0f82bec7f5cb99f\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4172 E1F135A6C6BCCE2CCE4BC38762E4160D
14 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_407ddd7d01fd3c2f\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4174 275282F6C992088236C192C664C100ED
15 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f4dbf64491b40e54\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.1.0 4019 51276320F5D31A14E94CF2877DD93822
16 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f5b1366b9283416c\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4173 7089B45CD858142ABDC7C8BC7C67EF12
17 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_2576de2e12637a57\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4172 E9AE092A700EAF78A25FB7ECC880396B
18 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4173 75BDEC7310498BFB749DC11FA39A630D
19 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_ca0c8639e36cfae0\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4173 2FC07FB85AAC0867A198496F185B8EE6
20 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_c0bdd9b8fbf13b30\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4172 A7F63F209F5B8665297FC824A6AFD996
21 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_66709318d46cc981\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4174 228C08E253A72E29AA232C3EB6E542A9
22 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_32334f5982eb7f42\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41744 E551EC8FD23B52851F80328D738F4D2B
23 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41736 852CE62ED448FD5E47AEEC9ACDD6ACB0
24 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_476c87e491ff21c8\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41736 F50774034B146625D7ED2F2482BDEF75
25 C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_a7be790d73ea14eb\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41744 71EF16E919000AD1967CFE12829F8520
26 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f37ada3b81da51b7\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4173 29DAEDACB6CB45BEB91FA0BAF1AA479B
27 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_f98b15466093b28e\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41728 9E0327291FBCB1E22C50CADA070E5045
28 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_09e6b7523107af45\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41736 043B0278F8654B499297A5113974A31F
29 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_9bddac799ceb76f6\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 40992 956241DC42B773A8D603CAC998BB2562
30 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_eb7ea98d07646ece\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41000 9E6616ADC1D50DE1EED42D50ADB2A788
31 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_e0cb3d04adc61069\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41016 3150F89DF5DD8325B920416C4623D5E4
32 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_4950c0f0d48ae6e7\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 40984 376171051D04F0B7DCFC2A5F937BE685
33 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 32448 6710F8D877CBBDE28FD8345F8BE06D68
34 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_a2fb47ec6424a805\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41736 3E5F54C2F812910958A69C85B080F9CE
35 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_35df954651b1f88f\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41056 65D6D6387216F93FFA754A61E416BF38
36 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_87bd97ebe57d6f93\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41072 C0B164B925E4B4C44148EAEED4A48B9C
37 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_54a828a51f6769c8\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41056 B8DFC5D9AFA700CD918DEACBEA103C97
38 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 32448 90590A2F3233BA0CEE70F9A2B3ED7A3E
39 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 33008 4195B4C22B2D60E629459B73945E1ADE
40 C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_45abefd15772b5ac\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 41728 0E07BE965FEB04CD1DCA32C81DD79B62
41 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_29c6c876bdaf5af9\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 51952 5DCD1E4B35208D11B35261002B5AFBE0
42 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4369 EB369A545145FD6B65A56D05426521A3
43 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 4369 DB3A984DBD233C3D8CAD53CC6E144506
44 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_5bf497d20ce7fee9\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.1 5333 6F18F6D32BA6FC19D3D91673E8F4EE09
45 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_5368297359c68ea4\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.2 64088 3A4F57368229145F2D25978694FD67B2
46 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.2 5444 744ADE3A5A28592387B85652024A2709
47 C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_43e3600968234e87\x64\Provider Data Sources\ProcInfo\ProcInfo.exe TouchpointProcessInfo HP Inc. 1.0.4.2 6412 A3417395BA6AACA8E54FB3217991FA4C
48 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5496 1CD49A0C861E323B1DEC6CF575D5FD10
49 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_3.0.4458767\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5428 B0F78BAE7FE87D35E46C4F3E6F2F9656
50 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_3.0.4737034\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5428 BD2B12CE175910846987863A9A89B275
51 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_3.0.4737034\ProcInfo.exe Microsoft Windows Operating System 10.0.22621.1 0
52 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe InsightsProcessInfo 1.0.4.2 6563 0E15E6C0A7797A38F7D5A5D5983C0908
53 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe InsightsProcessInfo 1.0.4.3 6716 D869D1FC3CC8440B42ECF041B3C8DBCC
54 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_3.0.4737036\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5428 33F78418E9404FF047FD2F3D6FF4D149
55 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_4.0.5706500\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5428 7567488D42DD45412BD98279BD687557
56 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_4.0.5735571\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5428 7567488D42DD45412BD98279BD687557
57 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe InsightsProcessInfo 1.0.4.3 6665 F2A9CFEA4C3F7AD3039DF8DEEDFE57C9
58 C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-peripheral-collector_ver_4.0.612650\ProcInfo.exe InsightsProcessInfo 1.0.4.2 5428 02076F25DD839E10A99CE58BB26FA11D
59 C:\Program Files (x86)\HP\HP Touchpoint Analytics Client\Provider Data Sources\ProcInfo\ProcInfo.exe InsightsProcessInfo 1.0.4.3 7024 B51A2455F090E20B58EE3E18E14F0FFC
             

   Comments about this process:

-------------------------------------------------------------------------------------------------------------------------------------------------------------
By john 2024-05-31 17:22:53
I observed this procinfo.exe is accessing the file lsass.exe which is used for storing the security related data.so its legit activity or not
I just want to know about this
-------------------------------------------------------------------------------------------------------------------------------------------------------------
By vikas 2024-05-31 17:29:52
Credential theft
Living off the land
Silk Typhoon (HAFNIUM)
more
Obtaining user operating system (OS) credentials from a targeted device is among threat actors’ primary goals when launching attacks because these credentials serve as a gateway to various objectives they can achieve in their target organization’s environment, such as lateral movement. One technique attackers use is targeting credentials in the Windows Local Security Authority Subsystem Service (LSASS) process memory because it can store not only a current user’s OS credentials but also a domain admin’s.

LSASS credential dumping was first observed in the tactics, techniques, and procedures (TTPs) of several sophisticated threat activity groups—including actors that Microsoft tracks as HAFNIUM and GALLIUM— and has become prevalent even in the cybercrime space, especially with the rise of the ransomware as a service gig economy. Detecting and stopping OS credential theft is therefore important because it can spell the difference between compromising or encrypting one device versus an entire network. Security solutions must provide specific measures and capabilities to help harden the LSASS process—for example, Microsoft Defender for Endpoint has advanced detections and a dedicated attack surface reduction rule (ASR) to block credential stealing from LSASS.

In May 2022, Microsoft participated in an evaluation conducted by independent testing organization AV-Comparatives specifically on detecting and blocking the LSASS credential dumping technique. The test, which evaluated several endpoint protection platforms (EPP) and endpoint detection and response (EDR) vendors, is the first time AV-Comparatives focused on a single attack technique, and we’re happy to report that Defender for Endpoint passed all 15 test cases used to dump user OS credentials from the LSASS process, achieving 100% detection and prevention scores. Notably, we also passed all test cases with only Defender for Endpoint’s default settings configured, that is, with LSASS ASR and Protective Process Light (PPL) turned off to validate our antivirus protection durability in itself. Such results demonstrate our continued commitment to provide organizations with industry-leading defense.

In this blog, we share examples of various threat actors that we’ve recently observed using the LSASS credential dumping technique. We also provide details on the testing methodology done by AV-Comparatives, which they also shared in their blog and detailed report. Finally, we offer additional recommendations to further harden systems and prevent attackers from taking advantage of possible misconfigurations should they fail to leverage credential dumping.

 

Sharing your feedback about this process or ask for help


Your Name

Your Email


Your Message


We accept anonymous messages. However, if you wish to receive a response, please include your email and name.

 Send me an email when anyone response to this
Security code:
security code security code

Please enter security code that you see on the above box.