AntiLogger.exe

Zemana AntiLogger

Zemana Information Technologies Industry Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AntiLogger’.
Publisher:
Zemana Ltd.  (signed by Zemana Information Technologies Industry Limited)

Product:
Zemana AntiLogger

Description:
Zemana AntiLogger User Interface

Version:
1.9.2.117

MD5:
5a2b3633065cb631538798bc01a9c3fa

SHA-1:
11b9ae933ee8bbf1e5e82415e3266e4899c95972

SHA-256:
b015d58f7972879544decb7c98904e0f7c1169ccb9903a814fd646fa49c3290c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:15:31 AM UTC  (today)

File size:
2.3 MB (2,390,384 bytes)

Product version:
1.9.2.0

Copyright:
© Zemana Ltd. All rights reserved.

Trademarks:
AntiLogger(tm) is a trademark of Zemana Ltd.

Original file name:
AntiLogger.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\antilogger\antilogger.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/28/2008 2:00:00 AM

Valid to:
12/4/2009 1:59:59 AM

Subject:
CN=Zemana Information Technologies Industry Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zemana Information Technologies Industry Limited, L=Istanbul, S=Uskudar, C=TR

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2AE026D2DAB457835BC5A9E9428B99F0

File PE Metadata
Compilation timestamp:
6/26/2009 4:44:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:Gl/UCg+PYXvoJHzAG8mjM07hn/iHReWMetVl0iemHUo:yL3PYXQJHV8mBdn8rtfjemHUo

Entry address:
0x1000

Entry point:
68, 01, 90, AE, 00, E8, 01, 00, 00, 00, C3, C3, DD, B2, 5D, 23, D6, 00, 93, DA, F7, 53, 4C, AB, DF, 8C, CC, 49, 9D, AE, C5, BA, D5, 1F, ED, B3, 8E, F3, 9D, DF, 87, 30, D0, A6, 1B, 8F, C2, 72, 64, 3B, 8F, 48, 5E, A6, 83, 42, 22, A2, 82, F9, 71, EC, BB, 2F, 16, 7F, 90, 70, 39, AB, B1, 17, 49, 68, D9, F9, 62, 72, 7C, 21, 37, 6C, FB, 1E, BF, 90, 55, F8, 58, DC, F3, B9, 56, 79, 6A, 49, F2, 63, 44, FA, 70, C5, 26, 84, 39, 65, 61, D8, 2F, 1D, 96, AD, 4F, 46, 75, AB, 62, 4B, 1F, F1, F5, D0, 2E, 18, 22, BA, CF, A2...
 
[+]

Entropy:
7.9705

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.9 MB (2,031,616 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger

Command:
"C:\Program Files\antilogger\antilogger.exe" \minimized


Scan AntiLogger.exe - Powered by Reason Core Security