AntiLogger.exe

Zemana AntiLogger

Zemana Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AntiLogger’.
Publisher:
Zemana Ltd.  (signed and verified)

Product:
Zemana AntiLogger

Description:
Zemana AntiLogger User Interface

Version:
1.9.2.201

MD5:
31f0989934fc0bf895232b8f41165ce2

SHA-1:
baca8478a1a555ed3050db13a9c83747bfb35374

SHA-256:
254f483a2012f3799fe425a23ee1c01b2996f99458dfaccfeebe81124154e422

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/23/2024 5:24:43 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.ASPack
0.98/17411

File size:
2.3 MB (2,386,792 bytes)

Product version:
1.9.2.0

Copyright:
© Zemana Ltd. All rights reserved.

Trademarks:
AntiLogger(tm) is a trademark of Zemana Ltd.

Original file name:
AntiLogger.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\antilogger\antilogger.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/15/2009 2:00:00 AM

Valid to:
12/16/2010 1:59:59 AM

Subject:
CN=Zemana Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zemana Ltd., L=Sofia, S=Lozenetz, C=BG

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
009328EAED0B63EC18CF9EF6A8623B40

File PE Metadata
Compilation timestamp:
4/13/2010 5:27:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:UYMhf2DRQ9G0W443s8e0B6q64VDfZ0Sh2vVvISOJdoI63iGm:Uvhf8PX3sZO6kJfjh6xMomV

Entry address:
0x1000

Entry point:
68, 01, 00, B0, 00, E8, 01, 00, 00, 00, C3, C3, 46, 20, 48, 34, 4D, F8, 34, B2, 54, 3E, F5, C2, 98, 31, BA, 8E, D6, DF, 5C, A9, 75, 64, B2, A3, 17, BC, 4B, 71, DB, C0, 3C, C1, DA, 85, B5, 58, B7, 95, 86, E4, AC, E3, B4, 4E, 3E, CE, 77, 88, 01, F5, AE, 29, AB, 64, F2, 77, 3C, D3, CE, F9, 2C, 3C, 10, 1F, E6, 2E, 7E, 9D, 1D, 47, C7, 15, 6A, 71, 58, 4A, 7C, 13, DB, 97, 60, 88, 3F, 3C, 23, 72, 62, 37, 77, 13, 63, 7E, 51, 41, 34, 54, B9, 46, 7D, B7, 76, 41, 79, B6, EC, 98, 50, C6, 20, BC, 93, BF, 5C, 12, AB, 8E...
 
[+]

Entropy:
7.9695  (probably packed)

Code size:
1.9 MB (1,953,792 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger

Command:
"C:\Program Files\antilogger\antilogger.exe" \minimized


Scan AntiLogger.exe - Powered by Reason Core Security