AntiLogger.exe

Zemana AntiLogger

Zemana Information Technologies Industry Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AntiLogger’.
Publisher:
Zemana Ltd.  (signed by Zemana Information Technologies Industry Limited)

Product:
Zemana AntiLogger

Description:
Zemana AntiLogger User Interface

Version:
1.9.2.130

MD5:
29515059e11a213b69d61ae1f8e76927

SHA-1:
fd4e6520fc0393e16690a275a75adbe095569168

SHA-256:
048b08777a55827d224e89c389ff1d89c31754d3c6b33ccdf2c5161ce675e645

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 10:18:45 AM UTC  (today)

File size:
2.3 MB (2,416,496 bytes)

Product version:
1.9.2.0

Copyright:
© Zemana Ltd. All rights reserved.

Trademarks:
AntiLogger(tm) is a trademark of Zemana Ltd.

Original file name:
AntiLogger.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\antilogger\antilogger.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/28/2008 2:00:00 AM

Valid to:
12/4/2009 1:59:59 AM

Subject:
CN=Zemana Information Technologies Industry Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zemana Information Technologies Industry Limited, L=Istanbul, S=Uskudar, C=TR

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2AE026D2DAB457835BC5A9E9428B99F0

File PE Metadata
Compilation timestamp:
8/27/2009 2:36:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:sK2wWhe5I7JkWjWzS5LpsSgZTEs0C6eRg5cbw8wFiVx:V2wWT7JkW0bSlB5Z8wAD

Entry address:
0x1000

Entry point:
68, 01, 00, AF, 00, E8, 01, 00, 00, 00, C3, C3, DD, 9A, E1, BC, 1F, 68, 86, 99, 42, 93, 7A, 51, 68, 75, FB, 1C, 85, E9, 15, D7, 07, 41, 69, F4, A0, 67, 23, 7E, 27, CF, 59, 7D, 9E, A1, FC, CC, A4, 82, B7, 50, A3, 69, 62, E9, E6, 6A, 3E, 79, 7E, F1, 78, 6C, 26, A0, 21, 98, 1F, C6, D4, 7A, 89, F8, C7, E8, 63, DB, C4, FA, A4, 64, FE, 13, C9, 29, 9C, ED, DF, 9F, 7C, 4D, 3E, 9D, 1F, 77, 4D, 2F, F2, 33, 68, 97, 9A, 11, DD, 6F, 7D, 27, 28, E0, C6, 32, 3E, 23, 52, 8A, E0, 8A, 47, D7, 2F, BD, 52, C5, 2A, 70, 86, AB...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.9 MB (2,031,616 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger

Command:
"C:\Program Files\antilogger\antilogger.exe" \minimized


Scan AntiLogger.exe - Powered by Reason Core Security