AntiLogger.exe

Zemana AntiLogger

Zemana Information Technologies Industry Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AntiLogger’.
Publisher:
Zemana Ltd.  (signed by Zemana Information Technologies Industry Limited)

Product:
Zemana AntiLogger

Description:
Zemana AntiLogger User Interface

Version:
1.7.2.986

MD5:
e4aacf08f3c5a6f4832151b9f7f2d099

SHA-1:
0b9e4a4d86987ca3bf0d958002c10b92fb6ae6cd

SHA-256:
93361796ebd95bc89ac2c6e71203eec354cdf5ce5de840279ec259f20442bd41

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 6:03:20 PM UTC  (today)

File size:
2.2 MB (2,278,768 bytes)

Product version:
1.7.2.0

Copyright:
© Zemana Ltd. All rights reserved.

Trademarks:
AntiLogger(tm) is a trademark of Zemana Ltd.

Original file name:
AntiLogger.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\antilogger\antilogger.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/28/2008 2:00:00 AM

Valid to:
12/4/2009 1:59:59 AM

Subject:
CN=Zemana Information Technologies Industry Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zemana Information Technologies Industry Limited, L=Istanbul, S=Uskudar, C=TR

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2AE026D2DAB457835BC5A9E9428B99F0

File PE Metadata
Compilation timestamp:
4/20/2009 12:38:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:855JKzHVL6CGEPejyMs8GCaZq3WbPdAyMOikW3Cicu:EJKz4yeeMsCPaXMWAt

Entry address:
0x1000

Entry point:
68, 01, B0, AA, 00, E8, 01, 00, 00, 00, C3, C3, C3, 6D, C8, 80, 48, F5, 6F, 66, 5F, F4, 64, EC, 56, 3A, 87, DF, E2, B6, 51, 7B, 16, 46, DB, C0, D2, 18, 22, FD, A4, EA, 7B, 17, 30, DD, 05, 08, E6, DA, 9C, 6F, 50, F4, D1, EA, 64, 48, 9D, C7, CB, 7A, E0, 87, E9, A2, 7B, 8E, 38, D1, 2E, 92, 91, 47, 87, 52, 60, EE, C1, A9, 81, 87, A3, 51, 23, 90, 9F, C3, F5, B1, 6D, D1, 88, 74, C5, 92, 30, 5D, D8, B0, 96, 03, 8E, D4, 81, C8, 03, C9, B9, 40, 74, 40, 80, 61, E3, 9A, E0, BC, 9E, 9A, B3, 86, D9, 8C, 5B, 77, 90, 5F...
 
[+]

Entropy:
7.9711

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.8 MB (1,929,216 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger

Command:
"C:\Program Files\antilogger\antilogger.exe" \minimized


Scan AntiLogger.exe - Powered by Reason Core Security