AntiLogger.exe

Zemana AntiLogger

Zemana Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘AntiLogger’. This file is installed with the program AntiLogger.
Publisher:
Zemana Ltd.  (signed and verified)

Product:
Zemana AntiLogger

Description:
Zemana AntiLogger User Interface

Version:
1.9.3.224

MD5:
da07243e9b1fb2f590a4f46ea79adb34

SHA-1:
16e98cbdc3671b98844113a4b8beca6ed566d8b9

SHA-256:
75feb7eafb92b0d06f375231a98fdc53e79e8bb962c21ba45122c19368323e4c

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/24/2024 12:42:35 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.ASPack
0.98/18155

File size:
12.5 MB (13,091,312 bytes)

Product version:
1.9.3.224

Copyright:
Zemana Ltd. All rights reserved.

Original file name:
AntiLogger.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\antilogger\antilogger.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/28/2011 12:00:00 AM

Valid to:
12/14/2012 11:59:59 PM

Subject:
CN=Zemana Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zemana Ltd., L=Sofia, S=Lozenetz, C=BG

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3C15A878642EECC83D8585E96BE375AF

File PE Metadata
Compilation timestamp:
11/2/2012 3:07:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
196608:5qE6lWRPL76P9Sk2Dy9Mylr/BJrgFn47TcUIvGhbKmjTdNv:5qE6lWRPLuo9yVr/BJrZTdTr

Entry address:
0x29E8

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 10, 84, 00, A1, 9F, 10, 84, 00, C1, E0, 02, A3, A3, 10, 84, 00, 52, 6A, 00, E8, 17, C6, 43, 00, 8B, D0, E8, E2, A8, 42, 00, 5A, E8, 00, A8, 42, 00, E8, 3B, AA, 42, 00, 6A, 00, E8, 78, C9, 42, 00, 59, 68, 48, 10, 84, 00, 6A, 00, E8, F1, C5, 43, 00, A3, A7, 10, 84, 00, 6A, 00, E9, 97, 6D, 43, 00, E9, AA, C9, 42, 00, 33, C0, A0, 91, 10, 84, 00, C3, A1, A7, 10, 84, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, A8, 06, 00, 00, 0B, C9...
 
[+]

Entropy:
6.6471

Code size:
4.3 MB (4,456,448 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger

Command:
"C:\Program Files\antilogger\antilogger.exe" \minimized


The file AntiLogger.exe has been discovered within the following program.

AntiLogger  by Zemana Ltd.
Publisher's description - “Zemana AntiLogger is a powerful, efficient, and lightweight app that blocks hackers. It detects any attempts to modify your computer’s settings, record your activities, hook to your PC’s sensitive processes, or inject malicious code in your system.”
9% remove it
 
Powered by Should I Remove It?

Scan AntiLogger.exe - Powered by Reason Core Security