AntiLogger.exe

Zemana AntiLogger

Zemana Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘AntiLogger.exe’. This is installed with AntiLogger.
Publisher:
Zemana Ltd.  (signed and verified)

Product:
Zemana AntiLogger

Description:
Zemana AntiLogger User Interface

Version:
1.9.3.514

MD5:
d8e53b433345091cfc1c13f2a20cff11

SHA-1:
ac558189e8cc6b3b92e76b1b6ef24ec672d3dadd

SHA-256:
e8d136a7684226fb7a235aa04bd62747e6494a9ddf4f9908d6a0c835b77f9d57

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 12:49:45 PM UTC  (today)

File size:
17.8 MB (18,708,392 bytes)

Product version:
1.9.3.514

Copyright:
Zemana Ltd. All rights reserved.

Original file name:
AntiLogger.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\antilogger\antilogger.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/24/2013 2:00:00 AM

Valid to:
1/24/2015 12:59:59 AM

Subject:
CN=Zemana Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Zemana Ltd., L=Sofia, S=Lozenetz, C=BG

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
26B1E75E3D1702FA0415116B86CBCE0D

File PE Metadata
Compilation timestamp:
12/23/2013 5:22:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
196608:RUS9+ZweiWYVQ/mmzjQiVF/1TcUnphbKmj1ir1rZv5SUEBIt47qjmO/fQ93t:RUS9+ZweiW0mvQilTHYr1rZv5bHme499

Entry address:
0x2A48

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, AC, 30, 90, 00, A1, 9F, 30, 90, 00, C1, E0, 02, A3, A3, 30, 90, 00, 52, 6A, 00, E8, 71, E4, 4F, 00, 8B, D0, E8, 6A, C3, 4E, 00, 5A, E8, 88, C2, 4E, 00, E8, C3, C4, 4E, 00, 6A, 00, E8, 58, E4, 4E, 00, 59, 68, 48, 30, 90, 00, 6A, 00, E8, 4B, E4, 4F, 00, A3, A7, 30, 90, 00, 6A, 00, E9, 9F, 8A, 4F, 00, E9, 8A, E4, 4E, 00, 33, C0, A0, 91, 30, 90, 00, C3, A1, A7, 30, 90, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, F8, 06, 00, 00, 0B, C9...
 
[+]

Entropy:
7.1510

Code size:
5 MB (5,251,072 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger.exe

Command:
C:\Program Files\antilogger\antilogger.exe


Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AntiLogger

Command:
"C:\Program Files\antilogger\antilogger.exe" \minimized


The file AntiLogger.exe has been discovered within the following program.

AntiLogger  by Zemana Ltd.
Publisher's description - “Zemana AntiLogger is a powerful, efficient, and lightweight app that blocks hackers. It detects any attempts to modify your computer’s settings, record your activities, hook to your PC’s sensitive processes, or inject malicious code in your system.”
9% remove it
 
Powered by Should I Remove It?

Scan AntiLogger.exe - Powered by Reason Core Security