zillya.exe

Zillya Antivirus

ALLIT Service, LLC.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Zillya Antivirus’.
Publisher:
ALLIT Service, LLC.  (signed and verified)

Product:
Zillya Antivirus

Version:
1,1,4324,0

MD5:
0d37f3f4735fe99188310bef993ada56

SHA-1:
26787bc5d714f8fcfc93e3d02a0bc3012f4c4e29

SHA-256:
d47b0d54281813b6f896b6e49a363cdf6eea4d0418301b326c6f5e53be5f83c7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 6:49:51 AM UTC  (today)

File size:
4.3 MB (4,476,397 bytes)

Product version:
1,1,4324,0

Copyright:
(c) 2009 - 2013 ALLIT Service, LLC. All rights reserved.

Original file name:
Zillya Antivirus

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\zillya antivirus\zillya.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/4/2013 12:00:00 AM

Valid to:
7/4/2014 11:59:59 PM

Subject:
CN="ALLIT Service, LLC.", O="ALLIT Service, LLC.", STREET="Observatornaya st., 23, apt. 17", L=Kyiv, S=Kyivska, PostalCode=04053, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F11A5E458C5FF44BEE23F0E59EA67D0C

File PE Metadata
Compilation timestamp:
6/20/2014 9:42:43 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x29A819

Entry point:
E9, 78, 88, DE, FF, E9, 36, FD, FF, FF, 53, 8A, 5C, 24, 08, F6, C3, 02, 56, 8B, F1, 74, 24, 57, 68, 4E, B5, 69, 00, 8D, 7E, FC, FF, 37, 6A, 0C, 56, E8, F0, 01, 00, 00, F6, C3, 01, 74, 07, 57, E8, 10, F2, FF, FF, 59, 8B, C7, 5F, EB, 13, E8, F5, 0C, 00, 00, F6, C3, 01, 74, 07, 56, E8, FA, F1, FF, FF, 59, 8B, C6, 5E, 5B, C2, 04, 00, FF, 25, B0, F0, 6F, 00, 3B, 0D, 2C, 6C, 7B, 00, 75, 02, F3, C3, E9, E0, 0A, 00, 00, CC, FF, 25, AC, F0, 6F, 00, FF, 25, F8, EF, 6F, 00, FF, 25, F0, EF, 6F, 00, CC, CC, CC, CC, CC...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
3 MB (3,133,440 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Zillya Antivirus

Command:
"C:\Program Files\zillya antivirus\zillya.exe" \min


Scan zillya.exe - Powered by Reason Core Security