zillya.exe

Zillya Antivirus

ALLIT Service, LLC.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Zillya Antivirus’.
Publisher:
ALLIT Service, LLC.  (signed and verified)

Product:
Zillya Antivirus

Version:
2,0,465,0

MD5:
1f79a6a0ec4e719d8be6a72fb35b9cd6

SHA-1:
7b5ffb959a16360f97202b21441004dd0d6648bb

SHA-256:
aab7cb2d41ac169ef72d854c2b65543963b1a2317e662cb8c1ad8dcaa9933da8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 12:56:00 PM UTC  (today)

File size:
3.8 MB (4,021,280 bytes)

Product version:
2,0,465,0

Copyright:
(c) 2009 - 2013 ALLIT Service, LLC. All rights reserved.

Original file name:
Zillya Antivirus

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\zillya antivirus\zillya.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/4/2013 3:00:00 AM

Valid to:
7/5/2014 2:59:59 AM

Subject:
CN="ALLIT Service, LLC.", O="ALLIT Service, LLC.", STREET="Observatornaya st., 23, apt. 17", L=Kyiv, S=Kyivska, PostalCode=04053, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F11A5E458C5FF44BEE23F0E59EA67D0C

File PE Metadata
Compilation timestamp:
6/20/2014 4:25:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:8ep5EfOqDo7UrIVEcN651BvW4M2uiXBbL7Oms7JfX18Oc4/mRwE/SS:wDusIVbMTZYJfF82ER

Entry address:
0x28D365

Entry point:
E8, 93, 0A, 00, 00, E9, 36, FD, FF, FF, 53, 8A, 5C, 24, 08, F6, C3, 02, 56, 8B, F1, 74, 24, 57, 68, 7E, E0, 68, 00, 8D, 7E, FC, FF, 37, 6A, 0C, 56, E8, F1, 00, 00, 00, F6, C3, 01, 74, 07, 57, E8, 34, F2, FF, FF, 59, 8B, C7, 5F, EB, 13, E8, D9, 0C, 00, 00, F6, C3, 01, 74, 07, 56, E8, 1E, F2, FF, FF, 59, 8B, C6, 5E, 5B, C2, 04, 00, FF, 25, BC, 00, 6F, 00, 3B, 0D, C4, 13, 7A, 00, 75, 02, F3, C3, E9, C4, 0A, 00, 00, CC, FF, 25, E8, FF, 6E, 00, FF, 25, E4, FF, 6E, 00, FF, 25, DC, FF, 6E, 00, FF, 25, D4, FF, 6E...
 
[+]

Code size:
2.9 MB (3,072,000 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Zillya Antivirus

Command:
"C:\Program Files\zillya antivirus\zillya.exe" \min


Scan zillya.exe - Powered by Reason Core Security