zis.exe

Zillya Antivirus

ALLIT Service, LLC.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Zillya Internet Security’.
Publisher:
ALLIT LLC  (signed by ALLIT Service, LLC.)

Product:
Zillya Antivirus

Version:
1.0.0.0

MD5:
a5cc7a70fe27efe75c2ee25a438f9097

SHA-1:
40d2cae26e807fba39dbd5695e71bcd8830a3dfe

SHA-256:
d194b131cf84fa5e91570d02cf92ee630d0581b3cff9a32108533171258b34f1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/2/2024 7:44:51 PM UTC  (today)

File size:
7.9 MB (8,287,248 bytes)

Product version:
1.0.0.0

Copyright:
(c) ALLIT LLC 2016

Original file name:
Zillya3_qt.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\zillya internet security\zis.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/23/2015 3:00:00 AM

Valid to:
7/23/2016 2:59:59 AM

Subject:
CN="ALLIT Service, LLC.", O="ALLIT Service, LLC.", STREET="Avtozavodskaya, 54/19", L=Kyiv, S=Kyivska, PostalCode=04114, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00AF2C6A74C06580EE78DA3F0A9EC6FECC

File PE Metadata
Compilation timestamp:
6/22/2016 4:40:32 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
98304:v9BsD/Dzh6W9lNyPSnsbKlbwf/u5aczjuDHC5B82rBsm2/QmSwLj:YLWaacXqeB82rmm4SY

Entry address:
0x472F1B

Entry point:
E8, F4, 07, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, E0, C1, B2, 00, E8, 8F, 05, 00, 00, 33, F6, 89, 75, E4, 89, 75, E0, FF, 15, 14, 94, 90, 00, 0F, B7, D8, 89, 75, FC, 64, A1, 18, 00, 00, 00, 8B, 50, 04, 8B, FE, BE, F0, 9F, B8, 00, 8B, CA, 33, C0, F0, 0F, B1, 0E, 85, C0, 74, 0B, 3B, C2, 75, F0, 33, F6, 46, 8B, FE, EB, 03, 33, F6, 46, 39, 35, F4, 9F, B8, 00, 75, 0A, 6A, 1F, E8, 2C, 06, 00, 00, 59, EB, 3B, 83, 3D, F4, 9F, B8, 00, 00, 75, 2C, 89, 35, F4, 9F, B8, 00, 68, 8C, B4, 90, 00, 68, 78, B4, 90, 00, E8...
 
[+]

Code size:
5 MB (5,275,648 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Zillya Internet Security

Command:
"C:\Program Files\zillya internet security\zis.exe" \min


Scan zis.exe - Powered by Reason Core Security