archttpsrv.exe

Areca Technology Corporation

It runs as a windows Service named “ArcHttpProxyServer”.
Publisher:
Areca Technology Corporation  (signed and verified)

MD5:
d4eb30c61f20efd8c630be6278f3172f

SHA-1:
2565c6ca56ed15bb13bd22bd1c1c1e9b493e00ab

SHA-256:
7a470619174c7dcb32f745c5c75ee11e0eb391fae7d9b90a28617340401027da

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:33:28 PM UTC  (today)

File size:
932 KB (954,368 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\mraid\archttp\archttpsrv.exe

Digital Signature
Authority:
Areca Technology Corporation

Valid from:
2/8/2011 3:15:32 PM

Valid to:
11/4/2013 3:15:32 PM

Subject:
E=support@areca.com.tw, CN=www.areca.com.tw, OU=Support, O=Areca Technology Corporation, S=Taipei, C=TW

Issuer:
E=support@areca.com.tw, CN=www.areca.com.tw, OU=Support, O=Areca Technology Corporation, S=Taipei, C=TW

Serial number:
00BB81800EA0BA5FB6

File PE Metadata
Compilation timestamp:
10/9/2014 10:16:23 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
24576:oiSRnONtV/sn/T2MU/fvckU2MU/fvckR2MU/fvckd2MU/fvckC2MU/fvckj2MU/Q:gEtVG/gj6utQ

Entry address:
0x3DFDC

Entry point:
E8, 44, 95, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 7D, 14, 00, 7C, 29, 7F, 06, 83, 7D, 10, 00, 72, 21, 8B, 4D, 0C, 85, C9, 7C, 1A, 8B, 45, 08, 7F, 04, 85, C0, 72, 11, 2B, 45, 10, 1B, 4D, 14, 89, 45, 10, 89, 4D, 14, DF, 6D, 10, 5D, C3, E8, C5, E8, FF, FF, D9, EE, C7, 00, 16, 00, 00, 00, 5D, C3, 8B, FF, 55, 8B, EC, 83, EC, 4C, A1, 64, 38, 4E, 00, 33, C5, 89, 45, FC, 53, 33, DB, 57, 8B, F9, 89, 5D, C0, 89, 5D, BC, 3B, FB, 75, 1A, E8, 94, E8, FF, FF, C7, 00, 16, 00, 00, 00, E8, C8, 21, 00, 00, 83...
 
[+]

Entropy:
7.0495

Code size:
315.5 KB (323,072 bytes)

Service
Display name:
ArcHttpProxyServer

Type:
Win32OwnProcess, InteractiveProcess


Scan archttpsrv.exe - Powered by Reason Core Security