arkivdigital.exe

Arkiv Digital AD AB

This is a setup program which is used to install the application. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘ArkivDigital’. The file has been seen being downloaded from s3-eu-west-1.amazonaws.com.
Publisher:
ArkivDigital  (signed by Arkiv Digital AD AB)

Product:
ArkivDigital

Version:
2.0.47

MD5:
8ae940b07d32184bf2f727af1b939218

SHA-1:
236123f5491915f6bb19268114a67f56535b5d76

SHA-256:
a2f469c106fea3e9f96c558c3d5cf8936a46630795cdc0bc953daf65374debf0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 5:48:18 PM UTC  (today)

File size:
43 MB (45,135,064 bytes)

Product version:
2.0.47

Copyright:
Copyright © 2016 ArkivDigital

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\squirrelmachineinstalls\arkivdigital.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/14/2016 3:04:04 PM

Valid to:
1/14/2019 3:04:04 PM

Subject:
CN=Arkiv Digital AD AB, O=Arkiv Digital AD AB, STREET=Centralgatan 1, L=Lyrestad, S=Västra Götalands län, C=SE, OID.1.3.6.1.4.1.311.60.2.1.3=SE, SERIALNUMBER=556688-7633, OID.2.5.4.15=Private Organization

Issuer:
CN=GlobalSign Extended Validation CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121BE34BEDA4FBA563066475135914B1115

File PE Metadata
Compilation timestamp:
11/11/2015 7:26:00 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
786432:CKsGevQwF8NZGQk/GONkAJ5z9EcNEeiDSgK1zJ9sEV9idSvRwx5S+zTYLPVzyRv:Ck6xF8lPQrJBVEevn91V36xzcPVo

Entry address:
0xAD5E

Entry point:
E8, 48, 66, 00, 00, E9, 7F, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 7F, 0F, B6, 44, 24, 08, 0F, BA, 25, 44, 99, 42, 00, 01, 73, 0D, 8B, 4C, 24, 0C, 57, 8B, 7C, 24, 08, F3, AA, EB, 5D, 8B, 54, 24, 0C, 81, FA, 80, 00, 00, 00, 7C, 0E, 0F, BA, 25, 04, 84, 42, 00, 01, 0F, 82, 7F, 67, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83...
 
[+]

Code size:
109.5 KB (112,128 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ArkivDigital

Command:
C:\ProgramData\squirrelmachineinstalls\arkivdigital.exe --checkinstall


The file arkivdigital.exe has been seen being distributed by the following URL.

Scan arkivdigital.exe - Powered by Reason Core Security