chrome.exe

Google Chrome

Google Inc

It runs as a scheduled task under the Windows Task Scheduler. This is installed with Google Chrome. The file has been seen being downloaded from doc-0o-a8-docs.googleusercontent.com and multiple other hosts.
Publisher:
Google Inc.  (signed by Google Inc)

Product:
Google Chrome

Version:
26.0.1410.64

MD5:
4e9592bb2c100e571f82640e59e9ecd5

SHA-1:
024ee6fe5bc3e7852bc080ded993fad19952b925

SHA-256:
79437b8bb68fdf92dba1d3c96fd563338b2324859dfd32f9be995441b005f0ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/19/2024 10:26:48 AM UTC  (today)

File size:
1.3 MB (1,312,720 bytes)

Product version:
26.0.1410.64

Copyright:
Copyright 2012 Google Inc. All rights reserved.

Original file name:
chrome.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\google\chrome\application\chrome.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Subject:
CN=Google Inc, OU=Digital ID Class 3 - Java Object Signing, O=Google Inc, L=Mountain View, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
09E28B26DB593EC4E73286B66499C370

File PE Metadata
OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:AXBYaCuOwv3yWaDOX0C8qL/5mfTKQT1JOm3KPrwEM:mY8Owv3yWaDOX0NqL/8+IOm3KPUEM

Entry address:
0x82AE0

Entry point:
E8, 32, AF, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, 35, 7C, 12, 4A, 00, 57, FF, 35, 34, 5C, 50, 00, FF, D6, FF, 35, 30, 5C, 50, 00, 8B, D8, 89, 5D, FC, FF, D6, 8B, F0, 3B, F3, 0F, 82, 81, 00, 00, 00, 8B, FE, 2B, FB, 8D, 47, 04, 83, F8, 04, 72, 75, 53, E8, 88, AF, 00, 00, 8B, D8, 8D, 47, 04, 59, 3B, D8, 73, 48, B8, 00, 08, 00, 00, 3B, D8, 73, 02, 8B, C3, 03, C3, 3B, C3, 72, 0F, 50, FF, 75, FC, E8, AD, 66, 00, 00, 59, 59, 85, C0, 75, 16, 8D, 43, 10, 3B, C3, 72, 3E, 50, FF, 75, FC, E8...
 
[+]

Entropy:
6.4433

Code size:
636.5 KB (651,776 bytes)

Scheduled Task
Task name:
{63A32663-5F3D-42BA-8A15-250D6B1C8B7A}

Trigger:
Registration (Runs on registration)


3 Shell Open Commands
Open type:
ftp

Command:
"C:\Program Files\google\chrome\application\chrome.exe" -- "%1"

Open type:
http

Command:
"C:\Program Files\google\chrome\application\chrome.exe" -- "%1"

Open type:
https

Command:
"C:\Program Files\google\chrome\application\chrome.exe" -- "%1"


The file chrome.exe has been discovered within the following programs.

Frame do Google Chrome  by Google Inc
Publisher's description - “Google Chrome Frame is an open source plug-in that seamlessly brings Google Chrome's open web technologies and speedy JavaScript engine to Internet Explorer. Google Chrome Frame is a free plug-in for Internet Explorer.”
developers.google.com/chrome/chrome-frame
7% remove it
Google Chrome  by Google Inc
Google Chrome is a free web browser developed by Google that uses the WebKit layout engine. It is designed to be secure, fast, simple and stable. Chrome supports plug-ins with the Netscape Plugin Application Programming Interface (NPAPI).
www.google.com/chrome
6% remove it
Google Chrome Frame  by Google Inc
Publisher's description - “Google Chrome Frame is a free plug-in for Internet Explorer. Some advanced web apps use Google Chrome Frame to provide you with additional features and better performance. Sites that utilize Google Chrome Frame become more responsive.”
www.google.com/chromeframe
12% remove it
 
Powered by Should I Remove It?

The file chrome.exe has been seen being distributed by the following 5 URLs.

file:///C:/Program Files (x86)/Google/Chrome/.../chrome.exe