google updater.exe

Google Inc

This is a setup program which is used to install the application. The file has been seen being downloaded from www.google.com.
Publisher:
Google Inc  (signed and verified)

MD5:
c6c8fe9db15203936f449b29750e2b63

SHA-1:
5b10112a882aacfa5353aa18967a0325df0a1815

SHA-256:
b23b9cddb363d14389ef85bc75b265d1af3b8e12ce577c1cb961ea8ec8a49662

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
5/7/2024 10:21:52 AM UTC  (today)

File size:
1 MB (1,075,800 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\google updater.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/19/2007 2:00:00 AM

Valid to:
6/19/2010 1:59:59 AM

Subject:
CN=Google Inc, OU=Digital ID Class 3 - Netscape Object Signing, O=Google Inc, L=Mountain View, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3144C06A6CFB5076C15D399572C69421

File PE Metadata
Compilation timestamp:
3/18/2009 2:51:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:2YIRXEyUXbT+C2DlemgLM114C0DoWzNPopCNdhUDVcZNH9MM6:m2hXbTF0nxZpUdhmYH9MM6

Entry address:
0xBCC2

Entry point:
B8, A0, DA, 88, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 3A, CC, 0C, 5E, 42, 53, F9, 61, 4A, 2F, FD, 8B, 33, 04, 7A, 43, 9B, 1F, 0E, 95, 33, 7A, CD, F8, 39, 4D, 67, E1, 28, 58, 81, AB, A5, 9A, E5, 71, 0F, 4C, 34, A5, 97, 89, 67, C3, B6, A8, 1E, A6, 5F, DB, 09, 78, 84, 0A, 54, 6E, 10, 72, 4E, 39, 7E, AA, B9, A9, 78, 93, A0, A7, 84, 83, 22, 68, EF, 14, E5, D2, 96, 07, 61, 9F, 19, 6E, D2, B9, A9, 9D, 61, F7, 02, 42, 46, FE, C7...
 
[+]

Packer / compiler:
PECompact v2

Code size:
82.5 KB (84,480 bytes)

The file google updater.exe has been seen being distributed by the following URL.