googledrivesync.exe

  • File Path: C:\Program Files\Google\Drive\googledrivesync.exe

Hashes

Type Hash
MD5 85138BEFEC50FFB746A43150385CDA71
SHA1 0B0CB022014162F6D8F31533CF862FFC0C4AB32C
SHA256 CD244894BC550F53ACF372E15742A5B29A7F029F39F1E9927C58B85B9EFB4E54
SHA384 1CEDCD2C45D065F0B1784E886A89B4E05CD1D923F904068C831C901B2637011F34691737F6A5A8002EA9ACEF41EDD41B
SHA512 7A09E92AFA25F65D0BB9D4B3C607D171DE98AF29DF6834F45953F4C5CB5F58673CA2D9CA110203C55F203EF3D1900B35F4006B1754BB0AA91769FE1714CADA1E
SSDEEP 786432:4FbgbSTbL5pN7Gsd1eytWFzAtCOmcjNwsNHlO38uJksv6aCl6eEK2W6IsV4ZdreJ:EbgeTfvN3zey4G+kFO38upSl6eE/WdqJ

Runtime Data

Child Processes:

googledrivesync.exe

Signature

  • Status: Signature verified.
  • Serial: 0C15BE4A15BB0903C901B1D6C265302F
  • Thumbprint: CB7E84887F3C6015FE7EDFB4F8F36DF7DC10590E
  • Issuer: CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US
  • Subject: CN=Google LLC, O=Google LLC, L=Mountain View, S=ca, C=US

File Metadata

  • Original Filename:
  • Product Name:
  • Company Name:
  • File Version:
  • Product Version:
  • Language: English (United States)
  • Legal Copyright:

File Similarity (ssdeep match)

File Score
C:\Program Files\Google\Drive\googledrivesync.exe 68

Possible Misuse

The following table contains possible examples of googledrivesync.exe being misused. While googledrivesync.exe is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
sigma proc_creation_win_commandline_path_traversal_evasion.yml CommandLine\|contains: '\Google\Drive\googledrivesync.exe\..\' DRL 1.0

MIT License. Copyright (c) 2020-2021 Strontic.