googledrivesync.exe
- File Path:
C:\Program Files\Google\Drive\googledrivesync.exe
Hashes
Type | Hash |
---|---|
MD5 | 85138BEFEC50FFB746A43150385CDA71 |
SHA1 | 0B0CB022014162F6D8F31533CF862FFC0C4AB32C |
SHA256 | CD244894BC550F53ACF372E15742A5B29A7F029F39F1E9927C58B85B9EFB4E54 |
SHA384 | 1CEDCD2C45D065F0B1784E886A89B4E05CD1D923F904068C831C901B2637011F34691737F6A5A8002EA9ACEF41EDD41B |
SHA512 | 7A09E92AFA25F65D0BB9D4B3C607D171DE98AF29DF6834F45953F4C5CB5F58673CA2D9CA110203C55F203EF3D1900B35F4006B1754BB0AA91769FE1714CADA1E |
SSDEEP | 786432:4FbgbSTbL5pN7Gsd1eytWFzAtCOmcjNwsNHlO38uJksv6aCl6eEK2W6IsV4ZdreJ:EbgeTfvN3zey4G+kFO38upSl6eE/WdqJ |
Runtime Data
Child Processes:
googledrivesync.exe
Signature
- Status: Signature verified.
- Serial:
0C15BE4A15BB0903C901B1D6C265302F
- Thumbprint:
CB7E84887F3C6015FE7EDFB4F8F36DF7DC10590E
- Issuer: CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US
- Subject: CN=Google LLC, O=Google LLC, L=Mountain View, S=ca, C=US
File Metadata
- Original Filename:
- Product Name:
- Company Name:
- File Version:
- Product Version:
- Language: English (United States)
- Legal Copyright:
File Similarity (ssdeep match)
File | Score |
---|---|
C:\Program Files\Google\Drive\googledrivesync.exe | 68 |
Possible Misuse
The following table contains possible examples of googledrivesync.exe
being misused. While googledrivesync.exe
is not inherently malicious, its legitimate functionality can be abused for malicious purposes.
Source | Source File | Example | License |
---|---|---|---|
sigma | proc_creation_win_commandline_path_traversal_evasion.yml | CommandLine\|contains: '\Google\Drive\googledrivesync.exe\..\' |
DRL 1.0 |
MIT License. Copyright (c) 2020-2021 Strontic.