chromium.exe

Chromium

Luhong Han

The application chromium.exe by Luhong Han has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a separate (within the context of its own process) windows Service named “Protect Service(ChromiumP)”.
Publisher:
Luhong Han  (signed and verified)

Product:
Chromium

Version:
1.0.0.1

MD5:
fb682c09fd4e3b3d2dcb78867ab40086

SHA-1:
43841681b2815e2660e8bfe14f78236773ad490d

SHA-256:
4ded9d5852d51285e8cc463a9d4c9bb79bdfefa24b8bb08bc97cca5241002a6d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/9/2024 1:17:08 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Elex (M)
16.6.29.13

File size:
410.4 KB (420,224 bytes)

Product version:
51.0.2704.65

Copyright:
Copyright (C) 2016 Chromium Authors

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\chromium\chromium.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
6/22/2016 10:00:00 AM

Valid to:
4/2/2017 9:59:59 AM

Subject:
CN=Luhong Han, OU=Individual Developer, O=No Organization Affiliation, L=Beijing, S=Beijing, C=CN

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
1DBCDA4C3B9717FD38F1208F6841B3FE

File PE Metadata
Compilation timestamp:
6/21/2016 1:43:15 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
12288:fhWyhPDAV3O8ouPAdB4VaE0CjafR0i4YvDxuGALO0lA7TnA:ZFp8NPAluGALHlmTnA

Entry address:
0x2C9A1

Entry point:
AC, BA, 77, 00, 00, 9A, C4, B6, 8F, BB, 9B, 56, 44, 9B, 34, 00, EF, 3E, B0, 2C, F9, 49, 00, 00, 00, 00, 29, 1B, 3B, 2D, 1F, C3, 95, 19, 35, 81, 87, 18, 14, BB, 51, 00, 00, 00, 00, C9, 20, 57, 48, 63, 14, 60, 68, 20, 12, 1F, F9, 6C, EF, 9B, E5, F4, 61, 02, 00, 40, 81, 18, 8F, 31, 98, B4, 01, B4, 8F, BB, 9B, 8C, C9, 0D, 84, 20, C7, 00, 00, 00, 00, B6, A7, 23, 20, B7, 45, 00, 00, 00, 00, C5, 34, 60, 68, 58, 20, 6C, 7C, 17, 32, 24, CD, 60, FB, AC, C5, CF, 55, 0E, 00, 77, A1, 23, CD, 2D, 80, BB, 11, 8F, 83, 0D...
 
[+]

Code size:
302 KB (309,248 bytes)

Service
Display name:
Protect Service(ChromiumP)

Service name:
ChromiumP

Description:
To ensure your Chromium software integrity. If this service is disabled or stopped, your Chromium software will not be kept integrity check. This service uninstalls itself when there is no Chromium so

Type:
Win32OwnProcess

Depends on:
RpcSs


Remove chromium.exe - Powered by Reason Core Security