If i run chrome on a limited account and let's say the malware needs admin consent and i click yes (but must be digitally signed or it won't be able to run even as admin) to allow it to run, it can only steal passwords from chrome on the admin account because the passwords on the limited account i use are not encrypted there and i quote:
"To perform the encryption (on Windows), Chrome uses a Windows provided API function which makes the encrypted data only decipherable by the Windows user account used to encrypt the password. "
ChromePass from nirsoft returns nothing
Thanks for the feedback btw