Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

1.3.21.103 55.06%
1.2.183.21 35.28%
1.2.183.21 0.01%
1.2.183.21 0.01%
1.2.183.21 0.01%
1.2.183.9 6.78%
1.2.183.9 0.01%
1.2.131.7 2.85%

Relationships

Parent processes
Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetTokenInformation, OpenProcessToken, RegOpenKeyExW
kernel32.dll
GetCurrentProcess, GetProcAddress, SizeofResource, lstrlenW, FindResourceExW, FindResourceW, GetCommandLineW, CloseHandle, FreeLibrary, GetModuleFileNameW, RaiseException, LoadResource, GetModuleHandleW, LockResource, GetFileAttributesExW, VerifyVersionInfoW, LoadLibraryExW, VerSetConditionMask, GetLastError, SetLastError, LocalAlloc, SetStdHandle, SetFilePointer, InterlockedExchange, LoadLibraryA, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, GetVersionExA, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetStartupInfoW, GetModuleHandleA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, GetCurrentThreadId, InterlockedDecrement, WideCharToMultiByte, ExitProcess, WriteFile, GetStdHandle, GetModuleFileNameA, FreeEnvironmentStringsA, MultiByteToWideChar, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, SetHandleCount, GetFileType, GetStartupInfoA, HeapCreate, VirtualFree, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime, VirtualAlloc, RtlUnwind, Sleep, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, GetLocaleInfoA, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, GetConsoleCP, GetConsoleMode, FlushFileBuffers, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CreateFileA, SystemTimeToFileTime, GetSystemTime, CompareFileTime
ole32.dll
CoCreateGuid

GoogleUpdate.exe

Google Update by Google Inc (Signed)

Remove GoogleUpdate.exe
Version:   1.2.183.21
MD5:   f02a533f517eb38333cb12a9e8963773
SHA1:   258810d71436c5157cd0752bd13ce1de20f27eb2
SHA256:   1f72cd1cf660766fa8f912e40b7323a0192a300b376186c10f6803dc5efe28df

What is GoogleUpdate.exe?

Google products use a process called Google Update to periodically check for updates. This process sends information, such as version number, language, operating system, and other installation or update-related details, back to Google servers. Google Installer is a program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found.

About GoogleUpdate.exe (from Google Inc)

To make sure that you're protected by the latest security updates, Google Chrome automatically updates whenever it detects that a new version of the browser is available. The update process happens in

DetailsDetails

File name:googleupdate.exe
Publisher:Google Inc.
Product name:Google Update
Description:Google Installer
Typical file path:C:\users\user\appdata\local\google\update\googleupdate.exe
File version:1.2.183.21
Size:132.98 KB (136,176 bytes)
Certificate
Issued to:Google Inc
Authority (CA):VeriSign
Effective date:Monday, June 18, 2007
Expiration date:Friday, June 18, 2010
Digital DNA
Entropy:5.811342
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Google Inc
3% remove
Google Earth is a virtual globe, map and geographical information program. Google Earth is simply based on 3D maps, with the capability to show 3D buildings and structures (such as bridges), which consist of users' submissions using SketchUp, a 3D modeling program software. Google Earth is unlikely to operate on older hardware configurations.

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Google Update' → "C:\users\user\appdata\Local\Google\Update\GoogleUpdate.exe" /c
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • gupdate1c9a4adeb791009
Scheduled tasks
  • The task 'GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000Core'
  • The job 'GoogleUpdateTaskMachineUA1cf876f52574e6a' runs daily in the path '\GoogleUpdateTaskMachineUA1cf876f52574e6a'
  • The job 'GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-872894108-2829445789-3937978749-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-872894108-2829445789-3937978749-1001UA'
Scheduled tasks startups
Set to load on user login (bypasses Windows UAC if enabled)
  • Login entry path 'L:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cecbd45b3a8213'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce84615a736d32.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cea9d5293c17e2.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1ce7aa369f8ada6'
  • Login entry path '\GoogleUpdateTaskMachineCore1ca5db9f0198650'
  • Login entry path '\GoogleUpdateTaskMachineCore1cce6a17e13e8fd'
  • Login entry path '\GoogleUpdateTaskMachineCore1cc92a7b39f6800'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce05c553efaab8.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cdc58d2accdb9c'
  • Login entry path 'C:\WINXP\Tasks\GoogleUpdateTaskMachineCore1ce054f10035172.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cd9a8a6809015d'
  • Login entry path 'C:\WINDOWS.0\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cde6586d81c3c6.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cc71024b1a2f00.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cd60417c1ef31a.job'
  • Login entry path 'C:\WINXP\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cd08eb84d00124'
  • Login entry path 'D:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cd6a67648c3f42'
  • Login entry path 'D:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cd628cca255480.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cd1a82bee2d0fe.job'
Network connections
  • [UDP] listens on port 1162
  • [UDP] listens on port 4021

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.22490588%
    0.028634%
    Kernel CPU:0.16178092%
    0.013761%
    User CPU:0.06312495%
    0.014873%
    Kernel CPU time:107,404 ms/min
    100,923,805ms/min
    CPU cycles:15,005/sec
    17,470,203/sec
    Memory
    Private memory:3.4 MB
    21.59 MB
    Private (maximum):5.33 MB
    Private (minimum):4.36 MB
    Non-paged memory:3.4 MB
    21.59 MB
    Virtual memory:59.26 MB
    140.96 MB
    Virtual memory (peak):63.89 MB
    169.69 MB
    Working set:2.33 MB
    18.61 MB
    Working set (peak):6.75 MB
    37.95 MB
    Page faults:4,107/min
    2,039/min
    I/O
    I/O read transfer:124 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:2 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:108 Bytes/sec
    448.09 KB/min
    I/O other operations:6/sec
    1,671/min
    Resource allocations
    Threads:6
    12
    Handles:155
    600
    GUI GDI count:6
    103
    GUI GDI peak:10
    142
    GUI USER count:3
    49
    GUI USER peak:5
    71

    BehaviorsProcess properties

    Platform:64-bit
    Command lines:
    • "C:\Program Files\google\update\googleupdate.exe" /c
    • "C:\Program Files\google\update\googleupdate.exe" /ua /installsource scheduler
    • "C:\Program Files\google\update\googleupdate.exe" /svc
    • C:\users\user\appdata\local\google\update\googleupdate.exe /c
    • C:\users\user\appdata\local\google\update\googleupdate.exe /ua /installsource scheduler
    • "C:\users\user\appdata\local\google\update\googleupdate.exe" -embedding
    • "C:\Documents and Settings\user\Application data\google\update\googleupdate.exe" /c
    • (8 more)
    Owner:SYSTEM
    Windows Service
    Service name:gupdate
    Display name:gupdate1c9a4adeb791009
    Description:“Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it.”
    Type:Win32OwnProcess
    Parent processes:

    ResourcesThreads

    Averages
     
    GoogleUpdate.exe (main module)
    Total CPU:0.01166269%
    0.272967%
    Kernel CPU:0.00921736%
    0.107585%
    User CPU:0.00244533%
    0.165382%
    CPU cycles:126,201/sec
    5,741,424/sec
    Context switches:1/sec
    79/sec
    Memory:148 KB
    1.16 MB
    ntdll.dll
    Total CPU:0.00069311%
    Kernel CPU:0.00062549%
    User CPU:0.00006762%
    Memory:712 KB
    sechost.dll
    Total CPU:0.00037531%
    Kernel CPU:0.00037531%
    User CPU:0.00000000%
    CPU cycles:5,869/sec
    Memory:100 KB
    winhttp.dll
    Total CPU:0.00012146%
    Kernel CPU:0.00007287%
    User CPU:0.00004858%
    Memory:356 KB
    Normaliz.dll
    Total CPU:0.00007157%
    Kernel CPU:0.00000000%
    User CPU:0.00007157%
    Memory:36 KB
    advapi32.dll (Advanced Windows 32 Base API by Microsoft)
    Total CPU:0.00002429%
    Kernel CPU:0.00001215%
    User CPU:0.00001215%
    Memory:620 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 68.00%
    Windows 7 Ultimate 17.50%
    Windows 7 Professional 6.00%
    Microsoft Windows XP 6.00%
    Windows Vista Home Premium 2.50%

    Distribution by countryDistribution by country

    United States installs about 60.91% of Google Update.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 31.39%
    Toshiba 20.44%
    Hewlett-Packard 17.52%
    Acer 10.95%
    Sony 6.57%
    ASUS 5.11%
    Sahara 2.92%
    GIGABYTE 2.55%
    Alienware 1.82%
    Samsung 0.73%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE