Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

1.3.21.103 55.06%
1.2.183.21 35.28%
1.2.183.21 0.01%
1.2.183.21 0.01%
1.2.183.21 0.01%
1.2.183.9 6.78%
1.2.183.9 0.01%
1.2.131.7 2.85%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetTokenInformation, OpenProcessToken, RegOpenKeyExW
kernel32.dll
GetCurrentProcess, GetProcAddress, SizeofResource, lstrlenW, FindResourceExW, FindResourceW, GetCommandLineW, CloseHandle, FreeLibrary, GetModuleFileNameW, RaiseException, LoadResource, GetModuleHandleW, LockResource, GetFileAttributesExW, VerifyVersionInfoW, LoadLibraryExW, VerSetConditionMask, GetLastError, SetLastError, LocalAlloc, SetStdHandle, SetFilePointer, InterlockedExchange, LoadLibraryA, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, GetVersionExA, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetStartupInfoW, GetModuleHandleA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, GetCurrentThreadId, InterlockedDecrement, WideCharToMultiByte, ExitProcess, WriteFile, GetStdHandle, GetModuleFileNameA, FreeEnvironmentStringsA, MultiByteToWideChar, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, SetHandleCount, GetFileType, GetStartupInfoA, HeapCreate, VirtualFree, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime, VirtualAlloc, RtlUnwind, Sleep, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, GetLocaleInfoA, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, GetConsoleCP, GetConsoleMode, FlushFileBuffers, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CreateFileA, SystemTimeToFileTime, GetSystemTime, CompareFileTime
ole32.dll
CoCreateGuid

GoogleUpdate.exe

Google Update by Google Inc (Signed)

Remove GoogleUpdate.exe
Version:   1.2.131.7
MD5:   626a24ed1228580b9518c01930936df9
SHA1:   dcb86149b70829bb4320811b12686ae00131dbc3
SHA256:   cbd94ab1e5477d7288799d17528cc43d572e711da0f2b0c784a0b9fe105bf0f4

What is GoogleUpdate.exe?

Google products use a process called Google Update to periodically check for updates. This process sends information, such as version number, language, operating system, and other installation or update-related details, back to Google servers. Google Installer is a program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found.

About GoogleUpdate.exe (from Google Inc)

To make sure that you're protected by the latest security updates, Google Chrome automatically updates whenever it detects that a new version of the browser is available. The update process happens in

DetailsDetails

File name:googleupdate.exe
Publisher:Google Inc.
Product name:Google Update
Description:Google Installer
Typical file path:C:\users\user\appdata\local\google\update\googleupdate.exe
File version:1.2.131.7
Size:129.98 KB (133,104 bytes)
Certificate
Issued to:Google Inc
Authority (CA):VeriSign
Effective date:Monday, June 18, 2007
Expiration date:Friday, June 18, 2010
Digital DNA
Entropy:5.811342
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Google Update' → "C:\users\user\appdata\Local\Google\Update\GoogleUpdate.exe" /c
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • gupdate1c9a4adeb791009
Scheduled tasks
  • The task 'GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4040762489-3244682431-1063801501-1001Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3286019870-1475449969-3554601053-1000Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3305648521-2958999256-107983701-1002Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3644473725-3640809915-1163733049-1000Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-780999901-2708500014-2551514655-1000Core'
  • The job 'GoogleUpdateTaskMachineUA1cf876f52574e6a' runs daily in the path '\GoogleUpdateTaskMachineUA1cf876f52574e6a'
  • The job 'GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1714702166-3828736240-2364637561-1001Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4213831199-1925155440-1856091304-1000Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001UA'
  • The task 'GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-1467336047-3671384462-808872918-1001Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-4143023575-1045065631-1360249355-1001Core'
  • The task 'GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000UA'
  • The job 'GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000Core' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-3518954986-860323-3029074054-1000Core'
  • The job 'GoogleUpdateTaskUserS-1-5-21-872894108-2829445789-3937978749-1001UA' runs daily in the path '\GoogleUpdateTaskUserS-1-5-21-872894108-2829445789-3937978749-1001UA'
Scheduled tasks startups
Set to load on user login (bypasses Windows UAC if enabled)
  • Login entry path 'L:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cecbd45b3a8213'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce84615a736d32.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cea9d5293c17e2.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1ce7aa369f8ada6'
  • Login entry path '\GoogleUpdateTaskMachineCore1ca5db9f0198650'
  • Login entry path '\GoogleUpdateTaskMachineCore1cce6a17e13e8fd'
  • Login entry path '\GoogleUpdateTaskMachineCore1cc92a7b39f6800'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce05c553efaab8.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cdc58d2accdb9c'
  • Login entry path 'C:\WINXP\Tasks\GoogleUpdateTaskMachineCore1ce054f10035172.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cd9a8a6809015d'
  • Login entry path 'C:\WINDOWS.0\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cde6586d81c3c6.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cc71024b1a2f00.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cd60417c1ef31a.job'
  • Login entry path 'C:\WINXP\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cd08eb84d00124'
  • Login entry path 'D:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job'
  • Login entry path '\GoogleUpdateTaskMachineCore1cd6a67648c3f42'
  • Login entry path 'D:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cd628cca255480.job'
  • Login entry path 'C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cd1a82bee2d0fe.job'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00034202%
0.028634%
Kernel CPU:0.00028037%
0.013761%
User CPU:0.00006165%
0.014873%
Kernel CPU time:26,003 ms/min
100,923,805ms/min
User CPU time:3 ms/min
0 ms/min
CPU cycles:1,351,584/sec
17,470,203/sec
Memory
Private memory:155.63 MB
21.59 MB
Private (maximum):14.7 MB
Private (minimum):11.53 MB
Non-paged memory:155.63 MB
21.59 MB
Virtual memory:213.97 MB
140.96 MB
Virtual memory (peak):217.04 MB
169.69 MB
Working set:9.83 MB
18.61 MB
Working set (peak):77.9 MB
37.95 MB
Page faults:98,128/min
2,039/min
I/O
I/O read transfer:150 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:99 Bytes/sec
448.09 KB/min
I/O other operations:2/sec
1,671/min
Resource allocations
Threads:6
12
Handles:202
600
GUI GDI count:7
103
GUI GDI peak:8
142
GUI USER count:3
49
GUI USER peak:3
71

BehaviorsProcess properties

Platform:32-bit
Command lines:
  • C:\users\user\appdata\local\google\update\googleupdate.exe /c
  • "C:\Program Files\google\update\googleupdate.exe" /c
  • "C:\Documents and Settings\user\Application data\google\update\googleupdate.exe" /c
  • "C:\users\user\appdata\local\google\update\googleupdate.exe" /c
  • "C:\users\user\appdata\local\google\update\googleupdate.exe" -embedding
  • C:\users\user\appdata\local\google\update\googleupdate.exe /ua /installsource scheduler
Owner:SYSTEM
Windows Service
Service name:gupdate
Display name:gupdate1c9a4adeb791009
Description:“Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it.”
Type:Win32OwnProcess
Parent processes:

ResourcesThreads

Averages
 
GoogleUpdate.exe (main module)
Total CPU:0.00039937%
0.272967%
Kernel CPU:0.00032467%
0.107585%
User CPU:0.00007470%
0.165382%
Memory:140 KB
1.16 MB
ntdll.dll
Total CPU:0.00031998%
Kernel CPU:0.00026351%
User CPU:0.00005647%
Memory:712 KB
goopdate.dll (Google Update by Google)
Total CPU:0.00001882%
Kernel CPU:0.00001882%
User CPU:0.00000000%
Memory:832 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 68.00%
Windows 7 Ultimate 17.50%
Windows 7 Professional 6.00%
Microsoft Windows XP 6.00%
Windows Vista Home Premium 2.50%

Distribution by countryDistribution by country

United States installs about 60.91% of Google Update.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 31.39%
Toshiba 20.44%
Hewlett-Packard 17.52%
Acer 10.95%
Sony 6.57%
ASUS 5.11%
Sahara 2.92%
GIGABYTE 2.55%
Alienware 1.82%
Samsung 0.73%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE