Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

7, 5, 5111, 1712 1.90%
7, 5, 4805, 320 2.86%
7, 5, 4601, 54 12.38%
7, 5, 4209, 2358 20.00%
7, 4, 3607, 2246 35.24%
7, 4, 3230, 2052 3.81%
7, 4, 3203, 136 19.05%
7, 2, 2427, 2330 0.95%
7, 1, 1920, 1238 1.90%
7, 1, 1821, 1806 0.95%
6, 4, 1208, 1530 0.95%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
GetSidIdentifierAuthority, CryptDestroyKey, RegEnumValueW, GetSecurityDescriptorControl, GetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetSecurityDescriptorGroup, GetSecurityDescriptorOwner, MakeSelfRelativeSD, GetSecurityDescriptorLength, RegFlushKey, AddAce, InitializeAcl, GetAclInformation, MakeAbsoluteSD, InitializeSecurityDescriptor, GetLengthSid, IsValidSid, CryptVerifySignatureW, CryptCreateHash, CryptHashData, CryptAcquireContextW, RegDeleteValueW, RegNotifyChangeKeyValue, RegSetValueExW, RegQueryValueExW, RegQueryInfoKeyW, RegCreateKeyExW, RegEnumKeyExW, RegDeleteKeyW, RegOpenKeyExW, RegCloseKey, ConvertStringSecurityDescriptorToSecurityDescriptorW, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, GetSidSubAuthorityCount, OpenProcessToken, GetTokenInformation, ConvertSidToStringSidW, AllocateAndInitializeSid, CheckTokenMembership, FreeSid, GetAce, GetSidLengthRequired, InitializeSid, GetSidSubAuthority, SetSecurityDescriptorDacl, EqualSid, CopySid, CryptDestroyHash
crypt32.dll
CryptImportPublicKeyInfo, CertGetCertificateChain, CertVerifyCertificateChainPolicy, CertGetNameStringW, CertFreeCertificateChain, CertCreateContext, CertFreeCertificateContext, CertNameToStrW, CertDuplicateCertificateContext, CertEnumCertificatesInStore, CryptQueryObject
kernel32.dll
FindClose, FindNextFileW, FindFirstFileW, GetSystemInfo, GetTickCount, GetVersionExA, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, GetACP, GetLocaleInfoA, GetThreadLocale, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, SetFilePointer, LoadLibraryA, GetStringTypeW, GetStringTypeA, CompareFileTime, GetConsoleCP, LCMapStringW, GetFileSizeEx, ReadFile, VerSetConditionMask, VerifyVersionInfoW, GetSystemTime, SystemTimeToFileTime, LocalAlloc, GetTempPathW, OpenProcess, GetSystemTimeAsFileTime, GetCurrentProcess, TerminateProcess, GetExitCodeProcess, MapViewOfFile, WideCharToMultiByte, InterlockedDecrement, InterlockedIncrement, lstrlenW, Sleep, MultiByteToWideChar, InterlockedExchange, FlushFileBuffers, CreateMutexW, CreateEventW, WaitForSingleObject, OpenEventW, ReleaseMutex, SetEvent, WriteFile, CreateFileW, DeleteFileW, MoveFileExW, GetTempFileNameW, GetFileAttributesExW, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, CreateFileMappingW, GetCurrentProcessId, OpenFileMappingW, MapViewOfFileEx, UnmapViewOfFile, CreateProcessW, LoadLibraryExW, LocalFree, FreeLibrary, OutputDebugStringA, GetModuleFileNameW, IsValidCodePage, GetOEMCP, QueryPerformanceCounter, VirtualFree, HeapCreate, GetStartupInfoA, GetFileType, SetHandleCount, GetCommandLineW, GetCommandLineA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, ExitProcess, GetCurrentThreadId, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetModuleFileNameA, GetStdHandle, GetCPInfo, LCMapStringA, RtlUnwind, VirtualQuery, VirtualAlloc, VirtualProtect, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, GetStartupInfoW, SetLastError, GetLastError, LoadLibraryW, CloseHandle, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, RaiseException, GetVersion, GetFileAttributesW, GetProcAddress, GetModuleHandleW, GetModuleHandleA, CreateFileA, GetConsoleMode, ExpandEnvironmentStringsW, GetVersionExW
ole32.dll
OleRun, CoCreateInstance, CoInitialize, CoUninitialize, StringFromGUID2, CoCreateGuid, CoInitializeEx
shell32.dll
SHGetFolderPathW
shlwapi.dll
PathFileExistsW, PathAppendW, PathCanonicalizeW, PathCombineW, PathIsDirectoryW
user32.dll
UnregisterClassA
userenv.dll
UnloadUserProfile
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW
wintrust.dll
WinVerifyTrust

GoogleToolbarUser_32.exe

Google Toolbar for Internet Explorer by Google Inc (Signed)

Remove GoogleToolbarUser_32.exe
Version:   7, 1, 1920, 1238
MD5:   745ee2c6fb0b43c9f00e017f5e5d7317
SHA1:   eb9b884aa359ee227e0259ca85ea027b4d30903b
SHA256:   51a810acb524662b5e0c895fbbf8d724e2a7b96a7defcd3af0deb150af7df8bc

What is GoogleToolbarUser_32.exe?

Google Toolbar is an Internet browser toolbar for Internet Explorer. Google Toolbar resides above the browser's tab bar and provides a search box to carry out web searches. Users can log into their Gmail accounts and access their email, saved bookmarks, and web history. It has tools such as AutoLink, AutoFill, translation, and spell checker. Google Toolbar is often distributed through product bundling with a primary download.

About GoogleToolbarUser_32.exe (from Google Inc)

Google Toolbar is designed to help you find what you're looking for quickly and discover new things along the way. Google Toolbar lets you search Google from anywhere on the web. Start typing your s

DetailsDetails

File name:GoogleToolbarUser_32.exe
Publisher:Google Inc.
Product name:Google Toolbar for Internet Explorer
Description:Google Toolbar Broker
Typical file path:C:\Program Files\google\google toolbar\googletoolbaruser_32.exe
Original name:GoogleToolbarUser.exe
File version:7, 1, 1920, 1238
Size:300.17 KB (307,376 bytes)
Certificate
Issued to:Google Inc
Authority (CA):VeriSign
Effective date:Sunday, February 21, 2010
Expiration date:Wednesday, February 22, 2012
Digital DNA
Entropy:6.503998
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Google Inc
18% remove
Google Toolbar is an Internet browser toolbar only available for Internet Explorer and Firefox. Google Toolbar is often distributed through product bundling with a primary download. Google Toolbar resides above the browser's tab bar and provides a search box to carry out web searches. Users can log into their Gmail accounts and access their email, saved bookmarks, and web history. It has tools such as AutoLink, AutoFill, translation, sp...

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.17788575%
0.028634%
Kernel CPU:0.08601869%
0.013761%
User CPU:0.09186706%
0.014873%
Kernel CPU time:226 ms/min
100,923,805ms/min
User CPU time:16 ms/min
0 ms/min
CPU cycles:4,189,870/sec
17,470,203/sec
Memory
Private memory:7.38 MB
21.59 MB
Private (maximum):11.73 MB
Private (minimum):8.95 MB
Non-paged memory:7.38 MB
21.59 MB
Virtual memory:95.15 MB
140.96 MB
Virtual memory (peak):110.67 MB
169.69 MB
Working set:8.96 MB
18.61 MB
Working set (peak):12.24 MB
37.95 MB
Page faults:3,866/min
2,039/min
I/O
I/O read transfer:26.77 KB/sec
1.02 MB/min
I/O read operations:14/sec
343/min
I/O write transfer:644 Bytes/sec
274.99 KB/min
I/O write operations:6/sec
227/min
I/O other transfer:354.78 KB/sec
448.09 KB/min
I/O other operations:658/sec
1,671/min
Resource allocations
Threads:6
12
Handles:198
600
GUI GDI count:9
103
GUI USER count:4
49

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:"C:\Program Files\google\google toolbar\googletoolbaruser_32.exe"
Owner:User
Parent process:ieuser.exe (Internet Explorer by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 33.33%
Windows Vista Home Premium 14.29%
Windows 7 Professional 11.90%
Windows 7 Ultimate 9.52%
Windows 8.1 7.14%
Windows 8 4.76%
Windows 7 Home Basic 4.76%
Windows 8 Pro 4.76%
Windows Vista Ultimate 2.38%
Windows 8 Pro with Media Center 2.38%
Windows 8 Enterprise 2.38%
Windows Vista™ Home Premium 2.38%

Distribution by countryDistribution by country

United States installs about 51.28% of Google Toolbar for Internet Explorer.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 18.87%
Sony 18.87%
Toshiba 18.87%
ASUS 15.09%
Hewlett-Packard 15.09%
Dell 7.55%
NEC 3.77%
Packard Bell 1.89%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE