File details
File name: googleupdate.exe
Name: Google Update
Description: Google Installer
Version: 1.2.183.21
Size: 132.98 KB
Original file name: GoogleUpdate.exe
Digital certificate
Certificate authority:
VeriSign
Effective date: 6/18/2007
Expiration date: 6/18/2010
Resource utilization
 | CPU utilization averages |
Total CPU: 1.7239563268%
Privileged CPU:
0.2011839324%

User CPU:
1.52277239448715%

Privileged CPU time: 99850.5 ms
Privileged CPU time /min: 17 ms
CPU cycle count:
320,524,884
CPU cycle count /min: 515,846
 | Memory utilization averages |
Committed memory:
57.46 MB
Peak committed memory: 61.56 MB
Paged memory:
3.6 MB
Peak paged memory: 3.66 MB
Paged system memory:
87.75 KB
Non-paged system memory: 9.26 KB
Working set memory:
2.45 MB
Peak working set memory: 6.77 MB
Min working set memory: 2.45 MB
Private memory:
3.6 MB
Page faults:
4,076
Page faults /min: 3
 | Process I/O averages |
Total read operations:
33
Read operations /min: 1
Total read transfer: 74.21 KB
Read transfer /min: 108 Bytes
Total write operations:
21
Write operations /min: 1
Total write transfer: 4.26 KB
Write transfer /min: 0 Bytes
Total other operations:
2,779
Other operations /min: 4
Total other transfer: 72.39 KB
Other Transfer /min: 98 Bytes
 | GUI Object Averages |
GDI objects:
6
Peak GDI objects: 10
USER objects:
3
Peak USER objects: 6
Resources
Handle count average: 160
Thread count average: 6
Thread resource averages
Total CPU: 0.017383450532%
Privileged CPU: 0.013754336168%
User CPU: 0.003629114364%
CPU Cycle count /sec: 187,286
Context switches /sec: 1
Module memory size: 148 KB
ntdll.dll

Total CPU: 0.000693107536%
Privileged CPU: 0.000625487288%
User CPU: 0.000067620247%
Module memory size: 712 KB
sechost.dll

Total CPU: 0.000375309481%
Privileged CPU: 0.000375309481%
User CPU: 0.000000000000%
CPU Cycle count /sec: 5,869
Module memory size: 100 KB
ntdll.dll

Total CPU: 0.000207790237%
Privileged CPU: 0.000103895118%
User CPU: 0.000103895118%
Module memory size: 704 KB
normaliz.dll

Total CPU: 0.000071567771%
Privileged CPU: 0.000000000000%
User CPU: 0.000071567771%
Module memory size: 36 KB
Process details
Runs as (owner): User
Integrety level: Undefined
Windows platform: 32-bit
Runs as a service: Yes
Parent Processes
Child Processes
Process Commands
"C:\Documents and Settings\user\Application Data\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Google\Update\GoogleUpdate.exe" /svc
C:\users\user\appdata\Local\Google\Update\GoogleUpdate.exe /c
"C:\Program Files\Google\Update\GoogleUpdate.exe" /c
Startup files (user) run details
Name: Google Update
Command: "C:\users\user\appdata\Local\Google\Update\GoogleUpdate.exe" /c
Service details
Name: gupdate1c9bf34c6a32016
Scheduled task details
Name: GoogleUpdateTaskUserS-1-5-21-2893654356-1984079470-3101418554-1000UA
Command: \GoogleUpdateTaskUserS-1-5-21-2893654356-1984079470-3101418554-1000UA
Scheduled tasks startup details
Name: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce84615a736d32.job
Network connectivity
UDP: LISTENING on port 4021
Image hashes
MD5: f02a533f517eb38333cb12a9e8963773
SHA-1: 258810d71436c5157cd0752bd13ce1de20f27eb2
SHA-256: 1f72cd1cf660766fa8f912e40b7323a0192a300b376186c10f6803dc5efe28df
PE image details
File entropy: 5.81134
File packed: No
Import Table
advapi32.dll

GetTokenInformation
OpenProcessToken
RegOpenKeyExW
kernel32.dll

GetCurrentProcess
GetProcAddress
SizeofResource
lstrlenW
FindResourceExW
FindResourceW
GetCommandLineW
CloseHandle
FreeLibrary
GetModuleFileNameW
RaiseException
LoadResource
GetModuleHandleW
LockResource
GetFileAttributesExW
VerifyVersionInfoW
LoadLibraryExW
VerSetConditionMask
GetLastError
SetLastError
LocalAlloc
SetStdHandle
SetFilePointer
InterlockedExchange
LoadLibraryA
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSection
DeleteCriticalSection
GetVersionExA
HeapDestroy
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
GetProcessHeap
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetStartupInfoW
GetModuleHandleA
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
WideCharToMultiByte
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsA
MultiByteToWideChar
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineA
SetHandleCount
GetFileType
GetStartupInfoA
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
VirtualAlloc
RtlUnwind
Sleep
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
GetLocaleInfoA
GetStringTypeA
GetStringTypeW
LCMapStringA
LCMapStringW
GetConsoleCP
GetConsoleMode
FlushFileBuffers
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
CreateFileA
SystemTimeToFileTime
GetSystemTime
CompareFileTime
ole32.dll
