There is a lot of talk on the forums and online in general about what gvt1.com is and who own’s it. I have seen many posts online where people say this domain is hosting malware/viruses/spyware I hope to clear a few things up in the post regarding this domain.
Who own’s this domain name ?
This domain is owned by Google – Full lookup details here
What is this domain used for ?
I have done a lot of traces and research on this domain and it appears to be used for Google Chrome updates.
Does this domain host malware/viruses/spyware ?
As far as I can tell no. It is owned by Google and used by Google Chrome for updates. I have seen this domain in our customers proxy logs and we have checked it ourselves and can see no evidence that it is linked to anything other than Google Chrome updates.
Example of URL
The following is an example of the URL taken for a proxy log, as you can see it is pulling “chrome_updater.exe” and also passing your external IP address.
Some people also talk about the redirector part of this URL, again this appears to be linked to Google Chrome updates.
Example redirector URL – http://redirector.gvt1.com/edgedl/release2/chrome_component/F7bY6CiefPs_3943/3943_all_crl-set-delta-3942-66332048509882810.data.crx3