Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegDeleteKeyW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegEnumKeyExW, RegQueryInfoKeyW
kernel32.dll
GetThreadLocale, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetConsoleMode, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, WaitForSingleObject, RaiseException, ReleaseMutex, LeaveCriticalSection, GetLastError, WaitForMultipleObjects, EnterCriticalSection, CreateThread, LocalFree, GetVersionExW, SizeofResource, LockResource, LoadResource, FindResourceW, FindResourceExW, lstrlenW, lstrcmpiW, GetModuleHandleW, GetModuleFileNameW, CreateMutexW, InterlockedIncrement, InterlockedDecrement, Sleep, CreateEventW, GetCurrentThreadId, SetEvent, GetCommandLineW, RtlUnwind, HeapAlloc, HeapFree, HeapReAlloc, GetVersionExA, GetProcessHeap, GetStartupInfoW, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, VirtualFree, VirtualAlloc, HeapDestroy, HeapCreate, GetProcAddress, GetModuleHandleA, ExitProcess, WriteFile, GetStdHandle, GetModuleFileNameA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, HeapSize, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, FreeEnvironmentStringsA, MultiByteToWideChar, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, SetHandleCount, GetFileType, GetStartupInfoA, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime, InterlockedExchange, LoadLibraryA, GetLocaleInfoA, WideCharToMultiByte, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, SetFilePointer, GetConsoleCP
ole32.dll
CoCreateInstance, StringFromGUID2, CoRegisterClassObject, CoInitialize, StringFromCLSID, CoTaskMemFree, CoInitializeEx, CoUninitialize, CoRevokeClassObject
rpcrt4.dll
UuidToStringW, UuidCreate, RpcStringFreeW
shell32.dll
SHGetFileInfoW
user32.dll
UnregisterClassA, CharNextW, DispatchMessageW, TranslateMessage, GetMessageW, PostThreadMessageW, CharUpperW

OfficeLiveSignIn.exe

Microsoft Office Live Add-In by Microsoft Corporation (Signed)

Remove OfficeLiveSignIn.exe
Version:   2.0.2313.0
MD5:   6d12771cb33619f4bdaf2f6bbd310f60
SHA1:   c068fbefb630ebddf47076ad7d82c61d98325ec5
SHA256:   d7f4dcff8f2793d600cd190a985d9e04d29a47b35d3940dc18eb76770d71a87a

Overview

officelivesignin.exe executes as a process with the local user's privileges typically within the context of its parent svchost.exe (Host Process for Windows Services by Microsoft Corporation). It is installed with a couple of know programs including Microsoft Office Live Add-in 1.3 published by Microsoft Corporation, Game Graphic Studio from Obocaman and Game Graphic Studio by Obocaman. The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:officelivesignin.exe
Publisher:Microsoft Corp.
Product name:Microsoft Office Live Add-In
Description:Microsoft Office Live Add-in Sign-in
Typical file path:C:\Program Files\microsoft\office live\officelivesignin.exe
File version:2.0.2313.0
Size:94.85 KB (97,128 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
EjoyStudio
8% remove
Microsoft Corporation
4% remove
The Office Live Add-in installs new menu options in Microsoft Office as well as a toolbar which allows you to open documents located in Office Live Workspace directly from Microsoft Office Word, Office Excel, and Office PowerPoint. You will also be able to save files directly from Microsoft Office Word, Office Excel, and Office PowerPoint to your Microsoft Office Live Workspace.
Microsoft Corporation
3% remove
To play Windows Media in Firefox, you need the Windows Media Player browser plugin installed. Even if you already have Windows Media Player installed, you may still be missing the plugin required to play back Windows Media audio and video embedded in Web Pages.
Obocaman
8% remove
SafeNet, Inc.
9% remove
SafeNet offers the only complete portfolio of encryption, access control and key management solutions that extend protection and ownership across the lifecycle of sensitive data, as it is created, accessed, shared, stored and moved. From the datacenter to the cloud, organizations can remain protected, compliant and in control, no matter where their business takes them. SafeNet delivers industry- first, high-assurance solutions for virtu...
Symantec Corporation
6% remove

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00050647%
0.028634%
Kernel CPU:0.00050391%
0.013761%
User CPU:0.00000256%
0.014873%
Kernel CPU time:312,502 ms/min
100,923,805ms/min
Memory
Private memory:1.15 MB
21.59 MB
Private (maximum):2.22 MB
Private (minimum):86 KB
Non-paged memory:1.15 MB
21.59 MB
Virtual memory:41.26 MB
140.96 MB
Virtual memory (peak):42.01 MB
169.69 MB
Working set:130 KB
18.61 MB
Working set (peak):4.04 MB
37.95 MB
Resource allocations
Threads:4
12
Handles:81
600
GUI GDI count:8
103
GUI GDI peak:9
142
GUI USER count:4
49
GUI USER peak:4
71

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\microsoft\office live\officelivesignin.exe" object -embedding
Owner:User
Parent process:svchost.exe (Generic Host Process for Win32 Services by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 50.00%
Windows 7 Home Basic 50.00%

Distribution by countryDistribution by country

Taiwan installs about 50.00% of Microsoft Office Live Add-In.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 66.67%
Hewlett-Packard 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE