Should I block it?

No, this file is 100% safe to run.

Relationships

Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegOpenKeyExW, RegCloseKey, RegSetValueExW, RegCreateKeyExW, RegQueryValueExW, RegDeleteValueW, RegEnumKeyExW, RegEnumValueW, RegDeleteKeyW, GetUserNameW, RegSetValueExA, RegOpenKeyExA, RegQueryValueExA, RegOpenKeyA
gdi32.dll
GetViewportOrgEx, GetTextAlign, SelectObject, Ellipse, RoundRect, SetPixel, Escape, SetRectRgn, PlayMetaFileRecord, PlayEnhMetaFileRecord, CreatePatternBrush, CreateBitmap, OffsetWindowOrgEx, ExtCreatePen, CreatePen, SetROP2, ExtSelectClipRgn, RestoreDC, SaveDC, Polyline, GetPixel, OffsetViewportOrgEx, ResetDCW, EndPage, StartPage, SetAbortProc, StartDocW, AbortDoc, EndDoc, CreateICW, GetNearestColor, FillRgn, CreateCompatibleDC, CreateDIBSection, AnimatePalette, Pie, CreateCompatibleBitmap, CreateDIBPatternBrushPt, CreateBrushIndirect, BitBlt, DPtoLP, GetCurrentObject, LPtoDP, Rectangle, SetMetaFileBitsEx, GetEnhMetaFileW, GetEnhMetaFileHeader, GetWinMetaFileBits, EnumEnhMetaFile, EnumMetaFile, SetDIBits, GetBitmapBits, GetEnhMetaFileBits, StretchDIBits, GetMetaFileBitsEx, GetObjectType, DeleteMetaFile, DeleteEnhMetaFile, GetOutlineTextMetricsW, ExtEscape, GetTextCharsetInfo, GetFontData, EnumFontFamiliesExW, ExcludeClipRect, IntersectClipRect, GetTextFaceW, SetTextAlign, CreateDIBitmap, SetStretchBltMode, StretchBlt, CreateSolidBrush, GetClipBox, GetTextMetricsW, CreateFontIndirectW, GdiFlush, SetDIBColorTable, GetObjectA, SetLayout, Polygon, SetBkMode, SetTextColor, MoveToEx, LineTo, CreateDCW, SetMapMode, SetWindowOrgEx, DeleteDC, GetRasterizerCaps, CreatePalette, GetSystemPaletteUse, GetDeviceCaps, GetSystemPaletteEntries, GetPaletteEntries, UpdateColors, GetRgnBox, SelectPalette, RealizePalette, PatBlt, GetBkColor, GetTextColor, SelectClipRgn, RectVisible, CreateRectRgn, OffsetRgn, CreateRectRgnIndirect, CombineRgn, DeleteObject, SetBkColor, ExtTextOutW, SetViewportOrgEx, GetStockObject, GetObjectW, GetClipRgn
kernel32.dll
GetCurrentThread, SetThreadPriority, WaitForMultipleObjects, ResumeThread, CreateThread, SystemTimeToFileTime, GetSystemTime, IsDBCSLeadByte, Sleep, QueryDosDeviceW, GetLogicalDrives, RemoveDirectoryW, SetFileAttributesW, GetSystemDefaultLCID, CompareFileTime, GetUserDefaultLCID, MoveFileExW, GetDriveTypeW, FormatMessageW, GetLocaleInfoW, GetThreadLocale, GetDateFormatW, GetTimeFormatW, GetComputerNameW, FileTimeToSystemTime, GetTimeZoneInformation, FileTimeToLocalFileTime, IsValidCodePage, IsDBCSLeadByteEx, QueryPerformanceFrequency, QueryPerformanceCounter, OutputDebugStringW, SearchPathW, UnmapViewOfFile, MapViewOfFile, CreateFileMappingA, SetThreadExecutionState, GetShortPathNameW, GetFileSize, FindNextFileW, CompareStringW, TlsGetValue, TlsSetValue, VirtualProtect, GetCurrentProcessId, GetSystemTimeAsFileTime, GetStartupInfoA, ResetEvent, GetACP, GetStringTypeExW, SizeofResource, GetSystemDirectoryW, lstrcmpiA, MultiByteToWideChar, LoadLibraryA, FreeLibrary, GetSystemDefaultLangID, GetFullPathNameW, GetLongPathNameW, WriteFile, CreateDirectoryW, FindFirstFileW, FindClose, CreateFileW, SetFileTime, ReadFile, SetFilePointer, GetDiskFreeSpaceW, VirtualAlloc, TerminateProcess, UnhandledExceptionFilter, FindResourceW, LoadResource, LockResource, CopyFileW, GetTempPathW, GetTempFileNameW, InterlockedDecrement, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, InterlockedIncrement, GetLocalTime, MulDiv, CreateProcessW, GetCurrentProcess, SetProcessWorkingSetSize, WaitForSingleObject, SetErrorMode, GetTickCount, CloseHandle, SetEvent, GetCurrentThreadId, GlobalGetAtomNameW, GlobalDeleteAtom, SetCurrentDirectoryW, SetUnhandledExceptionFilter, GetCurrentDirectoryW, GlobalAddAtomW, OutputDebugStringA, GetModuleFileNameW, SetLastError, GetLastError, LoadLibraryW, DeleteFileW, GetStartupInfoW, GetVersion, GetFileAttributesW, GetProcAddress, GetModuleHandleW, GetModuleHandleA, GetCommandLineW, ExitProcess, GlobalSize, GlobalUnlock, GlobalLock, GlobalFree, GlobalAlloc, GlobalMemoryStatus, InterlockedExchange, LocalAlloc, FormatMessageA, LoadLibraryExW, OpenFile, LoadLibraryExA, LocalFree, CreateEventW, RaiseException
msvcrt.dll
DllMain
ole32.dll
CoIsOle1Class, StringFromCLSID, OleDuplicateData, SetConvertStg, WriteFmtUserTypeStg, WriteClassStg, ReadFmtUserTypeStg, ReadClassStg, CoTreatAsClass, OleMetafilePictFromIconAndLabel, OleGetIconOfClass, OleGetIconOfFile, GetClassFile, CoGetMalloc, OleQueryLinkFromData, OleIsCurrentClipboard, OleSetClipboard, OleGetClipboard, CreateGenericComposite, CreateItemMoniker, OleFlushClipboard, OleRegGetUserType, OleQueryCreateFromData, StgCreateDocfile, CoInitialize, CoUninitialize, GetRunningObjectTable, FreePropVariantArray, CreateFileMoniker, MkParseDisplayName, CreateBindCtx, CreateClassMoniker, OleIsRunning, OleLoad, OleRun, OleCreate, OleCreateLinkFromData, OleCreateFromData, OleCreateLink, OleCreateLinkToFile, OleCreateFromFile, CoGetClassObject, OleRegEnumVerbs, CoRegisterMessageFilter, StgOpenStorage, StgCreateStorageEx, StgIsStorageFile, StgCreateDocfileOnILockBytes, StgOpenStorageOnILockBytes, CreateILockBytesOnHGlobal, GetHGlobalFromStream, GetHGlobalFromILockBytes, StringFromGUID2, OleLockRunning, OleSetMenuDescriptor, CoFileTimeNow, DoDragDrop, CoRegisterClassObject, CoRevokeClassObject, OleCreateEmbeddingHelper, OleRegEnumFormatEtc, CreateDataAdviseHolder, CreateOleAdviseHolder, OleRegGetMiscStatus, OleTranslateAccelerator, OleCreateMenuDescriptor, OleDestroyMenuDescriptor, CoCreateInstanceEx, CLSIDFromProgID, CLSIDFromString, CoTaskMemFree, ReleaseStgMedium, CreateStreamOnHGlobal, OleSaveToStream, WriteClassStm, CoFreeUnusedLibraries, OleUninitialize, OleInitialize, CoDisconnectObject, CoCreateInstance, RegisterDragDrop, RevokeDragDrop, CoLockObjectExternal, ProgIDFromCLSID
user32.dll
DllMain

POWERPNT.exe

Microsoft Office 2003 by Microsoft Corporation (Signed)

Remove POWERPNT.exe
Version:   11.0.6564
MD5:   158e662ffc0bf340d4d4354f1d3bb4d0
SHA1:   df5050a1c6bb10b51affb678b0dbb5642fa38155

Overview

powerpnt.exe executes as a process with the local user's privileges. It is installed with a couple of know programs including Microsoft Office Professional Edition 2003 published by Microsoft Corporation and Microsoft Office Standard Edition 2003 published by Microsoft Corporation. The file is digitally signed by Microsoft Corporation. This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:powerpnt.exe
Publisher:Microsoft Corporation
Product name:Microsoft Office 2003
Description:Microsoft Office PowerPoint
Typical file path:C:\Program Files\microsoft office\office11\powerpnt.exe
File version:11.0.6564
Size:5.86 MB (6,146,760 bytes)
Build date:6/28/2005 8:55 PM
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Wednesday, January 5, 2005
Expiration date:Wednesday, April 5, 2006
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Microsoft Corporation
1% remove
Microsoft Office 2003 is an office suite. A new Office logo was debuted as part of a rebranding effort by Microsoft, as well as two new applications: InfoPath and OneNote. The core applications, Word, Excel, PowerPoint, and Access, had only minor improvements from Office XP. Outlook 2003 received improved functionality in many areas, including better email and calendar sharing and information display, complete Unicode support, search fo...
Microsoft Corporation
8% remove
Solve the challenges you and your business face with Microsoft Office 2003. Microsoft Office 2003 is designed to help you improve your productivity and achieve better results. Powerful new functionality behind familiar and easy-to-use applications will let you take on today's demanding business challenges. The new Microsoft Office provides the building blocks for you to create solutions that will help your organization take more effecti...

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.57877851%
0.028634%
Kernel CPU:0.22326950%
0.013761%
User CPU:0.35550901%
0.014873%
Kernel CPU time:10,896 ms/min
100,923,805ms/min
Context switches:267/sec
284/sec
Memory
Private memory:105.18 MB
21.59 MB
Private (maximum):104.04 MB
Private (minimum):49.21 MB
Non-paged memory:105.18 MB
21.59 MB
Virtual memory:188.14 MB
140.96 MB
Virtual memory (peak):189.99 MB
169.69 MB
Working set:113.16 MB
18.61 MB
Working set (peak):115.27 MB
37.95 MB
Page faults:88,916/min
2,039/min
I/O
I/O read transfer:4.31 MB/sec
1.02 MB/min
I/O read operations:1,126/sec
343/min
I/O write transfer:1.98 KB/sec
274.99 KB/min
I/O write operations:4/sec
227/min
I/O other transfer:167.6 KB/sec
448.09 KB/min
I/O other operations:6,260/sec
1,671/min
Resource allocations
Threads:9
12
Handles:251
600
GUI GDI count:159
103
GUI USER count:59
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\microsoft office|office11|powerpnt.exe" /s "C:\DOCUME~1\user\Locals~1\temp\terra9_-_202234_.pps"
Owner:User
Parent process:firefox.exe (Firefox by Mozilla Corporation)

ResourcesThreads

Averages
 
POWERPNT.EXE (main module)
Total CPU:8.85990286%
0.272967%
Kernel CPU:2.96849145%
0.107585%
User CPU:5.89141142%
0.165382%
Context switches:133/sec
79/sec
Memory:5.88 MB
1.16 MB
WINMM.dll
Total CPU:0.39479537%
Kernel CPU:0.02224199%
User CPU:0.37255338%
Memory:180 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE