Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

15.0.4551.1007 2.23%
15.0.4551.1001 0.45%
15.0.4535.1507 17.41%
15.0.4535.1507 0.45%
15.0.4535.1001 4.02%
15.0.4517.1504 0.45%
15.0.4517.1004 0.45%
15.0.4505.1510 7.59%
15.0.4505.1005 2.23%
15.0.4505.1005 0.45%
15.0.4481.1508 11.16%
15.0.4481.1005 16.52%
15.0.4454.1513 0.45%
15.0.4454.1504 5.80%
15.0.4454.1504 0.45%
15.0.4454.1002 0.45%
15.0.4128.1025 0.45%
15.0.4128.1025 28.57%
15.0.4128.1019 0.45%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, RegCreateKeyExW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegOpenKeyExW, RegQueryValueExW, LookupAccountNameW, RegSetValueExW, ConvertSidToStringSidW, OpenProcessToken, GetTokenInformation, CredWriteW, RegQueryValueExA, RegOpenKeyExA, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, ReportEventW, RegisterEventSourceW, DeregisterEventSource, EventWrite, OpenThreadToken, ConvertStringSidToSidW, IsValidSid, GetSidSubAuthorityCount, GetSidSubAuthority, FreeSid, EqualSid, CreateWellKnownSid, SetServiceObjectSecurity, QueryServiceStatusEx, OpenServiceW, OpenSCManagerW, DeleteService, CreateServiceW, ControlService, CloseServiceHandle, ChangeServiceConfig2W, RegQueryInfoKeyW, RegNotifyChangeKeyValue, RegEnumValueW, RegEnumKeyExW, RegDeleteValueW, RegDeleteKeyW, CreateProcessAsUserW, RegQueryValueW, RegGetValueW, RegSetKeySecurity, EnumDependentServicesW, AllocateAndInitializeSid, LookupPrivilegeValueW, AdjustTokenPrivileges
c2rui.dll
ShowStreamingCompleteToast, DestroyProgressAgent, ShowProtoHandlerInstalledUI, ShowFeatureBlockStreamingUI, ShowUpdatesInProgressProgressAgent, ShowUpdatesReadyToApplyDialog, ShowErrorBagUI, DestroyErrorBagUI, ShowRetryUI, ShowProgressUI, DestroyProgressUI, ShowProgressAgent, ShowUninstallDialog, ShowDisconnectedToast, ShowPackageLockedDialog, ShowUpdatesCompleteProgressAgent, ShowRepairDialog, CloseC2RUI, ShowDuringProcessShutDownDialog, ShowLessAggressiveProcessKillerDialog, ShowProcessKillerFailureDialog, ShowProcessKillerDialog, GetString, ShowErrorDialog, ShowRepairTypePickerDialog, ShowPartialRepairDialog, ShowProgressAgentDialog, ShowProgressAgentInstallationBlocked, ShowUpdatesAreLateProgressAgent, ShowAppNoHangUI, ConfirmOnlineRepairDialog
gdi32.dll
AddFontResourceW, SelectObject, EnumFontFamiliesExW, GetFontData, CreateFontIndirectW, DeleteObject
iphlpapi.dll
FreeMibTable, CreateSortedAddressPairs
kernel32.dll
GetFileType, CreateFileW, GetExitCodeThread, GetCurrentThreadId, WTSGetActiveConsoleSessionId, ProcessIdToSessionId, GetCurrentThread, OpenMutexW, GetSystemDefaultLCID, WaitForMultipleObjects, GetTimeZoneInformation, SystemTimeToTzSpecificLocalTime, LoadLibraryExW, FreeLibrary, GetNativeSystemInfo, GetVersionExW, GetSystemTimeAsFileTime, SetErrorMode, GetDiskFreeSpaceExW, CopyFileW, GetFileTime, CompareFileTime, LoadLibraryW, LoadLibraryA, GetModuleHandleA, GetVersion, OutputDebugStringA, GetFileAttributesW, LocalFree, GetTempPathW, SetFilePointerEx, ReadFile, GetFileSizeEx, K32GetModuleFileNameExW, K32EnumProcessModules, K32EnumProcesses, GetProcAddress, GetModuleHandleW, GetProcessId, GetPriorityClass, CreateProcessW, GetExitCodeProcess, GetLastError, InitializeCriticalSectionEx, DeleteCriticalSection, GetCurrentProcess, GetTempPathA, DeleteFileA, CompareStringEx, CreateDirectoryW, GetFileAttributesExW, SetLastError, WideCharToMultiByte, GetSystemDirectoryW, GetTempFileNameW, MoveFileExW, lstrcmpW, FindNextFileW, FindFirstFileW, WaitForSingleObjectEx, MultiByteToWideChar, FindClose, RaiseException, ExpandEnvironmentStringsA, LoadLibraryExA, FindResourceW, SizeofResource, LockResource, LoadResource, LocaleNameToLCID, CreateThread, OpenEventW, ResetEvent, IsProcessorFeaturePresent, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, DecodePointer, EncodePointer, GetStartupInfoW, InterlockedCompareExchange, InterlockedExchange, HeapFree, HeapAlloc, WerRegisterMemoryBlock, VirtualProtect, HeapSetInformation, GetProcessHeap, QueryPerformanceCounter, FormatMessageW, LeaveCriticalSection, EnterCriticalSection, WriteFile, LocalAlloc, IsWow64Process, RemoveDirectoryW, FindFirstFileExW, ExpandEnvironmentStringsW, GetWindowsDirectoryW, CloseHandle, SetEvent, WaitForSingleObject, CreateEventExW, ReleaseMutex, CreateMutexW, GetTickCount64, GlobalFree, OpenProcess, ExitProcess, TerminateProcess, SystemTimeToFileTime, GetSystemTime, Sleep, SetFileAttributesW, DeleteFileW, SetCurrentDirectoryW, GetModuleFileNameW, GetTickCount, OpenThread, GetCurrentProcessId, K32EnumProcessModulesEx, lstrlenW, CreateSemaphoreW, ReleaseSemaphore, SetEndOfFile, HeapReAlloc, GetFileSize, GetTimeFormatW, GetDateFormatW, FileTimeToSystemTime, lstrcmpiW, GetShortPathNameW, GetSystemPowerStatus, GetUserGeoID
msvcp100.dll
DllMain
msvcr100.dll
DllMain
ole32.dll
CoInitializeEx, StringFromGUID2, CoTaskMemFree, CoCreateInstance, StringFromIID, IIDFromString, CLSIDFromString, CoUninitialize, CoCreateGuid, ProgIDFromCLSID, CLSIDFromProgID
rpcrt4.dll
RpcStringBindingComposeW, RpcBindingFromStringBindingW, RpcBindingFree, NdrServerCall2, RpcServerListen, RpcServerRegisterIf2, RpcServerUnregisterIf, RpcServerUseProtseqEpW, RpcMgmtStopServerListening, RpcMgmtWaitServerListen, RpcImpersonateClient, RpcStringFreeW, RpcBindingInqAuthClientW, RpcRevertToSelf, NdrClientCall2, RpcMgmtIsServerListening, RpcBindingSetAuthInfoW, RpcServerRegisterAuthInfoW
rstrtmgr.dll
RmEndSession, RmRegisterResources, RmGetList, RmShutdown, RmRestart, RmStartSession, RmAddFilter
setupapi.dll
SetupIterateCabinetW
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wer.dll
WerReportSetParameter, WerReportAddFile, WerReportSubmit, WerReportCloseHandle, WerReportCreate
wevtapi.dll
EvtExportLog
wintrust.dll
WinVerifyTrust
ws2_32.dll
FreeAddrInfoW, GetAddrInfoW
wtsapi32.dll
WTSFreeMemory, WTSSendMessageW, WTSEnumerateSessionsW

IntegratedOffice.exe

Microsoft Office 15 by Microsoft Corporation (Signed)

Remove IntegratedOffice.exe
Version:   15.0.4128.1025
MD5:   71c97f97a909a990c7f60c77908baff9
SHA1:   b7b31bcc56e162782b8b7f0af952c6ffcacfa1bb
SHA256:   549ec8ca9f550beb6dd2ad1fa4609c79153a405f14b09e6d6b7bacc8a5b95076

What is IntegratedOffice.exe?

Microsoft Office Click-to-Run for Microsoft Office is an office suite of desktop applications, servers and services for the Microsoft Windows. A major feature of the Office suite is the ability for users and third party companies to write add-ins (plug-ins) that extend the capabilities of an application by adding custom commands and specialized features.

Overview

integratedoffice.exe runs as a service under the name Microsoft Office-Dienst (OfficeSvc) with extensive SYSTEM privileges (full administrator access). It is an auto-starting process that used the Windows Task Scheduler service to load when the user logs into Windows (sometimes this is required to bypass the UAC protection). It is installed with a couple of know programs including Microsoft Office 365 Home Premium Preview - en-us published by Microsoft Corporation, Microsoft Office 365 Home Premium Preview - en-us from Microsoft Corporation and Microsoft Office 365 Home Premium Preview - en-us by Microsoft Corporation.

DetailsDetails

File name:integratedoffice.exe
Publisher:Microsoft Corporation
Product name:Microsoft Office 15
Description:Microsoft Office Click-to-Run
Typical file path:C:\Program Files\microsoft office 15\clientx86\integratedoffice.exe
File version:15.0.4128.1025
Size:1.42 MB (1,494,144 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Microsoft Corporation
7% remove
A subscription to Microsoft Office 365 Home Premium lets you install a full copy of Office 2013 on up to five devices and also lets any Windows 7 or 8 machine temporarily download Word, Excel, or the other Office apps for use on other PCs.
Microsoft Corporation
6% remove
Microsoft Corporation
3% remove
A subscription to Microsoft Office 365 Home Premium lets you install a full copy of Office 2013 on up to five devices and also lets any Windows 7 or 8 machine temporarily download Word, Excel, or the other Office apps for use on other PCs.
Microsoft Corporation
2% remove

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'OfficeSvc' (Microsoft Office-Dienst)
  • OfficeSvc
Scheduled tasks
  • The task 'Office First Run Task' runs on logon in the path '\Microsoft\Office\Office First Run Task'
  • The job 'Office Automatic Updates' runs weekly in the path '\Microsoft\Office\Office Automatic Updates'
  • Entry path '\Microsoft\Office\Office First Run Task'
  • Entry path '\Microsoft\Office\Office Automatic Updates'
Scheduled tasks startups
Set to load on user login (bypasses Windows UAC if enabled)
  • Login entry path '\Microsoft\Office\Office First Run Task'
  • Login entry path '\Microsoft\Office\Office Automatic Updates'
Network connections
  • [TCP] a23-72-181-66.deploy.static.akamaitechnologies.com (23.72.181.66:80)
  • [TCP] 80.150.193.11:80
  • [TCP] a23-0-174-56.deploy.akamaitechnologies.com (23.0.174.56:80)
  • [TCP] a23-61-255-11.deploy.akamaitechnologies.com (23.61.255.11:80)

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00018404%
    0.028634%
    Kernel CPU:0.00008191%
    0.013761%
    User CPU:0.00010212%
    0.014873%
    Kernel CPU time:43,651 ms/min
    100,923,805ms/min
    CPU cycles:50,985/sec
    17,470,203/sec
    Context switches:4/sec
    284/sec
    Memory
    Private memory:34.65 MB
    21.59 MB
    Private (maximum):44.67 MB
    Private (minimum):18.93 MB
    Non-paged memory:34.65 MB
    21.59 MB
    Virtual memory:198.46 MB
    140.96 MB
    Virtual memory (peak):206.92 MB
    169.69 MB
    Working set:25.12 MB
    18.61 MB
    Working set (peak):48.93 MB
    37.95 MB
    Page faults:47,721/min
    2,039/min
    I/O
    I/O read transfer:2.07 KB/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:6 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:84 Bytes/sec
    448.09 KB/min
    I/O other operations:4/sec
    1,671/min
    Resource allocations
    Threads:73
    12
    Handles:1791
    600
    GUI GDI count:27
    103
    GUI GDI peak:31
    142
    GUI USER count:11
    49
    GUI USER peak:24
    71

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command lines:
    • "C:\Program Files\microsoft office 15\clientx64\integratedoffice.exe"
    • "C:\Program Files\microsoft office 15\clientx64\integratedoffice.exe" firstrun rerunmode operation install_multiple productsdata o365homepremretail_en-us_x-none app root\office15\firstrun.exe
    Owner:SYSTEM
    Windows Service
    Service name:OfficeSvc
    Display name:Microsoft Office-Dienst
    Description:“Verwaltet die Ressourcenkoordination, das Hintergrundstreaming und die Systemintegration von Microsoft Office-Produkten mit den dazugehörigen Updates. Dieser Dienst muss während der Verwendung der Microsoft Office-Programme sowie während der Erstinstallation des Streamings und während aller späteren Aktualisierungen ausgeführt werden.”
    Type:Win32OwnProcess
    Parent process:services.exe (by Microsoft)

    ResourcesThreads

    Averages
     
    ntdll.dll
    Total CPU:0.00019393%
    0.272967%
    Kernel CPU:0.00010184%
    0.107585%
    User CPU:0.00009209%
    0.165382%
    CPU cycles:8,204/sec
    5,741,424/sec
    Memory:1.74 MB
    1.16 MB
    sechost.dll (Host for SCM/SDDL/LSA Lookup APIs by Microsoft)
    Total CPU:0.00008168%
    Kernel CPU:0.00004016%
    User CPU:0.00004152%
    CPU cycles:1,126/sec
    Memory:124 KB
    integratedoffice.exe (main module)
    Total CPU:0.00006804%
    Kernel CPU:0.00002191%
    User CPU:0.00004613%
    CPU cycles:1,581/sec
    Memory:1.43 MB
    combase.dll
    Total CPU:0.00000358%
    Kernel CPU:0.00000358%
    User CPU:0.00000000%
    CPU cycles:83/sec
    Memory:1.69 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 8 26.00%
    Windows 8 Pro 25.50%
    Windows 7 Home Premium 17.00%
    Windows 8 Pro with Media Center 14.50%
    Windows 8.1 5.00%
    Windows 7 Professional 5.00%
    Windows 8.1 Pro Preview 2.50%
    Windows 8 Single Language 2.00%
    Windows 8 Enterprise N 2.00%
    Windows 8.1 Pro 0.50%

    Distribution by countryDistribution by country

    United States installs about 77.00% of Microsoft Office 15.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Hewlett-Packard 23.15%
    Dell 14.78%
    ASUS 12.81%
    Acer 12.81%
    Toshiba 11.82%
    Sony 4.93%
    Lenovo 3.94%
    Medion 3.94%
    MSI 3.94%
    Samsung 3.94%
    GIGABYTE 1.97%
    Apple 0.99%
    Alienware 0.99%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE