VersionsAdditional versions

14.0.7101.5000 3.49%
14.0.7101.5000 1.16%
14.0.6116.5000 65.12%
14.0.6116.5000 6.98%
14.0.6108.5000 1.16%
14.0.6015.1000 1.16%
14.0.4757.1000 1.16%
14.0.4757.1000 9.30%
14.0.4732.1000 9.30%
14.0.4732.1000 1.16%


Parent process
Related files

PE structurePE file structure

Show functions
Import table
RegOpenKeyExA, RegQueryValueExW, RegOpenKeyExW, RegOpenCurrentUser, RegSetValueExW, RegCreateKeyExW, RegQueryValueExA, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsA, TraceEvent, RegQueryInfoKeyA, RegDeleteValueA, RegEnumValueA, RegDeleteValueW, RegQueryInfoKeyW, RegEnumKeyW, RegEnumValueW, GetLengthSid, AddAccessAllowedAce, AddAccessDeniedAce, InitializeAcl, AllocateAndInitializeSid, CopySid, GetTokenInformation, OpenProcessToken, OpenThreadToken, RegisterEventSourceW, ReportEventW, DeregisterEventSource, ConvertSidToStringSidA, CreateWellKnownSid, IsValidSid, EqualSid, CheckTokenMembership, ConvertStringSecurityDescriptorToSecurityDescriptorW, GetSecurityDescriptorDacl, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, FreeSid, RegCloseKey
CreateDCA, CreateFontW, CreateSolidBrush, CreateDIBSection, CreateCompatibleDC, CreateBitmap, SelectObject, DeleteObject, GetStockObject, DeleteDC, CreateDCW, GetDeviceCaps
InterlockedExchange, Sleep, InterlockedCompareExchange, GetStartupInfoA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, IsDebuggerPresent, HeapFree, HeapAlloc, VirtualAlloc, HeapSetInformation, HeapCreate, HeapDestroy, HeapReAlloc, HeapSize, HeapUnlock, HeapLock, TlsSetValue, GetVersionExA, GetModuleHandleExW, RtlCaptureStackBackTrace, WaitForSingleObject, ReleaseMutex, GetLocalTime, WriteFile, EnterCriticalSection, LeaveCriticalSection, SetFileAttributesW, DeleteFileW, CopyFileW, ReadFile, SetEvent, GlobalFree, UnmapViewOfFile, OpenProcess, GlobalAlloc, WaitForMultipleObjects, CreateProcessA, MapViewOfFile, CreateFileMappingA, CreateMutexA, CreateEventA, DuplicateHandle, GetSystemDefaultLCID, GetSystemDefaultLangID, IsValidLocale, GetUserDefaultLangID, VirtualFree, TlsGetValue, InitializeCriticalSectionAndSpinCount, TlsAlloc, TlsFree, DeleteCriticalSection, InitializeCriticalSection, CreateFileW, ExpandEnvironmentStringsW, GetProcessTimes, OpenMutexA, CreateSemaphoreA, GetShortPathNameA, GetModuleFileNameA, GetSystemDirectoryW, GetTimeZoneInformation, GetDiskFreeSpaceExW, IsWow64Process, GetSystemInfo, GetUserDefaultLCID, LocalFree, GetProcessHeap, IsDBCSLeadByte, LockResource, LoadResource, FindResourceA, GetStringTypeExW, SystemTimeToFileTime, GetSystemTime, WideCharToMultiByte, IsValidCodePage, CompareStringW, MultiByteToWideChar, GetTempPathW, GetShortPathNameW, GetLongPathNameW, CreateDirectoryW, GetFileType, LoadLibraryExW, GetCurrentThread, GlobalMemoryStatus, ReleaseSemaphore, IsProcessorFeaturePresent, EnumUILanguagesW, EnumSystemLocalesW, GetSystemTimeAsFileTime, GetCurrentProcessId, GetCurrentThreadId, QueryPerformanceCounter, VirtualProtect, GetUserDefaultUILanguage, MulDiv, GetLocaleInfoW, GetNumberFormatW, GetTickCount, CreateEventW, SetUnhandledExceptionFilter, FreeLibrary, OutputDebugStringA, SetLastError, GetLastError, GetModuleFileNameW, CreateProcessW, CloseHandle, GetVersionExW, RaiseException, GetVersion, GetFileAttributesW, GetProcAddress, GetModuleHandleW, LoadLibraryW, GetModuleHandleA, LoadLibraryA, WaitForSingleObjectEx, CreateFileMappingW, OpenFileMappingW, OpenThread, LocalAlloc, EncodePointer, DecodePointer
CoTaskMemFree, CoCreateInstance, CoInitialize, CoUninitialize
SHGetSpecialFolderPathW, SHGetFileInfoW, SHAppBarMessage, Shell_NotifyIconW, SHGetDesktopFolder
GetKeyboardLayoutList, BeginPaint, EndPaint, SetActiveWindow, FillRect, DrawIconEx, CreateIconIndirect, SetWindowPos, GetDlgItem, GetDC, DrawTextExW, ReleaseDC, GetWindowRect, EnumDisplayMonitors, MsgWaitForMultipleObjectsEx, PeekMessageW, GetKeyboardLayout, IsDialogMessageW, TranslateMessage, DispatchMessageW, ShowWindow, UpdateWindow, LoadIconW, LoadCursorW, SendMessageW, GetMonitorInfoA, SystemParametersInfoA, GetMenuCheckMarkDimensions, GetIconInfo, GetWindowLongW, SetWindowLongW, FindWindowW, LoadImageW, RegisterWindowMessageW, MessageBoxW, SetForegroundWindow, AllowSetForegroundWindow, SetTimer, GetCursorInfo, GetSysColor, UnregisterClassW, RegisterClassExW, GetMessageW, CreateWindowExW, GetSystemMetrics, SystemParametersInfoW, GetMonitorInfoW, MonitorFromRect, DefWindowProcW, KillTimer, GetDoubleClickTime, DestroyIcon, CreatePopupMenu, AppendMenuW, SetMenuDefaultItem, GetCursorPos, TrackPopupMenuEx, DestroyMenu, DestroyWindow, PostQuitMessage
DrawThemeBackground, CloseThemeData, OpenThemeData, GetThemeColor
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW


Microsoft Office 2010 by Microsoft Corporation (Signed)

Version:   14.0.6116.5000
MD5:   8e0831382d3313e75614c9d85237b99f
SHA1:   0fe154b8c6e31514c31db40f5987e0ca91f0a457
SHA256:   669473b675a200f89192895f30ad50e3dd1cf25356c6dff4d76a80a471a3bfb6


msosync.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It is installed with a couple of know programs including Microsoft SharePoint Designer 2010 published by Microsoft Corporation, Microsoft Office Access MUI (Russian) 2007 from Microsoft Corporation and Microsoft Office Access MUI (Russian) 2007 by Microsoft Corporation.


File name:msosync.exe
Publisher:Microsoft Corporation
Product name:Microsoft Office 2010
Description:Microsoft Office Document Cache
Typical file path:C:\Program Files\microsoft office\office14\msosync.exe
File version:14.0.6116.5000
Size:702.8 KB (719,672 bytes)
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Tuesday, November 1, 2011
Expiration date:Friday, February 1, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
More details


Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'OfficeSyncProcess' → "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Total CPU:0.00084753%
Kernel CPU:0.00053951%
User CPU:0.00030802%
Kernel CPU time:70,252 ms/min
CPU cycles:202,152/sec
Context switches:2/sec
Private memory:5.16 MB
21.59 MB
Private (maximum):10.09 MB
Private (minimum):5.95 MB
Non-paged memory:5.16 MB
21.59 MB
Virtual memory:89.76 MB
140.96 MB
Virtual memory (peak):96.37 MB
169.69 MB
Working set:7.47 MB
18.61 MB
Working set (peak):11.11 MB
37.95 MB
Page faults:26,485/min
I/O read transfer:595 Bytes/sec
1.02 MB/min
I/O read operations:2/sec
I/O write transfer:89 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
I/O other transfer:38 Bytes/sec
448.09 KB/min
I/O other operations:2/sec
Resource allocations
GUI GDI count:61
GUI GDI peak:62
GUI USER count:22
GUI USER peak:27

BehaviorsProcess properties

Integrety level:Medium
Command line:"C:\Program Files\microsoft office\office14\msosync.exe"
Parent processes:


Total CPU:0.00107989%
Kernel CPU:0.00016762%
User CPU:0.00091228%
CPU cycles:36,889/sec
Memory:252 KB
1.16 MB
Total CPU:0.00051182%
Kernel CPU:0.00012102%
User CPU:0.00039081%
CPU cycles:35,038/sec
Memory:3.27 MB
MSOSYNC.EXE (main module)
Total CPU:0.00040184%
Kernel CPU:0.00020426%
User CPU:0.00019758%
CPU cycles:28,330/sec
Memory:748 KB
Total CPU:0.00016911%
Kernel CPU:0.00001718%
User CPU:0.00015193%
CPU cycles:1,012/sec
Memory:1.66 MB
Total CPU:0.00001970%
Kernel CPU:0.00001970%
User CPU:0.00000000%
CPU cycles:398/sec
Memory:32 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 31.40%
Windows 7 Ultimate 20.93%
Windows 7 Professional 17.44%
Microsoft Windows XP 8.14%
Windows 8 4.65%
Windows 8 Pro 4.65%
Windows 8 Enterprise 2.33%
Windows Vista Business 2.33%
Windows Vista Home Premium 2.33%
Windows 7 Home Basic 2.33%
Windows 8 Pro with Media Center 2.33%
Windows 8.1 Single Language 1.16%

Distribution by countryDistribution by country

United States installs about 45.35% of Microsoft Office 2010.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 35.44%
ASUS 22.78%
Hewlett-Packard 15.19%
Acer 6.33%
Toshiba 5.06%
Intel 5.06%
Lenovo 2.53%
Packard Bell 2.53%
