Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.3.9600.16384 (winblue_rtm.130821-1623) 0.07%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.07%
6.2.9200.16384 (win8_rtm.120725-1247) 0.13%
6.2.9200.16384 (win8_rtm.120725-1247) 0.07%
6.1.7600.16385 (win7_rtm.090713-1255) 0.20%
6.1.7600.16385 (win7_rtm.090713-1255) 0.33%
6.0.6000.16386 (vista_rtm.061101-2205) 0.07%
6.0.6000.16386 (vista_rtm.061101-2205) 0.07%
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) 0.07%
15.0.4454.1000 0.91%
15.0.4454.1000 4.70%
15.0.4433.1506 0.07%
15.0.4420.1017 1.57%
15.0.4420.1017 1.37%
15.0.4128.1022 1.17%
15.0.4128.1019 0.07%
15.0.4128.1014 0.59%
15.0.4128.1014 0.20%
14.0.4730.1010 36.46%
14.0.4730.1010 3.39%
14.0.4730.1010 0.07%
14.0.4730.1010 0.07%
12.0.6413.1000 0.20%
12.0.4518.1014 38.36%
12.0.4518.1014 0.07%

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumValueW, CryptReleaseContext, CryptAcquireContextW, SetFileSecurityW, RegDeleteKeyW, OpenThreadToken, CheckTokenMembership, ConvertStringSecurityDescriptorToSecurityDescriptorW, LookupAccountNameW, AllocateAndInitializeSid, FreeSid, CryptHashData, CryptGetHashParam, CryptCreateHash, CryptDestroyHash, RegisterServiceCtrlHandlerW, RegCloseKey, RegEnumKeyExW, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, SetThreadToken, RegQueryValueExW, RegNotifyChangeKeyValue, SetServiceStatus, StartServiceCtrlDispatcherW, DuplicateToken, RegDeleteValueW
kernel32.dll
FormatMessageA, GetComputerNameW, GetModuleHandleA, GetStartupInfoA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, QueryPerformanceCounter, GetCurrentThreadId, GetCurrentProcessId, HeapAlloc, GetProcessHeap, HeapReAlloc, HeapFree, HeapSize, RaiseException, LoadLibraryA, MoveFileExW, GetLastError, GetModuleFileNameW, CloseHandle, SetEvent, InterlockedIncrement, InterlockedDecrement, lstrlenW, GetDriveTypeW, GetLogicalDrives, lstrcmpW, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, Sleep, ExitProcess, InitializeCriticalSection, GetCommandLineW, GetTickCount, ReleaseMutex, ResetEvent, WaitForMultipleObjectsEx, SetErrorMode, CreateEventW, CreateMutexW, CreateProcessW, GetSystemInfo, InterlockedExchange, CreateFileA, ReadFile, SetFilePointer, DosDateTimeToFileTime, MultiByteToWideChar, FreeLibrary, GetProcAddress, LoadLibraryW, WideCharToMultiByte, CreateFileW, ReleaseSemaphore, WaitForSingleObject, WaitForMultipleObjects, CreateThread, CreateSemaphoreW, VirtualFree, VirtualAlloc, SetFilePointerEx, GetSystemTimeAsFileTime, SystemTimeToFileTime, GetSystemTime, SetFileTime, SetEndOfFile, WriteFile, GlobalFree, GlobalAlloc, GetFileAttributesExW, GetFileSizeEx, FindClose, FindFirstFileW, GetFileAttributesW, CopyFileW, CreateHardLinkW, SetFileAttributesW, DeleteFileW, GetTempPathA, GetTempPathW, GetFileTime, FindNextFileW, LocalFree, GetCurrentThread, CreateDirectoryW, RemoveDirectoryW, lstrlenA, SystemTimeToTzSpecificLocalTime, GetTimeZoneInformation, LocalAlloc
msvcrt.dll
DllMain
rpcrt4.dll
RpcImpersonateClient, RpcRevertToSelf, RpcServerUnregisterIf, RpcServerUseProtseqEpW, RpcServerRegisterIfEx, NdrServerCall2

ose.exe

Office Source Engine by Microsoft Corporation (Signed)

Remove ose.exe
Version:   15.0.4420.1017
MD5:   b9c125314a025127fe562c116d614aa3
SHA1:   9878b54fb50bf1f1fd9115770ab8421da40304b6
SHA256:   79c46c0bacebbb5b8e1c162766b21587365a100bbad01171c77b995c514bc7d6

Overview

ose.exe runs as a service under the name Office Source Engine (ose) within the local user context. The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:ose.exe
Publisher:Microsoft Corporation
Product name:Office Source Engine
Typical file path:C:\Program Files\common files\microsoft shared\source engine\ose.exe
File version:15.0.4420.1017
Size:174.63 KB (178,824 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, December 7, 2009
Expiration date:Monday, March 7, 2011
Digital DNA
PE subsystem:Windows GUI
Entropy:6.564145
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'ose' (Office Source Engine)
  • 'ose64' (Office 64 Source Engine)
  • ose64
  • 'ose'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 34.00%
Windows 7 Ultimate 19.00%
Microsoft Windows XP 7.50%
Windows 7 Professional 6.50%
Windows 8.1 6.00%
Windows 8.1 Pro 5.50%
Windows 8 Pro 5.00%
Windows Vista Home Premium 3.00%
Windows 8.1 Single Language 2.50%
Windows 7 Home Basic 2.00%
Windows 8 1.50%
Windows 8 Single Language 1.50%
Windows 8 Enterprise N 1.00%
Windows 8.1 Pro with Media Center 1.00%
Windows 7 Starter 1.00%
Windows 8.1 N 0.50%
Windows 8.1 Enterprise Evaluation 0.50%
Windows 8.1 Enterprise 0.50%
Windows 8 Enterprise 0.50%
Windows Vista Home Basic 0.50%
Windows 8 Pro with Media Center 0.50%
21 other Windows OS version

Distribution by countryDistribution by country

United States installs about 30.15% of Office Source Engine.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 24.72%
Hewlett-Packard 15.36%
ASUS 12.73%
Lenovo 11.24%
Toshiba 10.49%
Acer 9.74%
Intel 4.49%
Compaq 3.00%
GIGABYTE 2.62%
Samsung 1.87%
Sony 1.50%
American Megatrends 0.75%
NEC 0.75%
Sahara 0.37%
Alienware 0.37%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE