Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

15.0.4535.1507 10.00%
15.0.4481.1000 40.00%
15.0.4454.1503 10.00%
15.0.4454.1000 10.00%
15.0.4420.1017 20.00%
15.0.4420.1017 10.00%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegCloseKey, OpenProcessToken, MakeSelfRelativeSD, InitializeSecurityDescriptor, AllocateAndInitializeSid, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, InitializeAcl, SetSecurityDescriptorDacl, GetPrivateObjectSecurity, SetPrivateObjectSecurity, GetSecurityDescriptorLength, MapGenericMask, GetSecurityDescriptorDacl, GetAclInformation, LookupAccountNameW, EqualSid, FreeSid, BuildTrusteeWithSidW, GetExplicitEntriesFromAclW, SetEntriesInAclW, GetLengthSid, IsValidSecurityDescriptor, GetAce, LookupAccountSidW, ImpersonateSelf, OpenThreadToken, AccessCheck, RevertToSelf, GetSecurityDescriptorControl, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, GetSecurityDescriptorSacl, IsValidSid, IsValidAcl, CryptAcquireContextW, CryptReleaseContext, CryptCreateHash, CryptHashData, CryptGetHashParam, CryptDestroyHash, RegDeleteKeyW, RegEnumKeyW, EventWrite, EventUnregister, EventRegister, ConvertStringSecurityDescriptorToSecurityDescriptorW, ConvertSecurityDescriptorToStringSecurityDescriptorW, RegisterEventSourceW, DeregisterEventSource, MakeAbsoluteSD, ReportEventW, RegQueryValueExW, RegGetValueW, RegOpenKeyExW, RegOpenKeyExA, RegQueryValueExA, RegOpenKeyA
kernel32.dll
DllMain
msvcr100.dll
DllMain
oart.dll
DllMain
ole32.dll
CoLockObjectExternal, CoRegisterMessageFilter, CoFreeUnusedLibraries, CoUninitialize, OleQueryCreateFromData, CoDisconnectObject, CoAllowSetForegroundWindow, IsAccelerator, StgIsStorageFile, CoGetMalloc, CoTaskMemFree, CoRegisterClassObject, CoRevokeClassObject, GetRunningObjectTable, OleIsRunning, CreateOleAdviseHolder, OleRegGetUserType, CreateDataAdviseHolder, CreateItemMoniker, ProgIDFromCLSID, CreateBindCtx, OleQueryLinkFromData, OleGetIconOfClass, OleDestroyMenuDescriptor, OleCreateMenuDescriptor, OleSave, CoCreateGuid, OleSaveToStream, CoInitialize, ReadClassStm, StringFromCLSID, CreateFileMoniker, StringFromGUID2, OleFlushClipboard, CoUnmarshalInterface, CoMarshalInterface, OleCreateLink, OleCreateLinkFromData, OleRun, CreateGenericComposite, OleInitialize, DoDragDrop, OleUninitialize, GetClassFile, ReadFmtUserTypeStg, WriteFmtUserTypeStg, CoIsOle1Class, CoFileTimeNow, CLSIDFromProgID, CoTaskMemAlloc, OleConvertOLESTREAMToIStorage, OleConvertIStorageToOLESTREAM, WriteClassStm, WriteClassStg, SetConvertStg, CoTreatAsClass, OleSetMenuDescriptor, CLSIDFromString, CoCreateInstanceEx, CoCreateInstance, StgCreateDocfile, CoGetClassObject, CoInitializeEx, OleSetContainedObject, ReleaseStgMedium, OleCreateFromData, ReadClassStg, GetHGlobalFromILockBytes, GetHGlobalFromStream, OleGetClipboard, OleSetClipboard, StgSetTimes, StgOpenStorageOnILockBytes, StgCreateDocfileOnILockBytes, CreateILockBytesOnHGlobal, CreateStreamOnHGlobal, OleIsCurrentClipboard, OleTranslateAccelerator
Export table
_LPenHelper
BeginUpgradeASPPModel
DllGetLCID
GetDMCLRRuntime
LinkASPPModelTable
MdCallBack
MdCallBack12
UpgradeASPPModel

Excel.exe

Microsoft Office 2013 by Microsoft Corporation (Signed)

Remove Excel.exe
Version:   15.0.4481.1000
MD5:   141f49c10505415515fe28d3010cb5bb
SHA1:   f0f06103724e739ff51d19284d2f6a6465bf1e2d
SHA256:   fd99689c04f49c02094e29be993cca64991faa71165dbd70aba19fab7750a11a

Overview

excel.exe executes as a process with the local user's privileges typically within the context of its parent recentx.exe (RecentX by Concept world Corporation). The file is digitally signed by Microsoft Corporation.

DetailsDetails

File name:excel.exe
Publisher:Microsoft Corporation
Product name:Microsoft Office 2013
Description:Microsoft Excel
Typical file path:C:\Program Files\microsoft office 15\root\office15\excel.exe
File version:15.0.4481.1000
Size:24.41 MB (25,590,848 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, April 9, 2012
Expiration date:Wednesday, April 3, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details
Network connections
  • [UDP] listens on port 51694

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00086843%
    0.028634%
    Kernel CPU:0.00046728%
    0.013761%
    User CPU:0.00040115%
    0.014873%
    Kernel CPU time:33,926 ms/min
    100,923,805ms/min
    CPU cycles:11,709,433/sec
    17,470,203/sec
    Context switches:32/sec
    284/sec
    Memory
    Private memory:70.35 MB
    21.59 MB
    Private (maximum):104.89 MB
    Private (minimum):50.62 MB
    Non-paged memory:70.35 MB
    21.59 MB
    Virtual memory:566.45 MB
    140.96 MB
    Virtual memory (peak):686.96 MB
    169.69 MB
    Working set:84.64 MB
    18.61 MB
    Working set (peak):128.69 MB
    37.95 MB
    Page faults:848,478/min
    2,039/min
    I/O
    I/O read transfer:7.6 KB/sec
    1.02 MB/min
    I/O read operations:2/sec
    343/min
    I/O write transfer:2.22 KB/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:1.41 KB/sec
    448.09 KB/min
    I/O other operations:28/sec
    1,671/min
    Resource allocations
    Threads:22
    12
    Handles:1268
    600
    GUI GDI count:674
    103
    GUI GDI peak:795
    142
    GUI USER count:205
    49
    GUI USER peak:276
    71

    BehaviorsProcess properties

    Integrety level:Medium
    Platform:64-bit
    Command lines:
    • "C:\Program Files\microsoft office 15\root\office15\excel.exe" /dde
    • "C:\Program Files\microsoft office 15\root\office15\excel.exe"
    Owner:User
    Parent processes:

    ResourcesThreads

    Averages
     
    EXCEL.EXE (main module)
    Total CPU:0.01545902%
    0.272967%
    Kernel CPU:0.00637768%
    0.107585%
    User CPU:0.00908134%
    0.165382%
    CPU cycles:937,158/sec
    5,741,424/sec
    Context switches:2/sec
    79/sec
    Memory:24.42 MB
    1.16 MB
    wow64cpu.dll
    Total CPU:0.00067427%
    Kernel CPU:0.00041326%
    User CPU:0.00026101%
    CPU cycles:20,293/sec
    Memory:32 KB
    ntdll.dll
    Total CPU:0.00043862%
    Kernel CPU:0.00019738%
    User CPU:0.00024124%
    CPU cycles:7,524/sec
    Memory:1.66 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 40.00%
    Windows 8 Pro 30.00%
    Windows 8 10.00%
    Windows 7 Professional 10.00%
    Windows 8 Pro with Media Center 10.00%

    Distribution by countryDistribution by country

    United States installs about 60.00% of Microsoft Office 2013.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Toshiba 33.33%
    Hewlett-Packard 25.00%
    Lenovo 16.67%
    Sony 16.67%
    Alienware 8.33%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE