QuickBooks Error 15222 -- Payroll Update Blocked by Browser or Antivirus

Error 15222 stops QuickBooks Desktop from downloading payroll updates, usually because antivirus software or browser settings interfere with the digital signature verification process.

QuickBooks Error 15222 interrupts a payroll or maintenance update before it can finish writing files to disk. The update download begins, then fails during the signature-verification stage that confirms downloaded files are authentic and unmodified. Our engineers see this error most often on systems where security software or browser configuration has changed between update cycles.

What the Error Message Says

The full message displayed by QuickBooks is:

The payroll update did not complete successfully. Error 15222: QuickBooks could not verify the digital signature of the downloaded update file.

In some installations the message also references a specific file name, typically icwr.dll, that failed signature verification.

What the Code Means

The 15222 code is raised internally when QuickBooks cannot confirm that a downloaded update component carries a valid Intuit digital certificate. Every update package downloaded through QuickBooks Desktop is signed so that the application can prove the files came from Intuit and were not modified in transit. When the signature check fails, QuickBooks halts the update rather than install components it cannot authenticate. The failure is almost always environmental — something on the workstation is blocking or altering the verification — not a problem with the update package itself.

What Triggers It

Three conditions account for nearly every 15222 occurrence our engineers encounter:

  1. Antivirus or antispyware interference. Real-time protection engines scan downloaded files as they arrive. If the scanner locks or quarantines a file while QuickBooks is still verifying its signature, the verification fails and 15222 is raised.
  2. Incorrect default browser settings. QuickBooks relies on the Windows default browser's security and certificate configuration during the download pipeline. If the default browser is set to an application that does not support the required certificate chain — or is misconfigured — verification can break.
  3. Outdated Internet Explorer security settings. Even when another browser is the default, QuickBooks uses Internet Explorer's trust store and TLS settings under the hood. If IE's security level is set too high or its certificate list is outdated, signature verification fails.

How to Fix It

Scenario 1 — Antivirus or antispyware blocking the download (most common)

  1. Note your antivirus software name and version before making changes.
  2. Temporarily disable real-time scanning and any antispyware component.
  3. Close QuickBooks completely, then reopen it.
  4. Run the payroll update again from the Employees menu (Get Payroll Updates).
  5. Once the update completes successfully, re-enable real-time scanning immediately.
  6. Add the QuickBooks installation directory to your antivirus exclusion list so future updates are not scanned mid-download.

Scenario 2 — Default browser misconfiguration

  1. Open Windows Settings and go to Apps, then Default apps.
  2. Verify that the default web browser is set to a current version of Microsoft Edge or Internet Explorer. Third-party browsers set as default have caused 15222 in cases our engineers have resolved.
  3. Open the browser you just set as default and confirm it launches and loads pages normally.
  4. Restart QuickBooks and attempt the update again.

Scenario 3 — Internet Explorer security and certificate settings

  1. Open Internet Explorer (even if it is not your default browser).
  2. Go to Tools, then Internet Options, then the Security tab.
  3. Select the Trusted Sites zone and click Sites.
  4. Add https://*.intuit.com and https://*.quickbooks.com to the trusted sites list.
  5. Confirm the security level for Trusted Sites is set to Medium-low or lower.
  6. Go to the Advanced tab, scroll to the Security section, and verify that Use TLS 1.2 is checked and older TLS versions are unchecked.
  7. Apply the changes, close IE, restart QuickBooks, and run the update.

How to Prevent It Recurring

Keep your antivirus exclusion list updated whenever QuickBooks is installed to a new path or upgraded to a new year. Verify that the Windows default browser points to a supported application after any system changes. Run Windows Update regularly so the operating system root certificate store stays current, since QuickBooks depends on that store during signature verification. If you manage multiple workstations, apply the trusted-site and TLS settings through group policy so each machine stays consistent.

Keep going

Your Desktop doesn’t have to end when Intuit says so.

Start with the master survival guide, or jump straight to the fix you need.