Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.2.9200.16384 (win8_rtm.120725-1247) 10.00%
6.2.9200.16384 (win8_rtm.120725-1247) 15.00%
6.1.7601.17562 (win7sp1_gdr.110217-1504) 40.00%
6.1.7601.17562 (win7sp1_gdr.110217-1504) 30.00%
6.1.7600.16385 (win7_rtm.090713-1255) 5.00%

Relationships


PE structurePE file structure

Show functions
Import table
kernel32.dll
SetEvent, WaitForSingleObject, GetProcAddress, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, CreateEventW, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoA, InterlockedCompareExchange, Sleep, InterlockedExchange, InterlockedDecrement, InterlockedIncrement, GetLastError, GetCurrentProcessId, HeapSetInformation, GetModuleHandleW
msvcrt.dll
DllMain
ntdll.dll
RtlUnwind
ole32.dll
CoRegisterSurrogate, CLSIDFromString, CoUninitialize, CoRegisterClassObject, CoInitializeSecurity, CoCreateInstance, CoRevokeClassObject, CoMarshalInterThreadInterfaceInStream, CoGetInterfaceAndReleaseStream, CoInitializeEx, CoFreeUnusedLibraries
user32.dll
TranslateMessage, MsgWaitForMultipleObjects, DispatchMessageW, PeekMessageW

PREVHOST.exe

Preview Handler Surrogate Host by Microsoft

Remove PREVHOST.exe
Version:   6.2.9200.16384 (win8_rtm.120725-1247)
MD5:   59c98a7e3cc21f86c030f029ea47b5f4
SHA1:   7c8e9639bb3d0d9d3926b552bcd6596612153fcf
SHA256:   b09bc61f7458c8a9cecf3bdf2b6431ef41e9e8779cefc738318ef70110fbbe2e
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

prevhost.exe executes as a process with the local user's privileges. This version is installed on Windows 8 and is compiled as a 64 bit program.

DetailsDetails

File name:prevhost.exe
Publisher:Microsoft Corporation
Product name:Preview Handler Surrogate Host
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\prevhost.exe
File version:6.2.9200.16384 (win8_rtm.120725-1247)
Product version:6.2.9200.16384
Size:15.5 KB (15,872 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00486116%
0.028634%
Kernel CPU:0.00486116%
0.013761%
Kernel CPU time:52 ms/min
100,923,805ms/min
CPU cycles:89,121/sec
17,470,203/sec
Context switches:2/sec
284/sec
Memory
Private memory:1.16 MB
21.59 MB
Private (maximum):6.08 MB
Private (minimum):3.28 MB
Non-paged memory:1.16 MB
21.59 MB
Virtual memory:71.19 MB
140.96 MB
Virtual memory (peak):71.71 MB
169.69 MB
Working set:3.35 MB
18.61 MB
Working set (peak):6.12 MB
37.95 MB
Page faults:1,642/min
2,039/min
I/O
I/O read transfer:856 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:32 Bytes/sec
448.09 KB/min
I/O other operations:18/sec
1,671/min
Resource allocations
Threads:2
12
Handles:92
600
GUI GDI count:9
103
GUI GDI peak:11
142
GUI USER count:5
49
GUI USER peak:6
71

BehaviorsProcess properties

Integrety level:Low
Platform:64-bit
Command line:C:\Windows\System32\prevhost.exe {914feed8-267a-4baa-b8aa-21e233792679} -embedding
Owner:User
Parent process:svchost.exe (by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 40.00%
Windows 8 Pro 20.00%
Windows 7 Professional 20.00%
Windows 7 Ultimate 15.00%
Windows 8 5.00%

Distribution by countryDistribution by country

United States installs about 55.00% of Preview Handler Surrogate Host.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 33.33%
GIGABYTE 22.22%
Hewlett-Packard 22.22%
Intel 11.11%
Acer 5.56%
Alienware 5.56%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE