Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

14.0.7106.5000 15.82%
14.0.6117.5000 3.06%
14.0.6114.5003 78.06%
14.0.6009.1000 0.51%
14.0.4750.1000 2.55%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
CopySid, RegOpenKeyExA, ConvertSidToStringSidA, IsValidSid, CheckTokenMembership, GetSecurityDescriptorDacl, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, InitializeAcl, AddAccessDeniedAce, AddAccessAllowedAce, GetLengthSid, TraceEvent, RegQueryValueExA, RegEnumKeyW, RegQueryInfoKeyA, RegEnumValueA, RegDeleteValueA, IsTextUnicode, OpenThreadToken, EqualSid, GetTokenInformation, CreateWellKnownSid, ConvertStringSecurityDescriptorToSecurityDescriptorW, AllocateAndInitializeSid, FreeSid, OpenProcessToken, DeregisterEventSource, RegisterEventSourceW, ReportEventW, RegEnumValueW, RegOpenKeyExW, RegCreateKeyExW, RegSetValueExW, RegQueryValueExW, RegDeleteValueW, RegQueryInfoKeyW, RegCloseKey
comctl32.dll
ImageList_GetIconSize
cvhshared.dll
SendCmdLineToPrimaryInstance, RunCVHLauncher
dbghelp.dll
SymCleanup
gdi32.dll
DllMain
gdiplus.dll
GdiplusShutdown, GdipBitmapUnlockBits, GdipBitmapLockBits, GdipCreateBitmapFromHBITMAP, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStreamICM, GdipCreateBitmapFromStream, GdipCreateBitmapFromFileICM, GdipDeletePen, GdipDrawImageRectRect, GdipGetImageGraphicsContext, GdipAlloc, GdipFree, GdipDisposeImage, GdipGetImageWidth, GdipGetImageHeight, GdipImageRotateFlip, GdipBitmapGetPixel, GdipCloneBitmapAreaI, GdipCloneImage, GdipCreateImageAttributes, GdipDisposeImageAttributes, GdipDeleteGraphics, GdipSetImageAttributesColorKeys, GdipCreateFromHDC, GdipDrawImageRectRectI, GdipGetImagePixelFormat, GdipCreateBitmapFromFile
imm32.dll
ImmAssociateContext
kernel32.dll
LoadLibraryExW, SetErrorMode, SystemTimeToTzSpecificLocalTime, GetSystemTime, GetTimeZoneInformation, GetCurrentDirectoryW, ExpandEnvironmentStringsW, GlobalFree, RaiseException, HeapFree, HeapAlloc, HeapReAlloc, LoadResource, SizeofResource, LockResource, LoadLibraryA, MulDiv, DeleteCriticalSection, EnterCriticalSection, InitializeCriticalSectionAndSpinCount, LeaveCriticalSection, IsValidLocale, LocalFree, GetDiskFreeSpaceExW, GetVersionExW, GetSystemDirectoryW, CloseHandle, OpenProcess, GetTempPathW, FindClose, FindFirstFileW, CompareFileTime, SetFilePointer, CreateFileW, WriteFile, lstrlenA, ReadFile, SetFilePointerEx, SetFileAttributesW, DeleteFileW, CopyFileW, GetCurrentThread, TlsFree, TlsAlloc, TlsSetValue, TlsGetValue, WaitForMultipleObjects, WaitForSingleObject, FindAtomW, GetStringTypeExW, GetAtomNameW, SetProcessWorkingSetSize, GlobalDeleteAtom, GlobalAddAtomW, InitializeCriticalSection, AddAtomW, DeleteAtom, GetFileSize, HeapCreate, HeapDestroy, GlobalLock, GlobalAlloc, FreeLibrary, InterlockedFlushSList, InterlockedPopEntrySList, InterlockedPushEntrySList, SetEvent, QueryDepthSList, CreateEventW, GetTimeFormatW, GetDateFormatW, FileTimeToSystemTime, SystemTimeToFileTime, IsWow64Process, VirtualAlloc, GlobalUnlock, GetUserDefaultLCID, GetCurrencyFormatW, GetNumberFormatW, GetVersionExA, GetLocaleInfoW, IsProcessorFeaturePresent, GetSystemDefaultLCID, GetSystemDefaultLangID, GetACP, VirtualFree, FindResourceA, GetProcessTimes, CreateEventA, CreateMutexA, OpenMutexA, CreateFileMappingA, GetShortPathNameA, GetModuleFileNameA, GetUserDefaultLangID, ReleaseMutex, UnmapViewOfFile, CreateProcessA, MapViewOfFile, DuplicateHandle, GetModuleHandleExW, RtlCaptureStackBackTrace, GetLocalTime, LocalAlloc, TryEnterCriticalSection, GetSystemInfo, IsDBCSLeadByte, IsValidCodePage, CreateDirectoryW, GetFileType, GlobalMemoryStatus, EnumUILanguagesW, EnumSystemLocalesW, GetCalendarInfoW, GetUserDefaultUILanguage, GetModuleFileNameW, SetLastError, LoadLibraryW, GetFileAttributesW, GetModuleHandleA, MultiByteToWideChar, CompareStringA, CompareStringW, GetLastError, WideCharToMultiByte, GetVersion, lstrlenW, FindResourceW, InitializeSListHead, WriteProcessMemory, lstrcmpiA, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetStartupInfoW, InterlockedCompareExchange, Sleep, InterlockedExchange, GetModuleHandleW, GetProcAddress, GetProcessHeap, GetSystemTimeAsFileTime, GetCurrentProcessId, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, VirtualProtect, OutputDebugStringA
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
RevokeDragDrop, RegisterDragDrop, OleInitialize, OleUninitialize, OleDraw, CoLockObjectExternal, CLSIDFromString, CoDisconnectObject, CreateStreamOnHGlobal, CreateFileMoniker, CoInitialize, CoCreateInstance, CoInitializeEx, CoUninitialize
oleacc.dll
AccessibleObjectFromWindow, LresultFromObject
rpcrt4.dll
UuidCreate
secur32.dll
GetUserNameExW
shell32.dll
SHCreateDirectoryExW, SHGetSpecialFolderPathW
user32.dll
DllMain
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
Export table
_GetAllocCounters@0
_GetStdColorI@4

CVH.exe

Microsoft Office 2010 by Microsoft Corporation (Signed)

Remove CVH.exe
Version:   14.0.6117.5000
MD5:   54195634aea6dfa15bd18fc6fe75528c
SHA1:   4eeb9a16319ff7ef578525ad806fffb1b1637c4d
SHA256:   ff6b3d5537cb69d68f73bf1f13632f2d31bf3b8fbc03adbf3d16a3853a5743ce

What is CVH.exe?

The Microsoft Office Client Virtualization Handler is part of the virtual click to run installation for Microsoft Office 2010.

Overview

CVH.EXE executes as a process with the local user's privileges usually within the context of Windows Explorer. During installation, it (or a shortcut) is added to the user's startup folder which is designed to automatically launch when the user logs into Windows. It is installed with a couple of know programs including Microsoft Office Click-to-Run 2010 published by Microsoft Corporation, Microsoft Office « Démarrer en un clic » 2010 from Microsoft Corporation and Microsoft Office « Démarrer en un clic » 2010 by Microsoft Corporation.

DetailsDetails

File name:CVH.EXE
Publisher:Microsoft Corporation
Product name:Microsoft Office 2010
Description:Microsoft Office Client Virtualization Handler
Typical file path:C:\Program Files\common files\microsoft shared\virtualization handler\cvh.exe
File version:14.0.6117.5000
Size:3.06 MB (3,208,032 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, December 7, 2009
Expiration date:Monday, March 7, 2011
Digital DNA
PE subsystem:Windows GUI
Entropy:6.639826
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Hewlett-Packard
8% remove
HP CoolSense Technology is a feature in some HP notebook computers that combines hardware, software, and mechanical design to dynamically manage the temperature of a notebook, and help keep you comfortable while using it. With CoolSense, in addition to the improved design of air flow through the case, you can adjust the computer for higher performance, cooler operation, or quieter operation. All three settings have their advantages and ...
Microsoft Corporation
12% remove
Office Click-to-Run is a new way for broadband customers to obtain Microsoft Office and to update Office 2010. Office Click-to-Run uses the virtualization and streaming technologies of Microsoft.
Microsoft Corporation
12% remove
Office « Démarrer en un clic » fait appel à la technologie d’émission en continu et de virtualisation de Microsoft. Celle-ci permet de réduire sensiblement la durée de téléchargement. Vous pourrez ainsi découvrir les nouvelles fonctionnalités de Microsoft Office 2010 plus rapidement. Pour le moment, vous ne pouvez utiliser que Microsoft Office Famille et Étudiant 2010, Microsoft Office Famille et Petite Entreprise 2010 et Microsoft Offi...
Microsoft Corporation
4% remove
Klick-und-Los ist eine neue Technologie für die Bereitstellung und Aktualisierung von Microsoft Office für Kunden mit Breitbandverbindungen, der auf die Streaming- und Virtualisierungstechnologie von Microsoft aufsetzt. Im Folgenden finden Sie Informationen zu den Vorteilen von Klick-und-Los sowie Wissenswertes über eine Kompatibilitätslücke zwischen Klick-und-Los und einigen Lösungen zum Schutz vor Schadsoftware.
Microsoft Corporation
11% remove
Office Click-to-Run is a new way for broadband customers to obtain Microsoft Office and to update Office 2010. Office Click-to-Run uses the virtualization and streaming technologies of Microsoft.
Microsoft Corporation
4% remove
Microsoft Office Click-to-Run uses Microsoft streaming and virtualization technology to significantly reduce the time that is required for you to download and begin experiencing the new features of Microsoft Office 2010. At this time, only Microsoft Office Home and Student 2010, Microsoft Office Home and Business 2010, and Microsoft Office Starter 2010 are available by using Office Click-to-Run, which include the following Office 2010 p...
Microsoft Corporation
5% remove
Microsoft Office a portata di clic è un nuovo sistema di distribuzione del software ottimizzato per gli utenti privati che dispongono di connessioni a banda larga (almeno 1 Mbps). Office a portata di clic non è un nuovo prodotto Microsoft Office, ma un nuovo sistema per distribuire e aggiornare i programmi già noti. È disponibile per le edizioni Microsoft Office Home and Student 2010 e Microsoft Office Home and Business 2010, è supporta...
Microsoft Corporation
7% remove
Office Starter consists of Word Starter and Excel Starter only, reduced functionality versions of Microsoft Word and Excel with advertising. It does not contain Microsoft PowerPoint, OneNote, or Outlook. Office Starter is only available as preloaded software on select new PCs.
Microsoft Corporation
8% remove
Hacer clic y ejecutar es una nueva forma de entregar y actualizar Microsoft Office para los clientes de banda ancha. Hacer clic y ejecutar utiliza la virtualización de Microsoft y tecnologías de transmisión por secuencias. Para Microsoft Office 2010, Microsoft ofrece una nueva manera de descargar e instalar sus productos de Office 2010. Esta tecnología se denomina Hacer clic y ejecutar y en este artículo se describe dicha tecnología y c...
Microsoft Corporation
7% remove
Microsoft Corporation
1% remove
Office Starter consists of Word Starter and Excel Starter only, reduced functionality versions of Microsoft Word and Excel with advertising. It does not contain Microsoft PowerPoint, OneNote, or Outlook. Office Starter is only available as preloaded software on select new PCs.
Microsoft Corporation
6% remove
Office Starter consists of Word Starter and Excel Starter only, reduced functionality versions of Microsoft Word and Excel with advertising. It does not contain Microsoft PowerPoint, OneNote, or Outlook. Office Starter is only available as preloaded software on select new PCs.
Microsoft Corporation
6% remove
Microsoft Office Home and Business 2010 brings together the roles of managing a business, running a household and helping with homework. Get the benefits of all the programs you need to be productive including Microsoft Outlook 2010--so you can tackle your busy day efficiently with powerful email, scheduling and social networking tools to keep your life and work in sync.
Microsoft Corporation
4% remove
Opdateringerne af Klik og kør-produkter skubbes automatisk til computeren, men det kan være nødvendigt at lukke Office-programmerne, før opdateringerne kan anvendes. Når opdateringerne er blevet hentet, men forhindres i at blive anvendt, modtager du en meddelelse i form af et lille pop op-vindue, der vises i meddelelsesområdet. De fleste opdateringer kræver ikke en internetforbindelse under hele opdateringsprocessen. Hvis en internetfor...
Microsoft Corporation
2% remove
Office Starter consists of Word Starter and Excel Starter only, reduced functionality versions of Microsoft Word and Excel with advertising. It does not contain Microsoft PowerPoint, OneNote, or Outlook. Office Starter is only available as preloaded software on select new PCs.
Mirillis
5% remove

BehaviorsBehaviors

Shell open commands
  • wordhtmlfile
Scheduled tasks
  • The job '{A12696DC-8232-4A4B-A69F-8C090735FAD2}' runs on registration in the path '\{A12696DC-8232-4A4B-A69F-8C090735FAD2}'
  • The job '{8514D44A-B131-432A-8E77-9173EAF0680E}' runs on registration in the path '\{8514D44A-B131-432A-8E77-9173EAF0680E}'
User start menu folder
Shortcut pointer placed in '%appdata%\Microsoft\Windows\Start Menu'
  • Shortcut to 'cvh.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00141115%
0.028634%
Kernel CPU:0.00067870%
0.013761%
User CPU:0.00073245%
0.014873%
Kernel CPU time:2,028,013 ms/min
100,923,805ms/min
Memory
Private memory:6.18 MB
21.59 MB
Private (maximum):17.35 MB
Private (minimum):15.42 MB
Non-paged memory:6.18 MB
21.59 MB
Virtual memory:113.6 MB
140.96 MB
Virtual memory (peak):126.71 MB
169.69 MB
Working set:15.43 MB
18.61 MB
Working set (peak):18.13 MB
37.95 MB
Resource allocations
Threads:5
12
Handles:213
600
GUI GDI count:44
103
GUI GDI peak:58
142
GUI USER count:13
49
GUI USER peak:19
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:"C:\Program Files\common files\microsoft shared\virtualization handler\cvh.exe" "microsoft word starter 2010 9014006604160000"
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 84.38%
Windows 7 Home Basic 15.63%

Distribution by countryDistribution by country

United States installs about 56.67% of Microsoft Office 2010.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 36.73%
Sony 16.33%
Hewlett-Packard 14.29%
Dell 12.24%
ASUS 8.16%
Acer 6.12%
Lenovo 4.08%
Samsung 2.04%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE