Multiple "kzhztufvoy.exe*32" google Chrome running & causing high CPU

sdstarnes

New member
Local time
10:42 PM
Messages
3
Multiple "kzhztufvoy.exe*32" google Chrome running & causing high CPU

Multiple "kzhztufvoy.exe*32" Google Chrome running & causing high CPU.

1. Ran a virus/malware check and came back with nothing
2. Uninstalled Chrome with same results
3. Looked for "kzhztufvoy.exe*32" in system 32 directory but no file found.

Any ideas?
 

Attachments

  • kzhztufvoy exe.jpg
    kzhztufvoy exe.jpg
    31.5 KB · Views: 19
Last edited:

My Computer My Computer

Computer Manufacturer/Model Number
HP 6570B
OS
windows 7 32 bit
CPU
i5
Hard Drives
500 GB
Wow that is bizarre. Various search engines come up with nothing or only this thread. That is unusual...
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
need to update!
OS
7 Ultimate 64 bit
Memory
2x4Gb DDR3-SDRAM
Graphics Card(s)
t750
Monitor(s) Displays
AOC 24" yee haw and Dell 19"
Screen Resolution
1680 x 1050 @60hz
Hard Drives
Samsung 840EVO
Internet Speed
100/20
Antivirus
MSE
Browser
Firefox
Virus, I would suggest you run Adwcleaner and clean anything found, If something running shows the (*32) entry I have always found to be a virus.

Adwcleaner: don't worry it's safe.

AdwCleaner Download
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Dell Precision 15 7550 Workstation
OS
Windows 10 22H2 Pro
CPU
Intel(R) Xeon W-10885M
Motherboard
Dell
Memory
2x 32 GB DDR4 ECC memory (128 GB max)
Graphics Card(s)
Intel onboard GPU 1080p - Quadro RTX 5000 Max-Q GPU 4K
Hard Drives
1TB Samsung 9100 Pro main M2 SSD
2x 2TB Samsung 9100 Pro temp storage M2 SSD (6 TB max)
Mouse
Logitech MX-25 Bluetooth
Internet Speed
slow
Antivirus
MS
Browser
Pale Moon 34.x.x - x64 AVX2 build
I ran into that same thing a few weeks ago. None of my anti-malware programs could detect it (although SuperAntiSpyware was able to find all the adware the accursed little beast was frantically installing on my machine) and I also found nothing when I searched the "interwebz". It apparently lodges its sorry little self (I would be more descriptive but Mama told me not to use those words) in the system reserved partition and reinstalls its sorry little self in a legitimate program every time I rebooted. The only way I was able to get rid of the misbegotten little piece of...ah...work for keeps was to restore from an earlier image.

If you don't have images you can restore from, you might try doing a System Restore back to before when the little...pest first showed up. If your AV is capable of it, you might be able to do a boot scan to see if that can find it (I didn't bother because it takes a really long time with my AV).
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Win 7 Ultimate 64 bit
CPU
Intel i7-3930K
Motherboard
ASUS P9X79 WS
Memory
Kingston HyperX Genesis 32GB Kit (8x4GB Modules) 1600MHz DDR
Graphics Card(s)
MSI R7850 Twin Frozr 2GD5/OC Radeon HD 7850 2GB 256-bit GDDR
Sound Card
Asus Xonar Essence STX
Monitor(s) Displays
3x Asus VG248QE 24", Vizio 32" TV
Screen Resolution
1920 x 1080, ?
Hard Drives
Samsung 128GB 840 Pro SSD (1),
Samsung 4TB 850 EVO SSDs (4)
Samsung 4TB 850 EVO SSDs (16) external backup drives used in 2.5" hot swap bays in the computer.
PSU
Corsair HX750w
Case
Antec Two Hundred v2 (modified)
Cooling
Cooler Master GeminII S524 120mm (fan replaced with a 140mm)
Keyboard
Logitech G510s
Mouse
Logitech M525 (two in use)
Internet Speed
=< 32Mbps down, 8Mbps up
Antivirus
AVAST!, MBAM, SAS, Spybot S&D (all but MBAM free) Glary Util
Browser
IE11
Other Info
LSI 9211-8i HBA card (8 SATA III ports), 2.5" & 3.5" Hot Swap Bays, HooToo HT-CR001 PCI-E to USB 3.0 Internal Hub + 6 Slot Card Reader, and LG Model CH12LS28 BD-ROM Optical Drive. Also, ScanSnap S1500 ADF duplexing scanner, Canon 9000F flat bed scanner, Corsair SP2500 2.1 speakers, Samsung CLP 415nw laser color printer, Cyberpower PP2200SW UPS
HitmanPro [free for 30 days], Malwarebytes Anti-Malware [free or pay-for versions] might detect and root out such things.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Antec desktop; Acer Aspire laptops
OS
Windows 7 Professional 64-bit
CPU
Desktop i5; Acers i5 & i7
Memory
desktop 16GB; 1 Acer 8GB & 1 Acer 16GB
Hard Drives
1TB split into 2 equal partitions [OS and data] usable by RJS
Internet Speed
AT&T DSL
Browser
FF, GChrome, msIE
Other Info
Windows 7 Firewall, Emsisoft AM/AV, MSE [scan-only], SpywareBlaster, Ruiware/BillP combine
MBAM PRO didn't find it.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Win 7 Ultimate 64 bit
CPU
Intel i7-3930K
Motherboard
ASUS P9X79 WS
Memory
Kingston HyperX Genesis 32GB Kit (8x4GB Modules) 1600MHz DDR
Graphics Card(s)
MSI R7850 Twin Frozr 2GD5/OC Radeon HD 7850 2GB 256-bit GDDR
Sound Card
Asus Xonar Essence STX
Monitor(s) Displays
3x Asus VG248QE 24", Vizio 32" TV
Screen Resolution
1920 x 1080, ?
Hard Drives
Samsung 128GB 840 Pro SSD (1),
Samsung 4TB 850 EVO SSDs (4)
Samsung 4TB 850 EVO SSDs (16) external backup drives used in 2.5" hot swap bays in the computer.
PSU
Corsair HX750w
Case
Antec Two Hundred v2 (modified)
Cooling
Cooler Master GeminII S524 120mm (fan replaced with a 140mm)
Keyboard
Logitech G510s
Mouse
Logitech M525 (two in use)
Internet Speed
=< 32Mbps down, 8Mbps up
Antivirus
AVAST!, MBAM, SAS, Spybot S&D (all but MBAM free) Glary Util
Browser
IE11
Other Info
LSI 9211-8i HBA card (8 SATA III ports), 2.5" & 3.5" Hot Swap Bays, HooToo HT-CR001 PCI-E to USB 3.0 Internal Hub + 6 Slot Card Reader, and LG Model CH12LS28 BD-ROM Optical Drive. Also, ScanSnap S1500 ADF duplexing scanner, Canon 9000F flat bed scanner, Corsair SP2500 2.1 speakers, Samsung CLP 415nw laser color printer, Cyberpower PP2200SW UPS
MBAM Pro didn't find it; what finally found it?

That's why I have several anti-viri and anti-malware run several scheduled scans during the week, 'cause no one program ever catches everything everytime everywhere. Thanks for the update :)
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Antec desktop; Acer Aspire laptops
OS
Windows 7 Professional 64-bit
CPU
Desktop i5; Acers i5 & i7
Memory
desktop 16GB; 1 Acer 8GB & 1 Acer 16GB
Hard Drives
1TB split into 2 equal partitions [OS and data] usable by RJS
Internet Speed
AT&T DSL
Browser
FF, GChrome, msIE
Other Info
Windows 7 Firewall, Emsisoft AM/AV, MSE [scan-only], SpywareBlaster, Ruiware/BillP combine
Nothing found it. I'm running Avast Free, MBAM PRO, SuperAntiSpyware (SAS; it did find and clean up the huge amount of adware the miserable bugger installed), and Spybot S&D. Avast might have found it with a boot scan but it takes a really long time for that to run so I just wimped out and restored from an earlier image.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Win 7 Ultimate 64 bit
CPU
Intel i7-3930K
Motherboard
ASUS P9X79 WS
Memory
Kingston HyperX Genesis 32GB Kit (8x4GB Modules) 1600MHz DDR
Graphics Card(s)
MSI R7850 Twin Frozr 2GD5/OC Radeon HD 7850 2GB 256-bit GDDR
Sound Card
Asus Xonar Essence STX
Monitor(s) Displays
3x Asus VG248QE 24", Vizio 32" TV
Screen Resolution
1920 x 1080, ?
Hard Drives
Samsung 128GB 840 Pro SSD (1),
Samsung 4TB 850 EVO SSDs (4)
Samsung 4TB 850 EVO SSDs (16) external backup drives used in 2.5" hot swap bays in the computer.
PSU
Corsair HX750w
Case
Antec Two Hundred v2 (modified)
Cooling
Cooler Master GeminII S524 120mm (fan replaced with a 140mm)
Keyboard
Logitech G510s
Mouse
Logitech M525 (two in use)
Internet Speed
=< 32Mbps down, 8Mbps up
Antivirus
AVAST!, MBAM, SAS, Spybot S&D (all but MBAM free) Glary Util
Browser
IE11
Other Info
LSI 9211-8i HBA card (8 SATA III ports), 2.5" & 3.5" Hot Swap Bays, HooToo HT-CR001 PCI-E to USB 3.0 Internal Hub + 6 Slot Card Reader, and LG Model CH12LS28 BD-ROM Optical Drive. Also, ScanSnap S1500 ADF duplexing scanner, Canon 9000F flat bed scanner, Corsair SP2500 2.1 speakers, Samsung CLP 415nw laser color printer, Cyberpower PP2200SW UPS
Back
Top