Today i noticed my system running slow at times so i checked the processes running and found this process i've never seen "d8h9yzvvpp.exe" , i tried google but came out no result so i checked up with hijackthis and found it in this location "C:\Users\(my username)\" i then tried to delete the file but a pop up say " You need permission to perform this action " i have tried changing the permission following the methods in google but it still wouldn't change say "Unable to change new owner , Accesse denied" , tried to use hijackthis to delete the file on reboot but the same pop up appear that i don't have permission
So i went through registry and search the name "d8h9yzvvpp" , it was found and i tried to delete but again , there is a pop up saying "Can not delete : Error while deleting key" it was found in several places like "HKLM\System\ControlSet001\Enum\Root\Legacy_xxxx\" , "HKLM\System\CurrentControlSet\Enum\Root\Legacy_xxxx\" , etc., I've tried to use "Spybot search and destroy" but there's no result so far and still the file is here
I would like to ask any guru here if anyone knows a way to get rid of this thing please , im not sure how i got it as im just doing stuff normally in this past few days
PS. i've tried using Kaspersky virus removal tool , it detects the file but fails to delete .. (safemode)
Edited by hamluis, 18 March 2012 - 10:33 AM.
Moved from Win 7 to Am I Infected.