HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run uihxjjzt
regsvr32.exe /s "C:\Users\X - your computers name - X\AppData\Local\ElevatedDiagnostics\uihxjjzt.dll"
Delete this key in the registry.
Copy the key and value for future rebuild if you need too.
I believe this is a Trojan chrome update.
I use windows process explorer to view process's
i started seeing a doz or more at times all stating they were Chrome
not to be mistaken with the 3 or 4 normal Chrome process.
They are not called Chrome.
They are created by the Regsvr.exe file.
They keep creating them self even after Chrome is uninstalled.
I suspended the regsvr.exe file
from within process explorer
killed the Tree for the fake chrome processes
from within process explorer
and the browser and Google were fine. fast as ever.
I tried to just delete the file but it rewrote itself at boot.
through an
autoruns jump i found the registry key.
noted it for future rebuild if i have an issue none yet .
and deleted the key and the value.
running normal now.
see Microsoft downloads for Process explorer and autoruns software free download from them.
keep in mind uihxjjzt and uihxjjzt.dll may not be the same on your computer.
as well the file directory's are hidden and not yet indexed so may not be found through search
"C:\Users\X - your computers name - X\AppData\Local\ElevatedDiagnostics\uihxjjzt.dll"
Also sent the files to Microsoft's Security essentials for review.
http/www.herdprotect.com/ikgojpdbiniccokkgadmdheobjfdbbcg.crx-5a61c25e3a185ad09768da88c69fc7e34993e7f8.aspx
somthing else just turned up in a TCP/IP scan with Netsat and a web lookup of the IPaddress.