How to Remove a Kryptik Trojanby Tim Mammadov
The Kryptik trojan opens the "back door" of your computer to hackers once it infects a PC. The trojan is programmed to run at every start-up, giving the hackers who originated the program access to your hard drive. In addition, this trojan can re-create itself, making it hard to remove it completely. Delete this dangerous parasite to prevent personal data theft and computer damage.
End System Processes
Press the "Ctrl," "Shift" and "Esc" keys at the same time to start the Task Manager.
Click the "Processes" tab in the Task Manager's window.
Select "defender32.exe" from the list of the processes and click "End Process" at the bottom of the window.
Repeat Step 3 for "bqsy.exe," "CcEvtSvc.exe," "seres.exe" and "svcst.exe."
Close the Task Manager.
Remove Registry Entries
Go to the "Start" menu, type "Regedit" in the "Start Search" box and hit "Enter" to start the Registry Editor.
Click the "Edit" file menu option in the Registry Editor's window, select "Find," type the following registry string in the search field and hit "Enter":
Delete all search results.
Repeat Step 2 for the following registry entries:
bqsy RUNNING PROGRAMsvcst.exe RUNNING PROGRAMfndn8vq.exe RUNNING PROGRAMsetup.exe 0472FB67-09DD-4E92-8262-1BFC16CDB075 055E73DE-D97D-40B7-A20C-75A5C75248A7
Close the Registry Editor.
Go to the "Start" menu, type "cmd" in the Start Search box and hit "Enter" to start the command line window.
Type "regsvr32 /u iehelpmod.dll" in the command line window and hit "Enter" to unregister the DLL.
Close the command line window.
Find and Delete Files
Go to the "Start" menu, type "defender32.exe" in the "Start Search" box and hit "Enter." Delete all search results.
Repeat Step 1 for "bqsy.exe," "CcEvtSvc.exe," "seres.exe," "svcst.exe" and "iehelpmod.dll."
Restart your computer.
- close Back up the system registry before deleting the registry entries.
- close Delete only the listed registry entries to avoid damage to the operating system.
- photo_camera Comstock/Comstock/Getty Images