Tuesday 8 May 2012

How to Remove Win32-Kryptik

Trojan horses trick your computer by appearing as harmless applications but then wreak havoc after being installed or opened. The Win32/Kryptik trojan horse slows down your PC's performance and can potentially collect and use your email address for the purpose of spamming others. Removing the program requires a virus checker or manually deleting certain files.

Instructions

  1. Download PC Safe Doctor (see Resources). Run the downloaded program after installing.
  2. Select "Online Scan" to start the scan of your computer. After the scan is done, select "Remove" if the "Win32.Kryptik.FGR" file is found.
  3. Remove manually if PC Safe Doctor misses the file. Restart your computer and hold "F8" as it reboots. Select "Safe Mode with Networking" and start up your computer. 
  4. Open the Windows Task Manager by pressing "Ctrl," "Alt" and "Delete." Select "Task Manager." Stop the program titled "Win32/Kryptik.NGH." Go to the Control Panel, select "Add/Remove Programs," and select "Win32/Kryptik.NGH" to uninstall it.
  5. Open the Registry Editor. Press the "Start" button and choose "Run." Type "regedit" into the box. Open the "HKEY_CURRENT_USER" folder and delete the following entries:

    "Software\Microsoft\Windows\CurrentVersion\Internet Settings 'WarnonBadCertRecving' = '0'"
    "Software\Microsoft\Windows NT\CurrentVersion\Winlogon 'Shell' = '%UserProfile%\Application Data\antispy.exe"
    "Software \Microsoft\Windows\CurrentVersion\Policies\ Explorer\Run"
    "Software\Microsoft\Windows\CurrentVersion\Policies\Attachments 'SaveZoneInformation' = '1'"
    "Software\Microsoft\Windows\CurrentVersion\Policies\Associations 'LowRiskFileTypes' = '.exe'"
  6. Open the "HKEY_LOCAL_MACHINE" folder. Delete the registries "SOFTWARE\Paladin Antivirus" and "SOFTWARE\Malware Defense." Search your registries for any "Win32.Kryptik.FGR" files, as it can hide in both the WIN.INI file and the strings "run=" and "load=." Reset your computer.Clean the temporary files from your Internet browsers. Run PC Safe Doctor to ensure all elements of the program are gone.
Tips & Warnings 
Back up your computer before editing any registry files.
For any questions feel free to say:........................

No comments:

Comments System