Thursday, March 12, 2015

Trojan.Multi.Cerstor.a Removal Guide

Trojan.Multi.Cerstor.a cannot be ignored when you detect it on your computer, for this is a malicious Trojan horse which can severely damage your computer and violate your privacy. Usually, this Trojan horse gain access to your computer when you browse malicious websites or download free but infected software. It can also come bundled with attachments of a spam email sent to your email box by the hackers. After getting into your computer via these means, this Trojan horse will begin to perform some malicious tasks according to the commands sent from the remote server. In order to take control over your system, it will change your system settings and modify registry entries without any consent. Then, it will open a backdoor in your system, allowing the remote hackers to visit your computer and other threats to get into your computer stealthily. What’s more, it can install a key logger on your computer to record your keystrokes. If you purchase something or transfer money using your online banking account during the period, it is probable that this Trojan horse can capture you’re the usernames and passwords of your accounts when you input them into related web pages. So, it is highly recommended that you clean up Trojan.Multi.Cerstor.a from your infected system as early as possible. You can learn how to do that by following the guide blow.

Guide to Manually Remove Trojan.Multi.Cerstor.a


Note: Since the manual removal is a complicated task which involves the deletion of files and registry entries, we sincerely suggest that you back up the Windows registry and important data and before you start to the manual removal. Then, follow the steps to remove the Trojan horse.


1. Restart your infected computer.

2. As it starts up, you should tap the key F8 several times until the Windows Advanced Options Menu appears on the screen.

3. Highlight the “Safe Mode with Networking” option by using the arrow keys.



4. Press Enter to proceed.

5. Press keys CTRL+ALT+DEL together to open the Windows Task Manager.

6. Go to “Processes” tab, search for and stop the processes related to Trojan.Multi.Cerstor.a.


7. Locate the files listed below and delete all of them from your computer.


%AppData%\Bifrost\server.exe

%ProgramFiles%\random.exe

C:\WINDOWS\trlrokgq

C:\Documents and Settings\Administrator\Local Settings\Temp\dinotifyb.exe

C:\Documents and Settings\Administrator\Local Settings\nsg8.tmp\execpri.dll

C:\Documents and Settings\Administrator\Local Settings\Temp\nsg8.tmp\inetc.dll


8. Click on the Start menu and go to Run.

9. Type “regedit” into the dialog box and press Enter. This will open the Registry Editor.

10. In the Registry Editor, find out and remove the registry entries associated with the Trojan horse.


HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Current Version\Run\random.exe”

HKEY_CURRENT_USER\AppEvents\Schemes\Apps\Explorer\Navigating

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations

HKEY_CURRENT_USER\Software\Microsoft\CurrentVersion\Run\”MSN” = “%Temp%\34542.exe”


12. Reboot your computer back to the normal mode to check whether the Trojan horse has been completely removed from your computer.

No comments:

Post a Comment