How to remove TR/Patched.Ren.Gen trojan

TR/Patched.Ren.Gen affects various aspects of computer health. This may go as far as to keyboard lockout so that routine activities can hardly make any sense until after TR/Patched.Ren.Gen removal.
One of the most prominent symptoms is its interference when you try signing into some of your accounts or enter those already signed in. In such a case, users often observe a screen that prompts them to enter the object (url, document, folder) they are trying to reach.
In the meantime, the rogue, of course does not introduce itself saying “me is so-and-so trojan of such a payload that will destroy your OS…”. That entails there shall be a security solution capable of detecting it, if you have grown concerned with this invasion.
In order to get rid of TR/Patched.Ren.Gen for good, which your current solution has not succeeded to do, apply the guidance below implementing its steps from A to Z.

Method 1: Using Safe Mode with Networking + antimalware to remove TR/Patched.Ren.Gen infection:

Step 1 > Please restart your PC, but do not wait for regular session to start. Instead, once anything comes to your monitor, press F8 reputedly and frequently enough so that a screen like the one below would get loaded. This is the menu where you need to select the suggested operating mode. Arrows on you keyboard enable you to navigate through the menu and mark Safe Mode with Networking. Once this is done, activate it by pressing Enter on your keyboard.

How to switch to Safe mode?

Step 2 > Prior to initiating any procedures, the processes run by TR/Patched.Ren.Gen must be killed for good. This will prevent in from meddling into the extermination routine. Get RKill browsing to the link below so that this requirement could be satisfied.

downloadDownload RKill
Run it to stop malware processes

Set desktop in “Save as” routine. Once it is downloaded, double-click on the it in order to automatically attempt to stop any processes associated with TR/Patched.Ren.Gen and other malicious software. Please be patient while the program looks for various malware programs and ends them. When it has finished, the black window will automatically close and you can continue with the next Step.


If you get a message that RKill is an infection, do not be concerned. This message is just a fake warning given by TR/Patched.Ren.Gen when it terminates programs that may potentially remove it. If you run into these infections warnings that close RKill, a trick is to leave the warning on the screen and then run RKill again. By not closing the warning, this typically will allow you to bypass the malware trying to protect itself so that RKill can terminate TR/Patched.Ren.Gen. So, please try running RKill until the malware is no longer running. You will then be able to proceed with the rest of the guide. Do not reboot your computer after running RKill as the malware programs will start again. If you continue having problems running RKill, you can rename it to “Iexplorer.exe”,“chrome.exe” and then try to start.

rkill download

Step 3 > Open your browser and download TDSSKiller. Run the utility and click “Start Scan” to anti-rootkit scan.

downloadDownload TDSSKiller
Utility for removing malicious rootkits.

tdss killer kaspersky

Step 4 >Download and install SpyHunter. It has a great capability as an antivirus and complex security suite to recognize, identify, contain and remove any and all threats, including, but not limited to, viral infections, malicious software, parasites that propagate using worm and trojan type routine, potential risks (PUP). Choosing to load and install onto your PC SpyHunter, free edition or advanced edition, ensures that you remove TR/Patched.Ren.Gen PUP referred to as infection for the purposes of this guide.

downloadDownload SpyHunter
Adaptive Spyware Detection and Removal Tool

    • NOTE: There is a risk of the infection you are about to remove interfering with the above (Rkill, TDSS Killer, SpyHunter) and probably any other installations into compromised machine. Under such circumstances, please download software specified here into flash drives \ pen drives at a PC void of the infection. Upon completing this step, attach the removable drive (USB, external drive, CD/DVD) to affected machine so that you could install the solution despite the tricks.
    • OR follow these instructions:
      1. Click Start->Run
      2. Enter “” and press ‘Enter’.
      3. Press ‘Continue unprotected’
      4. Save the file on your desktop.
      5. Rename the .exe from xxx.exe to and run it.
      6. Now you have to remove TR/Patched.Ren.Gen files that will be detected by a program.


downloadDownload SpyHunter
Windows XP, Windows Vista, Windows 7, Windows 8

Method 3: TR/Patched.Ren.Gen Manual removal:

Important! Experienced users only!

Step 1> Locate, stop and delete the following processes and files:

    • %AppData%\Protector-[random 3 characters].exe

Step 2> Remove or change the following registry entries, using “Start>Run> print “regedit” command:

    • %ProgramFiles%\Internet Explorer\Connection Wizard\[random]
      HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “SD2014” = “%AppData%\\.exe”
      HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = “”%LocalAppData%\.exe
      HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\[random]

Step 3> Download reliable anti-malware solution to remove other malicious files and potentially unwanted applications:

downloadDownload SpyHunter
Adaptive Spyware Detection and Removal Tool

  1. nanoo

Leave a Reply

Your email address will not be published. Required fields are marked *