Discovered: April 4, 2000
Updated: February 13, 2007 11:55:55 AM
Type: Trojan Horse
To remove this Trojan, perform the following steps:
- Using Windows Explorer delete the file C:\Windows\System\Drvman32.dll
- Using regedit delete the following registry keys or values:
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{499DB658-1909-420B-931A-4A8CAEFD232F}
(delete entire key)
HKEY_LOCAL_MACHINE\Software\Classes\DRVMAN32.IEClass
(delete entire key)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {499DB658-1909-420B-931A-4A8CAEFD232F}
(delete this value only)
Writeup By: Andy Cianciotto