W32.ASpam.Trojan.B - Removal

Risk Level 1: Very Low

Printer Friendly Page

Discovered: April 4, 2000
Updated: February 13, 2007 11:55:55 AM
Type: Trojan Horse


To remove this Trojan, perform the following steps:
  1. Using Windows Explorer delete the file C:\Windows\System\Drvman32.dll
  2. Using regedit delete the following registry keys or values:

    HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{499DB658-1909-420B-931A-4A8CAEFD232F}
    (delete entire key)

    HKEY_LOCAL_MACHINE\Software\Classes\DRVMAN32.IEClass
    (delete entire key)

    HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {499DB658-1909-420B-931A-4A8CAEFD232F}
    (delete this value only)


Writeup By: Andy Cianciotto
Search by name
Example: W32.Beagle.AG@mm
Limited Time Offers! Save up to 50%
Windows Vista Security