SymbOS.Pbstealer.B - Removal

Risk Level 1: Very Low

Printer Friendly Page

Discovered: December 5, 2005
Updated: February 13, 2007 12:49:36 PM
Also Known As: SYMBOS_PBSTEAL.C [Trend Micro]
Type: Trojan Horse
Systems Affected: EPOC


  1. Install a file manager program on the device.

  2. Enable the option to view the files in the system folder.

  3. Delete the following malicious files:

    • C:\system\Mail\00110001_S\pbcompressor.app
    • C:\system\Mail\00110001_S\pbcompressor.rsc

  4. Delete the following file:

    C:\SYSTEM\MAIL\PHONEBOOK.TXT

  5. Exit the file manager.


Writeup By: Robert X Wang
Search by name
Example: W32.Beagle.AG@mm
Windows 7
Windows Vista Security