- Home
- IT Tips And Tricks
- How to remove Win32.Saburex.a and Win32.Warezov.gl from your computer
- Home
- Windows NT 2000 Win XP 2003
- How to remove Win32.Saburex.a and Win32.Warezov.gl from your computer
How to remove Win32.Saburex.a and Win32.Warezov.gl from your computer
- By Richard Richi
- Published 09/15/2007
- IT Tips And Tricks , Windows NT 2000 Win XP 2003
- Unrated
Richard Richi
View all articles by Richard Richi
friend of mine got 2 superb viruses just yesterday, how he managed to catch them in the same day i don’t know , but I got the solution. OK, let’s start:
UPDATE:
How to remove Win32.Saburex.a from your computer:
1. Restart in Safe mode (Hit F8 when Windows starts)
2. Delete the following file:
c:\windows\System32\ole16.dll
3. Open Start -> Run -> regedit.exe (and hit enter)
4. Go to:
5. Replace: (default)=”ole16.dll” with (default)=”shell32.dll”
and
ThreadingModel=”Both” with ThreadingModel=”Apartment”
6. Go to:
7. Replace: (default)=”ole16.dll” with (default)=”shell32.dll”
and
ThreadingModel=”Both” with ThreadingModel=”Apartment”
8. Delete all files from all the Temp directories.
9. Run this removal tool. -> http://students.info.uaic.ro/%7Etheodor
... FidCop.zip
Ok, and now, how to remove Win32.Warezov.gl:
1. Reboot the computer in Safe Mode (at the start of the boot sequence, press and hold F8, then choose Safe Mode from the Windows boot menu).
2. Use Task Manager to terminate the following process:
cservv32.exe
3. Manually delete the files listed below from the Windows root and system directories:
4. Delete the following entries from the system registry:
5. Reboot the computer and check that you have deleted all infected messages from all mail folders.
6. Update your antivirus databases and perform a full scan of the computer
The funny thing is that they are complete different viruses, Warezov it’s a stupid mail virus. I wouldn’t catch it even if I try I how everyone is “clean”
Enjoy !
UPDATE:
How to remove Win32.Saburex.a from your computer:
1. Restart in Safe mode (Hit F8 when Windows starts)
2. Delete the following file:
c:\windows\System32\ole16.dll
3. Open Start -> Run -> regedit.exe (and hit enter)
4. Go to:
Quote:
[HKEY_CLASSES_ROOT\CLSID\{00021401-0000-0000-C000-
000000000046}\InProcServer32]
000000000046}\InProcServer32]
5. Replace: (default)=”ole16.dll” with (default)=”shell32.dll”
and
ThreadingModel=”Both” with ThreadingModel=”Apartment”
6. Go to:
Quote:
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00021401-
0000-0000-C000-000000000046}\InProcServer32]
0000-0000-C000-000000000046}\InProcServer32]
7. Replace: (default)=”ole16.dll” with (default)=”shell32.dll”
and
ThreadingModel=”Both” with ThreadingModel=”Apartment”
8. Delete all files from all the Temp directories.
9. Run this removal tool. -> http://students.info.uaic.ro/%7Etheodor
Ok, and now, how to remove Win32.Warezov.gl:
1. Reboot the computer in Safe Mode (at the start of the boot sequence, press and hold F8, then choose Safe Mode from the Windows boot menu).
2. Use Task Manager to terminate the following process:
cservv32.exe
3. Manually delete the files listed below from the Windows root and system directories:
Quote:
c:\windows\ñservv32.exe
c:\windows\cservv32.s
c:\windows\cservv32.wax
c:\windows\cservv32.dat
c:\windows\system32\e1.dll
c:\windows\cservv32.s
c:\windows\cservv32.wax
c:\windows\cservv32.dat
c:\windows\system32\e1.dll
4. Delete the following entries from the system registry:
Quote:
[HKLM\Software\Microsoft\Windows\CurrentVersion\Run]
“cservv32″ = “c:\windows\cservv32.exe s”
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows]
“AppInit_DLLs” = “e1.dll”
“cservv32″ = “c:\windows\cservv32.exe s”
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows]
“AppInit_DLLs” = “e1.dll”
5. Reboot the computer and check that you have deleted all infected messages from all mail folders.
6. Update your antivirus databases and perform a full scan of the computer
The funny thing is that they are complete different viruses, Warezov it’s a stupid mail virus. I wouldn’t catch it even if I try I how everyone is “clean”
Enjoy !

