Reply
Newbie
hammer222
Posts: 2
Registered: ‎05-13-2010

Unable to remove virus using A/V in Norton Systemworks 2006

I have run Norton A/V in my Norton Systemworks 2006, and each time I run it I get two hits.  One is Downloader and the other is a Trojan Horse.  When I click on the link to see what each one is on your website, this is what the link says for Downloader: 

http://securityresponse.symantec.com/security_response/writeup.jsp?docid=2002-101518-4323-99&tabid=3

 

and this is what the link says for the trojan:

http://securityresponse.symantec.com/security_response/writeup.jsp?docid=2004-021914-2822-99

 

I have done what it says.....make sure my definitions are up tp date, turn off Windows restore, run in Safe Mode, and run Norton A/V.  I have done this and I still get these two hits.  When I try to remove them, it says that the action has failed to remove them.  What do I do now?

 

I am running Windows XP on a 3.06 Ghz Pentium 4.

delphinium
Posts: 9,680
Kudos: 2,855
Solutions: 282
Registered: ‎11-21-2008

Re: Unable to remove virus using A/V in Norton Systemworks 2006

Hi Hammer222:

 

There is a very good possibility that that if you have picked up a rootkit, your Norton product isn't allowed to remove it.  I am not familiar with the information provided in 2006 Systemworks.  Is there any information on the paths, or actual names that Norton has identified?  The articles on removal are dated 2001 and 2004 and are not particularly valid in dealing with the malware of today.  They should be updating this material.

 

It is necessary to update your Norton to the newest antivirus engine rather than just maintaining definitions updates.  The older programs are not as successful in protecting you from malware.

Under certain circumstances profanity provides relief denied even to prayer.
Mark Twain
Newbie
hammer222
Posts: 2
Registered: ‎05-13-2010

Re: Unable to remove virus using A/V in Norton Systemworks 2006

Hey there Delphinium!  Well, I also scanned with Malwarebytes and SuperAntiMalware, and they didn't find anything.  I don't know if I'm getting a false positive or not.  Norton never tells me what the path is, it just says "Downloader" and "Trojan".  Right now I'm running Vipre to see if it can find something.

 

I don't want to upgrade to anything newer than my Systemworks, since I upgraded to that when I got this computer.  When I get a new system, I will upgrade....I always do that with all my utilities when I get a new system.

 

What I don't understand is if Norton can detect it, why can't it remove it?  Isn't that what A/V software is supposed to do?  Even if my older version of Systemworks isn't able to remove it, why doesn't Norton post a manual method of removing it on their website?

 

Anyway, thanks for your input, I appreciate it.

delphinium
Posts: 9,680
Kudos: 2,855
Solutions: 282
Registered: ‎11-21-2008

Re: Unable to remove virus using A/V in Norton Systemworks 2006

Hi Hammer222:

 

Norton had to be changed so that it would not remove certain rootkits because they infected crucial Windows operating system drivers.  When the files were simply removed, it caused a boot-reboot loop that made the computer more useful as a doorstop.  Manual removal is required for these infections to swap the infected files for non-infected ones to protect the system.

 

MBAM will not identify TDL3/TDL4 rootkits by design. 

Under certain circumstances profanity provides relief denied even to prayer.
Mark Twain