Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.


Trojan.Alwayup Removal

  • Please log in to reply
1 reply to this topic

#1 MichaelG


  • Members
  • 1 posts
  • Local time:05:45 AM

Posted 15 August 2005 - 10:24 AM

Hello Guys,
I am trying to remove the file Trojan.Alwayup (as Norton Antivirus calls it) also known as Downloader.Small.38.BU by AVG Antivirus.

This computer is running Windows XP and I have shut down System Restore as Symantec suggests. I scanned the computer with both of the above programs before shutting down System Restore and after. Also with the free Adaware program and Microsoft Antispyware as well.

So, when I have what I think is a clean computer and reboot both programs keep finding it again. I did figure out that AVG is finding it in Norton's Quarantine directory.

So, any help will be appreciated.


BC AdBot (Login to Remove)


#2 stidyup


  • Members
  • 641 posts
  • Gender:Male
  • Local time:05:45 AM

Posted 15 August 2005 - 11:45 AM

I'd suggest submitting a hijackthis log here as you may still have infections causing your problem.

How to submit a hijackthis log

Download Hijackthis

Try running the following from safe mode (Getting to safe-mode) Sysclean you'll also need the virus template file from here lpt***.zip


DrWeb CureIT

If your good with the command line also try Sophos Command Line scanner

Also try installing and running A2 Free and Ewido

I'd also run Spybot and Adaware

If your using Win2K/XP run adaware/spybot from "safe mode with command prompt"

At the C:\ prompt type the following:-

C:\progra~1\spybot~1\spybotsd.exe /autocheck /autofix

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users