Our company runs Endpoint and it's been giving me notifications for a while about W32.Wecorl!inf. Starting the new year right, I decided to try to get rid of it. So I followed the directions at http://securityresponse.symantec.com/security_response/writeup.jsp?docid=2008-110307-0547-99&tabid=3. After hours and going through the directions exactly, even running a scan in safe mode, Endpoint still says there is no remedy. So I'm stuck with this worm that I continue to get Symantec notifications for yet it provides no way to remove or quarantine it.
How do I get rid of this thing? I think Symantec should at least provide a way to remove something they flag.