Link to home
Start Free TrialLog in
Avatar of Agrippa
AgrippaFlag for Netherlands

asked on

What is the best (free or commercial) software to remove spyware / malware / etc. from already infected systems?

Hi all,

What is the best (free or commercial) software to remove spyware / malware / etc. from already infected systems?

Anyone any experience? I don't mind buying software. I just need a solution. Perhaps a mix of several software?

Thank you,
SOLUTION
Avatar of akb
akb
Flag of Australia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Agrippa

ASKER

In this case: MPC Cleaner
Avatar of Agrippa

ASKER

Hi Gilnov,

is not always that easy to just backup and reinstall. I have customer systems with special configured software in which case the supplier needs to reinstall al 95 / 145 dollar per hour. No to metion the work / planning / downtime and so on. Therefor I am looking for a solution to best clean up the system. No problem if there are license costs.
Makes sense to scrub in your case then, ElisysAutomatisering. Just putting it out there as an option.

The basics remain the same: first, scan to identify what you are fighting and do a first pass removal. The two scrubbers I mentioned will help in that regard and will remove a lot of malware. Then, if you are still seeing signs of infection after that, start googling the particular malware you found in the first phase and you will find lots of specific advice on ways to deal with it.
It's also a good practice to isolate the infected machines from your network if possible in case you are dealing with malware that can spread on its own (i.e. a worm). That's where the Emsisoft offline scanner comes in handy.
Avatar of Agrippa

ASKER

Ok, so take out the disk, add it as secondary on a clean system that has the right tools to fix the problems, in that case the disk is scanned and cleaned in an (for the infected OS) offline state.
It's less risky to make a bootable USB flash drive or CD/DVD with the tools and boot the infected system with that. That way you minimize the risk of the infection spreading. Same reason you take the infected system off your network.
SOLUTION
Avatar of NVIT
NVIT
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I agree, the more the better for cleaning up.
However, you should only have one A/V program actively monitoring your computer at any one time otherwise your i7 will run like a 286!
> you should only have one A/V program actively monitoring your computer at any one time otherwise your i7 will run like a 286!

agree, as i explained above earlier.
Avatar of Agrippa

ASKER

Thank you all,

I used:

- Malwarebytes
- ADW Cleaner
- RKill
- ComboFix
- JRT
- Hitman Pro

But still had some strange problems like a non working RDP environment. So I ran : SpyHunter

Many more infections found, so I payed for the license and cleaned it, no problems and infections since my last action. Also way less errors in the event viewer of Windows.

Offcourse I will not run pro actively more than 1 scanner. My questions was on how to act AFTER infection, so : cleaning methods.

Thank you.
Thanks, for the update, ElisysAutomatisering. I'm glad it worked out for you.