Virus, Spyware and Malware Removal Toolkit

Articles on this site form the rogue antivirus category:

Virus Removal

The absolute BEST way to make absolutely certain that a system is clean is to wipe it fresh and reinstall Windows XP. Unfortunately, many people lose their Windows XP install cds, or never received it from the pc manufacturer (which is worth a several page RANT all of it’s own!) So, for them the option is 1)clean up their existing install, 2)buy another windows xp license and disk 3) buy a new computer. Usually the cheapest option turns out to be #1.

Since I have to do a lot of virus cleanup I’ve got a collection of favorite virus removal tools that I make use of. Why so many utilities here? They each have their strengths. Antivirus software of course specializes in cleaning out viruses but in recent years is doing better in the spyware removal. Antispyware software usually has better antispyware coverage, but the landscape is so diverse that it still seems no single product is a bulletproof answer. Also, I like to think of it as getting two or three opinions on if the system is clean. If I can get each of these tools claiming the system is clean, it’s a pretty good bet that we’re finally cleaned out.

Virus Removal Tools

First off, is an essential. A freely available antivirus download. If I’m working on a persons home computer the first choice is usually the free AVG antivirus. If it’s a business I usually steer people towards the pay version of AVG. If they already have antivirus that they want to keep, that’s fine, but it usually has to be reinstalled or renewed because many pests disable or maim your existing antivirus. 8.0 of AVG does a good job identifying and getting out all of the myriad trojans and “possibly unwanted programs” that do sneak installs that previous Antivirus versions didn’t seem to blink an eye at.

Spybot Search and Destroy – this is another good removal tool in the arsenal. This is good to cover the classic spy and adware programs. This includes many rogue antivirus and rogue anti-spyware programs.

Malware bytes anti-malware this is a nice recent addition to my toolkit for cleaning up systems. It seems to be able to pick up some things I’ve missed with spybot and or AVG. In recent months this has become my virus removal tool of choice.

SuperAntiSpyware is another good malware and virus removal tool. They have a portable scanner which is saved to a new random filename each time it’s downloaded and includes all their latest definitions. So, download this on a clean pc to a flash drive, boot up into safe mode if necessary and clean. SuperAntiSpyware also has a standard free edition available for download as well that is a standard installable application. If it were me, for a system cleanup, I would opt for the portable edition as it’s more likely to be able to work due to the random filename.

For some of those specific bugs it can be handy to have a tool for a specific type of bug.

CWShredder is the tool of choice to remove CoolWebSearch.

To the surprise of many, the antivirus companies typically have standalone FREE virus removal tools for various viruses and baddies out there:

Symantec FREE virus removal tools

McAfee Free virus removal tools (this may not have been updated in a while.)

They also have a removal tool called Stinger for a variety of bugs.

Kaspersky has a raft of removal tools too for free download.

As does Grisoft (AVG).

As time allows I’ll be adding more of the handy virus removal utilities I use here. A good place to start for general system utilities though is the sysinternals utilities which are currently owned by Microsoft.

Free Online Virus Scans

I’ve not typically been VERY enthused about “online virus scans” because of some potentially fundamental drawbacks with such, but from time to time I make use of Trend Micro’s Housecall (online java/web based malware scanner) as a quick first or second opinion on a system’s status.

Here’s Panda Antivirus ActiveScan – only cleans out what it finds after registration. (And some things are not cleaned out by the online scan, but by the paid software.)

Kaspersky Virusscanner – another good online scanner.

F-secure has an online scanner.

SuperAntiSpyware has a free home edition.

Other Virus Removal Tools

Other tools are SDFix and Combofix.

Another useful tool for finding hidden registry entries and the like (possible rootkit activity) is RootkitRevealer.

Finally, a very powerful tool for finding running processes:

Process Explorer (link to sysinternals download.)

Virus Removal Toolkit

Now, since many rogue antivirus or malware infestations will prevent you from downloading from the websites of legitimate security tools you will want to develop a toolkit in one of a number of ways. First you may wish for a cd. For many years this was my favorite method because I could just keep a folder on my desktop with the current version of the security tools listed above (or whatever I was using the most at the time.) I could even script updates of them and then I could burn a fresh cd to take out with me.

The other option and probably the better choice today is the USB flash drive. They are cheap and most of these utilities are fairly small. For $20 you can get a 2GB memory stick to put all of your virus removal tools and even have room left to copy data off for forensic analysis (whether it’s log files or other suspicious files that your removal tools did not detect.)

Subpages of this page that may have more detail on some of the tools listed:

Virus and malware removal in the news:

“malware removal” – Google News, Inc. (NASDAQ:SPRT) Trading Unchanged – Short Interest Up by 46.18% – Modern Readers, Inc. (NASDAQ:SPRT) Trading Unchanged – Short Interest Up by 46.18%
Modern Readers
Its technology support services programs are designed for both the consumer and small business markets, and include computer and mobile device set-up, security and support, virus and malware removal, wireless network set-up, and home security and …

and more »

CCleaner malware used for industrial espionage, says security researchers – Blasting News

Alive For Football
CCleaner malware used for industrial espionage, says security researchers
Blasting News
Malware removal. According to Talos, uninstalling and removing the affected CCleaner version cannot ensure the removal of the malware. To completely remove the malicious version of this PC utility program, one should restore from an earlier backup
Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at RiskTalos Blog – Cisco Talos
Cisco's Talos Intelligence Group Blog: CCleaner Command and Control Causes ConcernTalos Blog
Progress on CCleaner Investigation – Avast BlogAvast Blog
Avast Blog -HotHardware
all 44 news articles »

GoDaddy launches hosting platform ‘Business Hosting’ for small businesses – The News Minute

The News Minute
GoDaddy launches hosting platform 'Business Hosting' for small businesses
The News Minute
It includes 2GB RAM, 120GB storage and two CPUs. The "Enterprise" variant is ideal for social media, business listings and advanced eCommerce sites. It includes 4GB RAM, 240GB storage, two CPUs and free one-year malware removal.
GoDaddy launches hosting service for small businesses in

all 3 news articles »

AppCheck Free review – TechRadar

AppCheck Free review
Upgrading to AppCheck Pro adds MBR (Master Boot Record) and GPT (GUID Partition Table) protection, automated malware removal, and an extra backup function to regularly save your most important data. AppCheck's free build will probably be enough for …

CCleaner Malware Incident – What You Need to Know and How to Remove – BleepingComputer

CCleaner Malware Incident – What You Need to Know and How to Remove
Latest forum topics. · MariaJone in Windows 8 and Windows 8.1 · · horlaxen1 in General Chat · IEXP Problem · williamrim in Virus, Trojan, Spyware, and Malware Removal Logs …
Cisco's Talos Intelligence Group Blog: CCleanup: A Vast Number of Machines at RiskTalos Blog – Cisco Talos
Piriform – Security Notification for CCleaner v5.33.6162 and CCleaner Cloud v1.07.3191 for 32-bit Windows usersPiriform

all 196 news articles »

Shady Malware Apps Removed from App Store – App Informers

App Informers
Shady Malware Apps Removed from App Store
App Informers
If you have an iOS device, you might want to learn about the shady malware that is now being removed from the App Store. Apple's App Store is full of a lot of apps claiming to be legitimate malware removal tools. The problem is that a lot of these are
iOS 11 is available tomorrowApple Newsroom

all 604 news articles »

Remove the Ad Redirect – BleepingComputer

Remove the Ad Redirect
The Advertisement Redirect is when your computer's default browser opens and utilizes the site to redirect your browser to unwanted advertisements.

and more »

Dell’s Premium Support Plus Brings Automated Support To Consumer PCs – Forbes

Dell's Premium Support Plus Brings Automated Support To Consumer PCs
Automated virus and malware removal. With a wave of new security threats, consumers need an easy way to protect their PC. Dell's support offering automatically scans the PC for viruses, quarantines the threat, alerts the user and removes it. It keeps a

and more »

Vulnerability to Malware Varies By Location – Global Trade Magazine (blog)

Vulnerability to Malware Varies By Location
Global Trade Magazine (blog)
Install a trusted malware removal software, and set it to perform scans and updates automatically. Set your operating system to update automatically and regularly. It's tempting to click the button to update later when a notification pops up. Still, it

and more »

Remove the Home Page – BleepingComputer

Remove the Home Page
If your browser's homepage has been changed to then you have browser hijacker installed that modifies your browser's configuration. This unwanted program modifies your browser's settings so that it automatically opens the …    Send article as PDF   

Similar Posts

Switch to our mobile site