Results 1 to 12 of 12

Thread: How Do Techs Remove Viruses Remotely

  1. #1
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,723
    Thanks
    1,763
    Thanked
    997 times in 764 posts

    How Do Techs Remove Viruses Remotely

    Hi,

    Bit of a general question to be honest but there are a lot of places offering to remove viruses remotely, does anyone know exactly how they remove them remotely and what programs they may use?

    Thanks
    Jon

  2. #2
    Comfortably Numb directhex's Avatar
    Join Date
    Jul 2003
    Location
    /dev/urandom
    Posts
    17,074
    Thanks
    228
    Thanked
    1,027 times in 678 posts
    • directhex's system
      • Motherboard:
      • Asus ROG Strix B550-I Gaming
      • CPU:
      • Ryzen 5900x
      • Memory:
      • 64GB G.Skill Trident Z RGB
      • Storage:
      • 2TB Seagate Firecuda 520
      • Graphics card(s):
      • EVGA GeForce RTX 3080 XC3 Ultra
      • PSU:
      • EVGA SuperNOVA 850W G3
      • Case:
      • NZXT H210i
      • Operating System:
      • Ubuntu 20.04, Windows 10
      • Monitor(s):
      • LG 34GN850
      • Internet:
      • FIOS

    Re: How Do Techs Remove Viruses Remotely

    Either they connect to a remote desktop session & run an antivirus app as normal, or get you to use a web-based antivirus app

  3. Received thanks from:

    Jonj1611 (21-05-2015)

  4. #3
    root Member DanceswithUnix's Avatar
    Join Date
    Jan 2006
    Location
    In the middle of a core dump
    Posts
    12,986
    Thanks
    781
    Thanked
    1,588 times in 1,343 posts
    • DanceswithUnix's system
      • Motherboard:
      • Asus X470-PRO
      • CPU:
      • 5900X
      • Memory:
      • 32GB 3200MHz ECC
      • Storage:
      • 2TB Linux, 2TB Games (Win 10)
      • Graphics card(s):
      • Asus Strix RX Vega 56
      • PSU:
      • 650W Corsair TX
      • Case:
      • Antec 300
      • Operating System:
      • Fedora 39 + Win 10 Pro 64 (yuk)
      • Monitor(s):
      • Benq XL2730Z 1440p + Iiyama 27" 1440p
      • Internet:
      • Zen 900Mb/900Mb (CityFibre FttP)

    Re: How Do Techs Remove Viruses Remotely

    Or they are scam artists that talk you through how to give them remote access so that they can steal passwords and infect your machine.

    Proper scanning involves taking the disk out and plugging it into another machine.

  5. Received thanks from:

    g8ina (22-05-2015),nichomach (21-05-2015)

  6. #4
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,723
    Thanks
    1,763
    Thanked
    997 times in 764 posts

    Re: How Do Techs Remove Viruses Remotely

    Right, so no actual programs that do the work for techs? Just remote terminal and run as normal? Fair enough, thought it would have been something more technical than that.

    Yes your right Danceswithunix, thats the way I have done it when removing viruses normally if other methods have failed.

    Reason I asked is my sister recently had someone remove a virus remotely from her machine, obviously she forgot about me! But still and after paying I think £40 to do so I wanted to know how's it done, any special programs other than remote login etc. She is a couple of hundred miles away so I couldn't pop round and do it myself.
    Jon

  7. #5
    Senior Member chrestomanci's Avatar
    Join Date
    Sep 2004
    Location
    Reading
    Posts
    1,614
    Thanks
    94
    Thanked
    96 times in 80 posts
    • chrestomanci's system
      • Motherboard:
      • Asus AMD AM4 Ryzen PRIME B350M
      • CPU:
      • AMD Ryzen 1600 @ stock clocks
      • Memory:
      • 16Gb DDR4 2666MHz
      • Storage:
      • 250Gb Samsung 960 Evo M.2 + 3Tb Western Digital Red
      • Graphics card(s):
      • Basic AMD GPU (OSS linux drivers)
      • PSU:
      • Novatech 500W
      • Case:
      • Silverstone Sugo SG02
      • Operating System:
      • Linux - Latest Xubuntu
      • Monitor(s):
      • BenQ 24" LCD (Thanks: DDY)
      • Internet:
      • Zen FTTC

    Re: How Do Techs Remove Viruses Remotely

    Quote Originally Posted by DanceswithUnix View Post
    Proper scanning involves taking the disk out and plugging it into another machine.
    In my experience (I used to work for Sophos), only a minority of viruses can be safely removed from a running system or even a powered off one, as they tend to burrow quite deeply into the OS. To be sure you need to reformat, and restore your data from backups.

  8. Received thanks from:

    Jonj1611 (21-05-2015)

  9. #6
    Anthropomorphic Personification shaithis's Avatar
    Join Date
    Apr 2004
    Location
    The Last Aerie
    Posts
    10,857
    Thanks
    645
    Thanked
    872 times in 736 posts
    • shaithis's system
      • Motherboard:
      • Asus P8Z77 WS
      • CPU:
      • i7 3770k @ 4.5GHz
      • Memory:
      • 32GB HyperX 1866
      • Storage:
      • Lots!
      • Graphics card(s):
      • Sapphire Fury X
      • PSU:
      • Corsair HX850
      • Case:
      • Corsair 600T (White)
      • Operating System:
      • Windows 10 x64
      • Monitor(s):
      • 2 x Dell 3007
      • Internet:
      • Zen 80Mb Fibre

    Re: How Do Techs Remove Viruses Remotely

    Quote Originally Posted by Jonj1611 View Post
    Reason I asked is my sister recently had someone remove a virus remotely from her machine, obviously she forgot about me! But still and after paying I think £40 to do so I wanted to know how's it done, any special programs other than remote login etc. She is a couple of hundred miles away so I couldn't pop round and do it myself.
    There is a massive scam being run from India where they phone your landline and ask for you by name. They then tell you they have spotted your machine spamming viruses and ask for money to fix it.

    I am guessing your sister may have got stung by them.

    I actually play along with them when they call (although they haven't for a while ) and they even get you to go to C:\Windows\Inf and tell you all the .INF files are infections....then ask for remote access and a credit card. I ask them to hold while I get my credit card and go and watch some TV/play some games and go back an hour later to see if they are still holding
    Main PC: Asus Rampage IV Extreme / 3960X@4.5GHz / Antec H1200 Pro / 32GB DDR3-1866 Quad Channel / Sapphire Fury X / Areca 1680 / 850W EVGA SuperNOVA Gold 2 / Corsair 600T / 2x Dell 3007 / 4 x 250GB SSD + 2 x 80GB SSD / 4 x 1TB HDD (RAID 10) / Windows 10 Pro, Yosemite & Ubuntu
    HTPC: AsRock Z77 Pro 4 / 3770K@4.2GHz / 24GB / GTX 1080 / SST-LC20 / Antec TP-550 / Hisense 65k5510 4K TV / HTC Vive / 2 x 240GB SSD + 12TB HDD Space / Race Seat / Logitech G29 / Win 10 Pro
    HTPC2: Asus AM1I-A / 5150 / 4GB / Corsair Force 3 240GB / Silverstone SST-ML05B + ST30SF / Samsung UE60H6200 TV / Windows 10 Pro
    Spare/Loaner: Gigabyte EX58-UD5 / i950 / 12GB / HD7870 / Corsair 300R / Silverpower 700W modular
    NAS 1: HP N40L / 12GB ECC RAM / 2 x 3TB Arrays || NAS 2: Dell PowerEdge T110 II / 24GB ECC RAM / 2 x 3TB Hybrid arrays || Network:Buffalo WZR-1166DHP w/DD-WRT + HP ProCurve 1800-24G
    Laptop: Dell Precision 5510 Printer: HP CP1515n || Phone: Huawei P30 || Other: Samsung Galaxy Tab 4 Pro 10.1 CM14 / Playstation 4 + G29 + 2TB Hybrid drive

  10. Received thanks from:

    Jonj1611 (21-05-2015)

  11. #7
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,723
    Thanks
    1,763
    Thanked
    997 times in 764 posts

    Re: How Do Techs Remove Viruses Remotely

    Yeah I used to enjoy the phone calls from those people too but haven't had any myself for a while. No it wasn't that scam in this instance, it was a local company, well I say local, twenty miles away or so, one of her kids downloaded something and she couldn't get it off.

    Just that I see a lot of people advertising to remove viruses remotely and I was wondering if there was anything special involved, corporate anti virus programs, anything that a "normal" user wouldnt have.
    Jon

  12. #8
    Comfortably Numb directhex's Avatar
    Join Date
    Jul 2003
    Location
    /dev/urandom
    Posts
    17,074
    Thanks
    228
    Thanked
    1,027 times in 678 posts
    • directhex's system
      • Motherboard:
      • Asus ROG Strix B550-I Gaming
      • CPU:
      • Ryzen 5900x
      • Memory:
      • 64GB G.Skill Trident Z RGB
      • Storage:
      • 2TB Seagate Firecuda 520
      • Graphics card(s):
      • EVGA GeForce RTX 3080 XC3 Ultra
      • PSU:
      • EVGA SuperNOVA 850W G3
      • Case:
      • NZXT H210i
      • Operating System:
      • Ubuntu 20.04, Windows 10
      • Monitor(s):
      • LG 34GN850
      • Internet:
      • FIOS

    Re: How Do Techs Remove Viruses Remotely

    Quote Originally Posted by shaithis View Post
    There is a massive scam being run from India where they phone your landline and ask for you by name. They then tell you they have spotted your machine spamming viruses and ask for money to fix it.

    I am guessing your sister may have got stung by them.

    I actually play along with them when they call (although they haven't for a while ) and they even get you to go to C:\Windows\Inf and tell you all the .INF files are infections....then ask for remote access and a credit card. I ask them to hold while I get my credit card and go and watch some TV/play some games and go back an hour later to see if they are still holding
    40 quid isn't their usual price range. They aim for mid 3 figures on a subscription basis

  13. Received thanks from:

    Jonj1611 (21-05-2015)

  14. #9
    mutantbass head Lee H's Avatar
    Join Date
    Dec 2003
    Location
    M28, Manchester
    Posts
    14,204
    Thanks
    337
    Thanked
    671 times in 580 posts
    • Lee H's system
      • Motherboard:
      • MSI Z370 Carbon Gaming
      • CPU:
      • Intel i7 8700K Unlocked CPU
      • Memory:
      • 16 GB Corsair Vengeance 3200 LPX
      • Storage:
      • 250GB 960 EVO + a few more drives
      • Graphics card(s):
      • 6GB Palit GTX 1060 Dual
      • PSU:
      • Antec Truepower 750W Modular Blue
      • Case:
      • Corsair 600T White Edition
      • Operating System:
      • Windows 10 PRO
      • Monitor(s):
      • 27" Asus MX279H & 24" Acer 3D GD245HQ + the 3D glasses
      • Internet:
      • Virgin Media

    Re: How Do Techs Remove Viruses Remotely

    If I have to do remote fixing then its teamviewer mainly to gain access remotely and then use the usual applications such as CCcleaner, malware bytes, kaspersky live CD and also a bit of registry editting to ensure removal.

  15. Received thanks from:

    Jonj1611 (21-05-2015)

  16. #10
    Registered User
    Join Date
    Dec 2012
    Posts
    3
    Thanks
    0
    Thanked
    1 time in 1 post

    Re: How Do Techs Remove Viruses Remotely

    +1 with Teamviewer, fantastic app for remote use.
    Just to add ADWCleaner(1st step use before others), Malwarebytes, SuperAntiSpyware, Combofix(for the seriously pesky ones that won't go away), HitManPro.
    Sometimes require more than 1 or 2 scans to completely remove everything.

  17. Received thanks from:

    mikerr (11-06-2015)

  18. #11
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,723
    Thanks
    1,763
    Thanked
    997 times in 764 posts

    Re: How Do Techs Remove Viruses Remotely

    Hi,

    Many thanks, I was aware of all those programs.

    As I said initially I was looking into how they did it, ie any special programs that were used, of which there are none, just the usual teamviewer etc. Thanks anyway.
    Jon

  19. #12
    Senior Member
    Join Date
    Nov 2004
    Location
    Leicester-far-from-Sea
    Posts
    722
    Thanks
    6
    Thanked
    28 times in 21 posts

    Re: How Do Techs Remove Viruses Remotely

    Just in case someone who has a compromised PC is tuning in to this thread and their PC is too messed up to install something like Teamviewer, you can always create an anti virus bootable CD or USB key, which might get a way in to finish off cleaning up.
    These are not bootable AV tools - if a PC can still use the internet, I usually use adwcleaner and junkware removal tool - I download from bleepingcomputer.com - unfortunately as you try and use these tools there are tricksy tick boxes that would result in installing adware, so not really for people who weren't careful enough when they invited the problem(s) in in the first place
    Last edited by snedger; 11-06-2015 at 08:58 AM.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •