Skip to main content
SolarWinds MSP
  • Login
  • Support
      SolarWinds MSP
      • Products
        • Remote Monitoring & Management (Cloud) The RMM platform that grows with you. You can be up and running quickly.

          Key Features

          • Active Discovery
          • Automation and Scripting
          • Backup and Recovery
          • Data-Driven Insights
          • Managed Antivirus
          • Mobile Device Management
          • Patch Management
          • Remote Access
          • Remote Monitoring
          • Reports
          • Risk Intelligence
          • Service Desk
          • Web Protection
          • Mobile Applications
        • SolarWinds Backup Leverage on-site and off-site storage to quickly recover from a disaster.

          Key Features

          • Bare Metal Recovery
          • Continuous recovery
          • Data Archiving
          • Faster Backups and Restores
          • File versioning
          • Global Data Centers
          • Hybrid Cloud Recovery
          • Security-focused storage
          • Software Only
          • Virtual Disaster Recovery
          • Virtual Machine Backups
          • Downloads
        • SolarWinds Mail Assure Robust spam and malware protection, including zero-hour detection.

          Key Features

          • Email Security and Protection
          • Mail Archive
          • Service Infrastructure
          • Mailbox Continuity
          • Office 365 & Exchange Support
        • MSP Manager Manage your IT business effectively with a system that minimizes the overhead.

          Key Features

          • Billing
          • Customer Management
          • Customer Portal
          • Dashboard
          • Mobile Apps
          • Scheduling
          • Ticketing
        • SolarWinds Risk Intelligence Put a financial value on your IT risk profile.

          Key Features

          • PII and PHI Discovery
          • Payment Data Discovery
          • Permissions Discovery
          • Risk Intelligence Reporting
          • Vulnerability Scanning
        • MSP Anywhere Get quick, efficient remote access tools that let you get the job done fast.

          Key Features

          • Behind-the-scenes Support
          • Customizeable branding
          • Environment Management
          • Downloads
      • Solutions

        I'm looking to...

        I'm looking for...

        • Manage my MSP Business More Efficiently
        • Manage my IT Department More Efficiently
        • Layered Security
        • Data-Driven Insights
        • Cross-Platform Support
      • Resources

        Webinars & Events

        Resource Center

        • Ask the N-Central Experts
        • Backup and Recovery Academy
        • Remote Management Academy Foundations
        • Upcoming Events
        • Upcoming Webinars
        • Case Studies
        • eBooks
        • White Papers
      • About
        • Contact
        • Worldwide sales and support
        • Careers
        • Newsroom
          • Press Releases
          • In The News
          • Media Contacts
        • Leadership Team
        • Legal
          • Cookie Policy
          • Privacy Policy
          • SolarWinds MSP UK Software Services Agreement
          • Terms of Use
          • GDPR
          • SolarWinds Security Statement
      • Blog
      • TRY NOW
        • SolarWinds RMM
        • SolarWinds Backup
        • MSP Manager
        • SolarWinds Mail Assure
        • SolarWinds Risk Intelligence
        • MSP Anywhere
      Filter Blogs
      • Filter by:
      • MSP Business
        • Backup & Disaster Recovery
        • Best Practices
        • Business
        • Business Growth
        • Business Risk
        • Cloud Computing
        • Customer Service
        • Cybersecurity
        • Data
        • Internet of Things
        • IT Support
        • ITSM
        • LOGICcards
        • Machine Learning
        • Mail
        • Managed Services
        • Marketing
        • Mobile
        • Networking
        • Operations
        • Product
        • PSA
        • Remote Management
        • Research & Trends
        • Risk Intelligence
        • Security
        • Service Desk
        • Services & Support
        • Tips & Advice
        • Training
      Home Blog MSP Business An MSP guide to malware cleanup
      MSP Business

      An MSP guide to malware cleanup

      By Ben Taylor
      11 September, 2013

      There’s no doubt that Windows PCs have become inherently more secure since the days when Windows XP was the corporate operating system of choice. As far back as 2010, official reports revealed that the malware infection rate for Windows 7 was nearly five times lower that the rate for XP (source: CNET ).

      However, with the best will in the world, there will always be times when the malware authors and hackers get a few steps in front of Microsoft and the Internet security vendors. Often, nowadays, they do so by using social engineering techniques to trick those less competent users into installing something they shouldn’t. When this happens, you’re left with a cleanup job.

      As an MSP owner, you and your staff are, inevitably, going to find yourself in situations where you need to clean up a client PC. So, here’s a guide to how best to tackle it.

      1. Manage customer expectations

      Often, customers will have no idea how deeply malware can bury itself into a computer’s operating system. Files can hide themselves, move around and morph, and often (especially on Windows PCs), a single malware attack can leave multiple infections. Ensure customers understand that a cleanup can take time so that they don’t become impatient, which they may - even if it was them who opened the suspicious attachment!

      2. Decide where to “draw the line”

      There comes a point in every malware cleanup where it becomes more time-effective to reinstall and rebuild than to continue attempting to clear every trace of infection. Decide up-front how long should be spent on a cleanup, so you don’t invest multiple hours and then reinstall anyway.

      3. Isolate the computer

      If you’ve identified an infected computer get it straight off the network. If you have any suspicion that cross-infection could have taken place, test-scan some other PCs to be sure.

      4. Use multiple cleanup tools

      Some of the very best malware removal software can miss certain infections. Every IT professional should have two or three reliable removal tools in their armory.

      5. Check and check again

      Many malware infections can hide themselves away only to reappear after a couple of reboots. Never assume an infection is completely clear until after extensive double / triple checking and rescanning.

      6. Educate your clients

      If you can ascertain how a malware infection entered a client PC, educate your clients to minimize the chances of it happening again. At the same time, know that sometimes you may never find the root cause, and be ready to explain this to clients. They are often extremely surprised that Internet security software is less than 100% effective.

      7. Document the cleanup

      Be sure to take notes during a comprehensive malware cleanup. Add the documentation to your MSP’s internal knowledge base or, even better; share it online with the wider technical community.

      Do you have any great tips for cleaning up malware? Share them with a comment below!

      You might also like...

      MSP Business

      Using managed antivirus solutions in your MSP

      MSP Business

      What we can learn from the recent TeamViewer incidents

      MSP Business

      Do we go overboard with security?

      MSP Business

      Hack Labs, Part 2: Examples From the Trenches

      MSP Business

      Get deeper insight into failures with new MAX RM Patch Management features

      MSP Business

      An MSP's guide to responding to a virus

      Recent Posts

      • How to Explain Digital Transformation to Clients
      • Writing MSP Contracts—A Deeper Look, Part 1
      • RMM Essentials—What is it and why do you need one?
      • 5 Must-Have Clauses for your SLAs
      • Release Your Inner IT Superhero, Part 5—Spam Stopper
      • More Results

      Categories:

      • Business Growth (360)
      • Tips & Advice (343)
      • Managed Services (294)
      • Best Practices (253)
      • Cybersecurity (207)
      • Business (205)
      • Security (190)
      • IT Support (99)
      • Backup & Disaster Recovery (87)
      • ITSM (69)
      • Data (68)
      • Cloud Computing (52)
      • Product (39)
      • Mail (37)
      • Marketing (35)
      • Risk Intelligence (32)
      • Customer Service (29)
      • Remote Management (22)
      • Networking (21)
      • Service Desk (16)
      • Services & Support (16)
      • Research & Trends (12)
      • Business Risk (12)
      • Internet of Things (10)
      • PSA (10)
      • Mobile (9)
      • Operations (7)
      • Training (6)
      • LOGICcards (4)
      • Machine Learning (3)
      Show moreless
      SolarWinds MSP

      © 2017 SolarWinds MSP UK Ltd. & SolarWinds MSP Canada ULC.
      All Rights Reserved.

      Products

      • SolarWinds RMM
      • SolarWinds N-central
      • SolarWinds Backup
      • MSP Manager
      • SolarWinds Mail Assure
      • SolarWinds Risk Intelligence
      • MSP Anywhere

      Solutions

      • How We Help MSPs
      • How We Help IT Departments
      • Layered Security
      • Cross-Platform Support
      • Data-Driven Insights

      About

      • About Us
      • Careers
      • Newsroom
      • Leadership Team
      • Upcoming Events
      • Legal

      Support

      • SolarWinds RMM
      • Solarwinds N-central
      • SolarWinds Backup
      • SolarWinds Mail Assure
      • MSP Manager
      • Solarwinds Risk Intelligence
      • MSP Anywhere
      • MSP Mail
      • MSP Anywhere Downloads
      • Backup & Recovery Downloads
      • Sitemap
      • Service Status