If your system got infected, would you reformat?


If you got infected, would you reformat.  

242 members have voted

  1. 1. If you got infected, would you reformat.

    • Yes - Once you are infected, your sytsem can never be trusted again.
      159
    • No - I feel confident that once I get rid of all the malware my personal data from this point foward would not be at risk.
      83


Recommended Posts

If it's easy to get rid of, no problem. There's hardly anything confidential about anything I do on my PC. No online banking stuff that can be used without the actual card etc.

Format IMO is a last resort or a lazy mans way of fixing something. Either because they don't want to take the time or have no idea how to fix it. ( on customers computer)

No matter what you do you still need to scan the customers data before you put it back on their computer( If you plan on formatting)

Then you need to reinstall the os, download drivers, update the system and test everything out.

Time wise, I don't see a big difference.

When I did computer repair we never charged for time spent scanning for issues, only the time spent installing the spyware removal tools etc...and the time spent removing infections. anytime the computer was scanning or defragging etc...there was no time charged. When the scanning was complete however, then the time began again. Why would you charge a customer for time spent on something when you weren't doing anything to the computer?

It's really a one on one basis on how you deal with a problem. Sometimes the time needed to track down drivers, reinstall everything, update everything, install their apps and test everything takes longer than scanning and repairing.

I am a firm believer in that you can most certainly get rid of all spyware or virus's without formatting.

Format IMO is a last resort or a lazy mans way of fixing something. Either because they don't want to take the time or have no idea how to fix it. ( on customers computer)

No matter what you do you still need to scan the customers data before you put it back on their computer( If you plan on formatting)

Then you need to reinstall the os, download drivers, update the system and test everything out.

Time wise, I don't see a big difference.

When I did computer repair we never charged for time spent scanning for issues, only the time spent installing the spyware removal tools etc...and the time spent removing infections. anytime the computer was scanning or defragging etc...there was no time charged. When the scanning was complete however, then the time began again. Why would you charge a customer for time spent on something when you weren't doing anything to the computer?

It's really a one on one basis on how you deal with a problem. Sometimes the time needed to track down drivers, reinstall everything, update everything, install their apps and test everything takes longer than scanning and repairing.

I am a firm believer in that you can most certainly get rid of all spyware or virus's without formatting.

I'm assuming that is when the customer brought them to your shop. What would you have done if you did in home service calls?

Depends on the severity of the virus. For a serious one, I would copy my essential documents to my external hard drive via BartPE and format. Otherwise, I would clean the system with an av and use various tools to make sure the system is clean before using it again properly.

I wouldn't, well I would if it was a serious virus, like the last one I had (like 4 years ago lol) but if I got clumsy and ended up with some kind of adware I wouldn't bother. Most viruses I would be fine just cleaning with an AV.

If it is bad enough for me to reformat then yes. If the malware is bad enough to keep reappearing or if the computer begins to crawl, definitely yes.

If I know what malware is installed in the first place, most likely I would leave the computer alone till I feel like reformating.

A few years ago I just wiped, no questions asked

Now I am much more clued up in virus removal and I would say 90-95% of infections I can remove myself and be confident they are dead, the other 5-10% are the nasties that no matter what you do, what you use, how many google searches and registry edit you do, they just wont go away - then I wipe

But I dont get infections like that now... if any - as becoming clued up on removal also clued me up on how not to get infected in the first place - also as AVs get better, connection to malware sites are cancelled before you get there, file downloads are stopped before the virus even reaches the PC etc etc

I always reformat after a virus etc. It's not just because of the trust thing though. Even after running loads of scans and removing everything that's found, there's always some crap left over and you're bound to have annoying issues in some situations.

So it's really just easier/safer/better to do a clean reinstall/restore a clean image.

Formatting is a last resort, but I've done it often in the past before I learned a few things.

My most recent malware removal was on my mom's xp machine. She got some fake anti-spyware crap from an infected ad on a news site. She didn't click the ad, and it just happened to come from somewhere that wasn't listed in the Adblock filter or hosts file.

Thankfully she has listened to me before and knew not to click anything when it came up with it's bull**** claims.

Between Spybot and Malwarebytes, the problem was solved easily.

I renewed my OS when I installed Windows 7. Before that I renewed my OS with Vista. Those are the only times I ever reformated. I do a daily backup to an external drive and did run my OS drive Mirrored.

I no longer mirror becuse I am now using an SSD for my OS.

If for whatever reason I need to renew my OS it takes less then 10 minutes to reimage using Acronis Home.

Formatting is a last resort, but I've done it often in the past before I learned a few things.

My most recent malware removal was on my mom's xp machine. She got some fake anti-spyware crap from an infected ad on a news site. She didn't click the ad, and it just happened to come from somewhere that wasn't listed in the Adblock filter or hosts file.

Thankfully she has listened to me before and knew not to click anything when it came up with it's bull**** claims.

Between Spybot and Malwarebytes, the problem was solved easily.

I don't really think you can REALLY clean a system that has been infected. It's much better to revert back to a clean backup if you have or had an infection. Just because one infection was cleaned doesn't mean that BOT is not just setting there, waiting.

I always do a clean install of a customer site if they have been infected. Almost everyone does some sort of very personal things on their system like banking, investments and the such. I could never be 100% sure and that is what we strive for with our customers, or family

  • 3 weeks later...

If I ever got infected I would shoot myself... to foot. Because if you do get infected most likely you are doing something wrong, and bleeding is a good way to remember the stupid **** you are. Just kidding, but it is true. How in the god sake ppl get infected over and over again. Running java applets just fun of it? Clicking ok to every question that your OS present to you. Using god sake old applications that like to receive **** from outside? Downloading and running every executable from the interwebs? Using one of the god damn stupid "Desktop Firewalls" and l33t killz warez anti-virus proff that makes you godlike? And yes, Softpedia, deviantart and other places that are legit won't mean that the download is clean and legit.

So, if I got infected, sure why not. I could reinstall. Only thing i lose is OS itself... and leg. Altho, getting infected is the hard part. Sure you can run a format command for drive, put if you never install anything and something ask for password... meh. Only way to get infected is security hole in either OS itself or program... which also causes a prompt if it tries to infect core except when there is a hole or program runs with required privs.

Hey, bloody needle, better to pick it up *stuck* Ouch.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • I hear you on browser password manager, in my case I have two Google profiles, one was created when Google decided to grandfather us out of Workspace for Domains (with the replacement being too expensive for 25 users) resulting in my domain email address no longer being able to be registered to a new Workspace I created (for myself and another co-owner) so I could use Takeout and sync over some stuff to the new Workspace. Then I have my personal Google profile which I could be logged into on my desktop or Mobile, so I am saving passwords on one or the other, and when an URL changes another password for the same service gets added, it basically ends up being a giant mess. Unless I missed something is there a local decent password manager that can override the browser password managers for Chrome, Edge, Firefox (profiles) so that there is only one vault, and does that also support Passkeys (which to me are still confusing because sometimes it will ask for a Passkey on a phone I am no longer using!) Microsofts implementation of Passkeys is the worst!
    • It's utterly baffling that we have no idea when we'll get new features even well after they've been released. Why Microsoft thinks this is a good rollout strategy is beyond me.
    • If it makes anybody happy, others will need to be bitter about it. (apologies to Yogi Berra)
    • I owned a lot of Soundblaster cards over the years all the way back to the ISA slot era. I use a Soundblaster X3 external now because I'm able to run it through a KVM and have it follow the machine I happen to be using. It drives a set of JBL 305 powered monitors wonderfully. I'm not gaming or doing home theater through it, so rear channels aren't a consideration for me, though it does have side / rear / sub outputs.
    • I disagree that using browser based password managers is a bad idea, your passwords are encrypted by the OS password, but they also be synchronized to make them helpful. I would also use a password manager extension that supports MFA TOTP and Passkeys to manage the account that synchronizes the data. Ente is 100% free and allows you to vault important information, has password vault support, and supports 2FA TOTP support, I just don’t believe, it has a browser extension.
  • Recent Achievements

    • First Post
      DrWankel earned a badge
      First Post
    • Reacting Well
      DrWankel earned a badge
      Reacting Well
    • Week One Done
      Supreme Spray LV earned a badge
      Week One Done
    • One Month Later
      Genuinetonerink- Dubai earned a badge
      One Month Later
    • Week One Done
      Genuinetonerink- Dubai earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      505
    2. 2
      +Edouard
      163
    3. 3
      PsYcHoKiLLa
      91
    4. 4
      Steven P.
      75
    5. 5
      Michael Scrip
      72
  • Tell a friend

    Love Neowin? Tell a friend!