•Enable Internet Connection Firewall (in SP2 Windows Firewall is enabled by
default) or other firewall application: if you don't have one get Zone Alarm.
•Delete Windows temporary files and Internet Temporary Files and clean
Windows Start-up Folder remove any unnecessary shortcuts from this folder –
[such as mobile phone SIM card managers].
•Temporarily disable System Restore. This should remove possible infection
contained within Restore Point files.
•Use Add/Remove Programs to uninstall all known malware first.
•Before starting a scan, use Windows Task Manager to kill as many background
processes as possible. Here is an example:
Open Ad-Aware and Windows Task Manager; In Task Manager (Processes tab)
right-click explorer.exe, and select End Process; End other unimportant tasks
using the same technique; Switch to Ad-Aware, run scan, and remove infection;
Switch back to Task Manager; Point to File, and select New Task (Run...);
Enter explorer.exe in Open field, and click OK.
•Use additional features of spyware scanners (e.g. Spybot-Search & Destroy -
Immunize, lock Home Page and Host Files) to prevent future infections.
•Update your antivirus application and /or use Online Virus Scans.
•Download, install, and UPDATE Spybot-S&D AND (it's AND, not OR) Ad-aware.
See page at end of these hints!
•Disconnect Internet and all other network connections to prevent instant
re-infection.
•Customize default settings of all scanners:
See your antivirus help file on how to configure it to scan all files.
Use Spybot-S&D Click Mode -> Select Advanced Mode. Go to Settings -> Ignore
Products -> All Products tab -> make sure nothing is checked.
Note:
See Tools in Spybot S&D for many useful features later, after cleaning is
done.
Ad-aware Push Settings (button at the top) -> make sure everything is
checked under Scanning and Advanced menus/buttons.
•Restart computer in Safe Mode, and scan it using all these programs
(antivirus, Spybot S&D and Ad-aware), antivirus first. If scanning online,
stay in Normal Mode for virus scans only.
•While the procedure described above typically corrects most of the
problems, some spyware is unusually stubborn and you may need more agressive
countermeasures.