Many viruses hide there, get re-installed automatically, and are difficult to cleanly remove.
==>Start ==>Settings ==>Control Panel ==>System ==>Performance ==>File System ==>Troubleshooting ==>Disable System Restore (click to check the selection box) ==>OK ==>Close Restart? ==>Yes
This will empty out the (hidden) directory C:\_RESTORE. Although it will mean not being able to restore the system to a previous state, it will also remove a significant source of virus problems. When the system restarts, there will be two files in the upper level of C:\_RESTORE, but the hidden subdirectories there, especially TEMP, will be truly empty. (By the way, Windows Explorer will not list files in C:\_RESTORE\TEMP.)
In case you have troubles removing or emptying C:\_RESTORE, then boot from a floppy and use DELTREE.EXE: (deltree removes whole directories, even if they have files in them; rmdir or delete only works on empty directories.)
AVG from www.grisoft.com is free for personal use, with free updates available. (If you want to use Norton or something else and are willing to pay for updates every year or six months, go ahead. However, whatever you use, you MUST GET UPDATES often, since new viruses come out daily!)
==>http://www.grisoft.com
==>Free downloads
==>Download AVG Free edition
(note: in future, Download Free Updates)
==>Download AVG Fee Edition (button at bottom of page)
Note: do NOT click on "30-day Trial version of AVG 6.0
Standard Edition" and
do NOT click on "30-days AVG TRIAL version of AVG 6.0
AVG Professional"
(Unless, of course, you want to pay them for those products.
Note that the license for the free avg allows you to run it
on only 1 machine. If you have several machines, you should
either buy the Multi-License AVG Professional for the number
of machines that you have (1,2,5,10,20,30,50,100), or you
can purchase someone else's product (e.g. Norton Anti-Virus).
License agreement: Suggest you actually read this one! ;-)
==>Yes, I agree
Fill in personal information ("*" indicates required fields):
First name:*
Last name:*
Email Address:* (Make sure this is your real e-mail address :-)
Street Address Line1:*
City:*
State:
Country:* (select from list)
==>Continue
==>Please click here to start the download process...
save it to C:\downloads (create it if you haven't yet)
file name: c:\downloads\avg6459fu_free.exe
This is an installer program for AVG (anti-virus program).
NOTE: before you run this installer, you will need to write down the product SERIAL NUMBER, which you will receive in the mail from Grisoft in response to the registration you did as part of the download process. (That's why you needed to use a real e-mail address).
Do a complete test.
Note: if it tells you that it has found a virus, it will move it to the "Quarantine folder". You can then get it to delete from the quarantine (or you can get it to try to "Heal" the files in the quarantine, which means it will try to remove the virus part of the file if it can.
Note: if it tells you that it cannot remove a virus:
==>Settings==>View Files then, select and delete files with File and Edit menus (copies of every web page which you have read) then close this "Temporary Internet Files" folder window ==>View Objects select and delete programs listed here using File and Edit menus (these are programs which were downloaded by web pages to help you read or view or listen to the content of the web pages you have downloaded). This can be a place where bad programs get downloaded to you, without you knowing it! Clearing these out is NOT HARMFUL and might help.