[QUOTE=Quib Mask]Restart in safe mode, clean up the registry (deleting the files isn't even always necessary, what average user is gonna navigate to windows\system and double click some oddly named executable?), unregister BHOs,. On rare occasions I have to rebuild the winsock path or mess with virtual device drivers, if the malware was particularly well crafted and deeply rooted.[/quote]
How do you know you got everything?
[quote=Quib Mask]There are software firewalls that can catch tunneled ports as well, like if malware tries to hijack some common process to send/receive, or if it tries to use a DLL or some windows component to do its dirty work. It's not perfect, I didn't say it was. You seem to have implied that I thought it was.[/quote]
What I wanted to say is, that these personal firewalls often promise that they can protect you against everything and sound the big alarm bell every time someone pings you but leave the happy silent greek in his trojan horse mind his own business. And because the firewall says nothing many people think that nothing can be happening.
IMHO they give the user a false sense of security.
[quote=Quib Mask]P.S. - Yesterday I was called up by a friend to go take a look at their mother's laptop which had stopped connecting to their wireless network. She had accidently bumped a tiny physical switch from ON to OFF; it was the power switch for the built in wireless LAN card.[/QUOTE]
Yeah, it's always astonishing what the relative "who knows computers" is able to achieve with the great powers of his mind.