Internet Explorer Hardening Guide

Courtesy of the alt.comp.virus newsgroup participants.
(These "anti-malware" pages are the result of a continuing cooperative effort.)

Translations available: Français and Deutsch

Anti-Virus Main Menu
Main Menu

A quick and dirty guide to hardening Internet Explorer against Spyware

By Jeffrey A. Setaro

Spyware has become one of the most common problems facing users of Microsoft's Internet Explorer web browser. The following is a quick and dirty guide to hardening Internet Explorer against spyware.

  • Make sure you computer is free of spyware before beginning this process. Spywareguide.com offers a free on-line scanner to help you identify and remove spyware from your computer. If you have a slow connection or would prefer to work off-line you will need to download and install Ad-aware and/or Spybot Search & Destroy and then scan you computer with them.

  • Visit http://windowsupdate.microsoft.com and install all the critical updates.
    Note: if you are using an older version of Internet Explorer you really should upgrade to IE 6 service pack 1 or later.

  • Next check the security settings in Internet Explorer. To do this start IE and select Tools > Internet Options to open the "Internet Options" dialog. See Figure 1 below.

Figure 1:

Internet options window image


Select the Security tab and verify that the "Internet", "Local Intranet", "Trusted Sites" zones are set to Medium. See Figure 2 below.

Figure 2:

Internet Explorer properties window image


Next select the Restricted Sites zone and click "Custom Settings" and set everything to "Disable" anything that can't be set to Disable should be set to "Prompt". See Figure 3 below.

Figure 3:

Internet Explorer security settings window image


Now select the Advanced tab on and make sure that "Enable Install On Demand (Internet Explorer)" and "Enable Install On Demand (Other)" are disabled. See Figure 4 below.

Figure 4:

advanced Internet Explorer properties window image

  • Visit https://netfiles.uiuc.edu/ehowes/www/resource.htm#IESPYAD and download the IE-SPYAD block list and install it.

  • Periodically check for updated versions of the block lists and install them.

  • Last but not least install service pack 2 for Windows XP when it becomes available. Service pack 2 includes a number important security improvements that can greatly enhance your on-line safety and security.

 


© Claymania Creations 2001 - 2008. All rights reserved.

Updated: August 11, 2004