And there is no need to replace hard drive because of a virus
Indeed. In the 30 years I've been working with PCs, I've never had to scrap a drive because of infections. There are Master Boot Record (MBR) viruses out there that can be tricky to remove, but there are tools specifically designed for them too. Those being the Offline scanners. Here at the shop, we use the one Microsoft themselves put out, the Offline Windows Defender. You burn it to a disc or install it to a blank flash drive and boot to it, letting it do a fully scan. Of the 2 computers in the last 7 years I've been working here that actually had MBR viruses, both were fixed with it.
My recommendations -
1. Download the appropriate
Windows Defender. Create the bootable media, boot the computer with it and run the Full scan. Remove anything it detects.
2. Download
MalwareByte's Anti-Malware. Install and run a Custom scan, check the boxes for "Rootkits" and "C:" (and any other non-removable media drives). Remove anything it finds.
3. Download
AdwCleaner. Run it, Scan with it, remove all found.
4. Make sure there is a decent antivirus installed. Even many of the free ones work well. I personally use Microsoft Security Essentials. I've also used Panda Cloud Antivirus & Avast! Pick one, install it. Perform a Full scan.
5. Windows Updates. Make sure Windows is fully updated. New security holes are found and patched all the time.
6. Make sure Java and Adobe Flash are updated.
7. Remove all unnecessary add-ons / toolbars from their browser(s).
8. Once the computer is clean and updated, create a new Restore Point.
9. (Optional but recommended) Run
CryptoPrevent. This will lock down certain things, such as Syskey, which scammers and some viruses will enable, locking your computer down. In addition, this will prevent current variations of the CryptoLocker / CryptoWall viruses from being run on the system. If you've never run into these RansomWares, count yourself lucky.
10. User education. Advise them to NEVER call a number on a pop-up. NEVER take cold calls from "Windows" and to beware what they click. Have them read "
How did I get Infected". Grinder hasn't updated it in about 4 years, but it's still relevant. Many people will assume they only get infected if they go to "bad" sites, like porn etc... they're wrong... the reputable porn sites are rather diligent in keeping their sites virus-free. Many of our customers at the shop have been infected going to bible-related sites, via e-mail (the various USP / FedEx tracking spam) and other innocuous sites.
(peer-to-peer downloads are always "At your own risk." which is where an updated a/v and MBAM come in.)