(7) Eliminate and DO NOT USE simple file sharing (duh!). Do not share any of your folders. If you want to log on to your computer from another computer, or let some other person log on, make them use the userid and password.
(8) Turn off "Search for network folders and printers". See Windows Explorer options for items 7 and 8.
(9) Do not use Kaaza or like tools. If you do use them, turn off any folder shares. That is not in the spirit of file sharing, but opening folder shares to the internet is asking for it.
(10) Install strong Anti-Virus, Firewall Software, and Spy-ware software. If you can get it, Symantec Client Security 1.1 is best of breed for the first two. Very difficult to obtain if you don't have a friendly corporate connection to purchase/license through. Other worthwhile choices are:
(1) NIS 2004 [but try to disable the anti-spam nonsense] or
(ii) Norton Anti-Virus 2003 plus BlackICE. BlackICE is very strong but a bit too much in-your-face. If you believe in security and want to control it, BlackICE is actually a good choice. I use it on my desktop and I use Symantec Client Security on my laptop. Then install Ad-Aware. Keep all of this updated and run Ad-Aware at least weekly.
(11) Install a hardware router if you are on broadband (always-on). They are cheap (really cheap) and are effective insurance. LinkSys is my personal choice - YMMV. Turn off (block) WAN requests, remote maintenance and other remote activities. So long as you know what you are doing, you can ignore your ISP's outrage when you prevent them from seeing your computer.
(12) In Internet Explorer, turn off most of the Active-X and .Net Framework controls (that is, put them to "prompt" status). That way anyone trying to install a trojan on your system will pop-up looking for permission first.
Privacy and Security should be set to at least medium, and possible strong if you are experiencing attacks. If you do get a pop-up wanting to be installed, be *very* certain before you agree. Say no if you don't quickly recognize and approve the pop-up.
Securing XP - Part 1 | Part 2 | Part 3 |