<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Home Antivirus 2010 Removal Instructions</title>
	<atom:link href="http://www.xp-vista.com/remove/home-antivirus-2010/feed" rel="self" type="application/rss+xml" />
	<link>http://www.xp-vista.com/remove/home-antivirus-2010</link>
	<description>Your Ultimate Source for Windows Security</description>
	<lastBuildDate>Thu, 11 Mar 2010 17:36:49 -0500</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Tim</title>
		<link>http://www.xp-vista.com/remove/home-antivirus-2010/comment-page-1#comment-24785</link>
		<dc:creator>Tim</dc:creator>
		<pubDate>Sun, 23 Aug 2009 02:43:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.xp-vista.com/?p=2924#comment-24785</guid>
		<description>You&#039;ve probably already successfully removed the malware program, but this is a suggestion for anyone who&#039;s still fighting the sneaky little bastard...........but it requires that you physically disconnect the hijacked hard drive to get to the root of the problem.

  When it infected my computer it shut down all my antivirus programs (Norton, MalwareBytes, F-Secure&#039;s Blacklight), it prevented me from opening both System Restore and the DOS command line, and it re-directed both my browsers to phony web pages that imitated reliable sites.  Cnet apparently gave PC Antivirus 2010 a five star rating, if you believe the webpage I was directed to.  It also prevented me from downloading antivirus software from other vendors.  

   What worked for me was a little cable I purchased.......a USB to SATA/IDE drive adapter.  For those savvy tech folks, you can skip the next paragraph.  For those who don&#039;t know about this device please read on.

   First go to this website for details and pictures:  http://the-gadgeteer.com/2006/03/22/brando_usb_2_0_to_sata_ide_cable/
  
  All you have to do is disconnect the ribbon cable (SATA owners, your cable has only 7 wires in it) and plug the adapter into the hard drive.  This can be done with the H/D still in the infected computer if it is too hard to physically remove. But the cable kit also has a power supply so that you can pull the hard drive out and set it on the work bench.

  Now you need to get the infected hard drive to another computer that you&#039;ve installed and updated the latest MalwareBytes program.  With this running on the uninfected &#039;puter you only have to plug the original H/D into any USB port that&#039;s available.  The protected computer will see the connection you&#039;ve just made and will label it (probably as drive &quot;F&quot;).  The running program will immediately recognize and quarantine the infection.  It found that PC Antivirus had placed files in 93 areas on my hard drive.

  MalwareBytes removed 99.5% of the infection. I had one little problem.  I had a .dll file that I couldn&#039;t delete. It was listed as IPHACTION.dll, Trojan.Proscks.  It&#039;s a nasty little bugger.  MalwareBytes quarantined it but I wanted it gone.  So I got a shareware program suggested by Tom Mercado at MB. It&#039;s called ComboFix, and if you follow the directions it&#039;ll get rid of the last little vestiges of PC Antivirus.  Read and download it here:  http://www.bleepingcomputer.com/combofix/how-to-use-combofix

   A last note:  I purchased the realtime protection from MalwareBytes for two years.  It&#039;s a great program and deserves your support.  And if you need ComboFix there is a place to donate as well.  Look guys, without great folks like these we&#039;d be at the mercy of the assholes who created PC Antivirus 2010.  Do the right thing and support good guys, OK?    :D</description>
		<content:encoded><![CDATA[<p>You&#8217;ve probably already successfully removed the malware program, but this is a suggestion for anyone who&#8217;s still fighting the sneaky little bastard&#8230;&#8230;&#8230;..but it requires that you physically disconnect the hijacked hard drive to get to the root of the problem.</p>
<p>  When it infected my computer it shut down all my antivirus programs (Norton, MalwareBytes, F-Secure&#8217;s Blacklight), it prevented me from opening both System Restore and the DOS command line, and it re-directed both my browsers to phony web pages that imitated reliable sites.  Cnet apparently gave PC Antivirus 2010 a five star rating, if you believe the webpage I was directed to.  It also prevented me from downloading antivirus software from other vendors.  </p>
<p>   What worked for me was a little cable I purchased&#8230;&#8230;.a USB to SATA/IDE drive adapter.  For those savvy tech folks, you can skip the next paragraph.  For those who don&#8217;t know about this device please read on.</p>
<p>   First go to this website for details and pictures:  <a href="http://the-gadgeteer.com/2006/03/22/brando_usb_2_0_to_sata_ide_cable/" rel="nofollow" onclick="javascript:pageTracker._trackPageview ('/outbound/the-gadgeteer.com');">http://the-gadgeteer.com/2006/03/22/brando_usb_2_0_to_sata_ide_cable/</a></p>
<p>  All you have to do is disconnect the ribbon cable (SATA owners, your cable has only 7 wires in it) and plug the adapter into the hard drive.  This can be done with the H/D still in the infected computer if it is too hard to physically remove. But the cable kit also has a power supply so that you can pull the hard drive out and set it on the work bench.</p>
<p>  Now you need to get the infected hard drive to another computer that you&#8217;ve installed and updated the latest MalwareBytes program.  With this running on the uninfected &#8216;puter you only have to plug the original H/D into any USB port that&#8217;s available.  The protected computer will see the connection you&#8217;ve just made and will label it (probably as drive &#8220;F&#8221;).  The running program will immediately recognize and quarantine the infection.  It found that PC Antivirus had placed files in 93 areas on my hard drive.</p>
<p>  MalwareBytes removed 99.5% of the infection. I had one little problem.  I had a .dll file that I couldn&#8217;t delete. It was listed as IPHACTION.dll, Trojan.Proscks.  It&#8217;s a nasty little bugger.  MalwareBytes quarantined it but I wanted it gone.  So I got a shareware program suggested by Tom Mercado at MB. It&#8217;s called ComboFix, and if you follow the directions it&#8217;ll get rid of the last little vestiges of PC Antivirus.  Read and download it here:  <a href="http://www.bleepingcomputer.com/combofix/how-to-use-combofix" rel="nofollow" onclick="javascript:pageTracker._trackPageview ('/outbound/www.bleepingcomputer.com');">http://www.bleepingcomputer.com/combofix/how-to-use-combofix</a></p>
<p>   A last note:  I purchased the realtime protection from MalwareBytes for two years.  It&#8217;s a great program and deserves your support.  And if you need ComboFix there is a place to donate as well.  Look guys, without great folks like these we&#8217;d be at the mercy of the assholes who created PC Antivirus 2010.  Do the right thing and support good guys, OK?    <img src='http://www.xp-vista.com/forums/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kate</title>
		<link>http://www.xp-vista.com/remove/home-antivirus-2010/comment-page-1#comment-24457</link>
		<dc:creator>kate</dc:creator>
		<pubDate>Fri, 31 Jul 2009 18:58:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.xp-vista.com/?p=2924#comment-24457</guid>
		<description>so...i have to search everyone of those files individually? 

gah. this virus is rediculous and has taken over my entire computer.</description>
		<content:encoded><![CDATA[<p>so&#8230;i have to search everyone of those files individually? </p>
<p>gah. this virus is rediculous and has taken over my entire computer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Trust</title>
		<link>http://www.xp-vista.com/remove/home-antivirus-2010/comment-page-1#comment-24456</link>
		<dc:creator>Trust</dc:creator>
		<pubDate>Fri, 31 Jul 2009 18:00:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.xp-vista.com/?p=2924#comment-24456</guid>
		<description>Leaf: Not True.  That&#039;s like saying let me just pretend my computer is not infected.</description>
		<content:encoded><![CDATA[<p>Leaf: Not True.  That&#8217;s like saying let me just pretend my computer is not infected.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
