Home Antivirus 2010 Removal Technique (Spyware)

By Partho, Gaea News Network
Monday, July 20, 2009

Are you one of those victimized by Home Antivirus 2010? Well, do you now what it is? To put it straight, Home Antivirus 2010 is a classical rogue anti-spywares that in the disguise of protecting a PC, tricks the unsuspecting user into downloading its registered version. It tricks the users to buy the fake software by using scare tactics: fake privacy alerts and false positives. Once the fake antispyware is installed, rogue sets to start automatically as your computer starts and creates a few files. During the scans these files are detected as infections or virus. On scanning with Home Antivirus 2010 it shows a lot of trojans and spyware that cannot be removed unless you purchase the software. Actually, these infections are fake so you can ignore them without any risk. Let’s see how to remove Home Antivirus completely.

While running on your computer Home Antivirus 2010 would display the nag screens and fake security alerts from your windows taskbar. Take for an example a Home Antivirus 2010 fake security alerts

Privacy Alerts

Your system was found to be infected with intercepting program. These can log your activity and damage your privacy. Click here for Home Antivirus 2010 spyware removal.

The program also shows fake Windows Security Center that would prompt you to register for Home Antivirus 2010. Instead of doing so, use these Home Antivirus 2010 removal instructions below in order to remove this infection and any associated malware from your computer for free.

How to remove Home Antivirus 2010 (Uninstall instructions)

Step 1

Download Avenger and unzip to your desktop. Run Avenger to make sure that it Scans for rootkits.

Now Automatically disable any rootkits found both are checked. Copy and paste the following text in Input script Box

Registry values to delete

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run | Home Antivirus 2010

Folders to delete

%ProgramFiles%\HomeAntivirus2010

The Window as shown below appears

home_antivirus_2010_avenger

Click on Execute.

Now you will be asked Are you sure you want to execute the current script?

Click Yes

Once Avenger has been successfully set up to run on next boot, you are asked to reboot your PC. Click on Yes.

Step 2

Download MalwareBytes Anti-malware MBAM. All programs and Windows on your computer must be closed.

Double click on the mbam-setup.exe to install the application. Once the installation process begins follow the prompts .

Make no changes to default settings and when the program has finished installing. Check the Update MalwarebytesAnti-Malware and Launch Malwarebytes’ Anti-Malware, if they are unchecked

Click Finish.

After the program is successfully loaded you will see the following window

malwarebytes-antimalware

Select Perform Quick Scan and then click on Scan. It would start scanning your computer for Home Antivirus 2010 infection.

Step 3

Once the scan is complete, click OK and then Show Result to view the results. See a list of infected items similar as shown below

home_antivirus_2010_mbam

Note: The items may be different than what is shown in the image below

Make sure that everything is checked and click Remove Selected for start Home Antivirus 2010 removal process. Once the disinfection is completed, a log will open in Notepad and you might be prompted to Restart.

Here’s a list of Home Antivirus 2010  files and folders it creates

Home Antivirus 2010 creates the following files and folders

C:\Program Files\HomeAntivirus2010
C:\Program Files\HomeAntivirus2010\HomeAntivirus2010.exe
C:\Program Files\HomeAntivirus2010\htmlayout.dll
C:\WINDOWS\system32\cepapyx.com
C:\WINDOWS\syromeni.bat
C:\Program Files\Common Files\ywukynota.com
C:\Program Files\Common Files\vivifabyx.dll
C:\Documents and Settings\All Users\Application Data\ciqudehyri.dll
C:\WINDOWS\system32\_scui.cpl

Home Antivirus 2010 creates the following registry keys and values

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Home Antivirus 2010
HKEY_CURRENT_USER\Control Panel\don’t load\scui.cpl
HKEY_CURRENT_USER\Control Panel\don’t load\wscui.cpl
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ForceClassicControlPanel

Discussion

Cody
February 12, 2010: 8:12 pm

Did this help anyone? Is there any problems?

September 11, 2009: 8:30 pm

I had a 12 round, bare-knuckles match with Personal Antivirus 2010 the other day. Twas a nasty fight, but I eventually got the better end of the deal… and without a reinstall.

I revised my previously-written Hubpage article to include the steps needed to get it off the system… for all of the do-it-yourself types out there.

Check out my Hubpage Profile (the link is shorter), and you will see only one article that I’ve written: https://hubpages.com/profile/Bradley+Chapple

Yes, yes, I know this comment has a link in it, but it’s not spam. I’m only trying to help.


cATHY
September 10, 2009: 10:56 am

This spyware is keeping me from getting on the internet to download anything.


cATHY
September 2, 2009: 8:20 am

Home Antivirus 2010? is a fake rogue spyware program just like ANTIVIRUS 2009 or XP ANTISPYWARE 2009 or MALWARE DEFENDER 2009, it can be removed using Malwarebyte.i already remove this rogue spyware program.

August 5, 2009: 3:51 pm

You might want to try Combofix also. A very good Rootkit remover.


Jeff Chretien
July 21, 2009: 7:57 pm

I just wanted to thank you for making this info available. I followed the steps and it appears to have worked. Thanks!

July 21, 2009: 1:58 am

You may also try SUPERAntiSpyware. It’s free and will remove this infection.Either the Free or Pro Trial Edition will work fine.

Run the install.exe file.

Select “Scan Your Computer.”

Select “Perform Complete Scan.”

Follow the prompts to quarantine/remove the infected files.

Make sure to reboot following the scan.

If you are currently running SUPERAntiSpyware - or another security program - it always makes sense to update to the latest version and definitions prior to running a scan.

YOUR VIEW POINT
NAME : (REQUIRED)
MAIL : (REQUIRED)
will not be displayed
WEBSITE : (OPTIONAL)
YOUR
COMMENT :