Home Malware Programs Rogue Anti-Virus Programs Earth Antivirus

Earth Antivirus

Posted: July 12, 2010

Threat Metric

Threat Level: 10/10
Infected PCs: 42
First Seen: July 13, 2010
Last Seen: January 23, 2022
OS(es) Affected: Windows

ScreenshotEarth Antivirus (EarthAntivirus or Earth AV) is quite dangerous as it is another fake security program that utilizes various deceiving tactics to get computer users to purchase a full version of the Earth Antivirus application. Earth AV may be advertised as an antivirus or antispyware tool but has been discovered to be just the opposite. Earth Antivirus may also come from the same cybercrooks that created the rogues known as Eco Antivirus and Green AV. Earth Antivirus does not do anything to prevent or remove legitimate computer viruses, spyware or other types of malware.

It is highly advised that after detection of Earth AV that it be removed immediately before system damages occur. Earth Antivirus may also display erroneous popup messages and conduct fake system scans.

ScreenshotScreenshot

Aliases

VirTool.Win32.Obfuscator.XZ (v) [Sunbelt]VirTool:Win32/Obfuscator.XZ [Microsoft]Win32/Rogue.AntiVirus_i [eTrust-Vet]Sus/ComPack-L [Sophos]W32/SuspPack.BB.gen!Eldorado [F-Prot]a variant of Win32/Adware.GreenAV.AA [NOD32]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



ErV_paid.exe File name: ErV_paid.exe
Size: 1.44 MB (1441367 bytes)
MD5: a6dc223324aee27e6d2cf4966f92ce81
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: July 13, 2010
ergui.exe File name: ergui.exe
Size: 10.71 MB (10718720 bytes)
MD5: 8ddbb017f4048bf6d8d6bcfb0cf55e8e
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 23, 2022

Additional Information

The following messages's were detected:
# Message
1System alert
Suspicious software which may be malicious has been detected on your PC. Click here to remove this threat immediately using Security Master AV.
2Warning! Identity theft attempt detected
Hidden Connection IP:
Security Risk: High
Target: Microsoft Corporation Keys
3Warning! Virus detected
Threat Detected: Trojan-Spy.HTML.Citifraud

Related Posts

One Comment

  • jeanette says:

    I would like to know why this keeps poping up on my web page when i open enternet explorer. This what it says your system might be at risk, click here to protect your system with earth antivirus. can you tell me what to do

Loading...