Home Malware Programs Rogue Anti-Spyware Programs Rapid Antivirus

Rapid Antivirus

Posted: October 10, 2008

Threat Metric

Threat Level: 10/10
Infected PCs: 38
First Seen: July 24, 2009
Last Seen: March 19, 2019
OS(es) Affected: Windows

ScreenshotRapid Antivirus, or RapidAntivirus, is a fake anti-spyware program that uses fake system messages as a scare tactic. Rapid Antivirus is a clone of Power Antivirus 2009, Antivirus 2009, Vista Antivirus 2009 and Antivir64.

Rapid Antivirus attempts to get computer users to believe that they must purchase the full version of Rapid Antivirus to "fix" their computer. Rapid Antivirus may come from a Trojan infection or a malicious website. Rapid Antivirus may be difficult to manually remove in some cases. It is recommended that you detect and remove Rapid Antivirus with a good spyware scan and removal tool.

ScreenshotScreenshotScreenshotScreenshotScreenshotScreenshot

Aliases

Power Antivirus(PWA) [Sunbelt]High Risk Worm [Prevx1]Adware/RapidAntivirus [Panda]a variant of Win32/Adware.PowerAntivirus [NOD32]Trojan:Win32/FakePowav [Microsoft]FakeAlert-BF [McAfee]not-a-virus:FraudTool.Win32.PowerAntivirus2009.ba [Kaspersky]Non-Virus: [K7AntiVirus]Generic.Win32.Malware.Antivirus2009 [Ikarus]Misc/FakeAlert [Fortinet]TXT/Antivirus2008.B.dropper [F-Secure]Win32/FakeAV!generic [eTrust-Vet]Suspicious File [eSafe]Application.Win32.AdWare.Agent.~AQ [Comodo]Adware.Generic.43997 [BitDefender]
More aliases (23)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



install_710_MHw0MXwxMDEwMDAwMDAwfHx8fHx8fHw_[1].exe File name: install_710_MHw0MXwxMDEwMDAwMDAwfHx8fHx8fHw_[1].exe
Size: 968.7 KB (968704 bytes)
MD5: 03914c3bea8d1747409d9828df0d5c75
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
install_5849_MHw0MXwwfHx8fHx8fHw_.exe File name: install_5849_MHw0MXwwfHx8fHx8fHw_.exe
Size: 760.37 KB (760376 bytes)
MD5: feb19729f3654b173a17911f8d0f88f7
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
setup.exe File name: setup.exe
Size: 969.21 KB (969216 bytes)
MD5: cd9f41e69feffadbccda40bfbb0e340f
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
Rapid Antivirus.exe File name: Rapid Antivirus.exe
Size: 704 KB (704000 bytes)
MD5: 6ec4e0aa294d0642d2ee9263208db38d
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
0000005377.exe File name: 0000005377.exe
Size: 701.95 KB (701952 bytes)
MD5: d85f35ce99ed9ccbd419ffdd78c6a555
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009

Additional Information

The following cookies were detected:
rapidantivir-2009rapidantivirus

Related Posts

One Comment

  • Anon says:

    I wa searching for lyrics on yahoo. I clicked a link, that I believe lead to a metrolyrics database for Tokio Hotel. I don't know if the site itself is malicious or what but now it's too late. I'm on my parents computer looking up away to get rid of Rapid Antivirus. It really did fool me. The way the pop up balloon worked. Like a fool, I played in to it, now my screen is distorted and nothings working liek it should. Also, there are adult themed icons on my desktop now. I'm really upset, I've done a great job up until now of keeping my PC healthy. I knew I needed to end it, I went to task manager and hit end process on an application named ~ , bingo. It didn't do anything ofcourse. I was able to find out it had put itself in System32, and is unable to be deleted(ofcourse) and is probably in other files. I don't have any money of my own to purchase this to remove it, what can I do? Will I have to stay with this on my computer?

Loading...