Summary | ZeroBOX

nbotpasppp.exe

Generic Malware Malicious Library UPX PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6401 March 28, 2025, 9:28 a.m. March 28, 2025, 9:31 a.m.
Size 137.5KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 e08490aaa588933433f6b7d3ffbae613
SHA256 0476c1b47571e408cdaeae24a30e481fc0955989e64791e505f7de6d391c1048
CRC32 395FCD59
ssdeep 3072:aVvH8RuVrLyEj/S2CUGACcceJd/klDHa/R8mxu3s8QZqu:KH8RuRLlzgUd6a/AslZqu
Yara
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section .00cfg
Bkav W32.Common.1EBA0297
Lionic Trojan.Win32.Vidar.i!c
tehtris Generic.Malware
Cynet Malicious (score: 100)
CAT-QuickHeal Trojan.Ghanarava.1743019891bae613
Skyhigh BehavesLike.Win32.Dropper.ch
ALYac Gen:Variant.Lazy.269754
Cylance Unsafe
VIPRE Gen:Variant.Lazy.269754
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Gen:Variant.Lazy.269754
K7GW Trojan ( 005a977a1 )
K7AntiVirus Trojan ( 005a977a1 )
Arcabit Trojan.Lazy.D41DBA
VirIT Adware.Win32.Genus.HSY
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Vidar.A
APEX Malicious
Avast Win32:AdwareX-gen [Adw]
ClamAV Win.Keylogger.Vidar-10042687-0
Kaspersky Trojan-PSW.Win32.Vidar.deq
Alibaba TrojanPSW:Win32/Vidar.7e8fdd2c
MicroWorld-eScan Gen:Variant.Lazy.269754
Rising Stealer.Vidar!1.11757 (CLASSIC)
Emsisoft Gen:Variant.Lazy.269754 (B)
F-Secure Trojan.TR/Redcap.jzvby
DrWeb Trojan.PWS.Stealer.42346
McAfeeD Real Protect-LS!E08490AAA588
Trapmine malicious.moderate.ml.score
CTX exe.trojan.vidar
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
FireEye Generic.mg.e08490aaa5889334
Webroot Win.Infostealer.Vidar
Google Detected
Avira TR/Redcap.jzvby
Antiy-AVL GrayWare/Win32.Wacapew
Kingsoft malware.kb.a.997
Gridinsoft Ransom.Win32.Wacatac.sa
Microsoft Trojan:Win32/Sabsik.FL.A!ml
GData Gen:Variant.Lazy.269754
Varist W32/ABApplication.GTWO-5763
AhnLab-V3 Infostealer/Win.Vidar.R695939
McAfee Artemis!E08490AAA588
DeepInstinct MALICIOUS
VBA32 TrojanPSW.Vidar
Malwarebytes Trojan.Vidar
Ikarus Trojan.Win32.Vidar