npRapider.dll

RapiderBrowser Plugin

Zugara Investments Limited

The module npRapider.dll, “Rapider Browser Plugin” by Zugara Investments Limited has been detected as adware by 4 anti-malware scanners.
Publisher:
Zugara Investments Limited  (signed and verified)

Product:
RapiderBrowser Plugin

Description:
Rapider Browser Plugin

Version:
1, 0, 0, 1

MD5:
00d8275335694463332464ed1bd80d7a

SHA-1:
3d0103ace35e68898ad651be08e308f6ff043997

SHA-256:
fc082ecd9378d1468e2e02d533bfe59e84fc374b4e3f480dd1e4f588f424152c

Scanner detections:
4 / 68

Status:
Adware

Analysis date:
4/23/2024 6:58:18 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Zugara
2017.0.2841

Kaspersky
not-a-virus:AdWare.Win32.Tirrip
14.0.0.699

Reason Heuristics
PUP.ZugaraInvestments (M)
16.2.7.4

Trend Micro House Call
Suspicious_GEN.F47V047
7.2.38

File size:
71.8 KB (73,560 bytes)

Product version:
1, 0, 0, 1

Original file name:
npRapider.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\rapider\nprapider.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
6/7/2013 2:00:00 AM

Valid to:
6/9/2014 2:00:00 PM

Subject:
CN=Zugara Investments Limited, O=Zugara Investments Limited, L=Larnaca, C=CY

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0E69C9D3F6F493CFDD35EE66D63A5D96

File PE Metadata
Compilation timestamp:
4/8/2013 11:48:00 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:ElAoqfzzY6kVN7ftPylwj2t1DkYTFosCcd3Bz5iOfW2YKe6:XfiX7ftPylj1DkYTFhCcd3BzQOfW2YI

Entry address:
0x814C

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 5C, 04, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 40, 03, 01, 10, 89, 0D, 3C, 03, 01, 10, 89, 15, 38, 03, 01, 10, 89, 1D, 34, 03, 01, 10, 89, 35, 30, 03, 01, 10, 89, 3D, 2C, 03, 01, 10, 66, 8C, 15, 58, 03, 01, 10, 66, 8C, 0D, 4C, 03, 01, 10, 66, 8C, 1D, 28, 03, 01, 10, 66, 8C, 05, 24, 03, 01, 10, 66, 8C, 25, 20, 03, 01, 10, 66, 8C, 2D, 1C, 03, 01, 10, 9C, 8F, 05, 50, 03...
 
[+]

Code size:
33.5 KB (34,304 bytes)

Remove npRapider.dll - Powered by Reason Core Security