neshta

First seen
2005-01-01 00:00:00
Malware type
virus
Last IoC activity
2026-07-22 01:55:25
Profile updated
2026-07-07 14:51:57

Context

Neshta is a 2005 Belarusian file infector virus written in Delphi. The name of the virus comes from the Belarusian word "nesta" meaning "something."

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_MALWARE_Win_Neshta (yara-rule)

Reports & references

  • Mandiant — Pe File Infecting Malware Ot (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Neshta (report)
  • web.archive.org — Description (report)
  • virusbulletin.com — Bird S Nest (report)
  • threatvector.cylance.com — Threat Spotlight Neshta File Infector Endures (report)
  • virusradar.com — Description (report)

External references