Dropped Files | ZeroBOX
Name 650b17ad2f6690a4_csrss.exe
Submit file
Filepath C:\ProgramData\Microsoft\csrss.exe
Size 1.8MB
Processes 1460 (win.exe)
Type PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed
MD5 8a2a16720871904c285e2365f4169602
SHA1 e6305911a71c1935c9c2535f08e727857a302892
SHA256 650b17ad2f6690a4eb33f57ce5589b85a42faef17366b755f4e5e6d831ff8df2
CRC32 C32068AB
ssdeep 49152:eDmghls3y1+XfWL6Vcp5/n6GFvBWA3xHEJi6LRXgje:Mmghls5Bq/68c2Hgib
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis