Dropped Files | ZeroBOX
Name 8cd97e352b65f742_csrss.exe
Submit file
Filepath C:\ProgramData\Microsoft\csrss.exe
Size 1.8MB
Processes 2556 (win.exe)
Type PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed
MD5 48dfda3eff897f0a62f71bbac51ff237
SHA1 7a19a04f2c0243afd16dfb4c17611b3f5e2a0774
SHA256 8cd97e352b65f7425930a982b8bc258c16e46096942e4a620e4e2ef472f2a487
CRC32 1B8179C3
ssdeep 49152:BDmghls3y1+XfWL6Vcp5/ZiId/LwJxkh4:Bmghls5Bq/40+
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis