How to remove csrss.exe
csrss.exe
The module csrss.exe has been detected as Trojan.CoinMiner
File Details
MD5: | 416c43aeb17252ee33048bd1f277d2a5 |
Size: | 31 KB |
First Published: | 2017-07-07 21:09:01 (6 years ago) |
Latest Published: | 2024-04-19 23:01:22 (3 hours ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2024-04-19 23:01:22 (3 hours ago) |
Common Places:
%programfiles%\pcpitstop\pc matic |
%commonappdata%\msbuild\updates |
%commonappdata%\msbuild |
%programfiles%\pcpitstop |
%commonappdata%\package |
%commonappdata%\appsource |
%appdata% |
%commonappdata%\package |
%commonappdata%\package |
%commonappdata%\package |
File Names:
ntrights.exe |
csrss.exe |
Geography:
57.6% | ||
9.5% | ||
6.1% | ||
4.3% | ||
3.9% | ||
2.6% | ||
2.2% | ||
2.2% | ||
1.7% | ||
1.3% | ||
1.3% | ||
0.9% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% |
OS Version:
Windows 10 | 71.0% | |
Windows 7 | 19.9% | |
Windows 8.1 | 6.5% | |
Windows 8 | 2.6% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x01000000 |
Entry Address: | 0x00002d03 |
PE Sections:
Name | Size of data | MD5 |
.text | 29184 | 1f013d575cbd3a91498ae06e967b964f |
.data | 2048 | aedd1279a3b016d46b31eed4faaf3528 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for csrss.exe