VirusShare.com - Because Sharing is Caring

Home • Hashes • Research • About • Swag Shop

Account: Login

Please login to search and download.

System currently contains 111,815,994 malware samples.

Report for a sample recently added to the system:
284dd516e02e04f5b8f34345c12c43dad78fb53c39cb15a3d7de9d637d9ebb83
VirusShare info last updated 2026-04-20 00:00:00 UTC
Detected by 21 engines  
MD59638de0ac3e1521ccdbd0f3ee04f3b5a
SHA186dddddfc2e6a4bd0770f88351747e5ca42801f4
SHA256284dd516e02e04f5b8f34345c12c43dad78fb53c39cb15a3d7de9d637d9ebb83
SSDeep12288:L0VX86avEF8JMkKEWpUhPQFrUo+03/DipGk5q8gbcImt0LDviQtaYeiveC8omNZ4:LqXVav9Mk/WvWL0vbp8Stzjw/r6
Authentihash30bddd850424239c053c78cfd57663ca7df5ca96bb7fb0e1894632f01f88afee
Size1,601,108 bytes
File TypePE32+ executable (native) x86-64, for MS Windows
Mime Typeapplication/x-dosexec
Extensionexe
TrIDWindows Control Panel Item (generic) (37.5%)
Win32 Executable MS Visual C++ (generic) (20.3%)
Microsoft Visual C++ compiled executable (generic) (10.7%)
Windows screen saver (8.5%)
Win64 Executable (generic) (6.8%)
Detections
(21/72)
APEXMalicious
Antiy-AVLGrayWare/Win32.Wacapew
BkavW64.AIDetectMalware
ClamAVWin.Trojan.Generic-9853696-0
CrowdStrikewin/malicious_confidence_60% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
Elasticmalicious (high confidence)
FortinetW32/Agent.72CB!tr
GDataWin64.Trojan.Agent.URDII8
GoogleDetected
MalwarebytesVB.Trojan.Generic.DDS
McAfeeDti!284DD516E02E
MicrosoftTrojan:Win32/Wacatac.B!ml
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Suspicious PE
SophosGeneric ML PUA (PUA)
TrellixENSArtemis!9638DE0AC3E1
VBA32Trojan.Wacatac
VaristW64/Ipamor.CZ.gen!Eldorado
VirusTotal Report submitted 2026-04-18 07:53:13 UTC
ExIF Data
CharacterSetUnicode
CodeSize2048
CompanyNameMicrosoft Corporation
EntryPoint0x1000
FileDescriptionClient Server Runtime Process
FileFlags(none)
FileFlagsMask0x003f
FileOSWindows NT 32-bit
FileSize1564 kB
FileSubtype0
FileTypeWin64 EXE
FileTypeExtensionexe
FileVersion10.0.17134.1 (WinBuild.160101.0800)
FileVersionNumber10.0.17134.1
ImageFileCharacteristicsExecutable, Large address aware
ImageVersion10
InitializedDataSize6656
InternalNameCSRSS.Exe
LanguageCodeEnglish (U.S.)
LegalCopyright© Microsoft Corporation. All rights reserved.
LinkerVersion14.12
MIMETypeapplication/octet-stream
MachineTypeAMD AMD64
OSVersion10
ObjectFileTypeExecutable application
OriginalFileNameCSRSS.Exe
PETypePE32+
ProductNameMicrosoft® Windows® Operating System
ProductVersion10.0.17134.1
ProductVersionNumber10.0.17134.1
SubsystemNative
SubsystemVersion10
TimeStamp2100:03:02 06:33:42+00:00
UninitializedDataSize0
WarningPossibly corrupt Version resource