msvcp100.dll

Microsoft Visual Studio 2010

LionSea Software co., ltd

msvcp100.dll is the runtime components of Visual C++ Libraries required to run applications developed with Visual C++ and is recompiled by LionSea Software co., ltd. While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The module msvcp100.dll, “Microsoft® C Runtime Library” by LionSea Software co., ltd has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
Microsoft Corporation  (signed by LionSea Software co., ltd)

Product:
Microsoft® Visual Studio® 2010

Description:
Microsoft® C Runtime Library

Version:
10.00.30319.460

MD5:
ff99a59a01e71223f024a1b8c96d9351

SHA-1:
53de5f3bfb4df3ed8f87926ccbd46b37dee20140

SHA-256:
6e3f4a98e2c95454dff9b821e066cf066a53ec96b72fb4686bf7fb7604eedcb4

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
This is the runtime components of Visual C++ Libraries required to run applications developed with Visual C++. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
12/24/2024 1:34:06 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.LionSea (M)
17.3.11.22

File size:
411.8 KB (421,688 bytes)

Product version:
10.00.30319.460

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
msvcp100.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\minisd card recovery pro\msvcp100.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/22/2013 6:00:00 AM

Valid to:
3/24/2016 5:59:59 AM

Subject:
CN="LionSea Software co., ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="LionSea Software co., ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
288A6842C331C5443D747BDABF31E2A3

File PE Metadata
Compilation timestamp:
4/22/2011 2:00:26 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x33CD4

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 36, 04, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, C7, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, FF, 25, B0, 11, 05, 78, CC, CC, CC, CC, CC, CC, FF, 25, C0, 11, 05, 78, CC, CC, CC, CC, CC, 6A, 0A, FF, 15, 24, 10, 05, 78, A3, 14, 1A, 0B, 78, 33, C0, C3, CC, CC, CC, CC, CC, FF, 25, C4, 11, 05, 78, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 68, 9E, 3D, 08, 78, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10...
 
[+]

Code size:
371.5 KB (380,416 bytes)

Remove msvcp100.dll - Powered by Reason Core Security