msvcp110.dll

Microsoft Visual Studio 2012

RAFO TECHNOLOGY INC

While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The file msvcp110.dll, “Microsoft® C Runtime Library” by RAFO TECHNOLOGY INC has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Microsoft Corporation  (signed by RAFO TECHNOLOGY INC)

Product:
Microsoft® Visual Studio® 2012

Description:
Microsoft® C Runtime Library

Version:
11.00.51106.1 built by: Q11REL

MD5:
27b4e320e86bbef0b84be011d6bb0c87

SHA-1:
0087fa5e6bf85e62fec18b3bccf2b94632a01ac8

SHA-256:
bdc7cc86c0dddcda0bdda8c84477dc554d5dbd552e02b2b0c7c1290224765380

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/23/2024 6:13:37 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.RafoTech (M)
17.2.21.17

File size:
512.7 KB (525,024 bytes)

Product version:
11.00.51106.1

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
msvcp110.dll

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\_@e1ae.tmp

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/20/2017 12:53:56 AM

Valid to:
4/18/2019 2:50:02 AM

Subject:
CN=RAFO TECHNOLOGY INC, O=RAFO TECHNOLOGY INC, L=Alhambra, S=California, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G3, O=GlobalSign nv-sa, C=BE

Serial number:
189058EB912897C11845508E

File PE Metadata
Compilation timestamp:
11/6/2012 1:35:49 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

Entry address:
0x3A911

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, B2, 05, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 10, 68, 58, 35, 04, 10, E8, 80, 02, 00, 00, 33, C0, 40, 8B, F0, 89, 75, E4, 33, DB, 89, 5D, FC, 8B, 7D, 0C, 89, 3D, 60, 40, 06, 10, 89, 45, FC, 85, FF, 75, 0C, 39, 3D, 7C, 8D, 06, 10, 0F, 84, D4, 00, 00, 00, 3B, F8, 74, 05, 83, FF, 02, 75, 38, A1, 30, 38, 00, 10, 85, C0, 74, 0E, FF, 75, 10, 57, FF, 75, 08, FF, D0, 8B, F0, 89, 75, E4, 85, F6, 0F, 84, B1, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
390 KB (399,360 bytes)

Remove msvcp110.dll - Powered by Reason Core Security