MSVCR80.DLL

Microsoft Visual Studio 2005

LionSea Software co., ltd

MSVCR80.DLL is the runtime components of Visual C++ Libraries required to run applications developed with Visual C++ and is recompiled by LionSea Software co., ltd. While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The module MSVCR80.DLL, “Microsoft® C Runtime Library” by LionSea Software co., ltd has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
Microsoft Corporation  (signed by LionSea Software co., ltd)

Product:
Microsoft® Visual Studio® 2005

Description:
Microsoft® C Runtime Library

Version:
8.00.50727.42

MD5:
649a011fe96048513fef7f3b586f63e8

SHA-1:
75416450a5a6f0710037714964548499fa4ac03d

SHA-256:
0980cdfd810252d70181e48ad77c544443aa8bff7688f6b1d293c25f99544b82

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
This is the runtime components of Visual C++ Libraries required to run applications developed with Visual C++. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
12/24/2024 11:15:53 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.LionSea (M)
16.11.19.5

File size:
617.8 KB (632,664 bytes)

Product version:
8.00.50727.42

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
MSVCR80.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\lionsea\lionsea video converter\msvcr80.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/8/2012 4:00:00 AM

Valid to:
2/8/2013 3:59:59 AM

Subject:
CN="LionSea Software co., ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="LionSea Software co., ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5C82730AFCB40651922D0DB016CEEFF7

File PE Metadata
Compilation timestamp:
9/23/2005 10:44:37 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:z4b7/ooikc5yxKK/euYpsZ4Q64ma9tiGVKkfhkQ6slProtGMSq4AOZ1ORCAOutSO:z4Rc5VE31XqaJusxGhr46CYtQ9mGycy

Entry address:
0x231A

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, 8D, 88, 00, 00, FF, 74, 24, 0C, FF, 74, 24, 0C, FF, 74, 24, 0C, E8, 99, FD, FF, FF, 83, C4, 0C, C2, 0C, 00, 56, 57, 33, F6, BF, 38, 3B, 1C, 78, 83, 3C, F5, D4, F0, 1B, 78, 01, 75, 1E, 8D, 04, F5, D0, F0, 1B, 78, 89, 38, 68, A0, 0F, 00, 00, FF, 30, 83, C7, 18, E8, 96, 70, 00, 00, 85, C0, 59, 59, 74, 0C, 46, 83, FE, 24, 7C, D2, 33, C0, 40, 5F, 5E, C3, 83, 24, F5, D0, F0, 1B, 78, 00, 33, C0, EB, F1, 53, 8B, 1D, 50, 40, 19, 78, 56, BE, D0, F0, 1B, 78, 57, 8B, 3E, 85, FF, 74, 13...
 
[+]

Entropy:
6.8467

Code size:
396 KB (405,504 bytes)

Remove MSVCR80.DLL - Powered by Reason Core Security