Files signed by Microsoft Corporation;C2RService

Microsoft Corporation;C2RService

Microsoft Corporation;C2RService is a digital signature publisher name observed in ThreatInfo records. This page groups 13 signed files and shows whether those files are currently classified as clean, undefined, or detected.

A digital signature can help identify a publisher, but it does not always prove that a file is safe. Certificates may be abused, stolen, expired, or attached to modified installers, so the file hash and detection status should be checked together.

Detection signal

Detected files use this signature name

At least one file signed as Microsoft Corporation;C2RService is detected by GridinSoft. Review the hashes below and scan the device if one of these files is present.

Download GridinSoft scanner
MicrosoftEdgeSetup.exe 113a814a9e9b384c1fb88bea222c8270 Under review
VisualStudioSetup.exe 94cba04846655ccaaf28804094b68f6b Suspicious Object
VisualStudioSetup.exe 2ee90a2331df2eaf52d5f0cec26f7b35 Under review
VisualStudioSetup.exe 68c06ed06add8ab35fbffdb31eef759c Trojan.Wacatac
$RE8QGYG.exe 20e50393f60192010ba0eb9a3205a129 Under review
VisualStudioSetup (1).exe 5f4e19002e5fb4721c3920b8f4f40135 Trojan.Wacatac
VisualStudioSetup.exe dc438d67bc769218a39050569a72e8dc Under review
VisualStudioSetup.exe 2ab64b7195850af5390e18e4e1366201 Under review
VisualStudioSetup.exe 24e31b2526a659ff0bd25f0035368ad8 Under review
VisualStudioSetup.exe e1e3af95a3225ad5ebcf30a8b1b89e8d Under review
VisualStudioSetup.exe 8f72ee636df91163e61b28003b1e434f Under review
VisualStudioSetup.exe 2f3e7fa659565cfc601c909def8f9fca Trojan.Wacatac
VisualStudioSetup.exe 1cf3979a5b3b2be4d6a8a51c4d47b9bb Trojan.Wacatac

Certificate review summary

Do not trust this signature name by itself

ThreatInfo found detected files associated with Microsoft Corporation;C2RService. A matching signature name should be checked together with the file hash, detection verdict, and source path.

Recommended checks

  • Open any matching file report and compare the MD5 hash.
  • Confirm the file path and download source before trusting the binary.
  • Run a GridinSoft scan if a detected file from this list is present.