× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1b3c9c298d17aaad903903d7c35b99f5f43c3e368126e4f2aa67301cc0c33866
File name: YamlDotNet.dll
Detection ratio: 0 / 61
Analysis date: 2017-07-04 19:27:42 UTC ( 4 months, 3 weeks ago )
Antivirus Result Update
Ad-Aware 20170704
AegisLab 20170704
AhnLab-V3 20170704
Alibaba 20170704
ALYac 20170704
Antiy-AVL 20170704
Arcabit 20170704
Avast 20170704
AVG 20170704
Avira (no cloud) 20170704
AVware 20170704
Baidu 20170704
BitDefender 20170704
CAT-QuickHeal 20170704
ClamAV 20170704
CMC 20170701
Comodo 20170704
CrowdStrike Falcon (ML) None
Cyren 20170704
DrWeb 20170704
Emsisoft 20170704
Endgame 20170629
ESET-NOD32 20170704
F-Prot 20170704
F-Secure 20170704
Fortinet 20170629
GData 20170704
Ikarus 20170704
Sophos ML 20170607
Jiangmin 20170704
K7AntiVirus 20170704
K7GW 20170704
Kaspersky 20170704
Kingsoft 20170704
Malwarebytes 20170704
MAX 20170704
McAfee 20170704
McAfee-GW-Edition 20170704
Microsoft 20170704
eScan 20170704
NANO-Antivirus 20170704
nProtect 20170704
Palo Alto Networks (Known Signatures) 20170704
Panda 20170704
Qihoo-360 20170704
Rising 20170704
SentinelOne (Static ML) 20170516
Sophos AV 20170704
SUPERAntiSpyware 20170704
Symantec 20170704
Symantec Mobile Insight 20170630
Tencent 20170704
TheHacker 20170704
TrendMicro 20170704
TrendMicro-HouseCall 20170704
Trustlook 20170704
VBA32 20170630
VIPRE 20170704
ViRobot 20170704
Webroot 20170704
WhiteArmor 20170627
Yandex 20170704
Zillya 20170701
ZoneAlarm by Check Point 20170704
Zoner 20170704
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows command line subsystem.
FileVersionInfo properties
Copyright
Copyright © Antoine Aubry and contributors 2008, 2009, 2010, 2011, 2012, 2013, 2014

Product YamlDotNet
Original name YamlDotNet.dll
Internal name YamlDotNet.dll
File version 4.1.0
Description YamlDotNet
Comments The YamlDotNet library.
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-01-23 10:14:02
Entry Point 0x0002D866
Number of sections 3
.NET details
Module Version ID 59a8d930-ddb6-4d8f-a381-3391750fef1b
PE sections
PE imports
_CorDllMain
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
NEUTRAL 1
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
4.0

Comments
The YamlDotNet library.

InitializedDataSize
2048

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
4.1.0.0

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
YamlDotNet

CharacterSet
Unicode

LinkerVersion
48.0

EntryPoint
0x2d866

OriginalFileName
YamlDotNet.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright Antoine Aubry and contributors 2008, 2009, 2010, 2011, 2012, 2013, 2014

FileVersion
4.1.0

TimeStamp
2017:01:23 11:14:02+01:00

FileType
Win32 DLL

PEType
PE32

InternalName
YamlDotNet.dll

ProductVersion
4.1.0

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CodeSize
178688

ProductName
YamlDotNet

ProductVersionNumber
4.1.0.0

FileTypeExtension
dll

ObjectFileType
Dynamic link library

AssemblyVersion
4.1.0.0

CarbonBlack CarbonBlack acts as a surveillance camera for computers
Compressed bundles
File identification
MD5 a8945c38dfd56ecf560663b72dc95828
SHA1 3fa844d0db020f220d69e572a44ce87f8c13a50e
SHA256 1b3c9c298d17aaad903903d7c35b99f5f43c3e368126e4f2aa67301cc0c33866
ssdeep
3072:08kcyh+weVD9fwqpS1tBb0wS6GyZo6XRj9Y23ehiMaKG:0cyh+TVZpS10yiaPLOh

authentihash d5b4f22a1ee35a816e87035c319f9f5cfee948d26920b339e616e053ca5be567
imphash dae02f32a21e03ce65412f6e56942daa
File size 177.0 KB ( 181248 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (console) Intel 80386 Mono/.Net assembly

TrID Win32 Dynamic Link Library (generic) (43.5%)
Win32 Executable (generic) (29.8%)
Generic Win/DOS Executable (13.2%)
DOS Executable Generic (13.2%)
Tags
assembly pedll

VirusTotal metadata
First submission 2017-03-12 08:56:48 UTC ( 8 months, 2 weeks ago )
Last submission 2017-07-04 19:27:42 UTC ( 4 months, 3 weeks ago )
File names YamlDotNet.dll
yamldotnet.dll.13564_1.10471.partial
YamlDotNet.dll
yamldotnet.dll
_B8FF92393D4B6B4994B3817A04F5490B
yamldotnet.dll.18084_1.11581.partial
YamlDotNet.dll
yamldotnet.dll
YamlDotNet.dll
Behaviour characterization
Zemana
dll-injection

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!