× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 6cc0cbcd5c4709c6a1c97f5581c347d93e586e7cc0d64bffb4d32c6e753476a4
File name: Newtonsoft.Json.dll
Detection ratio: 0 / 66
Analysis date: 2017-11-18 15:47:45 UTC ( 3 hours, 54 minutes ago )
Trusted source! This file belongs to the Microsoft Corporation software catalogue.
Antivirus Result Update
ALYac 20171118
AVG 20171118
AVware 20171118
Ad-Aware 20171118
AegisLab 20171118
AhnLab-V3 20171118
Antiy-AVL 20171118
Arcabit 20171117
Avast 20171118
Avast-Mobile 20171118
Avira (no cloud) 20171118
Baidu 20171117
BitDefender 20171118
Bkav 20171118
CAT-QuickHeal 20171118
CMC 20171117
ClamAV 20171118
Comodo 20171118
CrowdStrike Falcon (ML) 20171016
Cylance 20171118
Cyren 20171118
DrWeb 20171118
ESET-NOD32 20171118
Emsisoft 20171118
Endgame 20171024
F-Prot 20171118
F-Secure 20171118
Fortinet 20171118
GData 20171118
Ikarus 20171118
Sophos ML 20170914
Jiangmin 20171117
K7AntiVirus 20171117
K7GW 20171118
Kaspersky 20171118
Kingsoft 20171118
MAX 20171118
Malwarebytes 20171118
McAfee 20171118
McAfee-GW-Edition 20171118
eScan 20171118
Microsoft 20171118
NANO-Antivirus 20171118
Palo Alto Networks (Known Signatures) 20171118
Panda 20171118
Qihoo-360 20171118
Rising 20171118
SUPERAntiSpyware 20171118
SentinelOne (Static ML) 20171113
Sophos AV 20171118
Symantec 20171117
Tencent 20171118
TheHacker 20171117
TrendMicro 20171118
TrendMicro-HouseCall 20171118
VBA32 20171117
VIPRE 20171118
ViRobot 20171118
Webroot 20171118
WhiteArmor 20171104
Yandex 20171118
Zillya 20171117
ZoneAlarm by Check Point 20171118
Zoner 20171118
eGambit 20171118
nProtect 20171118
Alibaba 20170911
Cybereason 20171103
Symantec Mobile Insight 20171117
Trustlook 20171118
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows command line subsystem.
FileVersionInfo properties
Copyright
Copyright © James Newton-King 2008

Product Json.NET
Original name Newtonsoft.Json.dll
Internal name Newtonsoft.Json.dll
File version 10.0.2.20802
Description Json.NET
Comments Json.NET is a popular high-performance JSON framework for .NET
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-04-02 05:45:06
Entry Point 0x000A055E
Number of sections 3
.NET details
Module Version ID 0db320ea-9c28-4716-ba63-69641babde67
PE sections
PE imports
_CorDllMain
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
NEUTRAL 1
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
6.0

Comments
Json.NET is a popular high-performance JSON framework for .NET

LinkerVersion
48.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
10.0.2.20802

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
Json.NET

CharacterSet
Unicode

InitializedDataSize
2048

EntryPoint
0xa055e

OriginalFileName
Newtonsoft.Json.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright James Newton-King 2008

FileVersion
10.0.2.20802

TimeStamp
2017:04:02 06:45:06+01:00

FileType
Win32 DLL

PEType
PE32

InternalName
Newtonsoft.Json.dll

ProductVersion
10.0.2.20802

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CompanyName
Newtonsoft

CodeSize
649728

ProductName
Json.NET

ProductVersionNumber
10.0.2.20802

FileTypeExtension
dll

ObjectFileType
Dynamic link library

AssemblyVersion
10.0.0.0

Execution parents
PE resource-wise parents
Compressed bundles
File identification
MD5 a6be9efdaa744e9947f4ee18de5423bd
SHA1 258e57ba953cfadf9fdb00c759e8152a6ae7d883
SHA256 6cc0cbcd5c4709c6a1c97f5581c347d93e586e7cc0d64bffb4d32c6e753476a4
ssdeep
12288:GG86nitqrIT6Eqk56i258EJsUQUUJ9LBHd2U:37itqr3e6d18J9LBHd2

authentihash ed796f23a40fd99830abab783a29f6ee31ad21f65c8b78001bb3a062dbc1bced
imphash dae02f32a21e03ce65412f6e56942daa
File size 637.0 KB ( 652288 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (console) Intel 80386 Mono/.Net assembly

TrID Win64 Executable (generic) (64.6%)
Win32 Dynamic Link Library (generic) (15.4%)
Win32 Executable (generic) (10.5%)
Generic Win/DOS Executable (4.6%)
DOS Executable Generic (4.6%)
Tags
assembly pedll trusted

Trusted verdicts
This file belongs to the Microsoft Corporation software catalogue. The file is often found with Newtonsoft.Json.dll as its name.
VirusTotal metadata
First submission 2017-04-04 03:01:35 UTC ( 7 months, 2 weeks ago )
Last submission 2017-11-18 15:47:45 UTC ( 3 hours, 54 minutes ago )
File names BinDirInclude_runnerconsole_Newtonsoft.Json.dll.1898FF29_7146_46BF_84F0_BA4F3441409D
_D5A85D2C1475F02C4D72C5386FE9D0D0
_2DFC1AB5D790E585A318983EC2F458D3
_8A42D82C9F21D7D289C4D41E964928AD
_78007930280B384ADAE6C51D91377C7E
f_Newtonsoft.Json.dll
231505675.APK
Newtonsoft.Json.dll
_C4A7AF67ADCFA2F2DE57A9F4ACAA28EC
Newtonsoft.Json.dll_1
347939055. Apk
_84726E11242131D6B050943778EA2E0B
Newtonsoft.Json.dll
_5DB6A86C5E7D1E94A5CC69D670B02E5B
Newtonsoft.Json.dll.old
_AC29069F2401042E08E353D2E3AC0DC1
_0E2DCE69976ADB41C88DFC23F969A873
_65F7284A2138691ECB2A099D7993FCBC
fil32F44C517B3F47268E1399A302DA7F90
_3B83E6D8B422660075CAEAFBE2C687D9
_869C43CFC25D9D8529998D7B0DCE6AA3
Newtonsoft_Json_dll_1
NEWTONSOFT.JSON.DLL
localfile~
_764AE77E817CE538E3DE767ED0287897
Behaviour characterization
Zemana
dll-injection

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!