× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: cf339b5f120d10c0d95f6e664f71cd2baee2de0594067d14271c96e5ac872cd6
File name: System.Xml.dll
Detection ratio: 0 / 63
Analysis date: 2019-03-03 03:24:47 UTC ( 2 months, 3 weeks ago )
Antivirus Result Update
Acronis 20190222
Ad-Aware 20190302
AegisLab 20190302
AhnLab-V3 20190302
Alibaba 20180921
ALYac 20190302
Antiy-AVL 20190302
Arcabit 20190302
Avast 20190302
Avast-Mobile 20190302
AVG 20190302
Avira (no cloud) 20190302
Babable 20180917
Baidu 20190214
BitDefender 20190302
CAT-QuickHeal 20190228
ClamAV 20190302
CMC 20190302
Comodo 20190302
CrowdStrike Falcon (ML) 20190212
Cybereason 20190109
Cyren 20190302
DrWeb 20190302
eGambit 20190302
Emsisoft 20190302
Endgame 20190215
ESET-NOD32 20190302
F-Secure 20190302
Fortinet 20190302
GData 20190302
Ikarus 20190302
Sophos ML 20181128
Jiangmin 20190302
K7AntiVirus 20190301
K7GW 20190301
Kaspersky 20190302
Kingsoft 20190302
Malwarebytes 20190302
MAX 20190302
McAfee 20190302
McAfee-GW-Edition 20190302
Microsoft 20190302
eScan 20190302
NANO-Antivirus 20190302
Palo Alto Networks (Known Signatures) 20190302
Panda 20190301
Qihoo-360 20190302
SentinelOne (Static ML) 20190203
Sophos AV 20190302
SUPERAntiSpyware 20190227
Symantec 20190302
Symantec Mobile Insight 20190220
TACHYON 20190302
Tencent 20190302
TheHacker 20190224
TotalDefense 20190302
Trapmine 20190228
Trustlook 20190302
VBA32 20190301
VIPRE 20190302
ViRobot 20190302
Webroot 20190302
Yandex 20190301
ZoneAlarm by Check Point 20190302
Zoner 20190302
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows command line subsystem.
FileVersionInfo properties
Copyright
(c) various MONO Authors

Product MONO Common language infrastructure
Original name System.Xml.dll
Internal name System.Xml.dll
File version 2.0.50727.1433
Description System.Xml.dll
Comments System.Xml.dll
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2016-01-22 12:51:48
Entry Point 0x00002000
Number of sections 3
.NET details
Module Version ID 835413cc-f8e9-45d3-95f0-464855dff206
PE sections
PE imports
_CorDllMain
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
NEUTRAL 1
PE resources
ExifTool file metadata
SubsystemVersion
4.0

Comments
System.Xml.dll

LinkerVersion
6.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
2.0.50727.1433

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
System.Xml.dll

ImageFileCharacteristics
Executable, No line numbers, No symbols, 32-bit, DLL

CharacterSet
Unicode

InitializedDataSize
1024

EntryPoint
0x2000

OriginalFileName
System.Xml.dll

MIMEType
application/octet-stream

LegalCopyright
(c) various MONO Authors

FileVersion
2.0.50727.1433

TimeStamp
2016:01:22 04:51:48-08:00

FileType
Win32 DLL

PEType
PE32

InternalName
System.Xml.dll

ProductVersion
2.0.50727.1433

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CompanyName
MONO development team

CodeSize
1268224

ProductName
MONO Common language infrastructure

ProductVersionNumber
2.0.50727.1433

FileTypeExtension
dll

ObjectFileType
Dynamic link library

CarbonBlack CarbonBlack acts as a surveillance camera for computers
Compressed bundles
File identification
MD5 7ab826d042039da8b456ff5b2dd75e53
SHA1 00c982b810402dd4383225bc8c2dcdb6132d9960
SHA256 cf339b5f120d10c0d95f6e664f71cd2baee2de0594067d14271c96e5ac872cd6
ssdeep
12288:0Y/AQi7KrtoHqE8KBvdWfFb3X84qoECPqTJOCjbr9hSFswDJZi:0YtT5CqEdBVKbAYCjbr9hSrDDi

authentihash 51d488957bbd194eb31afa0f7cf1f3f38d3b5b41ffc4be5063a97ec8e8b60eff
imphash dae02f32a21e03ce65412f6e56942daa
File size 1.2 MB ( 1270272 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (console) Intel 80386 32-bit Mono/.Net assembly

TrID Generic .NET DLL/Assembly (80.3%)
Win64 Executable (generic) (9.3%)
Windows screen saver (4.4%)
Win32 Dynamic Link Library (generic) (2.2%)
Win32 Executable (generic) (1.5%)
Tags
assembly pedll

VirusTotal metadata
First submission 2016-01-31 06:34:07 UTC ( 3 years, 3 months ago )
Last submission 2016-12-16 15:17:41 UTC ( 2 years, 5 months ago )
File names fil31F2BD3719F65CA743ADF74FD8B10F6A
System.Xml.dll
System.Xml.dll
System.Xml.dll
System.Xml.dll
_0A03D377213F4AA8988F79429994FA6F
System.Xml.dll
System.Xml.dll
System.Xml.dll
app_home_win32_vivehome_data_managed_system.xml.dll
CF339B5F120D10C0D95F6E664F71CD2BAEE2DE0594067D14271C96E5AC872CD6
system.xml.dll
System.Xml.dll
System.Xml.dll
~fabca0d0.tmp
system.xml.dll.tmp
CF339B5F120D10C0D95F6E664F71CD2BAEE2DE0594067D14271C96E5AC872CD6
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!