Newtonsoft.Json.dll

Json.NET

MY POP SHOP LTD

Newtonsoft.Json.dll is the assembly provides support for JSON parsing for .NET applications and is recompiled by MY POP SHOP LTD. The module Newtonsoft.Json.dll, “Json.NET .NET 2.0” by MY POP SHOP has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
Newtonsoft  (signed by MY POP SHOP LTD)

Product:
Json.NET

Description:
Json.NET .NET 2.0

Version:
5.0.4.16025

MD5:
29efd5f2199747641d14359f6ecc2ee9

SHA-1:
73d9483ba59566e2be09c6b212f584cf188831e5

SHA-256:
7c88c8eddf8300f77a3e8fb89c9417c8cdf99f21427f43767cee7bdf52a12ccf

Scanner detections:
1 / 68

Status:
Adware

Explanation:
This is the assembly provides support for JSON parsing for .NET applications. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
11/26/2024 10:53:27 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Resoft (M)
16.12.4.14

File size:
425 KB (435,248 bytes)

Product version:
5.0.4.16025

Copyright:
Copyright © James Newton-King 2008

Original file name:
Newtonsoft.Json.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\lpt\newtonsoft.json.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/18/2013 4:00:00 PM

Valid to:
11/19/2015 3:59:59 PM

Subject:
CN=MY POP SHOP LTD, O=MY POP SHOP LTD, STREET=14 Shenkar Arie, L=HERZLIYA, S=NA, PostalCode=46733, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00958B06B6A7C969725A449A396AFA1FDB

File PE Metadata
Compilation timestamp:
4/24/2013 8:40:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:vW31W5cFPl8ihylrbMoxv4QYHD8YNy9FKU/r0tq2mHaN+Sml7HTEx:+ZVl89Nb9v4v2QoLlbTEx

Entry address:
0x69CFE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.0827

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
415.5 KB (425,472 bytes)

Remove Newtonsoft.Json.dll - Powered by Reason Core Security