Newtonsoft.Json.dll

Json.NET

MY POP SHOP LTD

Newtonsoft.Json.dll is the assembly provides support for JSON parsing for .NET applications and is recompiled by MY POP SHOP LTD. The module Newtonsoft.Json.dll, “Json.NET .NET 2.0” by MY POP SHOP has been detected as adware by 4 anti-malware scanners. Note, this is a common distributed file and although it has been detected it might not be a threat is un-coupled from its distribution source.
Publisher:
Newtonsoft  (signed by MY POP SHOP LTD)

Product:
Json.NET

Description:
Json.NET .NET 2.0

Version:
5.0.4.16025

MD5:
354007ccb28e92c4f2affd23a7c9b145

SHA-1:
7c1d25cfdb20627a4a4683b2b8296eef44959427

SHA-256:
7b24fc3605154ceb234025f44e4c3a78fc4f4cb77a86b12e6a45647c11441267

Scanner detections:
4 / 68

Status:
Adware

Explanation:
This is the assembly provides support for JSON parsing for .NET applications. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
4/25/2024 1:13:41 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.Revizer.725
9.0.1.05190

ESET NOD32
MSIL/Toolbar.Linkury.Q potentially unwanted application
7.0.302.0

Kaspersky
not-a-virus:AdWare.Win32.Linkury
15.0.0.543

Reason Heuristics
Common.PUP.MYPOPSHOP.O
14.8.8.0

File size:
425 KB (435,248 bytes)

Product version:
5.0.4.16025

Copyright:
Copyright © James Newton-King 2008

Original file name:
Newtonsoft.Json.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\lpt\newtonsoft.json.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/18/2013 6:00:00 PM

Valid to:
11/19/2015 5:59:59 PM

Subject:
CN=MY POP SHOP LTD, O=MY POP SHOP LTD, STREET=14 Shenkar Arie, L=HERZLIYA, S=NA, PostalCode=46733, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00958B06B6A7C969725A449A396AFA1FDB

File PE Metadata
Compilation timestamp:
4/24/2013 10:40:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:YW31W5cFPl8ihylrbMoxv4QYHD8YNy9FKU/r0tq2mHaN+Sml7HTEb:7ZVl89Nb9v4v2QoLlbTEb

Entry address:
0x69CFE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.0829

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
415.5 KB (425,472 bytes)

Remove Newtonsoft.Json.dll - Powered by Reason Core Security