Newtonsoft.Json.dll

Json.NET

MY POP SHOP LTD

Newtonsoft.Json.dll is the assembly provides support for JSON parsing for .NET applications and is recompiled by MY POP SHOP LTD. The module Newtonsoft.Json.dll, “Json.NET .NET 2.0” by MY POP SHOP has been detected as adware by 9 anti-malware scanners. Note, this is a common distributed file and although it has been detected it might not be a threat is un-coupled from its distribution source.
Publisher:
Newtonsoft  (signed by MY POP SHOP LTD)

Product:
Json.NET

Description:
Json.NET .NET 2.0

Version:
5.0.4.16025

MD5:
8277aead3878be92db5d4bdbd3b2f17b

SHA-1:
8fae03754a67cdd9bd6a050708486ab7da65dddc

SHA-256:
cdc5a8278f0bbca5127250a33acbe634366d729dda007c340f2329b810cb48b7

Scanner detections:
9 / 68

Status:
Adware

Explanation:
This is the assembly provides support for JSON parsing for .NET applications. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
4/18/2024 4:46:54 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Smartbar.O
832

AVG
Mypopshop
2015.0.3310

Bitdefender
Adware.Smartbar.O
1.0.20.1490

Emsisoft Anti-Malware
Adware.Smartbar.O
8.14.10.25.06

F-Secure
Adware.Smartbar.O
11.2014-25-10_7

G Data
Adware.Smartbar
14.10.24

MicroWorld eScan
Adware.Smartbar.O
15.0.0.894

nProtect
Adware.Smartbar.O
14.10.16.01

Reason Heuristics
Common.PUP.MYPOPSHOP.O
14.10.25.18

File size:
425 KB (435,208 bytes)

Product version:
5.0.4.16025

Copyright:
Copyright © James Newton-King 2008

Original file name:
Newtonsoft.Json.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\lpt\newtonsoft.json.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/6/2014 8:00:00 PM

Valid to:
7/7/2015 7:59:59 PM

Subject:
CN=MY POP SHOP LTD, O=MY POP SHOP LTD, STREET=14 Shenkar Arie, L=HERZLIYA, S=NA, PostalCode=46725, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
4A7D93FD75281A37A4ADCDCD636D3ADB

File PE Metadata
Compilation timestamp:
4/24/2013 11:40:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:0W31W5cFPl8ihylrbMoxv4QYHD8YNy9FKU/r0tq2mHaN+Sml7HTEe:fZVl89Nb9v4v2QoLlbTEe

Entry address:
0x69CFE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.0826

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
415.5 KB (425,472 bytes)

Remove Newtonsoft.Json.dll - Powered by Reason Core Security