Newtonsoft.Json.dll

Json.NET

Veristaff.com Inc

Newtonsoft.Json.dll is the assembly provides support for JSON parsing for .NET applications and is recompiled by Veristaff.com Inc. The module Newtonsoft.Json.dll, “Json.NET .NET 2.0” by Veristaff.com Inc has been detected as adware by 4 anti-malware scanners. Note, this is a common distributed file and although it has been detected it might not be a threat is un-coupled from its distribution source.
Publisher:
Newtonsoft  (signed by Veristaff.com Inc)

Product:
Json.NET

Description:
Json.NET .NET 2.0

Version:
5.0.4.16025

MD5:
5765ecd51be23b37f16cff03ba03defc

SHA-1:
b27f8a6a167372d78a2f380b726a22859a602958

SHA-256:
8d9de235e07ba6f60e1315a889a48a5c62ff20e88e6afef13403f482088d4153

Scanner detections:
4 / 68

Status:
Adware

Explanation:
This is the assembly provides support for JSON parsing for .NET applications. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
4/20/2024 1:38:49 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
Veristaff
2016.0.3114

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Adware.Linkury.21, Adware.Linkury.21
9.0.1.05190

Reason Heuristics
Common.PUP.Veristaff.O
14.7.28.9

File size:
424.3 KB (434,472 bytes)

Product version:
5.0.4.16025

Copyright:
Copyright © James Newton-King 2008

Original file name:
Newtonsoft.Json.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\lpt\newtonsoft.json.dll

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/8/2014 8:00:00 PM

Valid to:
7/14/2015 8:00:00 AM

Subject:
CN=Veristaff.com Inc, O=Veristaff.com Inc, L=Wilmington, S=Delaware, C=US

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0B0EA10F13BB9EB2057BECB9A30F59D4

File PE Metadata
Compilation timestamp:
4/24/2013 11:40:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:+W31W5cFPl8ihylrbMoxv4QYHD8YNy9FKU/r0tq2mHaN+Sml7HTEXn:RZVl89Nb9v4v2QoLlbTEX

Entry address:
0x69CFE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.0756

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
415.5 KB (425,472 bytes)

Remove Newtonsoft.Json.dll - Powered by Reason Core Security