Server Load
Newtonsoft.Json.dll    Threatbook file behavior analysis report
Virscan.org multi-engine scan report
Behavior analysis report:         Habo file analysis
Basic Information
file name:Newtonsoft.Json.dll
file type:DLLx86
Submission time:2018-10-02 18:30:48
Threat level:clean
MD5:8f6875148b45c300b95514cb40703c2e
sha256:ea7fd75e2bb069699d4da09f3601d70ca8e401f58949178cdbf2c5928720daa1
Document Threat Intelligence IOC Report
No intelligence IOC detected
Intelligence decision system
Abnormal flow detection system:0
Hunting system:0
DGA domain name recognition system:0
Network behavior report
domains:0
dns:0
http:0
Document release report
File release report not detected
File process number report
Process details:0
Document behavior signature report
api:FindFirstFileExW
category:file
type:call
api:FindFirstFileExW
category:file
type:call
category:pe_timestamp
ioc:2060-05-06 00:43:57
type:ioc
Static information
PE section table information
Section name:.text
Virtual address:0x00002000
Physical address:0x00000200
Physical size:0x00083600
Section permissions:R-E
Section name:.rsrc
Virtual address:0x00086000
Physical address:0x00083800
Physical size:0x00000600
Section permissions:R--
Section name:.reloc
Virtual address:0x00088000
Physical address:0x00083e00
Physical size:0x00000200
Section permissions:R--
PE basic information
import_hash:dae02f32a21e03ce65412f6e56942daa
time_stamp:2060-05-06 00:43:57
entry_point_section:.text
entry_point_section:.text
image_base:0x10000000
entry_point:0x85506
PE resource information
name:RT_VERSION
language:LANG_NEUTRAL
filetype:data
sublanguage:SUBLANG_NEUTRAL
offset:0x00086058
size:0x00000406

About VirSCAN | Privacy Policy | Contact us | link | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

京公网安备 11010802020746号