× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 06fd0f8404735ae673541a03094135f111f1db2782a5685538f09653abc5a6f6
File name: saslSCRAM
Detection ratio: 0 / 64
Analysis date: 2019-04-08 08:11:10 UTC ( 2 weeks ago )
Antivirus Result Update
Acronis 20190330
Ad-Aware 20190408
AegisLab 20190408
AhnLab-V3 20190408
Alibaba 20190402
ALYac 20190408
Antiy-AVL 20190408
Arcabit 20190408
Avast 20190408
Avast-Mobile 20190408
AVG 20190408
Avira (no cloud) 20190408
Babable 20180918
Baidu 20190318
BitDefender 20190408
Bkav 20190405
CAT-QuickHeal 20190407
ClamAV 20190407
CMC 20190321
Comodo 20190408
CrowdStrike Falcon (ML) 20190212
Cybereason 20190403
Cyren 20190408
DrWeb 20190408
Emsisoft 20190408
Endgame 20190403
ESET-NOD32 20190408
F-Secure 20190408
FireEye 20190408
Fortinet 20190408
GData 20190408
Ikarus 20190407
Sophos ML 20190313
Jiangmin 20190408
K7AntiVirus 20190408
K7GW 20190408
Kaspersky 20190408
Kingsoft 20190408
Malwarebytes 20190408
MAX 20190408
McAfee 20190408
McAfee-GW-Edition 20190408
Microsoft 20190408
eScan 20190408
NANO-Antivirus 20190408
Palo Alto Networks (Known Signatures) 20190408
Panda 20190407
Qihoo-360 20190408
Rising 20190408
SentinelOne (Static ML) 20190407
Sophos AV 20190408
SUPERAntiSpyware 20190404
Symantec Mobile Insight 20190408
TACHYON 20190408
Tencent 20190408
TheHacker 20190405
TotalDefense 20190408
Trapmine 20190325
TrendMicro-HouseCall 20190408
Trustlook 20190408
VBA32 20190408
ViRobot 20190408
Yandex 20190407
Zillya 20190408
ZoneAlarm by Check Point 20190408
Zoner 20190407
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright (c) Carnegie Mellon University 2002-2017

Product Carnegie Mellon University SASL
Original name saslSCRAM.dll
Internal name saslSCRAM
File version 2.1.27.0
Description CMU SASL saslSCRAM plugin
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-03-13 00:28:58
Entry Point 0x000015E0
Number of sections 5
PE sections
PE imports
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
QueryPerformanceCounter
GetCurrentProcessId
SetUnhandledExceptionFilter
UnhandledExceptionFilter
IsDebuggerPresent
RtlCaptureContext
IsProcessorFeaturePresent
GetTickCount
GetCurrentThreadId
InitializeSListHead
strchr
_except_handler4_common
memset
memcpy
__std_type_info_destroy_list
_cexit
_configure_narrow_argv
_errno
_seh_filter_dll
_execute_onexit_table
_initialize_onexit_table
_initialize_narrow_environment
_initterm
_initterm_e
__stdio_common_vsprintf
strncmp
strncpy
strcspn
EVP_sha1
SHA1
HMAC
PE exports
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
ENGLISH US 1
PE resources
Debug information
ExifTool file metadata
UninitializedDataSize
0

LinkerVersion
14.13

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
2.1.27.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
CMU SASL saslSCRAM plugin

ImageFileCharacteristics
Executable, 32-bit, DLL

CharacterSet
Unicode

InitializedDataSize
11264

EntryPoint
0x15e0

OriginalFileName
saslSCRAM.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright (c) Carnegie Mellon University 2002-2017

FileVersion
2.1.27.0

TimeStamp
2018:03:13 01:28:58+01:00

FileType
Win32 DLL

PEType
PE32

InternalName
saslSCRAM

ProductVersion
2.1.27-0

SubsystemVersion
6.0

OSVersion
6.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Carnegie Mellon University

CodeSize
20992

ProductName
Carnegie Mellon University SASL

ProductVersionNumber
2.1.27.0

FileTypeExtension
dll

ObjectFileType
Executable application

Compressed bundles
File identification
MD5 9d801210f0e8296e2e3df2c24c142665
SHA1 80c06848e195f1fa645cd2c3670db2ff21aefc45
SHA256 06fd0f8404735ae673541a03094135f111f1db2782a5685538f09653abc5a6f6
ssdeep
384:winYZAfj1gPVY3KmkJedKG96CAk45n9xbtpRZX+0zbvC7r7KLYFbBKHuIn1Qx286:wiYexKS/6RhprnGPuLr1Qx28R0

authentihash 02ebb056d62aa7c1765d901cc96603ef242f4231a5b4b7c100dd9649751594a1
imphash 5ad494823cc99627f2b4235fd92643bd
File size 31.5 KB ( 32256 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (61.7%)
Win32 Dynamic Link Library (generic) (14.7%)
Win32 Executable (generic) (10.0%)
OS/2 Executable (generic) (4.5%)
Generic Win/DOS Executable (4.4%)
Tags
pedll

VirusTotal metadata
First submission 2018-04-01 19:15:37 UTC ( 1 year ago )
Last submission 2018-04-25 07:47:08 UTC ( 12 months ago )
File names saslSCRAM.dll
saslSCRAM.dll
saslSCRAM.dll
saslSCRAM
saslSCRAM.dll
saslSCRAM.dll
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!