× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 370e94ca20f171f302ce44e6e2b278593f93b3b570ae4bbf036a23881b685d69
File name: saslLOGIN
Detection ratio: 0 / 71
Analysis date: 2019-05-09 02:42:03 UTC ( 2 weeks, 1 day ago )
Trusted source! This file belongs to the Microsoft Corporation software catalogue.
Antivirus Result Update
ALYac 20190509
AVG 20190509
Acronis 20190504
Ad-Aware 20190509
AegisLab 20190509
AhnLab-V3 20190508
Alibaba 20190426
Antiy-AVL 20190509
Arcabit 20190509
Avast 20190509
Avast-Mobile 20190508
Avira (no cloud) 20190509
Babable 20190424
Baidu 20190318
BitDefender 20190509
Bkav 20190508
CAT-QuickHeal 20190507
CMC 20190321
ClamAV 20190508
Comodo 20190509
CrowdStrike Falcon (ML) 20190212
Cylance 20190509
Cyren 20190509
DrWeb 20190509
ESET-NOD32 20190509
Emsisoft 20190509
Endgame 20190403
F-Prot 20190509
F-Secure 20190509
FireEye 20190509
Fortinet 20190509
GData 20190509
Ikarus 20190508
Sophos ML 20190313
Jiangmin 20190509
K7AntiVirus 20190508
K7GW 20190509
Kaspersky 20190509
Kingsoft 20190509
MAX 20190509
Malwarebytes 20190509
McAfee 20190503
McAfee-GW-Edition 20190508
eScan 20190509
Microsoft 20190509
NANO-Antivirus 20190509
Palo Alto Networks (Known Signatures) 20190509
Panda 20190508
Qihoo-360 20190509
Rising 20190509
SUPERAntiSpyware 20190507
SentinelOne (Static ML) 20190508
Sophos AV 20190509
Symantec 20190508
TACHYON 20190509
Tencent 20190509
TheHacker 20190506
TotalDefense 20190508
Trapmine 20190325
TrendMicro 20190509
TrendMicro-HouseCall 20190509
Trustlook 20190509
VBA32 20190504
VIPRE 20190508
ViRobot 20190508
Webroot 20190509
Yandex 20190501
Zillya 20190508
ZoneAlarm by Check Point 20190509
Zoner 20190508
eGambit 20190509
Cybereason 20190417
Symantec Mobile Insight 20190506
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright (c) Carnegie Mellon University 2002-2011

Product Carnegie Mellon University SASL
Original name saslLOGIN.dll
Internal name saslLOGIN
File version 2.1.25.0
Description CMU SASL saslLOGIN plugin
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2015-07-23 15:53:51
Entry Point 0x00002F40
Number of sections 5
PE sections
PE imports
LocalFree
GetCurrentProcess
TerminateProcess
GetSystemTimeAsFileTime
QueryPerformanceCounter
GetCurrentProcessId
SetUnhandledExceptionFilter
UnhandledExceptionFilter
IsDebuggerPresent
Sleep
FormatMessageA
IsProcessorFeaturePresent
GetVersionExA
GetCurrentThreadId
InitializeSListHead
GetModuleHandleW
GetStartupInfoW
strchr
__telemetry_main_invoke_trigger
__telemetry_main_return_trigger
memset
__std_type_info_destroy_list
_except_handler4_common
memcpy
getaddrinfo
freeaddrinfo
ntohl
_cexit
_register_onexit_function
_seh_filter_dll
terminate
_execute_onexit_table
_initialize_onexit_table
_initialize_narrow_environment
_initterm
_initterm_e
_crt_at_quick_exit
_crt_atexit
__stdio_common_vsprintf
PE exports
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
ENGLISH US 1
PE resources
Debug information
ExifTool file metadata
UninitializedDataSize
0

LinkerVersion
14.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
2.1.25.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
CMU SASL saslLOGIN plugin

ImageFileCharacteristics
Executable, 32-bit, DLL

CharacterSet
Unicode

InitializedDataSize
7680

EntryPoint
0x2f40

OriginalFileName
saslLOGIN.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright (c) Carnegie Mellon University 2002-2011

FileVersion
2.1.25.0

TimeStamp
2015:07:23 17:53:51+02:00

FileType
Win32 DLL

PEType
PE32

InternalName
saslLOGIN

ProductVersion
2.1.25-0

SubsystemVersion
6.0

OSVersion
6.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Carnegie Mellon University

CodeSize
10752

ProductName
Carnegie Mellon University SASL

ProductVersionNumber
2.1.25.0

FileTypeExtension
dll

ObjectFileType
Executable application

CarbonBlack CarbonBlack acts as a surveillance camera for computers
Compressed bundles
File identification
MD5 2b051d8c09990426f591920f19fed7d3
SHA1 33de6be4607744691d16802ea5e9086b5f5e0693
SHA256 370e94ca20f171f302ce44e6e2b278593f93b3b570ae4bbf036a23881b685d69
ssdeep
384:bKzThjhvywlJ3LR9rJliqHx78nCKBpr/RSq8tgnOoJ0+Lc:qjxJVpSCKBlJb0yc

authentihash 386c6124dd21ee5eb01051b87c4abf39d5a5328e8e026e4ed05fe884eb022bde
imphash 0a30345fa519eb0490d2a38cbb88dc72
File size 18.0 KB ( 18432 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (61.7%)
Win32 Dynamic Link Library (generic) (14.7%)
Win32 Executable (generic) (10.0%)
OS/2 Executable (generic) (4.5%)
Generic Win/DOS Executable (4.4%)
Tags
pedll trusted

Trusted verdicts
This file belongs to the Microsoft Corporation software catalogue. The file is often found with saslLOGIN.dll as its name.
VirusTotal metadata
First submission 2015-12-03 20:41:11 UTC ( 3 years, 5 months ago )
Last submission 2018-12-18 06:08:11 UTC ( 5 months, 1 week ago )
File names saslLOGIN.dll
is-kbt3v.tmp
saslLOGIN.dll
is-lqr1b.tmp
33de6be4607744691d16802ea5e9086b5f5e0693.exe
is-rr6og.tmp
gppgxzdao5cgshiwqaxkl2iinnpv4but.dll
184952588.dll
370E94CA20F171F302CE44E6E2B278593F93B3B570AE4BBF036A23881B685D69
is-i54ov.tmp
filec3170db8df444d52b41863b66a897603
fltce9c.tmp
is-grr1h.tmp
184956675.dll
is-ucgo6.tmp
370E94CA20F171F302CE44E6E2B278593F93B3B570AE4BBF036A23881B685D69
is-nf4tt.tmp
sasllogin.dll
is-sf1dl.tmp
370e94ca20f171f3_sasllogin.dll
is-bg4tk.tmp
flt92e8.tmp
saslLOGIN
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!