powershell.dll

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: 267b3f1fc835cc9f0b3a4f78eb44c5aa

File Size: 69.0 KB

Uploaded At: May 26, 2026, 9:20 p.m.

Views: 3

Exported Functions

  • _Z3RunPv (Ordinal: 1, Address: 0x1540)

Imported DLLs & Functions

KERNEL32.dll
  • CreateThread (Address: 0x1ecb0a150)
  • DeleteCriticalSection (Address: 0x1ecb0a158)
  • EnterCriticalSection (Address: 0x1ecb0a160)
  • FreeLibrary (Address: 0x1ecb0a168)
  • GetLastError (Address: 0x1ecb0a170)
  • GetModuleHandleA (Address: 0x1ecb0a178)
  • GetProcAddress (Address: 0x1ecb0a180)
  • InitializeCriticalSection (Address: 0x1ecb0a188)
  • LeaveCriticalSection (Address: 0x1ecb0a190)
  • LoadLibraryA (Address: 0x1ecb0a198)
  • Sleep (Address: 0x1ecb0a1a0)
  • TlsGetValue (Address: 0x1ecb0a1a8)
  • VirtualProtect (Address: 0x1ecb0a1b0)
  • VirtualQuery (Address: 0x1ecb0a1b8)
msvcrt.dll
  • __iob_func (Address: 0x1ecb0a1c8)
  • _amsg_exit (Address: 0x1ecb0a1d0)
  • _initterm (Address: 0x1ecb0a1d8)
  • _lock (Address: 0x1ecb0a1e0)
  • _unlock (Address: 0x1ecb0a1e8)
  • abort (Address: 0x1ecb0a1f0)
  • calloc (Address: 0x1ecb0a1f8)
  • fprintf (Address: 0x1ecb0a200)
  • free (Address: 0x1ecb0a208)
  • memcpy (Address: 0x1ecb0a210)
  • realloc (Address: 0x1ecb0a218)
  • strlen (Address: 0x1ecb0a220)
  • strncmp (Address: 0x1ecb0a228)
  • vfprintf (Address: 0x1ecb0a230)
SHELL32.dll
  • ShellExecuteW (Address: 0x1ecb0a240)