asp.dll

Description: Active Server Pages

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6157

Architecture: 64-bit

Operating System: Windows NT

SHA256: 9d39f23357565efc2d59d95653b3077d

File Size: 539.5 KB

Uploaded At: Dec. 1, 2025, 8:12 a.m.

Views: 19

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • AspStatusHtmlDump (Ordinal: 1, Address: 0x4b5b0)
  • DllRegisterServer (Ordinal: 2, Address: 0x4e5d0)
  • DllUnregisterServer (Ordinal: 3, Address: 0x4e630)
  • GetExtensionVersion (Ordinal: 4, Address: 0x19b50)
  • HttpExtensionProc (Ordinal: 5, Address: 0x9840)
  • TerminateExtension (Ordinal: 6, Address: 0x43cf0)

Imported DLLs & Functions

ADVAPI32.dll
  • AccessCheck (Address: 0x18006b8a8)
  • AddAccessAllowedAce (Address: 0x18006b8e0)
  • AllocateAndInitializeSid (Address: 0x18006b900)
  • CreateWellKnownSid (Address: 0x18006b908)
  • CryptAcquireContextW (Address: 0x18006b8c8)
  • CryptGenRandom (Address: 0x18006b8b8)
  • CryptReleaseContext (Address: 0x18006b8c0)
  • DeregisterEventSource (Address: 0x18006b928)
  • EqualSid (Address: 0x18006b8a0)
  • FreeSid (Address: 0x18006b8f8)
  • GetFileSecurityW (Address: 0x18006b868)
  • GetKernelObjectSecurity (Address: 0x18006b880)
  • GetLengthSid (Address: 0x18006b8f0)
  • GetSecurityDescriptorDacl (Address: 0x18006b888)
  • GetSecurityDescriptorLength (Address: 0x18006b890)
  • GetSecurityInfo (Address: 0x18006b948)
  • GetTokenInformation (Address: 0x18006b898)
  • ImpersonateLoggedOnUser (Address: 0x18006b910)
  • InitializeAcl (Address: 0x18006b8e8)
  • InitializeSecurityDescriptor (Address: 0x18006b8d8)
  • OpenThreadToken (Address: 0x18006b9a8)
  • RegCloseKey (Address: 0x18006b980)
  • RegCreateKeyExW (Address: 0x18006b958)
  • RegDeleteValueW (Address: 0x18006b950)
  • RegEnumKeyA (Address: 0x18006b878)
  • RegEnumKeyExW (Address: 0x18006b970)
  • RegisterEventSourceA (Address: 0x18006b860)
  • RegisterEventSourceW (Address: 0x18006b920)
  • RegOpenKeyExA (Address: 0x18006b990)
  • RegOpenKeyExW (Address: 0x18006b968)
  • RegQueryInfoKeyW (Address: 0x18006b978)
  • RegQueryValueA (Address: 0x18006b870)
  • RegQueryValueExA (Address: 0x18006b988)
  • RegSetValueExW (Address: 0x18006b960)
  • ReportEventA (Address: 0x18006b930)
  • ReportEventW (Address: 0x18006b918)
  • RevertToSelf (Address: 0x18006b9a0)
  • SetEntriesInAclW (Address: 0x18006b940)
  • SetNamedSecurityInfoA (Address: 0x18006b8b0)
  • SetSecurityDescriptorDacl (Address: 0x18006b8d0)
  • SetSecurityInfo (Address: 0x18006b938)
  • SetThreadToken (Address: 0x18006b998)
comsvcs.dll
  • CoCreateActivity (Address: 0x18006bf40)
  • CoEnterServiceDomain (Address: 0x18006bf48)
  • CoLeaveServiceDomain (Address: 0x18006bf50)
CRYPT32.dll
  • CertCreateCertificateContext (Address: 0x18006b9b8)
  • CertFreeCertificateContext (Address: 0x18006b9c8)
  • CryptDecodeObject (Address: 0x18006b9c0)
iisutil.dll
  • ??0ALLOC_CACHE_HANDLER@@QEAA@PEBDPEBUALLOC_CACHE_CONFIGURATION@@H@Z (Address: 0x18006bfc0)
  • ??0BUFFER@@QEAA@PEAEK@Z (Address: 0x18006c090)
  • ??0BUFFER@@QEAA@XZ (Address: 0x18006bfd8)
  • ??0CLKRHashTable@@QEAA@PEBDP6A?B_KPEBX@ZP6AK_K@ZP6A_N33@ZP6AX1H@ZNKK_N@Z (Address: 0x18006c050)
  • ??0STRU@@QEAA@PEAGK@Z (Address: 0x18006c0a0)
  • ??1ALLOC_CACHE_HANDLER@@QEAA@XZ (Address: 0x18006bfb8)
  • ??1BUFFER@@QEAA@XZ (Address: 0x18006c098)
  • ??1CLKRHashTable@@QEAA@XZ (Address: 0x18006c058)
  • ??1STRU@@QEAA@XZ (Address: 0x18006c060)
  • ?Alloc@ALLOC_CACHE_HANDLER@@QEAAPEAXXZ (Address: 0x18006bfd0)
  • ?Append@STRU@@QEAAJPEBG@Z (Address: 0x18006bfe8)
  • ?Copy@STRU@@QEAAJPEBG@Z (Address: 0x18006bfa8)
  • ?DeleteRecord@CLKRHashTable@@QEAA?AW4LK_RETCODE@@PEBX@Z (Address: 0x18006c038)
  • ?FindKey@CLKRHashTable@@QEBA?AW4LK_RETCODE@@_KPEAPEBX@Z (Address: 0x18006c040)
  • ?Free@ALLOC_CACHE_HANDLER@@QEAAHPEAX@Z (Address: 0x18006bfc8)
  • ?InsertRecord@CLKRHashTable@@QEAA?AW4LK_RETCODE@@PEBX_N@Z (Address: 0x18006c030)
  • ?QueryBuffer@STRU@@QEAAPEAVBUFFER@@XZ (Address: 0x18006bf70)
  • ?QueryCCH@STRU@@QEBAKXZ (Address: 0x18006c068)
  • ?QueryPtr@BUFFER@@QEBAPEAXXZ (Address: 0x18006c080)
  • ?QuerySize@BUFFER@@QEBAKXZ (Address: 0x18006c028)
  • ?QuerySizeCCH@STRU@@QEBAKXZ (Address: 0x18006bff8)
  • ?QueryStr@STRU@@QEAAPEAGXZ (Address: 0x18006c088)
  • ?ReadLock@CLKRHashTable@@QEBAXXZ (Address: 0x18006bf60)
  • ?ReadUnlock@CLKRHashTable@@QEBAXXZ (Address: 0x18006bf98)
  • ?Resize@BUFFER@@QEAA_NK@Z (Address: 0x18006c048)
  • ?Resize@STRU@@QEAAJK@Z (Address: 0x18006c078)
  • ?SetLen@STRU@@QEAA_NK@Z (Address: 0x18006bff0)
  • ?Size@CLKRHashTable@@QEBAKXZ (Address: 0x18006bf78)
  • ?SyncWithBuffer@STRU@@QEAAXXZ (Address: 0x18006c070)
  • ?WriteLock@CLKRHashTable@@QEAAXXZ (Address: 0x18006c0c0)
  • ?WriteUnlock@CLKRHashTable@@QEBAXXZ (Address: 0x18006bf68)
  • CreateRefTraceLog (Address: 0x18006c010)
  • DestroyRefTraceLog (Address: 0x18006c008)
  • IISInitializeCriticalSection (Address: 0x18006c0b0)
  • MakePathCanonicalizationProof (Address: 0x18006bf90)
  • PuCreateDebugPrintsObject (Address: 0x18006c020)
  • PuDbgPrint (Address: 0x18006c0a8)
  • PuDbgPrintError (Address: 0x18006bfe0)
  • PuDeleteDebugPrintsObject (Address: 0x18006c000)
  • PuLoadDebugFlagsFromRegStr (Address: 0x18006c018)
  • RemoveWorkItem (Address: 0x18006bf88)
  • ScheduleAdjustTime (Address: 0x18006bfa0)
  • ScheduleWorkItem (Address: 0x18006bfb0)
  • WriteRefTraceLog (Address: 0x18006c0b8)
  • WriteRefTraceLogEx (Address: 0x18006bf80)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x18006bb10)
  • AcquireSRWLockShared (Address: 0x18006bc28)
  • CloseHandle (Address: 0x18006bd10)
  • CloseThreadpoolTimer (Address: 0x18006bb38)
  • CompareFileTime (Address: 0x18006bcc0)
  • ConvertDefaultLocale (Address: 0x18006bb80)
  • CreateDirectoryA (Address: 0x18006bd98)
  • CreateEventA (Address: 0x18006bd28)
  • CreateFileA (Address: 0x18006bb90)
  • CreateFileMappingA (Address: 0x18006ba20)
  • CreateFileMappingW (Address: 0x18006ba70)
  • CreateFileW (Address: 0x18006bbc8)
  • CreateMutexExW (Address: 0x18006bb60)
  • CreateSemaphoreExW (Address: 0x18006bb68)
  • CreateThread (Address: 0x18006bd20)
  • CreateThreadpoolTimer (Address: 0x18006bb58)
  • DebugBreak (Address: 0x18006b9e8)
  • DeleteCriticalSection (Address: 0x18006bd68)
  • DeleteFileA (Address: 0x18006bda0)
  • DisableThreadLibraryCalls (Address: 0x18006bb18)
  • EnterCriticalSection (Address: 0x18006bd50)
  • FileTimeToSystemTime (Address: 0x18006bcb8)
  • FindClose (Address: 0x18006bd78)
  • FindFirstFileA (Address: 0x18006bc18)
  • FindNextFileA (Address: 0x18006bd58)
  • FindResourceExW (Address: 0x18006bc48)
  • FormatMessageA (Address: 0x18006bab0)
  • FormatMessageW (Address: 0x18006bac0)
  • FreeLibrary (Address: 0x18006bc88)
  • GetACP (Address: 0x18006baa8)
  • GetCPInfo (Address: 0x18006bad8)
  • GetCurrentProcess (Address: 0x18006bcd8)
  • GetCurrentProcessId (Address: 0x18006bd60)
  • GetCurrentThread (Address: 0x18006bd80)
  • GetCurrentThreadId (Address: 0x18006bd30)
  • GetFileAttributesA (Address: 0x18006bd88)
  • GetFileAttributesExW (Address: 0x18006bbb8)
  • GetFileInformationByHandle (Address: 0x18006bbc0)
  • GetFileSize (Address: 0x18006ba78)
  • GetFullPathNameW (Address: 0x18006bbb0)
  • GetLastError (Address: 0x18006bd70)
  • GetLongPathNameW (Address: 0x18006bbd0)
  • GetModuleFileNameA (Address: 0x18006baf0)
  • GetModuleFileNameW (Address: 0x18006bcf0)
  • GetModuleHandleA (Address: 0x18006bac8)
  • GetModuleHandleExW (Address: 0x18006bb08)
  • GetModuleHandleW (Address: 0x18006bc68)
  • GetProcAddress (Address: 0x18006bc78)
  • GetProcessHeap (Address: 0x18006b9f0)
  • GetSystemDefaultLCID (Address: 0x18006bb78)
  • GetSystemInfo (Address: 0x18006ba88)
  • GetSystemTimeAsFileTime (Address: 0x18006bc10)
  • GetTempFileNameA (Address: 0x18006bb88)
  • GetThreadPriority (Address: 0x18006bb00)
  • GetTickCount (Address: 0x18006bb98)
  • GetWindowsDirectoryW (Address: 0x18006bae8)
  • GlobalAlloc (Address: 0x18006ba90)
  • GlobalFree (Address: 0x18006ba98)
  • HeapAlloc (Address: 0x18006ba38)
  • HeapCreate (Address: 0x18006ba50)
  • HeapDestroy (Address: 0x18006ba40)
  • HeapFree (Address: 0x18006ba30)
  • HeapReAlloc (Address: 0x18006ba28)
  • HeapSetInformation (Address: 0x18006ba48)
  • InitializeCriticalSection (Address: 0x18006bb20)
  • InitializeCriticalSectionEx (Address: 0x18006bb48)
  • IsDBCSLeadByte (Address: 0x18006bad0)
  • IsDBCSLeadByteEx (Address: 0x18006bb70)
  • IsDebuggerPresent (Address: 0x18006b9e0)
  • IsValidCodePage (Address: 0x18006baa0)
  • IsValidLocale (Address: 0x18006ba80)
  • IsWow64Process (Address: 0x18006bce0)
  • LeaveCriticalSection (Address: 0x18006bd48)
  • LoadLibraryExA (Address: 0x18006bab8)
  • LoadLibraryExW (Address: 0x18006bc70)
  • LoadLibraryW (Address: 0x18006bae0)
  • LoadResource (Address: 0x18006bc50)
  • LocalAlloc (Address: 0x18006bca0)
  • LocalFree (Address: 0x18006bc98)
  • lstrcmpiW (Address: 0x18006bc60)
  • MapViewOfFile (Address: 0x18006bc40)
  • MoveFileA (Address: 0x18006bd90)
  • MultiByteToWideChar (Address: 0x18006bcb0)
  • OpenEventA (Address: 0x18006ba00)
  • OpenEventW (Address: 0x18006ba08)
  • OpenFileMappingA (Address: 0x18006ba18)
  • OpenMutexA (Address: 0x18006ba10)
  • OpenProcess (Address: 0x18006bce8)
  • OpenSemaphoreW (Address: 0x18006bb50)
  • OutputDebugStringA (Address: 0x18006bc30)
  • OutputDebugStringW (Address: 0x18006b9d8)
  • QueryPerformanceCounter (Address: 0x18006bc08)
  • RaiseException (Address: 0x18006bcf8)
  • ReadDirectoryChangesW (Address: 0x18006bc80)
  • ReadFile (Address: 0x18006bba8)
  • ReleaseMutex (Address: 0x18006b9f8)
  • ReleaseSemaphore (Address: 0x18006ba68)
  • ReleaseSRWLockExclusive (Address: 0x18006bc20)
  • ReleaseSRWLockShared (Address: 0x18006bc38)
  • RemoveDirectoryA (Address: 0x18006bcc8)
  • ResetEvent (Address: 0x18006ba58)
  • ResumeThread (Address: 0x18006bd18)
  • RtlCaptureContext (Address: 0x18006bbd8)
  • RtlLookupFunctionEntry (Address: 0x18006bbe0)
  • RtlVirtualUnwind (Address: 0x18006bbe8)
  • SetEvent (Address: 0x18006bd38)
  • SetLastError (Address: 0x18006bc90)
  • SetThreadpoolTimer (Address: 0x18006bb28)
  • SetThreadPriority (Address: 0x18006baf8)
  • SetUnhandledExceptionFilter (Address: 0x18006bbf8)
  • SizeofResource (Address: 0x18006bc58)
  • Sleep (Address: 0x18006bd40)
  • TerminateProcess (Address: 0x18006bc00)
  • UnhandledExceptionFilter (Address: 0x18006bbf0)
  • UnmapViewOfFile (Address: 0x18006ba60)
  • WaitForMultipleObjects (Address: 0x18006bd00)
  • WaitForSingleObject (Address: 0x18006bd08)
  • WaitForSingleObjectEx (Address: 0x18006bb40)
  • WaitForThreadpoolTimerCallbacks (Address: 0x18006bb30)
  • WideCharToMultiByte (Address: 0x18006bca8)
  • Wow64EnableWow64FsRedirection (Address: 0x18006bcd0)
  • WriteFile (Address: 0x18006bba0)
msvcrt.dll
  • __C_specific_handler (Address: 0x18006c328)
  • __dllonexit (Address: 0x18006c2d0)
  • _amsg_exit (Address: 0x18006c2b0)
  • _beginthread (Address: 0x18006c148)
  • _beginthreadex (Address: 0x18006c1f8)
  • _errno (Address: 0x18006c2e0)
  • _initterm (Address: 0x18006c2b8)
  • _ismbbkana (Address: 0x18006c290)
  • _itoa_s (Address: 0x18006c230)
  • _lock (Address: 0x18006c2c0)
  • _ltoa (Address: 0x18006c100)
  • _ltow (Address: 0x18006c0e8)
  • _mbsnicmp (Address: 0x18006c0d0)
  • _mbstok_s (Address: 0x18006c110)
  • _mbsupr (Address: 0x18006c320)
  • _memicmp (Address: 0x18006c280)
  • _onexit (Address: 0x18006c2d8)
  • _purecall (Address: 0x18006c158)
  • _stricmp (Address: 0x18006c128)
  • _strlwr (Address: 0x18006c218)
  • _strnicmp (Address: 0x18006c160)
  • _ultoa_s (Address: 0x18006c298)
  • _ultow (Address: 0x18006c270)
  • _unlock (Address: 0x18006c2c8)
  • _vsnprintf (Address: 0x18006c200)
  • _vsnwprintf (Address: 0x18006c208)
  • _wcsicmp (Address: 0x18006c120)
  • _wcslwr (Address: 0x18006c288)
  • _wcsnicmp (Address: 0x18006c0e0)
  • _wcsupr (Address: 0x18006c1f0)
  • _wtoi (Address: 0x18006c1e0)
  • _XcptFilter (Address: 0x18006c2a8)
  • atoi (Address: 0x18006c198)
  • atol (Address: 0x18006c238)
  • difftime (Address: 0x18006c240)
  • free (Address: 0x18006c1b8)
  • gmtime (Address: 0x18006c248)
  • isalnum (Address: 0x18006c2a0)
  • isdigit (Address: 0x18006c170)
  • isleadbyte (Address: 0x18006c108)
  • iswalpha (Address: 0x18006c268)
  • iswspace (Address: 0x18006c260)
  • isxdigit (Address: 0x18006c220)
  • localtime (Address: 0x18006c250)
  • malloc (Address: 0x18006c140)
  • memchr (Address: 0x18006c310)
  • memcmp (Address: 0x18006c308)
  • memcpy (Address: 0x18006c300)
  • memcpy_s (Address: 0x18006c138)
  • memmove (Address: 0x18006c2f8)
  • memmove_s (Address: 0x18006c210)
  • memset (Address: 0x18006c2f0)
  • mktime (Address: 0x18006c258)
  • rand_s (Address: 0x18006c0d8)
  • realloc (Address: 0x18006c2e8)
  • sprintf_s (Address: 0x18006c178)
  • srand (Address: 0x18006c130)
  • strcat_s (Address: 0x18006c168)
  • strchr (Address: 0x18006c1b0)
  • strcpy_s (Address: 0x18006c1c0)
  • strncat_s (Address: 0x18006c278)
  • strncmp (Address: 0x18006c1a0)
  • strncpy_s (Address: 0x18006c0f0)
  • strstr (Address: 0x18006c318)
  • strtoul (Address: 0x18006c1a8)
  • swprintf_s (Address: 0x18006c118)
  • time (Address: 0x18006c1c8)
  • vsprintf_s (Address: 0x18006c0f8)
  • wcscat_s (Address: 0x18006c1d0)
  • wcschr (Address: 0x18006c150)
  • wcscmp (Address: 0x18006c330)
  • wcscpy_s (Address: 0x18006c1d8)
  • wcsncmp (Address: 0x18006c190)
  • wcsncpy_s (Address: 0x18006c180)
  • wcspbrk (Address: 0x18006c228)
  • wcsrchr (Address: 0x18006c188)
  • wcsstr (Address: 0x18006c1e8)
nativerd.dll
  • GetDefaultNativeConfigurationSystem (Address: 0x18006c340)
ole32.dll
  • CLSIDFromProgID (Address: 0x18006c378)
  • CLSIDFromString (Address: 0x18006c358)
  • CoCreateFreeThreadedMarshaler (Address: 0x18006c3b8)
  • CoCreateInstance (Address: 0x18006c3a8)
  • CoDisconnectObject (Address: 0x18006c3b0)
  • CoFreeUnusedLibraries (Address: 0x18006c368)
  • CoGetObjectContext (Address: 0x18006c360)
  • CoInitialize (Address: 0x18006c370)
  • CoInitializeEx (Address: 0x18006c390)
  • CoTaskMemAlloc (Address: 0x18006c3c0)
  • CoTaskMemFree (Address: 0x18006c398)
  • CoTaskMemRealloc (Address: 0x18006c380)
  • CoUninitialize (Address: 0x18006c388)
  • CoWaitForMultipleHandles (Address: 0x18006c350)
  • StringFromCLSID (Address: 0x18006c3a0)
OLEAUT32.dll
  • CreateErrorInfo (Address: 0x18006be10)
  • DispGetIDsOfNames (Address: 0x18006be20)
  • DosDateTimeToVariantTime (Address: 0x18006bdd0)
  • GetErrorInfo (Address: 0x18006be08)
  • LoadRegTypeLib (Address: 0x18006be70)
  • LoadTypeLib (Address: 0x18006be68)
  • LoadTypeLibEx (Address: 0x18006be28)
  • SafeArrayAccessData (Address: 0x18006be48)
  • SafeArrayCreate (Address: 0x18006be50)
  • SafeArrayGetDim (Address: 0x18006bdf0)
  • SafeArrayGetLBound (Address: 0x18006bde8)
  • SafeArrayGetUBound (Address: 0x18006bde0)
  • SafeArrayUnaccessData (Address: 0x18006be40)
  • SetErrorInfo (Address: 0x18006be18)
  • SysAllocString (Address: 0x18006be80)
  • SysAllocStringByteLen (Address: 0x18006be60)
  • SysAllocStringLen (Address: 0x18006be90)
  • SysFreeString (Address: 0x18006bdb0)
  • SysStringLen (Address: 0x18006be78)
  • SystemTimeToVariantTime (Address: 0x18006be58)
  • UnRegisterTypeLib (Address: 0x18006be00)
  • VariantChangeType (Address: 0x18006be88)
  • VariantChangeTypeEx (Address: 0x18006bdf8)
  • VariantClear (Address: 0x18006bdc0)
  • VariantCopy (Address: 0x18006bdd8)
  • VariantCopyInd (Address: 0x18006be38)
  • VariantInit (Address: 0x18006bdb8)
  • VariantTimeToDosDateTime (Address: 0x18006bdc8)
  • VarUI4FromStr (Address: 0x18006be30)
USER32.dll
  • CharNextA (Address: 0x18006bec8)
  • CharNextExA (Address: 0x18006bef8)
  • CharNextW (Address: 0x18006bea0)
  • CharPrevW (Address: 0x18006bed8)
  • CharUpperA (Address: 0x18006bee0)
  • CharUpperBuffW (Address: 0x18006bed0)
  • DispatchMessageW (Address: 0x18006beb8)
  • IsCharAlphaW (Address: 0x18006bee8)
  • LoadStringA (Address: 0x18006bea8)
  • LoadStringW (Address: 0x18006beb0)
  • MessageBoxA (Address: 0x18006bef0)
  • MsgWaitForMultipleObjects (Address: 0x18006bec0)
  • PeekMessageW (Address: 0x18006bf08)
  • UnregisterClassA (Address: 0x18006bf00)
W3TP.dll
  • ThreadPoolBindIoCompletionCallback (Address: 0x18006bf28)
  • ThreadPoolInitialize (Address: 0x18006bf20)
  • ThreadPoolMapErrorCodeIfNecessary (Address: 0x18006bf30)
  • ThreadPoolTerminate (Address: 0x18006bf18)