icbcgm_mwusbkey_assist.dll

Description: Industrial and Commercial Bank of China Internet Banking UKey Assist Dll

Authors: Copyright (C) 2022

Version: 1.0.0.0

Architecture: 64-bit

Operating System: Windows

SHA256: c633b8aafc86e7d094e316a98ae76e60

File Size: 1.1 MB

Uploaded At: Dec. 1, 2025, 2:50 p.m.

Views: 7

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • GMGetCertDN (Ordinal: 1, Address: 0x13f0)
  • GetMediaID (Ordinal: 2, Address: 0x11d0)

Imported DLLs & Functions

ADVAPI32.dll
  • AddAccessAllowedAce (Address: 0x1800b6048)
  • AllocateAndInitializeSid (Address: 0x1800b6000)
  • DeregisterEventSource (Address: 0x1800b6070)
  • EqualSid (Address: 0x1800b6028)
  • FreeSid (Address: 0x1800b6020)
  • GetLengthSid (Address: 0x1800b6058)
  • GetSecurityDescriptorSacl (Address: 0x1800b6078)
  • GetTokenInformation (Address: 0x1800b6030)
  • InitializeAcl (Address: 0x1800b6050)
  • InitializeSecurityDescriptor (Address: 0x1800b6088)
  • OpenProcessToken (Address: 0x1800b6038)
  • RegCloseKey (Address: 0x1800b6010)
  • RegDeleteValueA (Address: 0x1800b6008)
  • RegisterEventSourceW (Address: 0x1800b6060)
  • RegOpenKeyExA (Address: 0x1800b6090)
  • RegQueryValueExA (Address: 0x1800b6018)
  • ReportEventW (Address: 0x1800b6068)
  • SetSecurityDescriptorDacl (Address: 0x1800b6040)
  • SetSecurityInfo (Address: 0x1800b6080)
CRYPT32.dll
  • CertCreateCertificateContext (Address: 0x1800b60a0)
  • CertFreeCertificateContext (Address: 0x1800b60b0)
  • CertNameToStrW (Address: 0x1800b60a8)
HID.DLL
  • HidD_GetAttributes (Address: 0x1800b60d8)
  • HidD_GetFeature (Address: 0x1800b60c0)
  • HidD_GetHidGuid (Address: 0x1800b60d0)
  • HidD_SetFeature (Address: 0x1800b60c8)
KERNEL32.dll
  • CloseHandle (Address: 0x1800b6458)
  • CompareStringA (Address: 0x1800b61f8)
  • CompareStringW (Address: 0x1800b61f0)
  • CreateEventA (Address: 0x1800b6168)
  • CreateFileA (Address: 0x1800b6350)
  • CreateFileMappingA (Address: 0x1800b6138)
  • CreateMutexA (Address: 0x1800b62c8)
  • CreateMutexW (Address: 0x1800b6290)
  • CreateProcessA (Address: 0x1800b6450)
  • CreateProcessW (Address: 0x1800b6310)
  • CreateThread (Address: 0x1800b6110)
  • DebugBreak (Address: 0x1800b62e0)
  • DecodePointer (Address: 0x1800b6400)
  • DeleteCriticalSection (Address: 0x1800b6278)
  • DeviceIoControl (Address: 0x1800b61a0)
  • DisableThreadLibraryCalls (Address: 0x1800b6460)
  • EncodePointer (Address: 0x1800b6408)
  • EnterCriticalSection (Address: 0x1800b6208)
  • ExitProcess (Address: 0x1800b6470)
  • ExitThread (Address: 0x1800b64d0)
  • ExpandEnvironmentStringsA (Address: 0x1800b6430)
  • FlsAlloc (Address: 0x1800b63e8)
  • FlsFree (Address: 0x1800b63f0)
  • FlsGetValue (Address: 0x1800b63f8)
  • FlsSetValue (Address: 0x1800b64e0)
  • FlushFileBuffers (Address: 0x1800b6220)
  • FreeEnvironmentStringsA (Address: 0x1800b63c8)
  • FreeEnvironmentStringsW (Address: 0x1800b63b8)
  • FreeLibrary (Address: 0x1800b61c8)
  • GetACP (Address: 0x1800b62f0)
  • GetCommandLineA (Address: 0x1800b64d8)
  • GetConsoleCP (Address: 0x1800b6258)
  • GetConsoleMode (Address: 0x1800b6250)
  • GetConsoleOutputCP (Address: 0x1800b6468)
  • GetCPInfo (Address: 0x1800b62f8)
  • GetCurrentProcess (Address: 0x1800b6378)
  • GetCurrentProcessId (Address: 0x1800b6320)
  • GetCurrentThreadId (Address: 0x1800b6418)
  • GetEnvironmentStrings (Address: 0x1800b63c0)
  • GetEnvironmentStringsW (Address: 0x1800b63b0)
  • GetExitCodeThread (Address: 0x1800b6120)
  • GetFileAttributesW (Address: 0x1800b6308)
  • GetFileType (Address: 0x1800b61b0)
  • GetHandleInformation (Address: 0x1800b6158)
  • GetLastError (Address: 0x1800b6420)
  • GetLocaleInfoA (Address: 0x1800b6238)
  • GetModuleFileNameA (Address: 0x1800b6438)
  • GetModuleFileNameW (Address: 0x1800b62d0)
  • GetModuleHandleA (Address: 0x1800b6380)
  • GetModuleHandleW (Address: 0x1800b6128)
  • GetOEMCP (Address: 0x1800b62e8)
  • GetPrivateProfileStringW (Address: 0x1800b6188)
  • GetProcAddress (Address: 0x1800b6390)
  • GetProcessHeap (Address: 0x1800b6108)
  • GetStartupInfoA (Address: 0x1800b63d0)
  • GetStdHandle (Address: 0x1800b61b8)
  • GetStringTypeA (Address: 0x1800b6230)
  • GetStringTypeW (Address: 0x1800b6228)
  • GetSystemDefaultLangID (Address: 0x1800b6288)
  • GetSystemTime (Address: 0x1800b62a0)
  • GetSystemTimeAsFileTime (Address: 0x1800b64b8)
  • GetSystemWindowsDirectoryA (Address: 0x1800b6448)
  • GetSystemWindowsDirectoryW (Address: 0x1800b6318)
  • GetTickCount (Address: 0x1800b6338)
  • GetTimeZoneInformation (Address: 0x1800b6260)
  • GetVersion (Address: 0x1800b61a8)
  • GetVersionExW (Address: 0x1800b60f0)
  • GlobalAlloc (Address: 0x1800b6198)
  • GlobalFree (Address: 0x1800b6190)
  • GlobalMemoryStatus (Address: 0x1800b61c0)
  • HeapAlloc (Address: 0x1800b6100)
  • HeapCreate (Address: 0x1800b63a0)
  • HeapDestroy (Address: 0x1800b6398)
  • HeapFree (Address: 0x1800b60f8)
  • HeapReAlloc (Address: 0x1800b6478)
  • HeapSetInformation (Address: 0x1800b63a8)
  • HeapSize (Address: 0x1800b63e0)
  • InitializeCriticalSection (Address: 0x1800b6280)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1800b6248)
  • IsDebuggerPresent (Address: 0x1800b64a0)
  • IsValidCodePage (Address: 0x1800b62d8)
  • LCMapStringA (Address: 0x1800b6270)
  • LCMapStringW (Address: 0x1800b6268)
  • LeaveCriticalSection (Address: 0x1800b60e8)
  • LoadLibraryA (Address: 0x1800b61d8)
  • LoadLibraryW (Address: 0x1800b61d0)
  • LocalFree (Address: 0x1800b6298)
  • lstrcmpiA (Address: 0x1800b6440)
  • MapViewOfFile (Address: 0x1800b6148)
  • MultiByteToWideChar (Address: 0x1800b6348)
  • OpenEventA (Address: 0x1800b6170)
  • OpenFileMappingA (Address: 0x1800b6150)
  • OpenMutexA (Address: 0x1800b6130)
  • OpenProcess (Address: 0x1800b6370)
  • OutputDebugStringA (Address: 0x1800b6368)
  • OutputDebugStringW (Address: 0x1800b6330)
  • ProcessIdToSessionId (Address: 0x1800b6328)
  • QueryPerformanceCounter (Address: 0x1800b6160)
  • RaiseException (Address: 0x1800b6488)
  • ReadFile (Address: 0x1800b6358)
  • ReleaseMutex (Address: 0x1800b6300)
  • ResetEvent (Address: 0x1800b6180)
  • RtlCaptureContext (Address: 0x1800b6490)
  • RtlLookupFunctionEntry (Address: 0x1800b64c0)
  • RtlPcToFileHeader (Address: 0x1800b6480)
  • RtlUnwindEx (Address: 0x1800b64c8)
  • RtlVirtualUnwind (Address: 0x1800b6498)
  • SetEndOfFile (Address: 0x1800b61e0)
  • SetEnvironmentVariableA (Address: 0x1800b61e8)
  • SetEvent (Address: 0x1800b6178)
  • SetFilePointer (Address: 0x1800b6240)
  • SetHandleCount (Address: 0x1800b63d8)
  • SetLastError (Address: 0x1800b62b0)
  • SetStdHandle (Address: 0x1800b6218)
  • SetUnhandledExceptionFilter (Address: 0x1800b64a8)
  • Sleep (Address: 0x1800b6428)
  • SystemTimeToFileTime (Address: 0x1800b62a8)
  • TerminateProcess (Address: 0x1800b62c0)
  • TerminateThread (Address: 0x1800b6118)
  • UnhandledExceptionFilter (Address: 0x1800b64b0)
  • UnmapViewOfFile (Address: 0x1800b6140)
  • VirtualFree (Address: 0x1800b6360)
  • VirtualQuery (Address: 0x1800b6388)
  • WaitForSingleObject (Address: 0x1800b6340)
  • WideCharToMultiByte (Address: 0x1800b6410)
  • WriteConsoleA (Address: 0x1800b6210)
  • WriteConsoleW (Address: 0x1800b6200)
  • WriteFile (Address: 0x1800b62b8)
PSAPI.DLL
  • GetModuleFileNameExW (Address: 0x1800b64f0)
SETUPAPI.dll
  • CM_Get_Device_IDA (Address: 0x1800b6530)
  • CM_Get_Parent (Address: 0x1800b6500)
  • SetupDiDestroyDeviceInfoList (Address: 0x1800b6510)
  • SetupDiEnumDeviceInfo (Address: 0x1800b6508)
  • SetupDiEnumDeviceInterfaces (Address: 0x1800b6520)
  • SetupDiGetClassDevsA (Address: 0x1800b6528)
  • SetupDiGetDeviceInterfaceDetailA (Address: 0x1800b6518)
SHELL32.dll
  • SHGetSpecialFolderPathW (Address: 0x1800b6540)
SHLWAPI.dll
  • PathFindFileNameA (Address: 0x1800b6550)
USER32.dll
  • CloseDesktop (Address: 0x1800b6588)
  • DialogBoxParamA (Address: 0x1800b6578)
  • EndDialog (Address: 0x1800b65c8)
  • GetActiveWindow (Address: 0x1800b6580)
  • GetCursorPos (Address: 0x1800b65b0)
  • GetDesktopWindow (Address: 0x1800b65e8)
  • GetForegroundWindow (Address: 0x1800b6560)
  • GetParent (Address: 0x1800b65d0)
  • GetProcessWindowStation (Address: 0x1800b65f0)
  • GetUserObjectInformationW (Address: 0x1800b65d8)
  • GetWindowThreadProcessId (Address: 0x1800b6570)
  • IsWindowEnabled (Address: 0x1800b65b8)
  • IsWindowVisible (Address: 0x1800b65c0)
  • MessageBoxA (Address: 0x1800b6568)
  • MessageBoxW (Address: 0x1800b65e0)
  • MoveWindow (Address: 0x1800b65a0)
  • PostMessageA (Address: 0x1800b6590)
  • ShowWindow (Address: 0x1800b6598)
  • WindowFromPoint (Address: 0x1800b65a8)
WinSCard.dll
  • SCardBeginTransaction (Address: 0x1800b6660)
  • SCardConnectA (Address: 0x1800b6610)
  • SCardControl (Address: 0x1800b6650)
  • SCardDisconnect (Address: 0x1800b6628)
  • SCardEndTransaction (Address: 0x1800b6658)
  • SCardEstablishContext (Address: 0x1800b6618)
  • SCardListReadersA (Address: 0x1800b6638)
  • SCardReconnect (Address: 0x1800b6630)
  • SCardReleaseContext (Address: 0x1800b6620)
  • SCardStatusA (Address: 0x1800b6640)
  • SCardTransmit (Address: 0x1800b6648)
WINTRUST.dll
  • CryptCATAdminCalcHashFromFileHandle (Address: 0x1800b6600)