crashpad_wer.dll

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: 3610325dbe5d8a1455265257648d6d52

File Size: 23.3 KB

Uploaded At: Dec. 1, 2025, 2:51 p.m.

Views: 6

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: WriteProcessMemory

Exported Functions

  • OutOfProcessExceptionEventCallback (Ordinal: 1, Address: 0x12e0)
  • OutOfProcessExceptionEventDebuggerLaunchCallback (Ordinal: 2, Address: 0x1330)
  • OutOfProcessExceptionEventSignatureCallback (Ordinal: 3, Address: 0x1330)

Imported DLLs & Functions

api-ms-win-crt-runtime-l1-1-0.dll
  • _cexit (Address: 0x180003118)
  • _configure_narrow_argv (Address: 0x180003128)
  • _execute_onexit_table (Address: 0x1800030f0)
  • _initialize_narrow_environment (Address: 0x1800030f8)
  • _initialize_onexit_table (Address: 0x180003120)
  • _initterm (Address: 0x180003110)
  • _initterm_e (Address: 0x180003108)
  • _seh_filter_dll (Address: 0x180003100)
KERNEL32.dll
  • CloseHandle (Address: 0x180003000)
  • DuplicateHandle (Address: 0x180003008)
  • GetCurrentProcess (Address: 0x180003020)
  • GetCurrentProcessId (Address: 0x1800030a0)
  • GetCurrentThreadId (Address: 0x180003098)
  • GetSystemTimeAsFileTime (Address: 0x180003090)
  • GetThreadId (Address: 0x180003030)
  • InitializeSListHead (Address: 0x180003088)
  • IsDebuggerPresent (Address: 0x180003080)
  • IsProcessorFeaturePresent (Address: 0x180003068)
  • QueryPerformanceCounter (Address: 0x180003078)
  • ReadProcessMemory (Address: 0x180003038)
  • RtlCaptureContext (Address: 0x180003070)
  • RtlLookupFunctionEntry (Address: 0x180003048)
  • RtlVirtualUnwind (Address: 0x180003050)
  • SetEvent (Address: 0x180003010)
  • SetUnhandledExceptionFilter (Address: 0x180003060)
  • TerminateProcess (Address: 0x180003028)
  • UnhandledExceptionFilter (Address: 0x180003058)
  • WaitForSingleObject (Address: 0x180003018)
  • WriteProcessMemory (Address: 0x180003040)
VCRUNTIME140_1.dll
  • __CxxFrameHandler4 (Address: 0x1800030e0)
VCRUNTIME140.dll
  • __C_specific_handler (Address: 0x1800030b8)
  • __std_terminate (Address: 0x1800030c8)
  • __std_type_info_destroy_list (Address: 0x1800030b0)
  • memcpy (Address: 0x1800030d0)
  • memset (Address: 0x1800030c0)