QQAudioHookService.dll

Description: AVSDK@c7ac795434ba424683d7befcd90e6ee65f5b47bd

Authors: © Tencent Corporation. All rights reserved.

Version: 1.0.0.85

Architecture: 32-bit

Operating System: Windows NT

SHA256: 5b7ef614e8a31b0ed2dd4a5fa17e3885

File Size: 103.9 KB

Uploaded At: Dec. 2, 2025, 2:48 p.m.

Views: 7

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • GetDataFormat (Ordinal: 1, Address: 0x1350)
  • GetLevel (Ordinal: 2, Address: 0x1380)
  • HookProcess (Ordinal: 3, Address: 0x13e0)
  • HookSystem (Ordinal: 4, Address: 0x15c0)
  • IsCurrentHookAny (Ordinal: 5, Address: 0x1730)
  • IsCurrentHookProcess (Ordinal: 6, Address: 0x1570)
  • IsCurrentHookSystem (Ordinal: 7, Address: 0x16e0)
  • IsCurrentXpHookSystem (Ordinal: 8, Address: 0x1780)
  • IsPause (Ordinal: 9, Address: 0x18e0)
  • Pause (Ordinal: 10, Address: 0x18b0)
  • SetDebugHookDataPath (Ordinal: 11, Address: 0x12c0)
  • SetTraeInstance (Ordinal: 12, Address: 0x11e0)
  • SystemHookabled (Ordinal: 13, Address: 0x15b0)
  • Unhook (Ordinal: 14, Address: 0x1830)

Imported DLLs & Functions

ADVAPI32.dll
  • AddAccessAllowedAce (Address: 0x5f572018)
  • AllocateAndInitializeSid (Address: 0x5f572004)
  • FreeSid (Address: 0x5f572008)
  • GetLengthSid (Address: 0x5f572014)
  • InitializeAcl (Address: 0x5f572010)
  • InitializeSecurityDescriptor (Address: 0x5f57200c)
  • SetSecurityDescriptorDacl (Address: 0x5f572000)
api-ms-win-crt-filesystem-l1-1-0.dll
  • _access (Address: 0x5f572174)
api-ms-win-crt-heap-l1-1-0.dll
  • _callnewh (Address: 0x5f572188)
  • free (Address: 0x5f572184)
  • malloc (Address: 0x5f57217c)
  • realloc (Address: 0x5f572180)
api-ms-win-crt-math-l1-1-0.dll
  • _libm_sse2_log10_precise (Address: 0x5f572194)
  • _libm_sse2_pow_precise (Address: 0x5f572190)
api-ms-win-crt-runtime-l1-1-0.dll
  • _cexit (Address: 0x5f5721b8)
  • _configure_narrow_argv (Address: 0x5f5721a0)
  • _crt_atexit (Address: 0x5f5721b4)
  • _execute_onexit_table (Address: 0x5f5721b0)
  • _initialize_narrow_environment (Address: 0x5f5721a4)
  • _initialize_onexit_table (Address: 0x5f5721a8)
  • _initterm (Address: 0x5f5721bc)
  • _initterm_e (Address: 0x5f5721c0)
  • _invalid_parameter_noinfo_noreturn (Address: 0x5f5721c4)
  • _register_onexit_function (Address: 0x5f5721ac)
  • _seh_filter_dll (Address: 0x5f57219c)
api-ms-win-crt-stdio-l1-1-0.dll
  • __stdio_common_vsnwprintf_s (Address: 0x5f5721cc)
  • fclose (Address: 0x5f5721d0)
  • fopen_s (Address: 0x5f5721dc)
  • fseek (Address: 0x5f5721d4)
  • fwrite (Address: 0x5f5721d8)
api-ms-win-crt-string-l1-1-0.dll
  • _stricmp (Address: 0x5f5721ec)
  • _strlwr_s (Address: 0x5f5721e4)
  • _wcsicmp (Address: 0x5f5721f0)
  • strncpy_s (Address: 0x5f5721f4)
  • wcscpy_s (Address: 0x5f5721e8)
  • wcsncpy_s (Address: 0x5f5721f8)
KERNEL32.dll
  • CloseHandle (Address: 0x5f5720c8)
  • CreateEventW (Address: 0x5f5720d0)
  • CreateFileMappingW (Address: 0x5f57206c)
  • CreateProcessA (Address: 0x5f572048)
  • CreateSemaphoreW (Address: 0x5f572068)
  • CreateThread (Address: 0x5f5720c4)
  • CreateToolhelp32Snapshot (Address: 0x5f572078)
  • DeleteCriticalSection (Address: 0x5f5720c0)
  • EnterCriticalSection (Address: 0x5f5720ec)
  • FreeLibrary (Address: 0x5f572044)
  • GetCurrentProcess (Address: 0x5f572094)
  • GetCurrentProcessId (Address: 0x5f5720bc)
  • GetCurrentThreadId (Address: 0x5f5720a4)
  • GetDiskFreeSpaceExW (Address: 0x5f572088)
  • GetFileAttributesA (Address: 0x5f572038)
  • GetLastError (Address: 0x5f5720b4)
  • GetModuleFileNameA (Address: 0x5f572030)
  • GetModuleHandleA (Address: 0x5f572034)
  • GetProcAddress (Address: 0x5f572040)
  • GetProcessHeap (Address: 0x5f572064)
  • GetSystemTimeAsFileTime (Address: 0x5f5720a8)
  • GetVersionExW (Address: 0x5f572028)
  • HeapAlloc (Address: 0x5f572060)
  • HeapFree (Address: 0x5f57204c)
  • InitializeCriticalSection (Address: 0x5f5720e0)
  • InitializeCriticalSectionAndSpinCount (Address: 0x5f5720b8)
  • InitializeSListHead (Address: 0x5f5720ac)
  • IsDebuggerPresent (Address: 0x5f57209c)
  • IsProcessorFeaturePresent (Address: 0x5f572098)
  • LeaveCriticalSection (Address: 0x5f5720e4)
  • LoadLibraryA (Address: 0x5f57203c)
  • MapViewOfFile (Address: 0x5f5720f0)
  • MultiByteToWideChar (Address: 0x5f5720cc)
  • OpenProcess (Address: 0x5f572024)
  • OutputDebugStringW (Address: 0x5f5720f4)
  • Process32First (Address: 0x5f572070)
  • Process32FirstW (Address: 0x5f572084)
  • Process32Next (Address: 0x5f572080)
  • Process32NextW (Address: 0x5f57207c)
  • QueryPerformanceCounter (Address: 0x5f5720a0)
  • ReleaseSemaphore (Address: 0x5f572054)
  • ResumeThread (Address: 0x5f5720d4)
  • SetEvent (Address: 0x5f57205c)
  • SetLastError (Address: 0x5f572050)
  • SetThreadPriority (Address: 0x5f5720e8)
  • SetUnhandledExceptionFilter (Address: 0x5f572090)
  • Sleep (Address: 0x5f5720b0)
  • SuspendThread (Address: 0x5f5720d8)
  • TerminateProcess (Address: 0x5f572074)
  • TerminateThread (Address: 0x5f57202c)
  • UnhandledExceptionFilter (Address: 0x5f57208c)
  • UnmapViewOfFile (Address: 0x5f572058)
  • WaitForSingleObject (Address: 0x5f5720dc)
  • WideCharToMultiByte (Address: 0x5f572020)
MSVCP140.dll
  • ?_Xbad_alloc@std@@YAXXZ (Address: 0x5f572104)
  • ?_Xlength_error@std@@YAXPBD@Z (Address: 0x5f572100)
  • ?_Xout_of_range@std@@YAXPBD@Z (Address: 0x5f5720fc)
ole32.dll
  • CoCreateInstance (Address: 0x5f572200)
  • CoInitialize (Address: 0x5f572214)
  • CoTaskMemAlloc (Address: 0x5f572204)
  • CoTaskMemFree (Address: 0x5f57220c)
  • CoUninitialize (Address: 0x5f572210)
  • PropVariantClear (Address: 0x5f572208)
PSAPI.DLL
  • EnumProcessModules (Address: 0x5f572110)
  • GetModuleFileNameExA (Address: 0x5f57210c)
SHELL32.dll
  • ShellExecuteA (Address: 0x5f572118)
SHLWAPI.dll
  • StrStrIA (Address: 0x5f572120)
USER32.dll
  • GetTopWindow (Address: 0x5f572130)
  • GetWindow (Address: 0x5f572134)
  • GetWindowLongW (Address: 0x5f57212c)
  • GetWindowThreadProcessId (Address: 0x5f572138)
  • SwitchToThisWindow (Address: 0x5f572128)
VCRUNTIME140.dll
  • __CxxFrameHandler3 (Address: 0x5f572168)
  • __std_exception_copy (Address: 0x5f57216c)
  • __std_exception_destroy (Address: 0x5f572144)
  • __std_terminate (Address: 0x5f57215c)
  • __std_type_info_destroy_list (Address: 0x5f572154)
  • _CxxThrowException (Address: 0x5f572148)
  • _except_handler4_common (Address: 0x5f572150)
  • _purecall (Address: 0x5f572140)
  • memcpy (Address: 0x5f572164)
  • memmove (Address: 0x5f572160)
  • memset (Address: 0x5f57214c)
  • strstr (Address: 0x5f572158)