QQAudioHookService.dll
Description: AVSDK@c7ac795434ba424683d7befcd90e6ee65f5b47bd
Authors: © Tencent Corporation. All rights reserved.
Version: 1.0.0.85
Architecture: 32-bit
Operating System: Windows NT
SHA256: 5b7ef614e8a31b0ed2dd4a5fa17e3885
File Size: 103.9 KB
Uploaded At: Dec. 2, 2025, 2:48 p.m.
Views: 7
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- GetDataFormat (Ordinal: 1, Address: 0x1350)
- GetLevel (Ordinal: 2, Address: 0x1380)
- HookProcess (Ordinal: 3, Address: 0x13e0)
- HookSystem (Ordinal: 4, Address: 0x15c0)
- IsCurrentHookAny (Ordinal: 5, Address: 0x1730)
- IsCurrentHookProcess (Ordinal: 6, Address: 0x1570)
- IsCurrentHookSystem (Ordinal: 7, Address: 0x16e0)
- IsCurrentXpHookSystem (Ordinal: 8, Address: 0x1780)
- IsPause (Ordinal: 9, Address: 0x18e0)
- Pause (Ordinal: 10, Address: 0x18b0)
- SetDebugHookDataPath (Ordinal: 11, Address: 0x12c0)
- SetTraeInstance (Ordinal: 12, Address: 0x11e0)
- SystemHookabled (Ordinal: 13, Address: 0x15b0)
- Unhook (Ordinal: 14, Address: 0x1830)
Imported DLLs & Functions
ADVAPI32.dll
- AddAccessAllowedAce (Address: 0x5f572018)
- AllocateAndInitializeSid (Address: 0x5f572004)
- FreeSid (Address: 0x5f572008)
- GetLengthSid (Address: 0x5f572014)
- InitializeAcl (Address: 0x5f572010)
- InitializeSecurityDescriptor (Address: 0x5f57200c)
- SetSecurityDescriptorDacl (Address: 0x5f572000)
api-ms-win-crt-filesystem-l1-1-0.dll
- _access (Address: 0x5f572174)
api-ms-win-crt-heap-l1-1-0.dll
- _callnewh (Address: 0x5f572188)
- free (Address: 0x5f572184)
- malloc (Address: 0x5f57217c)
- realloc (Address: 0x5f572180)
api-ms-win-crt-math-l1-1-0.dll
- _libm_sse2_log10_precise (Address: 0x5f572194)
- _libm_sse2_pow_precise (Address: 0x5f572190)
api-ms-win-crt-runtime-l1-1-0.dll
- _cexit (Address: 0x5f5721b8)
- _configure_narrow_argv (Address: 0x5f5721a0)
- _crt_atexit (Address: 0x5f5721b4)
- _execute_onexit_table (Address: 0x5f5721b0)
- _initialize_narrow_environment (Address: 0x5f5721a4)
- _initialize_onexit_table (Address: 0x5f5721a8)
- _initterm (Address: 0x5f5721bc)
- _initterm_e (Address: 0x5f5721c0)
- _invalid_parameter_noinfo_noreturn (Address: 0x5f5721c4)
- _register_onexit_function (Address: 0x5f5721ac)
- _seh_filter_dll (Address: 0x5f57219c)
api-ms-win-crt-stdio-l1-1-0.dll
- __stdio_common_vsnwprintf_s (Address: 0x5f5721cc)
- fclose (Address: 0x5f5721d0)
- fopen_s (Address: 0x5f5721dc)
- fseek (Address: 0x5f5721d4)
- fwrite (Address: 0x5f5721d8)
api-ms-win-crt-string-l1-1-0.dll
- _stricmp (Address: 0x5f5721ec)
- _strlwr_s (Address: 0x5f5721e4)
- _wcsicmp (Address: 0x5f5721f0)
- strncpy_s (Address: 0x5f5721f4)
- wcscpy_s (Address: 0x5f5721e8)
- wcsncpy_s (Address: 0x5f5721f8)
KERNEL32.dll
- CloseHandle (Address: 0x5f5720c8)
- CreateEventW (Address: 0x5f5720d0)
- CreateFileMappingW (Address: 0x5f57206c)
- CreateProcessA (Address: 0x5f572048)
- CreateSemaphoreW (Address: 0x5f572068)
- CreateThread (Address: 0x5f5720c4)
- CreateToolhelp32Snapshot (Address: 0x5f572078)
- DeleteCriticalSection (Address: 0x5f5720c0)
- EnterCriticalSection (Address: 0x5f5720ec)
- FreeLibrary (Address: 0x5f572044)
- GetCurrentProcess (Address: 0x5f572094)
- GetCurrentProcessId (Address: 0x5f5720bc)
- GetCurrentThreadId (Address: 0x5f5720a4)
- GetDiskFreeSpaceExW (Address: 0x5f572088)
- GetFileAttributesA (Address: 0x5f572038)
- GetLastError (Address: 0x5f5720b4)
- GetModuleFileNameA (Address: 0x5f572030)
- GetModuleHandleA (Address: 0x5f572034)
- GetProcAddress (Address: 0x5f572040)
- GetProcessHeap (Address: 0x5f572064)
- GetSystemTimeAsFileTime (Address: 0x5f5720a8)
- GetVersionExW (Address: 0x5f572028)
- HeapAlloc (Address: 0x5f572060)
- HeapFree (Address: 0x5f57204c)
- InitializeCriticalSection (Address: 0x5f5720e0)
- InitializeCriticalSectionAndSpinCount (Address: 0x5f5720b8)
- InitializeSListHead (Address: 0x5f5720ac)
- IsDebuggerPresent (Address: 0x5f57209c)
- IsProcessorFeaturePresent (Address: 0x5f572098)
- LeaveCriticalSection (Address: 0x5f5720e4)
- LoadLibraryA (Address: 0x5f57203c)
- MapViewOfFile (Address: 0x5f5720f0)
- MultiByteToWideChar (Address: 0x5f5720cc)
- OpenProcess (Address: 0x5f572024)
- OutputDebugStringW (Address: 0x5f5720f4)
- Process32First (Address: 0x5f572070)
- Process32FirstW (Address: 0x5f572084)
- Process32Next (Address: 0x5f572080)
- Process32NextW (Address: 0x5f57207c)
- QueryPerformanceCounter (Address: 0x5f5720a0)
- ReleaseSemaphore (Address: 0x5f572054)
- ResumeThread (Address: 0x5f5720d4)
- SetEvent (Address: 0x5f57205c)
- SetLastError (Address: 0x5f572050)
- SetThreadPriority (Address: 0x5f5720e8)
- SetUnhandledExceptionFilter (Address: 0x5f572090)
- Sleep (Address: 0x5f5720b0)
- SuspendThread (Address: 0x5f5720d8)
- TerminateProcess (Address: 0x5f572074)
- TerminateThread (Address: 0x5f57202c)
- UnhandledExceptionFilter (Address: 0x5f57208c)
- UnmapViewOfFile (Address: 0x5f572058)
- WaitForSingleObject (Address: 0x5f5720dc)
- WideCharToMultiByte (Address: 0x5f572020)
MSVCP140.dll
- ?_Xbad_alloc@std@@YAXXZ (Address: 0x5f572104)
- ?_Xlength_error@std@@YAXPBD@Z (Address: 0x5f572100)
- ?_Xout_of_range@std@@YAXPBD@Z (Address: 0x5f5720fc)
ole32.dll
- CoCreateInstance (Address: 0x5f572200)
- CoInitialize (Address: 0x5f572214)
- CoTaskMemAlloc (Address: 0x5f572204)
- CoTaskMemFree (Address: 0x5f57220c)
- CoUninitialize (Address: 0x5f572210)
- PropVariantClear (Address: 0x5f572208)
PSAPI.DLL
- EnumProcessModules (Address: 0x5f572110)
- GetModuleFileNameExA (Address: 0x5f57210c)
SHELL32.dll
- ShellExecuteA (Address: 0x5f572118)
SHLWAPI.dll
- StrStrIA (Address: 0x5f572120)
USER32.dll
- GetTopWindow (Address: 0x5f572130)
- GetWindow (Address: 0x5f572134)
- GetWindowLongW (Address: 0x5f57212c)
- GetWindowThreadProcessId (Address: 0x5f572138)
- SwitchToThisWindow (Address: 0x5f572128)
VCRUNTIME140.dll
- __CxxFrameHandler3 (Address: 0x5f572168)
- __std_exception_copy (Address: 0x5f57216c)
- __std_exception_destroy (Address: 0x5f572144)
- __std_terminate (Address: 0x5f57215c)
- __std_type_info_destroy_list (Address: 0x5f572154)
- _CxxThrowException (Address: 0x5f572148)
- _except_handler4_common (Address: 0x5f572150)
- _purecall (Address: 0x5f572140)
- memcpy (Address: 0x5f572164)
- memmove (Address: 0x5f572160)
- memset (Address: 0x5f57214c)
- strstr (Address: 0x5f572158)