wintrust.dll
Description: Microsoft Trust Verification APIs
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.22621.5040
Architecture: 64-bit
Operating System: Windows NT
SHA256: 4e05643cdd8232f29b25cf60efbee287
File Size: 381.6 KB
Uploaded At: Dec. 3, 2025, 2:37 a.m.
Views: 9
Exported Functions
- CryptCATVerifyMember (Ordinal: 1, Address: 0x1de50)
- CryptSIPGetInfo (Ordinal: 2, Address: 0x17870)
- CryptSIPGetRegWorkingFlags (Ordinal: 3, Address: 0x17860)
- GenericChainCertificateTrust (Ordinal: 4, Address: 0x258d0)
- GenericChainFinalProv (Ordinal: 5, Address: 0x25c30)
- HTTPSCertificateTrust (Ordinal: 6, Address: 0x263d0)
- SetMessageDigestInfo (Ordinal: 7, Address: 0x28110)
- SoftpubDefCertInit (Ordinal: 8, Address: 0x28ed0)
- SoftpubFreeDefUsageCallData (Ordinal: 9, Address: 0x29130)
- SoftpubLoadDefUsageCallData (Ordinal: 10, Address: 0x28fe0)
- WTHelperCertFindIssuerCertificate (Ordinal: 11, Address: 0x4470)
- AddPersonalTrustDBPages (Ordinal: 12, Address: 0x29180)
- CatalogCompactHashDatabase (Ordinal: 13, Address: 0x203f0)
- ConfigCiFinalPolicy (Ordinal: 14, Address: 0x2c460)
- ConfigCiPackageFamilyNameCheck (Ordinal: 15, Address: 0x2c0f0)
- CryptCATAdminAcquireContext (Ordinal: 16, Address: 0x1e780)
- CryptCATAdminAcquireContext2 (Ordinal: 17, Address: 0x1e7b0)
- CryptCATAdminAddCatalog (Ordinal: 18, Address: 0x1e940)
- CryptCATAdminCalcHashFromFileHandle (Ordinal: 19, Address: 0x1f790)
- CryptCATAdminCalcHashFromFileHandle2 (Ordinal: 20, Address: 0x1f7f0)
- CryptCATAdminEnumCatalogFromHash (Ordinal: 21, Address: 0x1f170)
- CryptCATAdminPauseServiceForBackup (Ordinal: 22, Address: 0x1f740)
- CryptCATAdminReleaseCatalogContext (Ordinal: 23, Address: 0x1f530)
- CryptCATAdminReleaseContext (Ordinal: 24, Address: 0x1e8e0)
- CryptCATAdminRemoveCatalog (Ordinal: 25, Address: 0x1eca0)
- CryptCATAdminResolveCatalogPath (Ordinal: 26, Address: 0x1f600)
- CryptCATAllocSortedMemberInfo (Ordinal: 27, Address: 0x1db90)
- CryptCATCDFClose (Ordinal: 28, Address: 0x20af0)
- CryptCATCDFEnumAttributes (Ordinal: 29, Address: 0x21a70)
- CryptCATCDFEnumAttributesWithCDFTag (Ordinal: 30, Address: 0x21a90)
- CryptCATCDFEnumCatAttributes (Ordinal: 31, Address: 0x20e40)
- CryptCATCDFEnumMembers (Ordinal: 32, Address: 0x21680)
- CryptCATCDFEnumMembersByCDFTag (Ordinal: 33, Address: 0x21740)
- CryptCATCDFEnumMembersByCDFTagEx (Ordinal: 34, Address: 0x216f0)
- CryptCATCDFOpen (Ordinal: 35, Address: 0x20430)
- CryptCATCatalogInfoFromContext (Ordinal: 36, Address: 0x1f450)
- CryptCATClose (Ordinal: 37, Address: 0x1d4f0)
- CryptCATEnumerateAttr (Ordinal: 38, Address: 0x1e290)
- CryptCATEnumerateCatAttr (Ordinal: 39, Address: 0x1da30)
- CryptCATEnumerateMember (Ordinal: 40, Address: 0x1e190)
- CryptCATFreeSortedMemberInfo (Ordinal: 41, Address: 0x1dc80)
- CryptCATGetAttrInfo (Ordinal: 42, Address: 0x1dea0)
- CryptCATGetCatAttrInfo (Ordinal: 43, Address: 0x1d710)
- CryptCATGetMemberInfo (Ordinal: 44, Address: 0x1dab0)
- CryptCATHandleFromStore (Ordinal: 45, Address: 0x1d6c0)
- CryptCATOpen (Ordinal: 46, Address: 0x1d370)
- CryptCATPersistStore (Ordinal: 47, Address: 0x1d6d0)
- CryptCATPutAttrInfo (Ordinal: 48, Address: 0x1df50)
- CryptCATPutCatAttrInfo (Ordinal: 49, Address: 0x1d7b0)
- CryptCATPutMemberInfo (Ordinal: 50, Address: 0x1dcc0)
- CryptCATStoreFromHandle (Ordinal: 51, Address: 0x1d6b0)
- CryptSIPCreateIndirectData (Ordinal: 52, Address: 0x16cb0)
- CryptSIPGetCaps (Ordinal: 53, Address: 0x16eb0)
- CryptSIPGetSealedDigest (Ordinal: 54, Address: 0x16f50)
- CryptSIPGetSignedDataMsg (Ordinal: 55, Address: 0x169c0)
- CryptSIPPutSignedDataMsg (Ordinal: 56, Address: 0x16af0)
- CryptSIPRemoveSignedDataMsg (Ordinal: 57, Address: 0x16bf0)
- CryptSIPVerifyIndirectData (Ordinal: 58, Address: 0x16d80)
- DllRegisterServer (Ordinal: 59, Address: 0xc020)
- DllUnregisterServer (Ordinal: 60, Address: 0xc080)
- DriverCleanupPolicy (Ordinal: 61, Address: 0x2dd60)
- DriverFinalPolicy (Ordinal: 62, Address: 0x2deb0)
- DriverInitializePolicy (Ordinal: 63, Address: 0x2db10)
- FindCertsByIssuer (Ordinal: 64, Address: 0x2f4a0)
- GetAuthenticodeSha256Hash (Ordinal: 65, Address: 0x2bab0)
- HTTPSFinalProv (Ordinal: 66, Address: 0x26760)
- IsCatalogFile (Ordinal: 67, Address: 0x238d0)
- MsCatConstructHashTag (Ordinal: 68, Address: 0x24320)
- MsCatFreeHashTag (Ordinal: 69, Address: 0x243e0)
- OfficeCleanupPolicy (Ordinal: 70, Address: 0x2fac0)
- OfficeInitializePolicy (Ordinal: 71, Address: 0x2fac0)
- OpenPersonalTrustDBDialog (Ordinal: 72, Address: 0x292d0)
- OpenPersonalTrustDBDialogEx (Ordinal: 73, Address: 0x291b0)
- SoftpubAuthenticode (Ordinal: 74, Address: 0x30b00)
- SoftpubCheckCert (Ordinal: 75, Address: 0x30b30)
- SoftpubCleanup (Ordinal: 76, Address: 0x30b50)
- SoftpubDllRegisterServer (Ordinal: 77, Address: 0x30cb0)
- SoftpubDllUnregisterServer (Ordinal: 78, Address: 0x30f20)
- SoftpubDumpStructure (Ordinal: 79, Address: 0x310a0)
- SoftpubInitialize (Ordinal: 80, Address: 0x32700)
- SoftpubLoadMessage (Ordinal: 81, Address: 0x32910)
- SoftpubLoadSignature (Ordinal: 82, Address: 0x269d0)
- TrustDecode (Ordinal: 83, Address: 0x10e00)
- TrustFindIssuerCertificate (Ordinal: 84, Address: 0x10710)
- TrustFreeDecode (Ordinal: 85, Address: 0x10f00)
- TrustIsCertificateSelfSigned (Ordinal: 86, Address: 0x10a60)
- TrustOpenStores (Ordinal: 87, Address: 0x10900)
- WTHelperCertCheckValidSignature (Ordinal: 88, Address: 0x13670)
- WTHelperCertIsSelfSigned (Ordinal: 89, Address: 0x42b0)
- WTHelperCheckCertUsage (Ordinal: 90, Address: 0x131e0)
- WTHelperGetAgencyInfo (Ordinal: 91, Address: 0x130e0)
- WTHelperGetFileHandle (Ordinal: 92, Address: 0x12e80)
- WTHelperGetFileHash (Ordinal: 93, Address: 0x11a40)
- WTHelperGetFileName (Ordinal: 94, Address: 0x12eb0)
- WTHelperGetKnownUsages (Ordinal: 95, Address: 0x135b0)
- WTHelperGetProvCertFromChain (Ordinal: 96, Address: 0x12e50)
- WTHelperGetProvPrivateDataFromChain (Ordinal: 97, Address: 0x12db0)
- WTHelperGetProvSignerFromChain (Ordinal: 98, Address: 0x12e10)
- WTHelperIsChainedToMicrosoft (Ordinal: 99, Address: 0x13770)
- WTHelperIsChainedToMicrosoftFromStateData (Ordinal: 100, Address: 0x136a0)
- WTHelperIsInRootStore (Ordinal: 101, Address: 0x133b0)
- WTHelperOpenKnownStores (Ordinal: 102, Address: 0x12f50)
- WTHelperProvDataFromStateData (Ordinal: 103, Address: 0x13660)
- WVTAsn1CatMemberInfo2Decode (Ordinal: 104, Address: 0xda50)
- WVTAsn1CatMemberInfo2Encode (Ordinal: 105, Address: 0xcc50)
- WVTAsn1CatMemberInfoDecode (Ordinal: 106, Address: 0xd950)
- WVTAsn1CatMemberInfoEncode (Ordinal: 107, Address: 0xcbf0)
- WVTAsn1CatNameValueDecode (Ordinal: 108, Address: 0xd820)
- WVTAsn1CatNameValueEncode (Ordinal: 109, Address: 0xcb80)
- WVTAsn1IntentToSealAttributeDecode (Ordinal: 110, Address: 0xdb20)
- WVTAsn1IntentToSealAttributeEncode (Ordinal: 111, Address: 0xcd00)
- WVTAsn1SealingSignatureAttributeDecode (Ordinal: 112, Address: 0xdbd0)
- WVTAsn1SealingSignatureAttributeEncode (Ordinal: 113, Address: 0xcd40)
- WVTAsn1SealingTimestampAttributeDecode (Ordinal: 114, Address: 0xdd10)
- WVTAsn1SealingTimestampAttributeEncode (Ordinal: 115, Address: 0xce00)
- WVTAsn1SpcFinancialCriteriaInfoDecode (Ordinal: 116, Address: 0xd1a0)
- WVTAsn1SpcFinancialCriteriaInfoEncode (Ordinal: 117, Address: 0xc820)
- WVTAsn1SpcIndirectDataContentDecode (Ordinal: 118, Address: 0xcf40)
- WVTAsn1SpcIndirectDataContentEncode (Ordinal: 119, Address: 0xc6e0)
- WVTAsn1SpcLinkDecode (Ordinal: 120, Address: 0xce60)
- WVTAsn1SpcLinkEncode (Ordinal: 121, Address: 0xc680)
- WVTAsn1SpcMinimalCriteriaInfoDecode (Ordinal: 122, Address: 0xd0e0)
- WVTAsn1SpcMinimalCriteriaInfoEncode (Ordinal: 123, Address: 0xc7e0)
- WVTAsn1SpcPeImageDataDecode (Ordinal: 124, Address: 0xd520)
- WVTAsn1SpcPeImageDataEncode (Ordinal: 125, Address: 0xca30)
- WVTAsn1SpcSigInfoDecode (Ordinal: 126, Address: 0xd680)
- WVTAsn1SpcSigInfoEncode (Ordinal: 127, Address: 0xcb00)
- WVTAsn1SpcSpAgencyInfoDecode (Ordinal: 128, Address: 0xd0d0)
- WVTAsn1SpcSpAgencyInfoEncode (Ordinal: 129, Address: 0xc7d0)
- WVTAsn1SpcSpOpusInfoDecode (Ordinal: 130, Address: 0xd3a0)
- WVTAsn1SpcSpOpusInfoEncode (Ordinal: 131, Address: 0xc920)
- WVTAsn1SpcStatementTypeDecode (Ordinal: 132, Address: 0xd260)
- WVTAsn1SpcStatementTypeEncode (Ordinal: 133, Address: 0xc860)
- WinVerifyTrust (Ordinal: 134, Address: 0x119a0)
- WinVerifyTrustEx (Ordinal: 135, Address: 0x118a0)
- WintrustAddActionID (Ordinal: 136, Address: 0xefc0)
- WintrustAddDefaultForUsage (Ordinal: 137, Address: 0x11250)
- WintrustCertificateTrust (Ordinal: 138, Address: 0x96c0)
- WintrustCryptSIPGetCaps (Ordinal: 139, Address: 0x14610)
- WintrustCryptSIPGetSealedDigest (Ordinal: 140, Address: 0x146e0)
- WintrustCryptSIPLoad (Ordinal: 141, Address: 0x14580)
- WintrustCryptSIPRetrieveSubjectGuid (Ordinal: 142, Address: 0x144a0)
- WintrustGetDefaultForUsage (Ordinal: 143, Address: 0x11540)
- WintrustGetRegPolicyFlags (Ordinal: 144, Address: 0x10200)
- WintrustLoadFunctionPointers (Ordinal: 145, Address: 0xf280)
- WintrustRemoveActionID (Ordinal: 146, Address: 0xf1e0)
- WintrustSetDefaultIncludePEPageHashes (Ordinal: 147, Address: 0x179b0)
- WintrustSetRegPolicyFlags (Ordinal: 148, Address: 0x102c0)
- mscat32DllRegisterServer (Ordinal: 149, Address: 0x24140)
- mscat32DllUnregisterServer (Ordinal: 150, Address: 0x24140)
- mssip32DllRegisterServer (Ordinal: 151, Address: 0x174a0)
- mssip32DllUnregisterServer (Ordinal: 152, Address: 0x176f0)
Imported DLLs & Functions
ADVAPI32.dll
- AddAccessAllowedAceEx (Address: 0x180045270)
- AddAce (Address: 0x180045250)
- AllocateAndInitializeSid (Address: 0x180045348)
- ChangeServiceConfigA (Address: 0x180045350)
- CloseServiceHandle (Address: 0x180045330)
- ControlService (Address: 0x180045358)
- ConvertStringSidToSidW (Address: 0x180045248)
- CopySid (Address: 0x1800452f0)
- CryptAcquireContextA (Address: 0x1800453a0)
- CryptAcquireContextW (Address: 0x1800452a8)
- CryptCreateHash (Address: 0x1800452c0)
- CryptDestroyHash (Address: 0x1800452d0)
- CryptGetHashParam (Address: 0x1800452d8)
- CryptHashData (Address: 0x1800452c8)
- CryptReleaseContext (Address: 0x1800453a8)
- CryptSetProvParam (Address: 0x1800452a0)
- EqualSid (Address: 0x180045328)
- EventRegister (Address: 0x1800453f0)
- EventUnregister (Address: 0x1800453f8)
- EventWrite (Address: 0x1800452b8)
- FreeSid (Address: 0x180045368)
- GetAce (Address: 0x180045400)
- GetAclInformation (Address: 0x180045280)
- GetFileSecurityW (Address: 0x180045258)
- GetLengthSid (Address: 0x180045300)
- GetSecurityDescriptorDacl (Address: 0x180045290)
- GetSidIdentifierAuthority (Address: 0x180045310)
- GetSidSubAuthority (Address: 0x1800452e8)
- GetSidSubAuthorityCount (Address: 0x1800452e0)
- GetTokenInformation (Address: 0x180045380)
- InitializeAcl (Address: 0x180045268)
- InitializeSecurityDescriptor (Address: 0x180045260)
- IsValidSid (Address: 0x1800452f8)
- LookupAccountSidW (Address: 0x180045278)
- OpenProcessToken (Address: 0x180045240)
- OpenSCManagerW (Address: 0x180045338)
- OpenServiceW (Address: 0x180045378)
- OpenThreadToken (Address: 0x180045308)
- QueryServiceConfigA (Address: 0x180045340)
- QueryServiceStatus (Address: 0x180045320)
- RegCloseKey (Address: 0x1800453c0)
- RegCreateKeyExW (Address: 0x1800453d0)
- RegDeleteKeyExW (Address: 0x1800453c8)
- RegEnumKeyExA (Address: 0x180045398)
- RegEnumValueA (Address: 0x1800452b0)
- RegGetValueW (Address: 0x180045318)
- RegOpenKeyExA (Address: 0x180045390)
- RegOpenKeyExW (Address: 0x1800453e0)
- RegQueryInfoKeyA (Address: 0x180045388)
- RegQueryValueExA (Address: 0x1800453b0)
- RegQueryValueExW (Address: 0x1800453e8)
- RegSetValueExA (Address: 0x1800453b8)
- RegSetValueExW (Address: 0x1800453d8)
- SetFileSecurityW (Address: 0x180045288)
- SetSecurityDescriptorDacl (Address: 0x180045298)
- StartServiceA (Address: 0x180045360)
- StartServiceW (Address: 0x180045370)
bcrypt.dll
- BCryptCloseAlgorithmProvider (Address: 0x180045c38)
- BCryptCreateHash (Address: 0x180045c58)
- BCryptDestroyHash (Address: 0x180045c48)
- BCryptDestroyKey (Address: 0x180045c30)
- BCryptFinishHash (Address: 0x180045c40)
- BCryptGetProperty (Address: 0x180045c60)
- BCryptHashData (Address: 0x180045c50)
- BCryptOpenAlgorithmProvider (Address: 0x180045c70)
- BCryptVerifySignature (Address: 0x180045c68)
CRYPT32.dll
- CertAddCertificateContextToStore (Address: 0x1800454f8)
- CertAddStoreToCollection (Address: 0x1800455e0)
- CertCloseStore (Address: 0x180045608)
- CertCompareCertificate (Address: 0x180045570)
- CertCompareCertificateName (Address: 0x1800455c8)
- CertCompareIntegerBlob (Address: 0x1800456b0)
- CertComparePublicKeyInfo (Address: 0x180045620)
- CertControlStore (Address: 0x180045688)
- CertCreateCertificateChainEngine (Address: 0x180045628)
- CertCreateCertificateContext (Address: 0x180045538)
- CertCreateContext (Address: 0x1800454a8)
- CertCreateCTLContext (Address: 0x180045520)
- CertDeleteCertificateFromStore (Address: 0x1800454f0)
- CertDuplicateCertificateContext (Address: 0x180045648)
- CertDuplicateStore (Address: 0x180045640)
- CertEnumCertificatesInStore (Address: 0x180045500)
- CertFindAttribute (Address: 0x180045470)
- CertFindCertificateInStore (Address: 0x180045420)
- CertFindExtension (Address: 0x1800455d8)
- CertFindRDNAttr (Address: 0x180045568)
- CertFindSubjectInCTL (Address: 0x180045510)
- CertFindSubjectInSortedCTL (Address: 0x180045490)
- CertFreeCertificateChain (Address: 0x180045610)
- CertFreeCertificateChainEngine (Address: 0x1800455f8)
- CertFreeCertificateContext (Address: 0x180045638)
- CertFreeCTLContext (Address: 0x180045630)
- CertGetCertificateChain (Address: 0x1800455f0)
- CertGetCertificateContextProperty (Address: 0x180045430)
- CertGetEnhancedKeyUsage (Address: 0x1800455e8)
- CertGetIssuerCertificateFromStore (Address: 0x180045698)
- CertGetNameStringW (Address: 0x180045528)
- CertGetSubjectCertificateFromStore (Address: 0x1800454e8)
- CertOIDToAlgId (Address: 0x180045410)
- CertOpenStore (Address: 0x180045618)
- CertOpenSystemStoreA (Address: 0x180045540)
- CertRDNValueToStrW (Address: 0x180045560)
- CertSetCertificateContextProperty (Address: 0x180045550)
- CertVerifyCertificateChainPolicy (Address: 0x180045428)
- CertVerifySubjectCertificateContext (Address: 0x1800455d0)
- CertVerifyTimeValidity (Address: 0x1800456a8)
- CertVerifyValidityNesting (Address: 0x1800456a0)
- CryptDecodeObject (Address: 0x180045690)
- CryptDecodeObjectEx (Address: 0x1800455c0)
- CryptEncodeObject (Address: 0x180045468)
- CryptEncodeObjectEx (Address: 0x180045478)
- CryptEnumOIDInfo (Address: 0x180045438)
- CryptExportPublicKeyInfo (Address: 0x180045548)
- CryptFindOIDInfo (Address: 0x180045460)
- CryptHashCertificate2 (Address: 0x180045558)
- CryptImportPublicKeyInfoEx2 (Address: 0x1800454e0)
- CryptInstallOIDFunctionAddress (Address: 0x180045670)
- CryptMemFree (Address: 0x1800454c8)
- CryptMsgClose (Address: 0x1800454b8)
- CryptMsgControl (Address: 0x1800454d0)
- CryptMsgDuplicate (Address: 0x1800454b0)
- CryptMsgEncodeAndSignCTL (Address: 0x180045578)
- CryptMsgGetParam (Address: 0x1800454d8)
- CryptMsgOpenToDecode (Address: 0x180045518)
- CryptMsgUpdate (Address: 0x180045508)
- CryptMsgVerifyCountersignatureEncodedEx (Address: 0x1800454c0)
- CryptQueryObject (Address: 0x180045600)
- CryptRegisterOIDFunction (Address: 0x180045668)
- CryptSIPAddProvider (Address: 0x180045458)
- CryptSIPLoad (Address: 0x180045448)
- CryptSIPRemoveProvider (Address: 0x180045450)
- CryptSIPRetrieveSubjectGuid (Address: 0x180045440)
- CryptSIPRetrieveSubjectGuidForCatalogFile (Address: 0x180045498)
- CryptStringToBinaryW (Address: 0x180045488)
- CryptUnregisterOIDFunction (Address: 0x180045658)
- CryptVerifyMessageSignature (Address: 0x180045530)
- I_CryptCreateLruCache (Address: 0x180045590)
- I_CryptCreateLruEntry (Address: 0x180045598)
- I_CryptFindLruEntryData (Address: 0x1800455a8)
- I_CryptFlushLruCache (Address: 0x180045580)
- I_CryptFreeLruCache (Address: 0x180045588)
- I_CryptGetAsn1Decoder (Address: 0x180045680)
- I_CryptGetAsn1Encoder (Address: 0x180045650)
- I_CryptGetDefaultCryptProv (Address: 0x180045480)
- I_CryptGetTls (Address: 0x1800454a0)
- I_CryptInsertLruEntry (Address: 0x1800455a0)
- I_CryptInstallAsn1Module (Address: 0x180045660)
- I_CryptReadTrustedPublisherDWORDValueFromRegistry (Address: 0x180045418)
- I_CryptReleaseLruEntry (Address: 0x1800455b0)
- I_CryptRemoveLruEntry (Address: 0x1800455b8)
- I_CryptUninstallAsn1Module (Address: 0x180045678)
KERNEL32.dll
- AcquireSRWLockExclusive (Address: 0x180045760)
- AcquireSRWLockShared (Address: 0x1800456e8)
- CloseHandle (Address: 0x180045718)
- CloseThreadpoolTimer (Address: 0x180045768)
- CompareFileTime (Address: 0x1800458d0)
- CreateDirectoryW (Address: 0x180045888)
- CreateEventA (Address: 0x180045978)
- CreateFileMappingA (Address: 0x1800459d0)
- CreateFileMappingW (Address: 0x180045998)
- CreateFileW (Address: 0x180045800)
- CreateMutexA (Address: 0x180045980)
- CreateMutexExW (Address: 0x1800456e0)
- CreateSemaphoreExW (Address: 0x180045898)
- CreateThreadpoolTimer (Address: 0x1800456c8)
- DebugBreak (Address: 0x180045708)
- DeleteCriticalSection (Address: 0x1800458b8)
- DisableThreadLibraryCalls (Address: 0x180045730)
- DuplicateHandle (Address: 0x1800459a8)
- EnterCriticalSection (Address: 0x180045878)
- ExpandEnvironmentStringsA (Address: 0x180045840)
- ExpandEnvironmentStringsW (Address: 0x180045a28)
- FileTimeToSystemTime (Address: 0x180045950)
- FindClose (Address: 0x1800459f0)
- FindFirstFileW (Address: 0x1800459e0)
- FindNextFileW (Address: 0x1800459e8)
- FindResourceExA (Address: 0x1800457a8)
- FindResourceW (Address: 0x1800459a0)
- FlushViewOfFile (Address: 0x180045910)
- FormatMessageW (Address: 0x1800457c8)
- FreeLibrary (Address: 0x180045740)
- FreeResource (Address: 0x180045798)
- GetCurrentDirectoryW (Address: 0x180045a10)
- GetCurrentProcess (Address: 0x180045868)
- GetCurrentProcessId (Address: 0x1800456f0)
- GetCurrentThread (Address: 0x180045960)
- GetCurrentThreadId (Address: 0x1800457e8)
- GetDateFormatA (Address: 0x180045928)
- GetEnvironmentVariableA (Address: 0x180045720)
- GetFileAttributesExW (Address: 0x180045808)
- GetFileAttributesW (Address: 0x1800459f8)
- GetFileInformationByHandle (Address: 0x180045a20)
- GetFileSize (Address: 0x180045938)
- GetFileSizeEx (Address: 0x1800459b0)
- GetLastError (Address: 0x180045780)
- GetLocalTime (Address: 0x180045930)
- GetModuleFileNameA (Address: 0x1800458a0)
- GetModuleFileNameW (Address: 0x180045850)
- GetModuleHandleA (Address: 0x180045968)
- GetModuleHandleExA (Address: 0x1800457a0)
- GetModuleHandleExW (Address: 0x180045860)
- GetModuleHandleW (Address: 0x180045700)
- GetPrivateProfileStringW (Address: 0x180045858)
- GetProcAddress (Address: 0x1800456d8)
- GetProcessHeap (Address: 0x1800456f8)
- GetSystemDirectoryW (Address: 0x180045a00)
- GetSystemInfo (Address: 0x1800459c8)
- GetSystemTimeAsFileTime (Address: 0x180045810)
- GetTickCount (Address: 0x1800458f8)
- GetTickCount64 (Address: 0x180045a08)
- GetTimeFormatA (Address: 0x180045920)
- HeapAlloc (Address: 0x1800456d0)
- HeapFree (Address: 0x180045880)
- InitializeCriticalSection (Address: 0x1800458c0)
- InitializeCriticalSectionEx (Address: 0x180045830)
- IsDebuggerPresent (Address: 0x180045710)
- LeaveCriticalSection (Address: 0x180045838)
- LoadLibraryA (Address: 0x1800457c0)
- LoadLibraryExA (Address: 0x180045828)
- LoadLibraryExW (Address: 0x180045990)
- LoadLibraryW (Address: 0x180045750)
- LoadResource (Address: 0x1800457b8)
- LocalAlloc (Address: 0x180045890)
- LocalFree (Address: 0x1800458b0)
- LocalReAlloc (Address: 0x180045940)
- LockResource (Address: 0x1800457b0)
- lstrlenA (Address: 0x180045848)
- lstrlenW (Address: 0x180045970)
- MapViewOfFile (Address: 0x1800459d8)
- MultiByteToWideChar (Address: 0x1800457d0)
- OpenSemaphoreW (Address: 0x180045738)
- OutputDebugStringA (Address: 0x180045908)
- OutputDebugStringW (Address: 0x180045770)
- QueryPerformanceCounter (Address: 0x1800458f0)
- ReadFile (Address: 0x1800457e0)
- ReleaseMutex (Address: 0x1800457d8)
- ReleaseSemaphore (Address: 0x180045870)
- ReleaseSRWLockExclusive (Address: 0x180045778)
- ReleaseSRWLockShared (Address: 0x1800456c0)
- ResetEvent (Address: 0x180045788)
- SetEndOfFile (Address: 0x180045918)
- SetEvent (Address: 0x180045728)
- SetFileAttributesW (Address: 0x1800457f0)
- SetFilePointer (Address: 0x1800457f8)
- SetFilePointerEx (Address: 0x1800459b8)
- SetLastError (Address: 0x1800458c8)
- SetThreadpoolTimer (Address: 0x180045958)
- SetUnhandledExceptionFilter (Address: 0x1800458e0)
- SizeofResource (Address: 0x180045790)
- Sleep (Address: 0x1800458a8)
- SystemTimeToFileTime (Address: 0x180045948)
- TerminateProcess (Address: 0x1800458e8)
- UnhandledExceptionFilter (Address: 0x1800458d8)
- UnmapViewOfFile (Address: 0x1800459c0)
- VirtualUnlock (Address: 0x180045a18)
- WaitForMultipleObjectsEx (Address: 0x180045988)
- WaitForSingleObject (Address: 0x180045818)
- WaitForSingleObjectEx (Address: 0x180045758)
- WaitForThreadpoolTimerCallbacks (Address: 0x180045820)
- WideCharToMultiByte (Address: 0x180045748)
- WriteFile (Address: 0x180045900)
MSASN1.dll
- ASN1_CloseModule (Address: 0x180045b90)
- ASN1_CreateModule (Address: 0x180045a68)
- ASN1_Decode (Address: 0x180045a40)
- ASN1_Encode (Address: 0x180045a50)
- ASN1_FreeDecoded (Address: 0x180045a58)
- ASN1_FreeEncoded (Address: 0x180045a48)
- ASN1_SetEncoderOption (Address: 0x180045a38)
- ASN1BERDecBitString (Address: 0x180045bc8)
- ASN1BERDecBool (Address: 0x180045b28)
- ASN1BERDecChar16String (Address: 0x180045ba8)
- ASN1BERDecCharString (Address: 0x180045a60)
- ASN1BERDecEndOfContents (Address: 0x180045b20)
- ASN1BERDecExplicitTag (Address: 0x180045ad8)
- ASN1BERDecNotEndOfContents (Address: 0x180045b10)
- ASN1BERDecNull (Address: 0x180045a70)
- ASN1BERDecObjectIdentifier2 (Address: 0x180045b98)
- ASN1BERDecOctetString (Address: 0x180045b08)
- ASN1BERDecOctetString2 (Address: 0x180045a80)
- ASN1BERDecOpenType2 (Address: 0x180045ab0)
- ASN1BERDecPeekTag (Address: 0x180045ae0)
- ASN1BERDecS32Val (Address: 0x180045bb8)
- ASN1BERDecU32Val (Address: 0x180045a78)
- ASN1BERDecUTCTime (Address: 0x180045a98)
- ASN1BEREncBitString (Address: 0x180045af8)
- ASN1BEREncBool (Address: 0x180045b78)
- ASN1BEREncChar16String (Address: 0x180045a90)
- ASN1BEREncCharString (Address: 0x180045b60)
- ASN1BEREncEndOfContents (Address: 0x180045b68)
- ASN1BEREncExplicitTag (Address: 0x180045b18)
- ASN1BEREncNull (Address: 0x180045b80)
- ASN1BEREncObjectIdentifier2 (Address: 0x180045b58)
- ASN1BEREncOctetString (Address: 0x180045b88)
- ASN1BEREncOpenType (Address: 0x180045bb0)
- ASN1BEREncRemoveZeroBits (Address: 0x180045ab8)
- ASN1BEREncS32 (Address: 0x180045b48)
- ASN1BEREncU32 (Address: 0x180045b00)
- ASN1bitstring_cmp (Address: 0x180045ac0)
- ASN1bitstring_free (Address: 0x180045a88)
- ASN1CEREncBeginBlk (Address: 0x180045aa0)
- ASN1CEREncEndBlk (Address: 0x180045aa8)
- ASN1CEREncFlushBlkElement (Address: 0x180045b50)
- ASN1CEREncNewBlkElement (Address: 0x180045b70)
- ASN1CEREncUTCTime (Address: 0x180045af0)
- ASN1char16string_free (Address: 0x180045ae8)
- ASN1charstring_free (Address: 0x180045bc0)
- ASN1DecRealloc (Address: 0x180045b38)
- ASN1DecSetError (Address: 0x180045ad0)
- ASN1EncSetError (Address: 0x180045b40)
- ASN1Free (Address: 0x180045ba0)
- ASN1objectidentifier_free (Address: 0x180045b30)
- ASN1octetstring_free (Address: 0x180045ac8)
msvcrt.dll
- __C_specific_handler (Address: 0x180045d68)
- __CxxFrameHandler3 (Address: 0x180045ca8)
- __dllonexit (Address: 0x180045db0)
- _amsg_exit (Address: 0x180045d48)
- _callnewh (Address: 0x180045d10)
- _errno (Address: 0x180045d28)
- _initterm (Address: 0x180045d40)
- _itow_s (Address: 0x180045d70)
- _lock (Address: 0x180045cd0)
- _ltoa (Address: 0x180045ca0)
- _memicmp (Address: 0x180045da0)
- _onexit (Address: 0x180045c80)
- _purecall (Address: 0x180045d90)
- _stricmp (Address: 0x180045cd8)
- _unlock (Address: 0x180045c88)
- _vsnprintf (Address: 0x180045c98)
- _vsnwprintf (Address: 0x180045da8)
- _wcsicmp (Address: 0x180045d78)
- _wcsnicmp (Address: 0x180045ce0)
- _wtol (Address: 0x180045ce8)
- _XcptFilter (Address: 0x180045d50)
- atol (Address: 0x180045d80)
- bsearch (Address: 0x180045d08)
- free (Address: 0x180045d20)
- malloc (Address: 0x180045d18)
- memcmp (Address: 0x180045d60)
- memcpy (Address: 0x180045d58)
- memcpy_s (Address: 0x180045d98)
- memmove (Address: 0x180045d38)
- memmove_s (Address: 0x180045d88)
- memset (Address: 0x180045d00)
- qsort (Address: 0x180045cb8)
- qsort_s (Address: 0x180045cf8)
- strcmp (Address: 0x180045c90)
- towupper (Address: 0x180045cf0)
- wcscat_s (Address: 0x180045d30)
- wcschr (Address: 0x180045cc0)
- wcscmp (Address: 0x180045db8)
- wcsrchr (Address: 0x180045cb0)
- wcstol (Address: 0x180045cc8)
ntdll.dll
- LdrResSearchResource (Address: 0x180045e48)
- NtQuerySystemInformation (Address: 0x180045e18)
- RtlAllocateHeap (Address: 0x180045de8)
- RtlAppendUnicodeStringToString (Address: 0x180045dd0)
- RtlCaptureContext (Address: 0x180045e40)
- RtlCompareUnicodeString (Address: 0x180045dd8)
- RtlCreateUnicodeString (Address: 0x180045df8)
- RtlEqualUnicodeString (Address: 0x180045dc8)
- RtlFreeHeap (Address: 0x180045e28)
- RtlFreeUnicodeString (Address: 0x180045e10)
- RtlGetVersion (Address: 0x180045df0)
- RtlImageNtHeaderEx (Address: 0x180045e00)
- RtlInitUnicodeString (Address: 0x180045e08)
- RtlLookupFunctionEntry (Address: 0x180045e38)
- RtlNtStatusToDosError (Address: 0x180045e20)
- RtlStringFromGUID (Address: 0x180045de0)
- RtlVirtualUnwind (Address: 0x180045e30)
RPCRT4.dll
- NdrClientCall3 (Address: 0x180045c00)
- RpcBindingFree (Address: 0x180045bf8)
- RpcBindingFromStringBindingW (Address: 0x180045c08)
- RpcBindingSetAuthInfoExW (Address: 0x180045be0)
- RpcEpResolveBinding (Address: 0x180045bf0)
- RpcStringBindingComposeW (Address: 0x180045bd8)
- RpcStringFreeW (Address: 0x180045be8)
USER32.dll
- GetDesktopWindow (Address: 0x180045c20)
- MessageBoxA (Address: 0x180045c18)