wintrust.dll

Description: Microsoft Trust Verification APIs

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.22621.5040

Architecture: 64-bit

Operating System: Windows NT

SHA256: 4e05643cdd8232f29b25cf60efbee287

File Size: 381.6 KB

Uploaded At: Dec. 3, 2025, 2:37 a.m.

Views: 9

Exported Functions

  • CryptCATVerifyMember (Ordinal: 1, Address: 0x1de50)
  • CryptSIPGetInfo (Ordinal: 2, Address: 0x17870)
  • CryptSIPGetRegWorkingFlags (Ordinal: 3, Address: 0x17860)
  • GenericChainCertificateTrust (Ordinal: 4, Address: 0x258d0)
  • GenericChainFinalProv (Ordinal: 5, Address: 0x25c30)
  • HTTPSCertificateTrust (Ordinal: 6, Address: 0x263d0)
  • SetMessageDigestInfo (Ordinal: 7, Address: 0x28110)
  • SoftpubDefCertInit (Ordinal: 8, Address: 0x28ed0)
  • SoftpubFreeDefUsageCallData (Ordinal: 9, Address: 0x29130)
  • SoftpubLoadDefUsageCallData (Ordinal: 10, Address: 0x28fe0)
  • WTHelperCertFindIssuerCertificate (Ordinal: 11, Address: 0x4470)
  • AddPersonalTrustDBPages (Ordinal: 12, Address: 0x29180)
  • CatalogCompactHashDatabase (Ordinal: 13, Address: 0x203f0)
  • ConfigCiFinalPolicy (Ordinal: 14, Address: 0x2c460)
  • ConfigCiPackageFamilyNameCheck (Ordinal: 15, Address: 0x2c0f0)
  • CryptCATAdminAcquireContext (Ordinal: 16, Address: 0x1e780)
  • CryptCATAdminAcquireContext2 (Ordinal: 17, Address: 0x1e7b0)
  • CryptCATAdminAddCatalog (Ordinal: 18, Address: 0x1e940)
  • CryptCATAdminCalcHashFromFileHandle (Ordinal: 19, Address: 0x1f790)
  • CryptCATAdminCalcHashFromFileHandle2 (Ordinal: 20, Address: 0x1f7f0)
  • CryptCATAdminEnumCatalogFromHash (Ordinal: 21, Address: 0x1f170)
  • CryptCATAdminPauseServiceForBackup (Ordinal: 22, Address: 0x1f740)
  • CryptCATAdminReleaseCatalogContext (Ordinal: 23, Address: 0x1f530)
  • CryptCATAdminReleaseContext (Ordinal: 24, Address: 0x1e8e0)
  • CryptCATAdminRemoveCatalog (Ordinal: 25, Address: 0x1eca0)
  • CryptCATAdminResolveCatalogPath (Ordinal: 26, Address: 0x1f600)
  • CryptCATAllocSortedMemberInfo (Ordinal: 27, Address: 0x1db90)
  • CryptCATCDFClose (Ordinal: 28, Address: 0x20af0)
  • CryptCATCDFEnumAttributes (Ordinal: 29, Address: 0x21a70)
  • CryptCATCDFEnumAttributesWithCDFTag (Ordinal: 30, Address: 0x21a90)
  • CryptCATCDFEnumCatAttributes (Ordinal: 31, Address: 0x20e40)
  • CryptCATCDFEnumMembers (Ordinal: 32, Address: 0x21680)
  • CryptCATCDFEnumMembersByCDFTag (Ordinal: 33, Address: 0x21740)
  • CryptCATCDFEnumMembersByCDFTagEx (Ordinal: 34, Address: 0x216f0)
  • CryptCATCDFOpen (Ordinal: 35, Address: 0x20430)
  • CryptCATCatalogInfoFromContext (Ordinal: 36, Address: 0x1f450)
  • CryptCATClose (Ordinal: 37, Address: 0x1d4f0)
  • CryptCATEnumerateAttr (Ordinal: 38, Address: 0x1e290)
  • CryptCATEnumerateCatAttr (Ordinal: 39, Address: 0x1da30)
  • CryptCATEnumerateMember (Ordinal: 40, Address: 0x1e190)
  • CryptCATFreeSortedMemberInfo (Ordinal: 41, Address: 0x1dc80)
  • CryptCATGetAttrInfo (Ordinal: 42, Address: 0x1dea0)
  • CryptCATGetCatAttrInfo (Ordinal: 43, Address: 0x1d710)
  • CryptCATGetMemberInfo (Ordinal: 44, Address: 0x1dab0)
  • CryptCATHandleFromStore (Ordinal: 45, Address: 0x1d6c0)
  • CryptCATOpen (Ordinal: 46, Address: 0x1d370)
  • CryptCATPersistStore (Ordinal: 47, Address: 0x1d6d0)
  • CryptCATPutAttrInfo (Ordinal: 48, Address: 0x1df50)
  • CryptCATPutCatAttrInfo (Ordinal: 49, Address: 0x1d7b0)
  • CryptCATPutMemberInfo (Ordinal: 50, Address: 0x1dcc0)
  • CryptCATStoreFromHandle (Ordinal: 51, Address: 0x1d6b0)
  • CryptSIPCreateIndirectData (Ordinal: 52, Address: 0x16cb0)
  • CryptSIPGetCaps (Ordinal: 53, Address: 0x16eb0)
  • CryptSIPGetSealedDigest (Ordinal: 54, Address: 0x16f50)
  • CryptSIPGetSignedDataMsg (Ordinal: 55, Address: 0x169c0)
  • CryptSIPPutSignedDataMsg (Ordinal: 56, Address: 0x16af0)
  • CryptSIPRemoveSignedDataMsg (Ordinal: 57, Address: 0x16bf0)
  • CryptSIPVerifyIndirectData (Ordinal: 58, Address: 0x16d80)
  • DllRegisterServer (Ordinal: 59, Address: 0xc020)
  • DllUnregisterServer (Ordinal: 60, Address: 0xc080)
  • DriverCleanupPolicy (Ordinal: 61, Address: 0x2dd60)
  • DriverFinalPolicy (Ordinal: 62, Address: 0x2deb0)
  • DriverInitializePolicy (Ordinal: 63, Address: 0x2db10)
  • FindCertsByIssuer (Ordinal: 64, Address: 0x2f4a0)
  • GetAuthenticodeSha256Hash (Ordinal: 65, Address: 0x2bab0)
  • HTTPSFinalProv (Ordinal: 66, Address: 0x26760)
  • IsCatalogFile (Ordinal: 67, Address: 0x238d0)
  • MsCatConstructHashTag (Ordinal: 68, Address: 0x24320)
  • MsCatFreeHashTag (Ordinal: 69, Address: 0x243e0)
  • OfficeCleanupPolicy (Ordinal: 70, Address: 0x2fac0)
  • OfficeInitializePolicy (Ordinal: 71, Address: 0x2fac0)
  • OpenPersonalTrustDBDialog (Ordinal: 72, Address: 0x292d0)
  • OpenPersonalTrustDBDialogEx (Ordinal: 73, Address: 0x291b0)
  • SoftpubAuthenticode (Ordinal: 74, Address: 0x30b00)
  • SoftpubCheckCert (Ordinal: 75, Address: 0x30b30)
  • SoftpubCleanup (Ordinal: 76, Address: 0x30b50)
  • SoftpubDllRegisterServer (Ordinal: 77, Address: 0x30cb0)
  • SoftpubDllUnregisterServer (Ordinal: 78, Address: 0x30f20)
  • SoftpubDumpStructure (Ordinal: 79, Address: 0x310a0)
  • SoftpubInitialize (Ordinal: 80, Address: 0x32700)
  • SoftpubLoadMessage (Ordinal: 81, Address: 0x32910)
  • SoftpubLoadSignature (Ordinal: 82, Address: 0x269d0)
  • TrustDecode (Ordinal: 83, Address: 0x10e00)
  • TrustFindIssuerCertificate (Ordinal: 84, Address: 0x10710)
  • TrustFreeDecode (Ordinal: 85, Address: 0x10f00)
  • TrustIsCertificateSelfSigned (Ordinal: 86, Address: 0x10a60)
  • TrustOpenStores (Ordinal: 87, Address: 0x10900)
  • WTHelperCertCheckValidSignature (Ordinal: 88, Address: 0x13670)
  • WTHelperCertIsSelfSigned (Ordinal: 89, Address: 0x42b0)
  • WTHelperCheckCertUsage (Ordinal: 90, Address: 0x131e0)
  • WTHelperGetAgencyInfo (Ordinal: 91, Address: 0x130e0)
  • WTHelperGetFileHandle (Ordinal: 92, Address: 0x12e80)
  • WTHelperGetFileHash (Ordinal: 93, Address: 0x11a40)
  • WTHelperGetFileName (Ordinal: 94, Address: 0x12eb0)
  • WTHelperGetKnownUsages (Ordinal: 95, Address: 0x135b0)
  • WTHelperGetProvCertFromChain (Ordinal: 96, Address: 0x12e50)
  • WTHelperGetProvPrivateDataFromChain (Ordinal: 97, Address: 0x12db0)
  • WTHelperGetProvSignerFromChain (Ordinal: 98, Address: 0x12e10)
  • WTHelperIsChainedToMicrosoft (Ordinal: 99, Address: 0x13770)
  • WTHelperIsChainedToMicrosoftFromStateData (Ordinal: 100, Address: 0x136a0)
  • WTHelperIsInRootStore (Ordinal: 101, Address: 0x133b0)
  • WTHelperOpenKnownStores (Ordinal: 102, Address: 0x12f50)
  • WTHelperProvDataFromStateData (Ordinal: 103, Address: 0x13660)
  • WVTAsn1CatMemberInfo2Decode (Ordinal: 104, Address: 0xda50)
  • WVTAsn1CatMemberInfo2Encode (Ordinal: 105, Address: 0xcc50)
  • WVTAsn1CatMemberInfoDecode (Ordinal: 106, Address: 0xd950)
  • WVTAsn1CatMemberInfoEncode (Ordinal: 107, Address: 0xcbf0)
  • WVTAsn1CatNameValueDecode (Ordinal: 108, Address: 0xd820)
  • WVTAsn1CatNameValueEncode (Ordinal: 109, Address: 0xcb80)
  • WVTAsn1IntentToSealAttributeDecode (Ordinal: 110, Address: 0xdb20)
  • WVTAsn1IntentToSealAttributeEncode (Ordinal: 111, Address: 0xcd00)
  • WVTAsn1SealingSignatureAttributeDecode (Ordinal: 112, Address: 0xdbd0)
  • WVTAsn1SealingSignatureAttributeEncode (Ordinal: 113, Address: 0xcd40)
  • WVTAsn1SealingTimestampAttributeDecode (Ordinal: 114, Address: 0xdd10)
  • WVTAsn1SealingTimestampAttributeEncode (Ordinal: 115, Address: 0xce00)
  • WVTAsn1SpcFinancialCriteriaInfoDecode (Ordinal: 116, Address: 0xd1a0)
  • WVTAsn1SpcFinancialCriteriaInfoEncode (Ordinal: 117, Address: 0xc820)
  • WVTAsn1SpcIndirectDataContentDecode (Ordinal: 118, Address: 0xcf40)
  • WVTAsn1SpcIndirectDataContentEncode (Ordinal: 119, Address: 0xc6e0)
  • WVTAsn1SpcLinkDecode (Ordinal: 120, Address: 0xce60)
  • WVTAsn1SpcLinkEncode (Ordinal: 121, Address: 0xc680)
  • WVTAsn1SpcMinimalCriteriaInfoDecode (Ordinal: 122, Address: 0xd0e0)
  • WVTAsn1SpcMinimalCriteriaInfoEncode (Ordinal: 123, Address: 0xc7e0)
  • WVTAsn1SpcPeImageDataDecode (Ordinal: 124, Address: 0xd520)
  • WVTAsn1SpcPeImageDataEncode (Ordinal: 125, Address: 0xca30)
  • WVTAsn1SpcSigInfoDecode (Ordinal: 126, Address: 0xd680)
  • WVTAsn1SpcSigInfoEncode (Ordinal: 127, Address: 0xcb00)
  • WVTAsn1SpcSpAgencyInfoDecode (Ordinal: 128, Address: 0xd0d0)
  • WVTAsn1SpcSpAgencyInfoEncode (Ordinal: 129, Address: 0xc7d0)
  • WVTAsn1SpcSpOpusInfoDecode (Ordinal: 130, Address: 0xd3a0)
  • WVTAsn1SpcSpOpusInfoEncode (Ordinal: 131, Address: 0xc920)
  • WVTAsn1SpcStatementTypeDecode (Ordinal: 132, Address: 0xd260)
  • WVTAsn1SpcStatementTypeEncode (Ordinal: 133, Address: 0xc860)
  • WinVerifyTrust (Ordinal: 134, Address: 0x119a0)
  • WinVerifyTrustEx (Ordinal: 135, Address: 0x118a0)
  • WintrustAddActionID (Ordinal: 136, Address: 0xefc0)
  • WintrustAddDefaultForUsage (Ordinal: 137, Address: 0x11250)
  • WintrustCertificateTrust (Ordinal: 138, Address: 0x96c0)
  • WintrustCryptSIPGetCaps (Ordinal: 139, Address: 0x14610)
  • WintrustCryptSIPGetSealedDigest (Ordinal: 140, Address: 0x146e0)
  • WintrustCryptSIPLoad (Ordinal: 141, Address: 0x14580)
  • WintrustCryptSIPRetrieveSubjectGuid (Ordinal: 142, Address: 0x144a0)
  • WintrustGetDefaultForUsage (Ordinal: 143, Address: 0x11540)
  • WintrustGetRegPolicyFlags (Ordinal: 144, Address: 0x10200)
  • WintrustLoadFunctionPointers (Ordinal: 145, Address: 0xf280)
  • WintrustRemoveActionID (Ordinal: 146, Address: 0xf1e0)
  • WintrustSetDefaultIncludePEPageHashes (Ordinal: 147, Address: 0x179b0)
  • WintrustSetRegPolicyFlags (Ordinal: 148, Address: 0x102c0)
  • mscat32DllRegisterServer (Ordinal: 149, Address: 0x24140)
  • mscat32DllUnregisterServer (Ordinal: 150, Address: 0x24140)
  • mssip32DllRegisterServer (Ordinal: 151, Address: 0x174a0)
  • mssip32DllUnregisterServer (Ordinal: 152, Address: 0x176f0)

Imported DLLs & Functions

ADVAPI32.dll
  • AddAccessAllowedAceEx (Address: 0x180045270)
  • AddAce (Address: 0x180045250)
  • AllocateAndInitializeSid (Address: 0x180045348)
  • ChangeServiceConfigA (Address: 0x180045350)
  • CloseServiceHandle (Address: 0x180045330)
  • ControlService (Address: 0x180045358)
  • ConvertStringSidToSidW (Address: 0x180045248)
  • CopySid (Address: 0x1800452f0)
  • CryptAcquireContextA (Address: 0x1800453a0)
  • CryptAcquireContextW (Address: 0x1800452a8)
  • CryptCreateHash (Address: 0x1800452c0)
  • CryptDestroyHash (Address: 0x1800452d0)
  • CryptGetHashParam (Address: 0x1800452d8)
  • CryptHashData (Address: 0x1800452c8)
  • CryptReleaseContext (Address: 0x1800453a8)
  • CryptSetProvParam (Address: 0x1800452a0)
  • EqualSid (Address: 0x180045328)
  • EventRegister (Address: 0x1800453f0)
  • EventUnregister (Address: 0x1800453f8)
  • EventWrite (Address: 0x1800452b8)
  • FreeSid (Address: 0x180045368)
  • GetAce (Address: 0x180045400)
  • GetAclInformation (Address: 0x180045280)
  • GetFileSecurityW (Address: 0x180045258)
  • GetLengthSid (Address: 0x180045300)
  • GetSecurityDescriptorDacl (Address: 0x180045290)
  • GetSidIdentifierAuthority (Address: 0x180045310)
  • GetSidSubAuthority (Address: 0x1800452e8)
  • GetSidSubAuthorityCount (Address: 0x1800452e0)
  • GetTokenInformation (Address: 0x180045380)
  • InitializeAcl (Address: 0x180045268)
  • InitializeSecurityDescriptor (Address: 0x180045260)
  • IsValidSid (Address: 0x1800452f8)
  • LookupAccountSidW (Address: 0x180045278)
  • OpenProcessToken (Address: 0x180045240)
  • OpenSCManagerW (Address: 0x180045338)
  • OpenServiceW (Address: 0x180045378)
  • OpenThreadToken (Address: 0x180045308)
  • QueryServiceConfigA (Address: 0x180045340)
  • QueryServiceStatus (Address: 0x180045320)
  • RegCloseKey (Address: 0x1800453c0)
  • RegCreateKeyExW (Address: 0x1800453d0)
  • RegDeleteKeyExW (Address: 0x1800453c8)
  • RegEnumKeyExA (Address: 0x180045398)
  • RegEnumValueA (Address: 0x1800452b0)
  • RegGetValueW (Address: 0x180045318)
  • RegOpenKeyExA (Address: 0x180045390)
  • RegOpenKeyExW (Address: 0x1800453e0)
  • RegQueryInfoKeyA (Address: 0x180045388)
  • RegQueryValueExA (Address: 0x1800453b0)
  • RegQueryValueExW (Address: 0x1800453e8)
  • RegSetValueExA (Address: 0x1800453b8)
  • RegSetValueExW (Address: 0x1800453d8)
  • SetFileSecurityW (Address: 0x180045288)
  • SetSecurityDescriptorDacl (Address: 0x180045298)
  • StartServiceA (Address: 0x180045360)
  • StartServiceW (Address: 0x180045370)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x180045c38)
  • BCryptCreateHash (Address: 0x180045c58)
  • BCryptDestroyHash (Address: 0x180045c48)
  • BCryptDestroyKey (Address: 0x180045c30)
  • BCryptFinishHash (Address: 0x180045c40)
  • BCryptGetProperty (Address: 0x180045c60)
  • BCryptHashData (Address: 0x180045c50)
  • BCryptOpenAlgorithmProvider (Address: 0x180045c70)
  • BCryptVerifySignature (Address: 0x180045c68)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x1800454f8)
  • CertAddStoreToCollection (Address: 0x1800455e0)
  • CertCloseStore (Address: 0x180045608)
  • CertCompareCertificate (Address: 0x180045570)
  • CertCompareCertificateName (Address: 0x1800455c8)
  • CertCompareIntegerBlob (Address: 0x1800456b0)
  • CertComparePublicKeyInfo (Address: 0x180045620)
  • CertControlStore (Address: 0x180045688)
  • CertCreateCertificateChainEngine (Address: 0x180045628)
  • CertCreateCertificateContext (Address: 0x180045538)
  • CertCreateContext (Address: 0x1800454a8)
  • CertCreateCTLContext (Address: 0x180045520)
  • CertDeleteCertificateFromStore (Address: 0x1800454f0)
  • CertDuplicateCertificateContext (Address: 0x180045648)
  • CertDuplicateStore (Address: 0x180045640)
  • CertEnumCertificatesInStore (Address: 0x180045500)
  • CertFindAttribute (Address: 0x180045470)
  • CertFindCertificateInStore (Address: 0x180045420)
  • CertFindExtension (Address: 0x1800455d8)
  • CertFindRDNAttr (Address: 0x180045568)
  • CertFindSubjectInCTL (Address: 0x180045510)
  • CertFindSubjectInSortedCTL (Address: 0x180045490)
  • CertFreeCertificateChain (Address: 0x180045610)
  • CertFreeCertificateChainEngine (Address: 0x1800455f8)
  • CertFreeCertificateContext (Address: 0x180045638)
  • CertFreeCTLContext (Address: 0x180045630)
  • CertGetCertificateChain (Address: 0x1800455f0)
  • CertGetCertificateContextProperty (Address: 0x180045430)
  • CertGetEnhancedKeyUsage (Address: 0x1800455e8)
  • CertGetIssuerCertificateFromStore (Address: 0x180045698)
  • CertGetNameStringW (Address: 0x180045528)
  • CertGetSubjectCertificateFromStore (Address: 0x1800454e8)
  • CertOIDToAlgId (Address: 0x180045410)
  • CertOpenStore (Address: 0x180045618)
  • CertOpenSystemStoreA (Address: 0x180045540)
  • CertRDNValueToStrW (Address: 0x180045560)
  • CertSetCertificateContextProperty (Address: 0x180045550)
  • CertVerifyCertificateChainPolicy (Address: 0x180045428)
  • CertVerifySubjectCertificateContext (Address: 0x1800455d0)
  • CertVerifyTimeValidity (Address: 0x1800456a8)
  • CertVerifyValidityNesting (Address: 0x1800456a0)
  • CryptDecodeObject (Address: 0x180045690)
  • CryptDecodeObjectEx (Address: 0x1800455c0)
  • CryptEncodeObject (Address: 0x180045468)
  • CryptEncodeObjectEx (Address: 0x180045478)
  • CryptEnumOIDInfo (Address: 0x180045438)
  • CryptExportPublicKeyInfo (Address: 0x180045548)
  • CryptFindOIDInfo (Address: 0x180045460)
  • CryptHashCertificate2 (Address: 0x180045558)
  • CryptImportPublicKeyInfoEx2 (Address: 0x1800454e0)
  • CryptInstallOIDFunctionAddress (Address: 0x180045670)
  • CryptMemFree (Address: 0x1800454c8)
  • CryptMsgClose (Address: 0x1800454b8)
  • CryptMsgControl (Address: 0x1800454d0)
  • CryptMsgDuplicate (Address: 0x1800454b0)
  • CryptMsgEncodeAndSignCTL (Address: 0x180045578)
  • CryptMsgGetParam (Address: 0x1800454d8)
  • CryptMsgOpenToDecode (Address: 0x180045518)
  • CryptMsgUpdate (Address: 0x180045508)
  • CryptMsgVerifyCountersignatureEncodedEx (Address: 0x1800454c0)
  • CryptQueryObject (Address: 0x180045600)
  • CryptRegisterOIDFunction (Address: 0x180045668)
  • CryptSIPAddProvider (Address: 0x180045458)
  • CryptSIPLoad (Address: 0x180045448)
  • CryptSIPRemoveProvider (Address: 0x180045450)
  • CryptSIPRetrieveSubjectGuid (Address: 0x180045440)
  • CryptSIPRetrieveSubjectGuidForCatalogFile (Address: 0x180045498)
  • CryptStringToBinaryW (Address: 0x180045488)
  • CryptUnregisterOIDFunction (Address: 0x180045658)
  • CryptVerifyMessageSignature (Address: 0x180045530)
  • I_CryptCreateLruCache (Address: 0x180045590)
  • I_CryptCreateLruEntry (Address: 0x180045598)
  • I_CryptFindLruEntryData (Address: 0x1800455a8)
  • I_CryptFlushLruCache (Address: 0x180045580)
  • I_CryptFreeLruCache (Address: 0x180045588)
  • I_CryptGetAsn1Decoder (Address: 0x180045680)
  • I_CryptGetAsn1Encoder (Address: 0x180045650)
  • I_CryptGetDefaultCryptProv (Address: 0x180045480)
  • I_CryptGetTls (Address: 0x1800454a0)
  • I_CryptInsertLruEntry (Address: 0x1800455a0)
  • I_CryptInstallAsn1Module (Address: 0x180045660)
  • I_CryptReadTrustedPublisherDWORDValueFromRegistry (Address: 0x180045418)
  • I_CryptReleaseLruEntry (Address: 0x1800455b0)
  • I_CryptRemoveLruEntry (Address: 0x1800455b8)
  • I_CryptUninstallAsn1Module (Address: 0x180045678)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x180045760)
  • AcquireSRWLockShared (Address: 0x1800456e8)
  • CloseHandle (Address: 0x180045718)
  • CloseThreadpoolTimer (Address: 0x180045768)
  • CompareFileTime (Address: 0x1800458d0)
  • CreateDirectoryW (Address: 0x180045888)
  • CreateEventA (Address: 0x180045978)
  • CreateFileMappingA (Address: 0x1800459d0)
  • CreateFileMappingW (Address: 0x180045998)
  • CreateFileW (Address: 0x180045800)
  • CreateMutexA (Address: 0x180045980)
  • CreateMutexExW (Address: 0x1800456e0)
  • CreateSemaphoreExW (Address: 0x180045898)
  • CreateThreadpoolTimer (Address: 0x1800456c8)
  • DebugBreak (Address: 0x180045708)
  • DeleteCriticalSection (Address: 0x1800458b8)
  • DisableThreadLibraryCalls (Address: 0x180045730)
  • DuplicateHandle (Address: 0x1800459a8)
  • EnterCriticalSection (Address: 0x180045878)
  • ExpandEnvironmentStringsA (Address: 0x180045840)
  • ExpandEnvironmentStringsW (Address: 0x180045a28)
  • FileTimeToSystemTime (Address: 0x180045950)
  • FindClose (Address: 0x1800459f0)
  • FindFirstFileW (Address: 0x1800459e0)
  • FindNextFileW (Address: 0x1800459e8)
  • FindResourceExA (Address: 0x1800457a8)
  • FindResourceW (Address: 0x1800459a0)
  • FlushViewOfFile (Address: 0x180045910)
  • FormatMessageW (Address: 0x1800457c8)
  • FreeLibrary (Address: 0x180045740)
  • FreeResource (Address: 0x180045798)
  • GetCurrentDirectoryW (Address: 0x180045a10)
  • GetCurrentProcess (Address: 0x180045868)
  • GetCurrentProcessId (Address: 0x1800456f0)
  • GetCurrentThread (Address: 0x180045960)
  • GetCurrentThreadId (Address: 0x1800457e8)
  • GetDateFormatA (Address: 0x180045928)
  • GetEnvironmentVariableA (Address: 0x180045720)
  • GetFileAttributesExW (Address: 0x180045808)
  • GetFileAttributesW (Address: 0x1800459f8)
  • GetFileInformationByHandle (Address: 0x180045a20)
  • GetFileSize (Address: 0x180045938)
  • GetFileSizeEx (Address: 0x1800459b0)
  • GetLastError (Address: 0x180045780)
  • GetLocalTime (Address: 0x180045930)
  • GetModuleFileNameA (Address: 0x1800458a0)
  • GetModuleFileNameW (Address: 0x180045850)
  • GetModuleHandleA (Address: 0x180045968)
  • GetModuleHandleExA (Address: 0x1800457a0)
  • GetModuleHandleExW (Address: 0x180045860)
  • GetModuleHandleW (Address: 0x180045700)
  • GetPrivateProfileStringW (Address: 0x180045858)
  • GetProcAddress (Address: 0x1800456d8)
  • GetProcessHeap (Address: 0x1800456f8)
  • GetSystemDirectoryW (Address: 0x180045a00)
  • GetSystemInfo (Address: 0x1800459c8)
  • GetSystemTimeAsFileTime (Address: 0x180045810)
  • GetTickCount (Address: 0x1800458f8)
  • GetTickCount64 (Address: 0x180045a08)
  • GetTimeFormatA (Address: 0x180045920)
  • HeapAlloc (Address: 0x1800456d0)
  • HeapFree (Address: 0x180045880)
  • InitializeCriticalSection (Address: 0x1800458c0)
  • InitializeCriticalSectionEx (Address: 0x180045830)
  • IsDebuggerPresent (Address: 0x180045710)
  • LeaveCriticalSection (Address: 0x180045838)
  • LoadLibraryA (Address: 0x1800457c0)
  • LoadLibraryExA (Address: 0x180045828)
  • LoadLibraryExW (Address: 0x180045990)
  • LoadLibraryW (Address: 0x180045750)
  • LoadResource (Address: 0x1800457b8)
  • LocalAlloc (Address: 0x180045890)
  • LocalFree (Address: 0x1800458b0)
  • LocalReAlloc (Address: 0x180045940)
  • LockResource (Address: 0x1800457b0)
  • lstrlenA (Address: 0x180045848)
  • lstrlenW (Address: 0x180045970)
  • MapViewOfFile (Address: 0x1800459d8)
  • MultiByteToWideChar (Address: 0x1800457d0)
  • OpenSemaphoreW (Address: 0x180045738)
  • OutputDebugStringA (Address: 0x180045908)
  • OutputDebugStringW (Address: 0x180045770)
  • QueryPerformanceCounter (Address: 0x1800458f0)
  • ReadFile (Address: 0x1800457e0)
  • ReleaseMutex (Address: 0x1800457d8)
  • ReleaseSemaphore (Address: 0x180045870)
  • ReleaseSRWLockExclusive (Address: 0x180045778)
  • ReleaseSRWLockShared (Address: 0x1800456c0)
  • ResetEvent (Address: 0x180045788)
  • SetEndOfFile (Address: 0x180045918)
  • SetEvent (Address: 0x180045728)
  • SetFileAttributesW (Address: 0x1800457f0)
  • SetFilePointer (Address: 0x1800457f8)
  • SetFilePointerEx (Address: 0x1800459b8)
  • SetLastError (Address: 0x1800458c8)
  • SetThreadpoolTimer (Address: 0x180045958)
  • SetUnhandledExceptionFilter (Address: 0x1800458e0)
  • SizeofResource (Address: 0x180045790)
  • Sleep (Address: 0x1800458a8)
  • SystemTimeToFileTime (Address: 0x180045948)
  • TerminateProcess (Address: 0x1800458e8)
  • UnhandledExceptionFilter (Address: 0x1800458d8)
  • UnmapViewOfFile (Address: 0x1800459c0)
  • VirtualUnlock (Address: 0x180045a18)
  • WaitForMultipleObjectsEx (Address: 0x180045988)
  • WaitForSingleObject (Address: 0x180045818)
  • WaitForSingleObjectEx (Address: 0x180045758)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180045820)
  • WideCharToMultiByte (Address: 0x180045748)
  • WriteFile (Address: 0x180045900)
MSASN1.dll
  • ASN1_CloseModule (Address: 0x180045b90)
  • ASN1_CreateModule (Address: 0x180045a68)
  • ASN1_Decode (Address: 0x180045a40)
  • ASN1_Encode (Address: 0x180045a50)
  • ASN1_FreeDecoded (Address: 0x180045a58)
  • ASN1_FreeEncoded (Address: 0x180045a48)
  • ASN1_SetEncoderOption (Address: 0x180045a38)
  • ASN1BERDecBitString (Address: 0x180045bc8)
  • ASN1BERDecBool (Address: 0x180045b28)
  • ASN1BERDecChar16String (Address: 0x180045ba8)
  • ASN1BERDecCharString (Address: 0x180045a60)
  • ASN1BERDecEndOfContents (Address: 0x180045b20)
  • ASN1BERDecExplicitTag (Address: 0x180045ad8)
  • ASN1BERDecNotEndOfContents (Address: 0x180045b10)
  • ASN1BERDecNull (Address: 0x180045a70)
  • ASN1BERDecObjectIdentifier2 (Address: 0x180045b98)
  • ASN1BERDecOctetString (Address: 0x180045b08)
  • ASN1BERDecOctetString2 (Address: 0x180045a80)
  • ASN1BERDecOpenType2 (Address: 0x180045ab0)
  • ASN1BERDecPeekTag (Address: 0x180045ae0)
  • ASN1BERDecS32Val (Address: 0x180045bb8)
  • ASN1BERDecU32Val (Address: 0x180045a78)
  • ASN1BERDecUTCTime (Address: 0x180045a98)
  • ASN1BEREncBitString (Address: 0x180045af8)
  • ASN1BEREncBool (Address: 0x180045b78)
  • ASN1BEREncChar16String (Address: 0x180045a90)
  • ASN1BEREncCharString (Address: 0x180045b60)
  • ASN1BEREncEndOfContents (Address: 0x180045b68)
  • ASN1BEREncExplicitTag (Address: 0x180045b18)
  • ASN1BEREncNull (Address: 0x180045b80)
  • ASN1BEREncObjectIdentifier2 (Address: 0x180045b58)
  • ASN1BEREncOctetString (Address: 0x180045b88)
  • ASN1BEREncOpenType (Address: 0x180045bb0)
  • ASN1BEREncRemoveZeroBits (Address: 0x180045ab8)
  • ASN1BEREncS32 (Address: 0x180045b48)
  • ASN1BEREncU32 (Address: 0x180045b00)
  • ASN1bitstring_cmp (Address: 0x180045ac0)
  • ASN1bitstring_free (Address: 0x180045a88)
  • ASN1CEREncBeginBlk (Address: 0x180045aa0)
  • ASN1CEREncEndBlk (Address: 0x180045aa8)
  • ASN1CEREncFlushBlkElement (Address: 0x180045b50)
  • ASN1CEREncNewBlkElement (Address: 0x180045b70)
  • ASN1CEREncUTCTime (Address: 0x180045af0)
  • ASN1char16string_free (Address: 0x180045ae8)
  • ASN1charstring_free (Address: 0x180045bc0)
  • ASN1DecRealloc (Address: 0x180045b38)
  • ASN1DecSetError (Address: 0x180045ad0)
  • ASN1EncSetError (Address: 0x180045b40)
  • ASN1Free (Address: 0x180045ba0)
  • ASN1objectidentifier_free (Address: 0x180045b30)
  • ASN1octetstring_free (Address: 0x180045ac8)
msvcrt.dll
  • __C_specific_handler (Address: 0x180045d68)
  • __CxxFrameHandler3 (Address: 0x180045ca8)
  • __dllonexit (Address: 0x180045db0)
  • _amsg_exit (Address: 0x180045d48)
  • _callnewh (Address: 0x180045d10)
  • _errno (Address: 0x180045d28)
  • _initterm (Address: 0x180045d40)
  • _itow_s (Address: 0x180045d70)
  • _lock (Address: 0x180045cd0)
  • _ltoa (Address: 0x180045ca0)
  • _memicmp (Address: 0x180045da0)
  • _onexit (Address: 0x180045c80)
  • _purecall (Address: 0x180045d90)
  • _stricmp (Address: 0x180045cd8)
  • _unlock (Address: 0x180045c88)
  • _vsnprintf (Address: 0x180045c98)
  • _vsnwprintf (Address: 0x180045da8)
  • _wcsicmp (Address: 0x180045d78)
  • _wcsnicmp (Address: 0x180045ce0)
  • _wtol (Address: 0x180045ce8)
  • _XcptFilter (Address: 0x180045d50)
  • atol (Address: 0x180045d80)
  • bsearch (Address: 0x180045d08)
  • free (Address: 0x180045d20)
  • malloc (Address: 0x180045d18)
  • memcmp (Address: 0x180045d60)
  • memcpy (Address: 0x180045d58)
  • memcpy_s (Address: 0x180045d98)
  • memmove (Address: 0x180045d38)
  • memmove_s (Address: 0x180045d88)
  • memset (Address: 0x180045d00)
  • qsort (Address: 0x180045cb8)
  • qsort_s (Address: 0x180045cf8)
  • strcmp (Address: 0x180045c90)
  • towupper (Address: 0x180045cf0)
  • wcscat_s (Address: 0x180045d30)
  • wcschr (Address: 0x180045cc0)
  • wcscmp (Address: 0x180045db8)
  • wcsrchr (Address: 0x180045cb0)
  • wcstol (Address: 0x180045cc8)
ntdll.dll
  • LdrResSearchResource (Address: 0x180045e48)
  • NtQuerySystemInformation (Address: 0x180045e18)
  • RtlAllocateHeap (Address: 0x180045de8)
  • RtlAppendUnicodeStringToString (Address: 0x180045dd0)
  • RtlCaptureContext (Address: 0x180045e40)
  • RtlCompareUnicodeString (Address: 0x180045dd8)
  • RtlCreateUnicodeString (Address: 0x180045df8)
  • RtlEqualUnicodeString (Address: 0x180045dc8)
  • RtlFreeHeap (Address: 0x180045e28)
  • RtlFreeUnicodeString (Address: 0x180045e10)
  • RtlGetVersion (Address: 0x180045df0)
  • RtlImageNtHeaderEx (Address: 0x180045e00)
  • RtlInitUnicodeString (Address: 0x180045e08)
  • RtlLookupFunctionEntry (Address: 0x180045e38)
  • RtlNtStatusToDosError (Address: 0x180045e20)
  • RtlStringFromGUID (Address: 0x180045de0)
  • RtlVirtualUnwind (Address: 0x180045e30)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x180045c00)
  • RpcBindingFree (Address: 0x180045bf8)
  • RpcBindingFromStringBindingW (Address: 0x180045c08)
  • RpcBindingSetAuthInfoExW (Address: 0x180045be0)
  • RpcEpResolveBinding (Address: 0x180045bf0)
  • RpcStringBindingComposeW (Address: 0x180045bd8)
  • RpcStringFreeW (Address: 0x180045be8)
USER32.dll
  • GetDesktopWindow (Address: 0x180045c20)
  • MessageBoxA (Address: 0x180045c18)