wintrust.dll

Description: Microsoft Trust Verification APIs

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.26100.4654

Architecture: Unknown (0xaa64)

Operating System: Windows NT

SHA256: 8584fd67654a754514c0da3934ef6537

File Size: 443.4 KB

Uploaded At: Dec. 3, 2025, 2:38 a.m.

Views: 10

Exported Functions

  • CryptCATVerifyMember (Ordinal: 1, Address: 0x26f60)
  • CryptSIPGetInfo (Ordinal: 2, Address: 0x20360)
  • CryptSIPGetRegWorkingFlags (Ordinal: 3, Address: 0x20230)
  • GenericChainCertificateTrust (Ordinal: 4, Address: 0x2f260)
  • GenericChainFinalProv (Ordinal: 5, Address: 0x2f5a0)
  • HTTPSCertificateTrust (Ordinal: 6, Address: 0x2fb80)
  • SetMessageDigestInfo (Ordinal: 7, Address: 0x31890)
  • SoftpubDefCertInit (Ordinal: 8, Address: 0x329f0)
  • SoftpubFreeDefUsageCallData (Ordinal: 9, Address: 0x32af0)
  • SoftpubLoadDefUsageCallData (Ordinal: 10, Address: 0x32b50)
  • WTHelperCertFindIssuerCertificate (Ordinal: 11, Address: 0x7350)
  • AddPersonalTrustDBPages (Ordinal: 12, Address: 0x32c80)
  • CatalogCompactHashDatabase (Ordinal: 13, Address: 0x22c60)
  • ConfigCiFinalPolicy (Ordinal: 14, Address: 0x36520)
  • ConfigCiPackageFamilyNameCheck (Ordinal: 15, Address: 0x36d40)
  • CryptCATAdminAcquireContext (Ordinal: 16, Address: 0x293e0)
  • CryptCATAdminAcquireContext2 (Ordinal: 17, Address: 0x293f0)
  • CryptCATAdminAddCatalog (Ordinal: 18, Address: 0x294b0)
  • CryptCATAdminCalcHashFromFileHandle (Ordinal: 19, Address: 0x297f0)
  • CryptCATAdminCalcHashFromFileHandle2 (Ordinal: 20, Address: 0x29860)
  • CryptCATAdminEnumCatalogFromHash (Ordinal: 21, Address: 0x298e0)
  • CryptCATAdminPauseServiceForBackup (Ordinal: 22, Address: 0x29be0)
  • CryptCATAdminReleaseCatalogContext (Ordinal: 23, Address: 0x29c40)
  • CryptCATAdminReleaseContext (Ordinal: 24, Address: 0x29d10)
  • CryptCATAdminRemoveCatalog (Ordinal: 25, Address: 0x29db0)
  • CryptCATAdminResolveCatalogPath (Ordinal: 26, Address: 0x29e10)
  • CryptCATAllocSortedMemberInfo (Ordinal: 27, Address: 0x26fc0)
  • CryptCATCDFClose (Ordinal: 28, Address: 0x2ba10)
  • CryptCATCDFEnumAttributes (Ordinal: 29, Address: 0x2bad0)
  • CryptCATCDFEnumAttributesWithCDFTag (Ordinal: 30, Address: 0x2bae0)
  • CryptCATCDFEnumCatAttributes (Ordinal: 31, Address: 0x2bb30)
  • CryptCATCDFEnumMembers (Ordinal: 32, Address: 0x2bc60)
  • CryptCATCDFEnumMembersByCDFTag (Ordinal: 33, Address: 0x2bcd0)
  • CryptCATCDFEnumMembersByCDFTagEx (Ordinal: 34, Address: 0x2bd20)
  • CryptCATCDFOpen (Ordinal: 35, Address: 0x2bd70)
  • CryptCATCatalogInfoFromContext (Ordinal: 36, Address: 0x29f60)
  • CryptCATClose (Ordinal: 37, Address: 0x270b0)
  • CryptCATEnumerateAttr (Ordinal: 38, Address: 0x27270)
  • CryptCATEnumerateCatAttr (Ordinal: 39, Address: 0x27310)
  • CryptCATEnumerateMember (Ordinal: 40, Address: 0x273b0)
  • CryptCATFreeSortedMemberInfo (Ordinal: 41, Address: 0x274b0)
  • CryptCATGetAttrInfo (Ordinal: 42, Address: 0x27500)
  • CryptCATGetCatAttrInfo (Ordinal: 43, Address: 0x275e0)
  • CryptCATGetMemberInfo (Ordinal: 44, Address: 0x276a0)
  • CryptCATHandleFromStore (Ordinal: 45, Address: 0x54f0)
  • CryptCATOpen (Ordinal: 46, Address: 0x27810)
  • CryptCATPersistStore (Ordinal: 47, Address: 0x27970)
  • CryptCATPutAttrInfo (Ordinal: 48, Address: 0x279c0)
  • CryptCATPutCatAttrInfo (Ordinal: 49, Address: 0x27ba0)
  • CryptCATPutMemberInfo (Ordinal: 50, Address: 0x27dd0)
  • CryptCATStoreFromHandle (Ordinal: 51, Address: 0x54f0)
  • CryptSIPCreateIndirectData (Ordinal: 52, Address: 0x207d0)
  • CryptSIPGetCaps (Ordinal: 53, Address: 0x208a0)
  • CryptSIPGetSealedDigest (Ordinal: 54, Address: 0x20950)
  • CryptSIPGetSignedDataMsg (Ordinal: 55, Address: 0x20a20)
  • CryptSIPPutSignedDataMsg (Ordinal: 56, Address: 0x20b40)
  • CryptSIPRemoveSignedDataMsg (Ordinal: 57, Address: 0x20c40)
  • CryptSIPVerifyIndirectData (Ordinal: 58, Address: 0x20d10)
  • DllRegisterServer (Ordinal: 59, Address: 0x14d10)
  • DllUnregisterServer (Ordinal: 60, Address: 0x14d70)
  • DriverCleanupPolicy (Ordinal: 61, Address: 0x37d90)
  • DriverFinalPolicy (Ordinal: 62, Address: 0x37e60)
  • DriverInitializePolicy (Ordinal: 63, Address: 0x38350)
  • FindCertsByIssuer (Ordinal: 64, Address: 0x39140)
  • GetAuthenticodeSha256Hash (Ordinal: 65, Address: 0x37010)
  • HTTPSFinalProv (Ordinal: 66, Address: 0x2fff0)
  • IsCatalogFile (Ordinal: 67, Address: 0x2d5b0)
  • MsCatConstructHashTag (Ordinal: 68, Address: 0x2de90)
  • MsCatFreeHashTag (Ordinal: 69, Address: 0x2df50)
  • OfficeCleanupPolicy (Ordinal: 70, Address: 0x31890)
  • OfficeInitializePolicy (Ordinal: 71, Address: 0x31890)
  • OpenPersonalTrustDBDialog (Ordinal: 72, Address: 0x32cb0)
  • OpenPersonalTrustDBDialogEx (Ordinal: 73, Address: 0x32cc0)
  • SoftpubAuthenticode (Ordinal: 74, Address: 0x3a700)
  • SoftpubCheckCert (Ordinal: 75, Address: 0x3a740)
  • SoftpubCleanup (Ordinal: 76, Address: 0x3a760)
  • SoftpubDllRegisterServer (Ordinal: 77, Address: 0x3a910)
  • SoftpubDllUnregisterServer (Ordinal: 78, Address: 0x3ab60)
  • SoftpubDumpStructure (Ordinal: 79, Address: 0x3b720)
  • SoftpubInitialize (Ordinal: 80, Address: 0x3c270)
  • SoftpubLoadMessage (Ordinal: 81, Address: 0x3dec0)
  • SoftpubLoadSignature (Ordinal: 82, Address: 0x32890)
  • TrustDecode (Ordinal: 83, Address: 0x198e0)
  • TrustFindIssuerCertificate (Ordinal: 84, Address: 0x199f0)
  • TrustFreeDecode (Ordinal: 85, Address: 0x19c30)
  • TrustIsCertificateSelfSigned (Ordinal: 86, Address: 0x19c70)
  • TrustOpenStores (Ordinal: 87, Address: 0x19d10)
  • WTHelperCertCheckValidSignature (Ordinal: 88, Address: 0x1c7c0)
  • WTHelperCertIsSelfSigned (Ordinal: 89, Address: 0x7370)
  • WTHelperCheckCertUsage (Ordinal: 90, Address: 0x1c7f0)
  • WTHelperGetAgencyInfo (Ordinal: 91, Address: 0x1c950)
  • WTHelperGetFileHandle (Ordinal: 92, Address: 0x1ca40)
  • WTHelperGetFileHash (Ordinal: 93, Address: 0x1c4f0)
  • WTHelperGetFileName (Ordinal: 94, Address: 0x1caa0)
  • WTHelperGetKnownUsages (Ordinal: 95, Address: 0x1cb50)
  • WTHelperGetProvCertFromChain (Ordinal: 96, Address: 0x1cc10)
  • WTHelperGetProvPrivateDataFromChain (Ordinal: 97, Address: 0x1cc40)
  • WTHelperGetProvSignerFromChain (Ordinal: 98, Address: 0x1ccd0)
  • WTHelperIsChainedToMicrosoft (Ordinal: 99, Address: 0x1cd20)
  • WTHelperIsChainedToMicrosoftFromStateData (Ordinal: 100, Address: 0x1cec0)
  • WTHelperIsInRootStore (Ordinal: 101, Address: 0x1cfb0)
  • WTHelperOpenKnownStores (Ordinal: 102, Address: 0x1d0d0)
  • WTHelperProvDataFromStateData (Ordinal: 103, Address: 0x54f0)
  • WVTAsn1CatMemberInfo2Decode (Ordinal: 104, Address: 0x15db0)
  • WVTAsn1CatMemberInfo2Encode (Ordinal: 105, Address: 0x15e90)
  • WVTAsn1CatMemberInfoDecode (Ordinal: 106, Address: 0x15f50)
  • WVTAsn1CatMemberInfoEncode (Ordinal: 107, Address: 0x16060)
  • WVTAsn1CatNameValueDecode (Ordinal: 108, Address: 0x160d0)
  • WVTAsn1CatNameValueEncode (Ordinal: 109, Address: 0x16210)
  • WVTAsn1IntentToSealAttributeDecode (Ordinal: 110, Address: 0x16290)
  • WVTAsn1IntentToSealAttributeEncode (Ordinal: 111, Address: 0x16350)
  • WVTAsn1SealingSignatureAttributeDecode (Ordinal: 112, Address: 0x163a0)
  • WVTAsn1SealingSignatureAttributeEncode (Ordinal: 113, Address: 0x164c0)
  • WVTAsn1SealingTimestampAttributeDecode (Ordinal: 114, Address: 0x16570)
  • WVTAsn1SealingTimestampAttributeEncode (Ordinal: 115, Address: 0x16680)
  • WVTAsn1SpcFinancialCriteriaInfoDecode (Ordinal: 116, Address: 0x166e0)
  • WVTAsn1SpcFinancialCriteriaInfoEncode (Ordinal: 117, Address: 0x167a0)
  • WVTAsn1SpcIndirectDataContentDecode (Ordinal: 118, Address: 0x167e0)
  • WVTAsn1SpcIndirectDataContentEncode (Ordinal: 119, Address: 0x169c0)
  • WVTAsn1SpcLinkDecode (Ordinal: 120, Address: 0x16aa0)
  • WVTAsn1SpcLinkEncode (Ordinal: 121, Address: 0x16b90)
  • WVTAsn1SpcMinimalCriteriaInfoDecode (Ordinal: 122, Address: 0x16bf0)
  • WVTAsn1SpcMinimalCriteriaInfoEncode (Ordinal: 123, Address: 0x16cb0)
  • WVTAsn1SpcPeImageDataDecode (Ordinal: 124, Address: 0x16cf0)
  • WVTAsn1SpcPeImageDataEncode (Ordinal: 125, Address: 0x16ed0)
  • WVTAsn1SpcSigInfoDecode (Ordinal: 126, Address: 0x16f90)
  • WVTAsn1SpcSigInfoEncode (Ordinal: 127, Address: 0x170a0)
  • WVTAsn1SpcSpAgencyInfoDecode (Ordinal: 128, Address: 0x17110)
  • WVTAsn1SpcSpAgencyInfoEncode (Ordinal: 129, Address: 0x173e0)
  • WVTAsn1SpcSpOpusInfoDecode (Ordinal: 130, Address: 0x175e0)
  • WVTAsn1SpcSpOpusInfoEncode (Ordinal: 131, Address: 0x17770)
  • WVTAsn1SpcStatementTypeDecode (Ordinal: 132, Address: 0x17890)
  • WVTAsn1SpcStatementTypeEncode (Ordinal: 133, Address: 0x179c0)
  • WinVerifyTrust (Ordinal: 134, Address: 0x1c590)
  • WinVerifyTrustEx (Ordinal: 135, Address: 0x1c640)
  • WintrustAddActionID (Ordinal: 136, Address: 0x17b40)
  • WintrustAddDefaultForUsage (Ordinal: 137, Address: 0x19e90)
  • WintrustCertificateTrust (Ordinal: 138, Address: 0x13cf0)
  • WintrustCryptSIPGetCaps (Ordinal: 139, Address: 0x1ddd0)
  • WintrustCryptSIPGetSealedDigest (Ordinal: 140, Address: 0x1de90)
  • WintrustCryptSIPLoad (Ordinal: 141, Address: 0x1df70)
  • WintrustCryptSIPRetrieveSubjectGuid (Ordinal: 142, Address: 0x1e000)
  • WintrustGetDefaultForUsage (Ordinal: 143, Address: 0x1a160)
  • WintrustGetRegPolicyFlags (Ordinal: 144, Address: 0x18d50)
  • WintrustLoadFunctionPointers (Ordinal: 145, Address: 0x18540)
  • WintrustRemoveActionID (Ordinal: 146, Address: 0x17d50)
  • WintrustSetDefaultIncludePEPageHashes (Ordinal: 147, Address: 0x22b40)
  • WintrustSetRegPolicyFlags (Ordinal: 148, Address: 0x18e20)
  • mscat32DllRegisterServer (Ordinal: 149, Address: 0x22c00)
  • mscat32DllUnregisterServer (Ordinal: 150, Address: 0x22c00)
  • mssip32DllRegisterServer (Ordinal: 151, Address: 0x20e70)
  • mssip32DllUnregisterServer (Ordinal: 152, Address: 0x210d0)

Imported DLLs & Functions

ADVAPI32.dll
  • AddAccessAllowedAceEx (Address: 0x180052028)
  • AddAce (Address: 0x180052008)
  • AdjustTokenPrivileges (Address: 0x1800520c0)
  • AllocateAndInitializeSid (Address: 0x180052108)
  • ChangeServiceConfigA (Address: 0x180052110)
  • CloseServiceHandle (Address: 0x1800520f0)
  • ControlService (Address: 0x180052118)
  • ConvertStringSidToSidW (Address: 0x180052078)
  • CopySid (Address: 0x180052060)
  • CryptAcquireContextA (Address: 0x180052160)
  • CryptAcquireContextW (Address: 0x1800521e0)
  • CryptCreateHash (Address: 0x1800521c8)
  • CryptDestroyHash (Address: 0x180052040)
  • CryptGetHashParam (Address: 0x180052048)
  • CryptHashData (Address: 0x180052038)
  • CryptReleaseContext (Address: 0x180052168)
  • CryptSetProvParam (Address: 0x1800521e8)
  • DuplicateTokenEx (Address: 0x1800520b0)
  • EqualSid (Address: 0x1800520e8)
  • EventRegister (Address: 0x1800521b0)
  • EventUnregister (Address: 0x1800521b8)
  • EventWrite (Address: 0x1800521d0)
  • EventWriteTransfer (Address: 0x1800521c0)
  • FreeSid (Address: 0x180052128)
  • GetAce (Address: 0x180052080)
  • GetAclInformation (Address: 0x180052088)
  • GetFileSecurityW (Address: 0x180052010)
  • GetLengthSid (Address: 0x180052070)
  • GetSecurityDescriptorDacl (Address: 0x180052098)
  • GetSidIdentifierAuthority (Address: 0x1800520d0)
  • GetSidSubAuthority (Address: 0x180052058)
  • GetSidSubAuthorityCount (Address: 0x180052050)
  • GetTokenInformation (Address: 0x180052140)
  • InitializeAcl (Address: 0x180052020)
  • InitializeSecurityDescriptor (Address: 0x180052018)
  • IsValidSid (Address: 0x180052068)
  • LookupAccountSidW (Address: 0x180052030)
  • LookupPrivilegeValueW (Address: 0x1800520c8)
  • OpenProcessToken (Address: 0x180052000)
  • OpenSCManagerW (Address: 0x1800520f8)
  • OpenServiceW (Address: 0x180052138)
  • OpenThreadToken (Address: 0x1800520a8)
  • QueryServiceConfigA (Address: 0x180052100)
  • QueryServiceStatus (Address: 0x1800520e0)
  • RegCloseKey (Address: 0x180052180)
  • RegCreateKeyExW (Address: 0x180052190)
  • RegDeleteKeyExW (Address: 0x180052188)
  • RegEnumKeyExA (Address: 0x180052158)
  • RegEnumValueA (Address: 0x1800521d8)
  • RegGetValueW (Address: 0x1800520d8)
  • RegOpenKeyExA (Address: 0x180052150)
  • RegOpenKeyExW (Address: 0x1800521a0)
  • RegQueryInfoKeyA (Address: 0x180052148)
  • RegQueryValueExA (Address: 0x180052170)
  • RegQueryValueExW (Address: 0x1800521a8)
  • RegSetValueExA (Address: 0x180052178)
  • RegSetValueExW (Address: 0x180052198)
  • SetFileSecurityW (Address: 0x180052090)
  • SetSecurityDescriptorDacl (Address: 0x1800520a0)
  • SetThreadToken (Address: 0x1800520b8)
  • StartServiceA (Address: 0x180052120)
  • StartServiceW (Address: 0x180052130)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x180052a10)
  • BCryptCreateHash (Address: 0x180052a30)
  • BCryptDestroyHash (Address: 0x180052a48)
  • BCryptDestroyKey (Address: 0x180052a28)
  • BCryptFinishHash (Address: 0x180052a40)
  • BCryptGetProperty (Address: 0x180052a20)
  • BCryptHashData (Address: 0x180052a38)
  • BCryptOpenAlgorithmProvider (Address: 0x180052a18)
  • BCryptVerifySignature (Address: 0x180052a08)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x180052300)
  • CertAddStoreToCollection (Address: 0x180052400)
  • CertCloseStore (Address: 0x180052430)
  • CertCompareCertificate (Address: 0x180052378)
  • CertCompareCertificateName (Address: 0x1800523f0)
  • CertCompareIntegerBlob (Address: 0x180052208)
  • CertComparePublicKeyInfo (Address: 0x180052448)
  • CertControlStore (Address: 0x180052398)
  • CertCreateCertificateChainEngine (Address: 0x180052450)
  • CertCreateCertificateContext (Address: 0x180052348)
  • CertCreateContext (Address: 0x1800522b0)
  • CertCreateCTLContext (Address: 0x180052328)
  • CertDeleteCertificateFromStore (Address: 0x1800522f8)
  • CertDuplicateCertificateContext (Address: 0x180052470)
  • CertDuplicateStore (Address: 0x180052468)
  • CertEnumCertificatesInStore (Address: 0x180052308)
  • CertFindAttribute (Address: 0x180052420)
  • CertFindCertificateInStore (Address: 0x180052230)
  • CertFindExtension (Address: 0x1800523f8)
  • CertFindRDNAttr (Address: 0x180052370)
  • CertFindSubjectInCTL (Address: 0x180052318)
  • CertFindSubjectInSortedCTL (Address: 0x180052298)
  • CertFreeCertificateChain (Address: 0x180052438)
  • CertFreeCertificateChainEngine (Address: 0x180052418)
  • CertFreeCertificateContext (Address: 0x180052460)
  • CertFreeCTLContext (Address: 0x180052458)
  • CertGetCertificateChain (Address: 0x180052410)
  • CertGetCertificateContextProperty (Address: 0x180052240)
  • CertGetEnhancedKeyUsage (Address: 0x180052408)
  • CertGetIssuerCertificateFromStore (Address: 0x180052498)
  • CertGetNameStringW (Address: 0x180052330)
  • CertGetSubjectCertificateFromStore (Address: 0x1800522f0)
  • CertOIDToAlgId (Address: 0x180052220)
  • CertOpenStore (Address: 0x180052440)
  • CertOpenSystemStoreA (Address: 0x180052350)
  • CertRDNValueToStrW (Address: 0x180052368)
  • CertSetCertificateContextProperty (Address: 0x180052360)
  • CertVerifyCertificateChainPolicy (Address: 0x180052238)
  • CertVerifySubjectCertificateContext (Address: 0x180052210)
  • CertVerifyTimeValidity (Address: 0x180052200)
  • CertVerifyValidityNesting (Address: 0x1800521f8)
  • CryptDecodeObject (Address: 0x180052390)
  • CryptDecodeObjectEx (Address: 0x1800523e0)
  • CryptEncodeObject (Address: 0x180052278)
  • CryptEncodeObjectEx (Address: 0x180052280)
  • CryptEnumOIDInfo (Address: 0x180052248)
  • CryptExportPublicKeyInfo (Address: 0x180052358)
  • CryptFindOIDInfo (Address: 0x180052270)
  • CryptHashCertificate2 (Address: 0x180052340)
  • CryptImportPublicKeyInfoEx2 (Address: 0x1800522e8)
  • CryptInstallOIDFunctionAddress (Address: 0x1800523e8)
  • CryptMemFree (Address: 0x1800522d0)
  • CryptMsgClose (Address: 0x180052218)
  • CryptMsgControl (Address: 0x1800522d8)
  • CryptMsgDuplicate (Address: 0x1800522b8)
  • CryptMsgEncodeAndSignCTL (Address: 0x1800522c0)
  • CryptMsgGetParam (Address: 0x1800522e0)
  • CryptMsgOpenToDecode (Address: 0x180052320)
  • CryptMsgUpdate (Address: 0x180052310)
  • CryptMsgVerifyCountersignatureEncodedEx (Address: 0x1800522c8)
  • CryptQueryObject (Address: 0x180052428)
  • CryptRegisterOIDFunction (Address: 0x180052490)
  • CryptSIPAddProvider (Address: 0x180052268)
  • CryptSIPLoad (Address: 0x180052258)
  • CryptSIPRemoveProvider (Address: 0x180052260)
  • CryptSIPRetrieveSubjectGuid (Address: 0x180052250)
  • CryptSIPRetrieveSubjectGuidForCatalogFile (Address: 0x1800522a0)
  • CryptStringToBinaryW (Address: 0x180052290)
  • CryptUnregisterOIDFunction (Address: 0x180052480)
  • CryptVerifyMessageSignature (Address: 0x180052338)
  • I_CryptCreateLruCache (Address: 0x1800523a8)
  • I_CryptCreateLruEntry (Address: 0x1800523b0)
  • I_CryptFindLruEntryData (Address: 0x1800523c8)
  • I_CryptFlushLruCache (Address: 0x180052380)
  • I_CryptFreeLruCache (Address: 0x180052388)
  • I_CryptGetAsn1Decoder (Address: 0x1800523a0)
  • I_CryptGetAsn1Encoder (Address: 0x180052478)
  • I_CryptGetDefaultCryptProv (Address: 0x180052288)
  • I_CryptGetTls (Address: 0x1800522a8)
  • I_CryptInsertLruEntry (Address: 0x1800523c0)
  • I_CryptInstallAsn1Module (Address: 0x180052488)
  • I_CryptReadTrustedPublisherDWORDValueFromRegistry (Address: 0x180052228)
  • I_CryptReleaseLruEntry (Address: 0x1800523d0)
  • I_CryptRemoveLruEntry (Address: 0x1800523d8)
  • I_CryptUninstallAsn1Module (Address: 0x1800523b8)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x1800524d8)
  • AcquireSRWLockShared (Address: 0x180052518)
  • CloseHandle (Address: 0x1800524f0)
  • CloseThreadpoolTimer (Address: 0x1800524d0)
  • CompareFileTime (Address: 0x180052690)
  • CreateDirectoryW (Address: 0x1800527a0)
  • CreateEventA (Address: 0x180052788)
  • CreateFileMappingA (Address: 0x1800527d0)
  • CreateFileMappingW (Address: 0x1800526d8)
  • CreateFileW (Address: 0x180052618)
  • CreateMutexA (Address: 0x180052790)
  • CreateMutexExW (Address: 0x180052510)
  • CreateSemaphoreExW (Address: 0x180052570)
  • CreateThreadpoolTimer (Address: 0x180052508)
  • DebugBreak (Address: 0x180052580)
  • DeleteCriticalSection (Address: 0x1800525e0)
  • DisableThreadLibraryCalls (Address: 0x180052550)
  • DuplicateHandle (Address: 0x1800526c8)
  • EnterCriticalSection (Address: 0x180052558)
  • ExpandEnvironmentStringsA (Address: 0x180052658)
  • ExpandEnvironmentStringsW (Address: 0x180052718)
  • FileTimeToSystemTime (Address: 0x180052768)
  • FindClose (Address: 0x1800527f0)
  • FindFirstFileW (Address: 0x1800527e0)
  • FindNextFileW (Address: 0x1800527e8)
  • FindResourceExA (Address: 0x1800525c0)
  • FindResourceW (Address: 0x1800526d0)
  • FlushViewOfFile (Address: 0x180052780)
  • FormatMessageW (Address: 0x180052630)
  • FreeLibrary (Address: 0x180052560)
  • FreeResource (Address: 0x1800525b0)
  • GetCurrentDirectoryW (Address: 0x1800526b0)
  • GetCurrentProcess (Address: 0x180052680)
  • GetCurrentProcessId (Address: 0x180052520)
  • GetCurrentThread (Address: 0x180052778)
  • GetCurrentThreadId (Address: 0x180052638)
  • GetDateFormatA (Address: 0x180052740)
  • GetEnvironmentVariableA (Address: 0x180052540)
  • GetFileAttributesExW (Address: 0x180052620)
  • GetFileAttributesW (Address: 0x1800527f8)
  • GetFileInformationByHandle (Address: 0x1800526b8)
  • GetFileSize (Address: 0x180052750)
  • GetFileSizeEx (Address: 0x1800527b0)
  • GetLastError (Address: 0x1800524b8)
  • GetLocalTime (Address: 0x180052748)
  • GetModuleFileNameA (Address: 0x180052698)
  • GetModuleFileNameW (Address: 0x180052668)
  • GetModuleHandleA (Address: 0x1800526f0)
  • GetModuleHandleExA (Address: 0x1800525b8)
  • GetModuleHandleExW (Address: 0x180052650)
  • GetModuleHandleW (Address: 0x180052590)
  • GetPrivateProfileStringW (Address: 0x180052670)
  • GetProcAddress (Address: 0x1800525f0)
  • GetProcessHeap (Address: 0x180052598)
  • GetSystemDirectoryW (Address: 0x1800526a0)
  • GetSystemInfo (Address: 0x1800527c8)
  • GetSystemTimeAsFileTime (Address: 0x180052628)
  • GetTickCount64 (Address: 0x180052608)
  • GetTimeFormatA (Address: 0x180052738)
  • HeapAlloc (Address: 0x180052600)
  • HeapFree (Address: 0x180052688)
  • InitializeCriticalSection (Address: 0x180052648)
  • InitializeCriticalSectionEx (Address: 0x1800524b0)
  • IsDebuggerPresent (Address: 0x180052530)
  • LeaveCriticalSection (Address: 0x180052528)
  • LoadLibraryA (Address: 0x1800525d8)
  • LoadLibraryExA (Address: 0x180052640)
  • LoadLibraryExW (Address: 0x1800526e0)
  • LoadLibraryW (Address: 0x180052568)
  • LoadResource (Address: 0x1800525d0)
  • LocalAlloc (Address: 0x1800526a8)
  • LocalFree (Address: 0x180052578)
  • LocalReAlloc (Address: 0x180052758)
  • LockResource (Address: 0x1800525c8)
  • lstrlenA (Address: 0x180052660)
  • lstrlenW (Address: 0x1800526e8)
  • MapViewOfFile (Address: 0x1800527d8)
  • MultiByteToWideChar (Address: 0x1800525e8)
  • OpenSemaphoreW (Address: 0x1800524e8)
  • OutputDebugStringA (Address: 0x180052720)
  • OutputDebugStringW (Address: 0x1800524c8)
  • ReadFile (Address: 0x1800525f8)
  • ReleaseMutex (Address: 0x180052770)
  • ReleaseSemaphore (Address: 0x180052538)
  • ReleaseSRWLockExclusive (Address: 0x1800524c0)
  • ReleaseSRWLockShared (Address: 0x180052500)
  • ResetEvent (Address: 0x1800525a0)
  • SetEndOfFile (Address: 0x180052730)
  • SetEvent (Address: 0x180052548)
  • SetFileAttributesW (Address: 0x180052800)
  • SetFilePointer (Address: 0x180052610)
  • SetFilePointerEx (Address: 0x1800527b8)
  • SetLastError (Address: 0x180052678)
  • SetThreadpoolTimer (Address: 0x1800524f8)
  • SetUnhandledExceptionFilter (Address: 0x180052700)
  • SizeofResource (Address: 0x1800525a8)
  • Sleep (Address: 0x1800526c0)
  • SystemTimeToFileTime (Address: 0x180052760)
  • TerminateProcess (Address: 0x180052708)
  • UnhandledExceptionFilter (Address: 0x1800526f8)
  • UnmapViewOfFile (Address: 0x1800527c0)
  • VirtualUnlock (Address: 0x1800527a8)
  • WaitForMultipleObjectsEx (Address: 0x180052798)
  • WaitForSingleObject (Address: 0x1800524a8)
  • WaitForSingleObjectEx (Address: 0x1800524e0)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180052728)
  • WideCharToMultiByte (Address: 0x180052588)
  • WriteFile (Address: 0x180052710)
MSASN1.dll
  • ASN1_CloseModule (Address: 0x180052990)
  • ASN1_CreateModule (Address: 0x180052888)
  • ASN1_Decode (Address: 0x180052818)
  • ASN1_Encode (Address: 0x180052828)
  • ASN1_FreeDecoded (Address: 0x180052830)
  • ASN1_FreeEncoded (Address: 0x180052820)
  • ASN1_SetEncoderOption (Address: 0x180052810)
  • ASN1BERDecBitString (Address: 0x180052870)
  • ASN1BERDecBool (Address: 0x180052928)
  • ASN1BERDecChar16String (Address: 0x180052898)
  • ASN1BERDecCharString (Address: 0x180052840)
  • ASN1BERDecEndOfContents (Address: 0x180052920)
  • ASN1BERDecExplicitTag (Address: 0x1800528d8)
  • ASN1BERDecNotEndOfContents (Address: 0x180052910)
  • ASN1BERDecNull (Address: 0x180052848)
  • ASN1BERDecObjectIdentifier2 (Address: 0x180052998)
  • ASN1BERDecOctetString (Address: 0x180052908)
  • ASN1BERDecOctetString2 (Address: 0x180052858)
  • ASN1BERDecOpenType2 (Address: 0x1800528b0)
  • ASN1BERDecPeekTag (Address: 0x1800528e0)
  • ASN1BERDecS32Val (Address: 0x180052880)
  • ASN1BERDecU32Val (Address: 0x180052850)
  • ASN1BERDecUTCTime (Address: 0x180052868)
  • ASN1BEREncBitString (Address: 0x1800528f8)
  • ASN1BEREncBool (Address: 0x180052978)
  • ASN1BEREncChar16String (Address: 0x180052860)
  • ASN1BEREncCharString (Address: 0x180052960)
  • ASN1BEREncEndOfContents (Address: 0x180052968)
  • ASN1BEREncExplicitTag (Address: 0x180052918)
  • ASN1BEREncNull (Address: 0x180052980)
  • ASN1BEREncObjectIdentifier2 (Address: 0x180052958)
  • ASN1BEREncOctetString (Address: 0x180052988)
  • ASN1BEREncOpenType (Address: 0x180052890)
  • ASN1BEREncRemoveZeroBits (Address: 0x1800528b8)
  • ASN1BEREncS32 (Address: 0x180052948)
  • ASN1BEREncU32 (Address: 0x180052900)
  • ASN1bitstring_cmp (Address: 0x1800528c0)
  • ASN1bitstring_free (Address: 0x180052838)
  • ASN1CEREncBeginBlk (Address: 0x1800528a0)
  • ASN1CEREncEndBlk (Address: 0x1800528a8)
  • ASN1CEREncFlushBlkElement (Address: 0x180052950)
  • ASN1CEREncNewBlkElement (Address: 0x180052970)
  • ASN1CEREncUTCTime (Address: 0x1800528f0)
  • ASN1char16string_free (Address: 0x1800528e8)
  • ASN1charstring_free (Address: 0x180052878)
  • ASN1DecRealloc (Address: 0x180052938)
  • ASN1DecSetError (Address: 0x1800528d0)
  • ASN1EncSetError (Address: 0x180052940)
  • ASN1Free (Address: 0x1800529a0)
  • ASN1objectidentifier_free (Address: 0x180052930)
  • ASN1octetstring_free (Address: 0x1800528c8)
msvcrt.dll
  • __C_specific_handler (Address: 0x180052bc0)
  • __CxxFrameHandler3 (Address: 0x180052bc8)
  • __dllonexit (Address: 0x180052af8)
  • _amsg_exit (Address: 0x180052b20)
  • _callnewh (Address: 0x180052b38)
  • _CxxThrowException (Address: 0x180052b30)
  • _errno (Address: 0x180052b50)
  • _initterm (Address: 0x180052b18)
  • _itow_s (Address: 0x180052b60)
  • _lock (Address: 0x180052b08)
  • _ltoa (Address: 0x180052a88)
  • _memicmp (Address: 0x180052ab0)
  • _onexit (Address: 0x180052ae8)
  • _purecall (Address: 0x180052b90)
  • _snwscanf_s (Address: 0x180052ac8)
  • _stricmp (Address: 0x180052ab8)
  • _unlock (Address: 0x180052b00)
  • _vsnprintf (Address: 0x180052a80)
  • _vsnwprintf (Address: 0x180052bb8)
  • _wcsicmp (Address: 0x180052b68)
  • _wcsnicmp (Address: 0x180052ac0)
  • _wtol (Address: 0x180052ad0)
  • _XcptFilter (Address: 0x180052b28)
  • ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180052b80)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180052b98)
  • ??0exception@@QEAA@XZ (Address: 0x180052ba0)
  • ??1exception@@UEAA@XZ (Address: 0x180052ba8)
  • ??1type_info@@UEAA@XZ (Address: 0x180052b10)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180052b88)
  • atol (Address: 0x180052b70)
  • bsearch (Address: 0x180052af0)
  • free (Address: 0x180052b48)
  • malloc (Address: 0x180052b40)
  • memcmp (Address: 0x180052a68)
  • memcpy (Address: 0x180052a60)
  • memcpy_s (Address: 0x180052bb0)
  • memmove (Address: 0x180052a58)
  • memmove_s (Address: 0x180052b78)
  • memset (Address: 0x180052a78)
  • qsort (Address: 0x180052a98)
  • qsort_s (Address: 0x180052ae0)
  • strcmp (Address: 0x180052a70)
  • towupper (Address: 0x180052ad8)
  • wcscat_s (Address: 0x180052b58)
  • wcschr (Address: 0x180052aa0)
  • wcscmp (Address: 0x180052bd0)
  • wcsrchr (Address: 0x180052a90)
  • wcstol (Address: 0x180052aa8)
ntdll.dll
  • LdrResSearchResource (Address: 0x180052be0)
  • NtQuerySystemEnvironmentValueEx (Address: 0x180052c88)
  • NtQuerySystemInformation (Address: 0x180052c58)
  • RtlAcquireSRWLockExclusive (Address: 0x180052c08)
  • RtlAcquireSRWLockShared (Address: 0x180052c00)
  • RtlAllocateHeap (Address: 0x180052c20)
  • RtlCaptureContext (Address: 0x180052c80)
  • RtlCompareUnicodeString (Address: 0x180052bf0)
  • RtlCreateUnicodeString (Address: 0x180052c30)
  • RtlEqualUnicodeString (Address: 0x180052be8)
  • RtlFreeHeap (Address: 0x180052c68)
  • RtlFreeUnicodeString (Address: 0x180052c50)
  • RtlGetVersion (Address: 0x180052c28)
  • RtlImageNtHeaderEx (Address: 0x180052c38)
  • RtlInitializeSRWLock (Address: 0x180052c18)
  • RtlInitUnicodeString (Address: 0x180052c48)
  • RtlLookupFunctionEntry (Address: 0x180052c78)
  • RtlNtStatusToDosError (Address: 0x180052c60)
  • RtlReleaseSRWLockExclusive (Address: 0x180052c10)
  • RtlReleaseSRWLockShared (Address: 0x180052bf8)
  • RtlRunOnceExecuteOnce (Address: 0x180052c40)
  • RtlVirtualUnwind (Address: 0x180052c70)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x1800529b0)
  • RpcBindingFree (Address: 0x1800529c8)
  • RpcBindingFromStringBindingW (Address: 0x1800529c0)
  • RpcBindingSetAuthInfoExW (Address: 0x1800529d0)
  • RpcEpResolveBinding (Address: 0x1800529e0)
  • RpcStringBindingComposeW (Address: 0x1800529b8)
  • RpcStringFreeW (Address: 0x1800529d8)
USER32.dll
  • GetDesktopWindow (Address: 0x1800529f8)
  • MessageBoxA (Address: 0x1800529f0)