wintrust.dll
Description: Microsoft Trust Verification APIs
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.26100.4654
Architecture: Unknown (0xaa64)
Operating System: Windows NT
SHA256: 8584fd67654a754514c0da3934ef6537
File Size: 443.4 KB
Uploaded At: Dec. 3, 2025, 2:38 a.m.
Views: 10
Exported Functions
- CryptCATVerifyMember (Ordinal: 1, Address: 0x26f60)
- CryptSIPGetInfo (Ordinal: 2, Address: 0x20360)
- CryptSIPGetRegWorkingFlags (Ordinal: 3, Address: 0x20230)
- GenericChainCertificateTrust (Ordinal: 4, Address: 0x2f260)
- GenericChainFinalProv (Ordinal: 5, Address: 0x2f5a0)
- HTTPSCertificateTrust (Ordinal: 6, Address: 0x2fb80)
- SetMessageDigestInfo (Ordinal: 7, Address: 0x31890)
- SoftpubDefCertInit (Ordinal: 8, Address: 0x329f0)
- SoftpubFreeDefUsageCallData (Ordinal: 9, Address: 0x32af0)
- SoftpubLoadDefUsageCallData (Ordinal: 10, Address: 0x32b50)
- WTHelperCertFindIssuerCertificate (Ordinal: 11, Address: 0x7350)
- AddPersonalTrustDBPages (Ordinal: 12, Address: 0x32c80)
- CatalogCompactHashDatabase (Ordinal: 13, Address: 0x22c60)
- ConfigCiFinalPolicy (Ordinal: 14, Address: 0x36520)
- ConfigCiPackageFamilyNameCheck (Ordinal: 15, Address: 0x36d40)
- CryptCATAdminAcquireContext (Ordinal: 16, Address: 0x293e0)
- CryptCATAdminAcquireContext2 (Ordinal: 17, Address: 0x293f0)
- CryptCATAdminAddCatalog (Ordinal: 18, Address: 0x294b0)
- CryptCATAdminCalcHashFromFileHandle (Ordinal: 19, Address: 0x297f0)
- CryptCATAdminCalcHashFromFileHandle2 (Ordinal: 20, Address: 0x29860)
- CryptCATAdminEnumCatalogFromHash (Ordinal: 21, Address: 0x298e0)
- CryptCATAdminPauseServiceForBackup (Ordinal: 22, Address: 0x29be0)
- CryptCATAdminReleaseCatalogContext (Ordinal: 23, Address: 0x29c40)
- CryptCATAdminReleaseContext (Ordinal: 24, Address: 0x29d10)
- CryptCATAdminRemoveCatalog (Ordinal: 25, Address: 0x29db0)
- CryptCATAdminResolveCatalogPath (Ordinal: 26, Address: 0x29e10)
- CryptCATAllocSortedMemberInfo (Ordinal: 27, Address: 0x26fc0)
- CryptCATCDFClose (Ordinal: 28, Address: 0x2ba10)
- CryptCATCDFEnumAttributes (Ordinal: 29, Address: 0x2bad0)
- CryptCATCDFEnumAttributesWithCDFTag (Ordinal: 30, Address: 0x2bae0)
- CryptCATCDFEnumCatAttributes (Ordinal: 31, Address: 0x2bb30)
- CryptCATCDFEnumMembers (Ordinal: 32, Address: 0x2bc60)
- CryptCATCDFEnumMembersByCDFTag (Ordinal: 33, Address: 0x2bcd0)
- CryptCATCDFEnumMembersByCDFTagEx (Ordinal: 34, Address: 0x2bd20)
- CryptCATCDFOpen (Ordinal: 35, Address: 0x2bd70)
- CryptCATCatalogInfoFromContext (Ordinal: 36, Address: 0x29f60)
- CryptCATClose (Ordinal: 37, Address: 0x270b0)
- CryptCATEnumerateAttr (Ordinal: 38, Address: 0x27270)
- CryptCATEnumerateCatAttr (Ordinal: 39, Address: 0x27310)
- CryptCATEnumerateMember (Ordinal: 40, Address: 0x273b0)
- CryptCATFreeSortedMemberInfo (Ordinal: 41, Address: 0x274b0)
- CryptCATGetAttrInfo (Ordinal: 42, Address: 0x27500)
- CryptCATGetCatAttrInfo (Ordinal: 43, Address: 0x275e0)
- CryptCATGetMemberInfo (Ordinal: 44, Address: 0x276a0)
- CryptCATHandleFromStore (Ordinal: 45, Address: 0x54f0)
- CryptCATOpen (Ordinal: 46, Address: 0x27810)
- CryptCATPersistStore (Ordinal: 47, Address: 0x27970)
- CryptCATPutAttrInfo (Ordinal: 48, Address: 0x279c0)
- CryptCATPutCatAttrInfo (Ordinal: 49, Address: 0x27ba0)
- CryptCATPutMemberInfo (Ordinal: 50, Address: 0x27dd0)
- CryptCATStoreFromHandle (Ordinal: 51, Address: 0x54f0)
- CryptSIPCreateIndirectData (Ordinal: 52, Address: 0x207d0)
- CryptSIPGetCaps (Ordinal: 53, Address: 0x208a0)
- CryptSIPGetSealedDigest (Ordinal: 54, Address: 0x20950)
- CryptSIPGetSignedDataMsg (Ordinal: 55, Address: 0x20a20)
- CryptSIPPutSignedDataMsg (Ordinal: 56, Address: 0x20b40)
- CryptSIPRemoveSignedDataMsg (Ordinal: 57, Address: 0x20c40)
- CryptSIPVerifyIndirectData (Ordinal: 58, Address: 0x20d10)
- DllRegisterServer (Ordinal: 59, Address: 0x14d10)
- DllUnregisterServer (Ordinal: 60, Address: 0x14d70)
- DriverCleanupPolicy (Ordinal: 61, Address: 0x37d90)
- DriverFinalPolicy (Ordinal: 62, Address: 0x37e60)
- DriverInitializePolicy (Ordinal: 63, Address: 0x38350)
- FindCertsByIssuer (Ordinal: 64, Address: 0x39140)
- GetAuthenticodeSha256Hash (Ordinal: 65, Address: 0x37010)
- HTTPSFinalProv (Ordinal: 66, Address: 0x2fff0)
- IsCatalogFile (Ordinal: 67, Address: 0x2d5b0)
- MsCatConstructHashTag (Ordinal: 68, Address: 0x2de90)
- MsCatFreeHashTag (Ordinal: 69, Address: 0x2df50)
- OfficeCleanupPolicy (Ordinal: 70, Address: 0x31890)
- OfficeInitializePolicy (Ordinal: 71, Address: 0x31890)
- OpenPersonalTrustDBDialog (Ordinal: 72, Address: 0x32cb0)
- OpenPersonalTrustDBDialogEx (Ordinal: 73, Address: 0x32cc0)
- SoftpubAuthenticode (Ordinal: 74, Address: 0x3a700)
- SoftpubCheckCert (Ordinal: 75, Address: 0x3a740)
- SoftpubCleanup (Ordinal: 76, Address: 0x3a760)
- SoftpubDllRegisterServer (Ordinal: 77, Address: 0x3a910)
- SoftpubDllUnregisterServer (Ordinal: 78, Address: 0x3ab60)
- SoftpubDumpStructure (Ordinal: 79, Address: 0x3b720)
- SoftpubInitialize (Ordinal: 80, Address: 0x3c270)
- SoftpubLoadMessage (Ordinal: 81, Address: 0x3dec0)
- SoftpubLoadSignature (Ordinal: 82, Address: 0x32890)
- TrustDecode (Ordinal: 83, Address: 0x198e0)
- TrustFindIssuerCertificate (Ordinal: 84, Address: 0x199f0)
- TrustFreeDecode (Ordinal: 85, Address: 0x19c30)
- TrustIsCertificateSelfSigned (Ordinal: 86, Address: 0x19c70)
- TrustOpenStores (Ordinal: 87, Address: 0x19d10)
- WTHelperCertCheckValidSignature (Ordinal: 88, Address: 0x1c7c0)
- WTHelperCertIsSelfSigned (Ordinal: 89, Address: 0x7370)
- WTHelperCheckCertUsage (Ordinal: 90, Address: 0x1c7f0)
- WTHelperGetAgencyInfo (Ordinal: 91, Address: 0x1c950)
- WTHelperGetFileHandle (Ordinal: 92, Address: 0x1ca40)
- WTHelperGetFileHash (Ordinal: 93, Address: 0x1c4f0)
- WTHelperGetFileName (Ordinal: 94, Address: 0x1caa0)
- WTHelperGetKnownUsages (Ordinal: 95, Address: 0x1cb50)
- WTHelperGetProvCertFromChain (Ordinal: 96, Address: 0x1cc10)
- WTHelperGetProvPrivateDataFromChain (Ordinal: 97, Address: 0x1cc40)
- WTHelperGetProvSignerFromChain (Ordinal: 98, Address: 0x1ccd0)
- WTHelperIsChainedToMicrosoft (Ordinal: 99, Address: 0x1cd20)
- WTHelperIsChainedToMicrosoftFromStateData (Ordinal: 100, Address: 0x1cec0)
- WTHelperIsInRootStore (Ordinal: 101, Address: 0x1cfb0)
- WTHelperOpenKnownStores (Ordinal: 102, Address: 0x1d0d0)
- WTHelperProvDataFromStateData (Ordinal: 103, Address: 0x54f0)
- WVTAsn1CatMemberInfo2Decode (Ordinal: 104, Address: 0x15db0)
- WVTAsn1CatMemberInfo2Encode (Ordinal: 105, Address: 0x15e90)
- WVTAsn1CatMemberInfoDecode (Ordinal: 106, Address: 0x15f50)
- WVTAsn1CatMemberInfoEncode (Ordinal: 107, Address: 0x16060)
- WVTAsn1CatNameValueDecode (Ordinal: 108, Address: 0x160d0)
- WVTAsn1CatNameValueEncode (Ordinal: 109, Address: 0x16210)
- WVTAsn1IntentToSealAttributeDecode (Ordinal: 110, Address: 0x16290)
- WVTAsn1IntentToSealAttributeEncode (Ordinal: 111, Address: 0x16350)
- WVTAsn1SealingSignatureAttributeDecode (Ordinal: 112, Address: 0x163a0)
- WVTAsn1SealingSignatureAttributeEncode (Ordinal: 113, Address: 0x164c0)
- WVTAsn1SealingTimestampAttributeDecode (Ordinal: 114, Address: 0x16570)
- WVTAsn1SealingTimestampAttributeEncode (Ordinal: 115, Address: 0x16680)
- WVTAsn1SpcFinancialCriteriaInfoDecode (Ordinal: 116, Address: 0x166e0)
- WVTAsn1SpcFinancialCriteriaInfoEncode (Ordinal: 117, Address: 0x167a0)
- WVTAsn1SpcIndirectDataContentDecode (Ordinal: 118, Address: 0x167e0)
- WVTAsn1SpcIndirectDataContentEncode (Ordinal: 119, Address: 0x169c0)
- WVTAsn1SpcLinkDecode (Ordinal: 120, Address: 0x16aa0)
- WVTAsn1SpcLinkEncode (Ordinal: 121, Address: 0x16b90)
- WVTAsn1SpcMinimalCriteriaInfoDecode (Ordinal: 122, Address: 0x16bf0)
- WVTAsn1SpcMinimalCriteriaInfoEncode (Ordinal: 123, Address: 0x16cb0)
- WVTAsn1SpcPeImageDataDecode (Ordinal: 124, Address: 0x16cf0)
- WVTAsn1SpcPeImageDataEncode (Ordinal: 125, Address: 0x16ed0)
- WVTAsn1SpcSigInfoDecode (Ordinal: 126, Address: 0x16f90)
- WVTAsn1SpcSigInfoEncode (Ordinal: 127, Address: 0x170a0)
- WVTAsn1SpcSpAgencyInfoDecode (Ordinal: 128, Address: 0x17110)
- WVTAsn1SpcSpAgencyInfoEncode (Ordinal: 129, Address: 0x173e0)
- WVTAsn1SpcSpOpusInfoDecode (Ordinal: 130, Address: 0x175e0)
- WVTAsn1SpcSpOpusInfoEncode (Ordinal: 131, Address: 0x17770)
- WVTAsn1SpcStatementTypeDecode (Ordinal: 132, Address: 0x17890)
- WVTAsn1SpcStatementTypeEncode (Ordinal: 133, Address: 0x179c0)
- WinVerifyTrust (Ordinal: 134, Address: 0x1c590)
- WinVerifyTrustEx (Ordinal: 135, Address: 0x1c640)
- WintrustAddActionID (Ordinal: 136, Address: 0x17b40)
- WintrustAddDefaultForUsage (Ordinal: 137, Address: 0x19e90)
- WintrustCertificateTrust (Ordinal: 138, Address: 0x13cf0)
- WintrustCryptSIPGetCaps (Ordinal: 139, Address: 0x1ddd0)
- WintrustCryptSIPGetSealedDigest (Ordinal: 140, Address: 0x1de90)
- WintrustCryptSIPLoad (Ordinal: 141, Address: 0x1df70)
- WintrustCryptSIPRetrieveSubjectGuid (Ordinal: 142, Address: 0x1e000)
- WintrustGetDefaultForUsage (Ordinal: 143, Address: 0x1a160)
- WintrustGetRegPolicyFlags (Ordinal: 144, Address: 0x18d50)
- WintrustLoadFunctionPointers (Ordinal: 145, Address: 0x18540)
- WintrustRemoveActionID (Ordinal: 146, Address: 0x17d50)
- WintrustSetDefaultIncludePEPageHashes (Ordinal: 147, Address: 0x22b40)
- WintrustSetRegPolicyFlags (Ordinal: 148, Address: 0x18e20)
- mscat32DllRegisterServer (Ordinal: 149, Address: 0x22c00)
- mscat32DllUnregisterServer (Ordinal: 150, Address: 0x22c00)
- mssip32DllRegisterServer (Ordinal: 151, Address: 0x20e70)
- mssip32DllUnregisterServer (Ordinal: 152, Address: 0x210d0)
Imported DLLs & Functions
ADVAPI32.dll
- AddAccessAllowedAceEx (Address: 0x180052028)
- AddAce (Address: 0x180052008)
- AdjustTokenPrivileges (Address: 0x1800520c0)
- AllocateAndInitializeSid (Address: 0x180052108)
- ChangeServiceConfigA (Address: 0x180052110)
- CloseServiceHandle (Address: 0x1800520f0)
- ControlService (Address: 0x180052118)
- ConvertStringSidToSidW (Address: 0x180052078)
- CopySid (Address: 0x180052060)
- CryptAcquireContextA (Address: 0x180052160)
- CryptAcquireContextW (Address: 0x1800521e0)
- CryptCreateHash (Address: 0x1800521c8)
- CryptDestroyHash (Address: 0x180052040)
- CryptGetHashParam (Address: 0x180052048)
- CryptHashData (Address: 0x180052038)
- CryptReleaseContext (Address: 0x180052168)
- CryptSetProvParam (Address: 0x1800521e8)
- DuplicateTokenEx (Address: 0x1800520b0)
- EqualSid (Address: 0x1800520e8)
- EventRegister (Address: 0x1800521b0)
- EventUnregister (Address: 0x1800521b8)
- EventWrite (Address: 0x1800521d0)
- EventWriteTransfer (Address: 0x1800521c0)
- FreeSid (Address: 0x180052128)
- GetAce (Address: 0x180052080)
- GetAclInformation (Address: 0x180052088)
- GetFileSecurityW (Address: 0x180052010)
- GetLengthSid (Address: 0x180052070)
- GetSecurityDescriptorDacl (Address: 0x180052098)
- GetSidIdentifierAuthority (Address: 0x1800520d0)
- GetSidSubAuthority (Address: 0x180052058)
- GetSidSubAuthorityCount (Address: 0x180052050)
- GetTokenInformation (Address: 0x180052140)
- InitializeAcl (Address: 0x180052020)
- InitializeSecurityDescriptor (Address: 0x180052018)
- IsValidSid (Address: 0x180052068)
- LookupAccountSidW (Address: 0x180052030)
- LookupPrivilegeValueW (Address: 0x1800520c8)
- OpenProcessToken (Address: 0x180052000)
- OpenSCManagerW (Address: 0x1800520f8)
- OpenServiceW (Address: 0x180052138)
- OpenThreadToken (Address: 0x1800520a8)
- QueryServiceConfigA (Address: 0x180052100)
- QueryServiceStatus (Address: 0x1800520e0)
- RegCloseKey (Address: 0x180052180)
- RegCreateKeyExW (Address: 0x180052190)
- RegDeleteKeyExW (Address: 0x180052188)
- RegEnumKeyExA (Address: 0x180052158)
- RegEnumValueA (Address: 0x1800521d8)
- RegGetValueW (Address: 0x1800520d8)
- RegOpenKeyExA (Address: 0x180052150)
- RegOpenKeyExW (Address: 0x1800521a0)
- RegQueryInfoKeyA (Address: 0x180052148)
- RegQueryValueExA (Address: 0x180052170)
- RegQueryValueExW (Address: 0x1800521a8)
- RegSetValueExA (Address: 0x180052178)
- RegSetValueExW (Address: 0x180052198)
- SetFileSecurityW (Address: 0x180052090)
- SetSecurityDescriptorDacl (Address: 0x1800520a0)
- SetThreadToken (Address: 0x1800520b8)
- StartServiceA (Address: 0x180052120)
- StartServiceW (Address: 0x180052130)
bcrypt.dll
- BCryptCloseAlgorithmProvider (Address: 0x180052a10)
- BCryptCreateHash (Address: 0x180052a30)
- BCryptDestroyHash (Address: 0x180052a48)
- BCryptDestroyKey (Address: 0x180052a28)
- BCryptFinishHash (Address: 0x180052a40)
- BCryptGetProperty (Address: 0x180052a20)
- BCryptHashData (Address: 0x180052a38)
- BCryptOpenAlgorithmProvider (Address: 0x180052a18)
- BCryptVerifySignature (Address: 0x180052a08)
CRYPT32.dll
- CertAddCertificateContextToStore (Address: 0x180052300)
- CertAddStoreToCollection (Address: 0x180052400)
- CertCloseStore (Address: 0x180052430)
- CertCompareCertificate (Address: 0x180052378)
- CertCompareCertificateName (Address: 0x1800523f0)
- CertCompareIntegerBlob (Address: 0x180052208)
- CertComparePublicKeyInfo (Address: 0x180052448)
- CertControlStore (Address: 0x180052398)
- CertCreateCertificateChainEngine (Address: 0x180052450)
- CertCreateCertificateContext (Address: 0x180052348)
- CertCreateContext (Address: 0x1800522b0)
- CertCreateCTLContext (Address: 0x180052328)
- CertDeleteCertificateFromStore (Address: 0x1800522f8)
- CertDuplicateCertificateContext (Address: 0x180052470)
- CertDuplicateStore (Address: 0x180052468)
- CertEnumCertificatesInStore (Address: 0x180052308)
- CertFindAttribute (Address: 0x180052420)
- CertFindCertificateInStore (Address: 0x180052230)
- CertFindExtension (Address: 0x1800523f8)
- CertFindRDNAttr (Address: 0x180052370)
- CertFindSubjectInCTL (Address: 0x180052318)
- CertFindSubjectInSortedCTL (Address: 0x180052298)
- CertFreeCertificateChain (Address: 0x180052438)
- CertFreeCertificateChainEngine (Address: 0x180052418)
- CertFreeCertificateContext (Address: 0x180052460)
- CertFreeCTLContext (Address: 0x180052458)
- CertGetCertificateChain (Address: 0x180052410)
- CertGetCertificateContextProperty (Address: 0x180052240)
- CertGetEnhancedKeyUsage (Address: 0x180052408)
- CertGetIssuerCertificateFromStore (Address: 0x180052498)
- CertGetNameStringW (Address: 0x180052330)
- CertGetSubjectCertificateFromStore (Address: 0x1800522f0)
- CertOIDToAlgId (Address: 0x180052220)
- CertOpenStore (Address: 0x180052440)
- CertOpenSystemStoreA (Address: 0x180052350)
- CertRDNValueToStrW (Address: 0x180052368)
- CertSetCertificateContextProperty (Address: 0x180052360)
- CertVerifyCertificateChainPolicy (Address: 0x180052238)
- CertVerifySubjectCertificateContext (Address: 0x180052210)
- CertVerifyTimeValidity (Address: 0x180052200)
- CertVerifyValidityNesting (Address: 0x1800521f8)
- CryptDecodeObject (Address: 0x180052390)
- CryptDecodeObjectEx (Address: 0x1800523e0)
- CryptEncodeObject (Address: 0x180052278)
- CryptEncodeObjectEx (Address: 0x180052280)
- CryptEnumOIDInfo (Address: 0x180052248)
- CryptExportPublicKeyInfo (Address: 0x180052358)
- CryptFindOIDInfo (Address: 0x180052270)
- CryptHashCertificate2 (Address: 0x180052340)
- CryptImportPublicKeyInfoEx2 (Address: 0x1800522e8)
- CryptInstallOIDFunctionAddress (Address: 0x1800523e8)
- CryptMemFree (Address: 0x1800522d0)
- CryptMsgClose (Address: 0x180052218)
- CryptMsgControl (Address: 0x1800522d8)
- CryptMsgDuplicate (Address: 0x1800522b8)
- CryptMsgEncodeAndSignCTL (Address: 0x1800522c0)
- CryptMsgGetParam (Address: 0x1800522e0)
- CryptMsgOpenToDecode (Address: 0x180052320)
- CryptMsgUpdate (Address: 0x180052310)
- CryptMsgVerifyCountersignatureEncodedEx (Address: 0x1800522c8)
- CryptQueryObject (Address: 0x180052428)
- CryptRegisterOIDFunction (Address: 0x180052490)
- CryptSIPAddProvider (Address: 0x180052268)
- CryptSIPLoad (Address: 0x180052258)
- CryptSIPRemoveProvider (Address: 0x180052260)
- CryptSIPRetrieveSubjectGuid (Address: 0x180052250)
- CryptSIPRetrieveSubjectGuidForCatalogFile (Address: 0x1800522a0)
- CryptStringToBinaryW (Address: 0x180052290)
- CryptUnregisterOIDFunction (Address: 0x180052480)
- CryptVerifyMessageSignature (Address: 0x180052338)
- I_CryptCreateLruCache (Address: 0x1800523a8)
- I_CryptCreateLruEntry (Address: 0x1800523b0)
- I_CryptFindLruEntryData (Address: 0x1800523c8)
- I_CryptFlushLruCache (Address: 0x180052380)
- I_CryptFreeLruCache (Address: 0x180052388)
- I_CryptGetAsn1Decoder (Address: 0x1800523a0)
- I_CryptGetAsn1Encoder (Address: 0x180052478)
- I_CryptGetDefaultCryptProv (Address: 0x180052288)
- I_CryptGetTls (Address: 0x1800522a8)
- I_CryptInsertLruEntry (Address: 0x1800523c0)
- I_CryptInstallAsn1Module (Address: 0x180052488)
- I_CryptReadTrustedPublisherDWORDValueFromRegistry (Address: 0x180052228)
- I_CryptReleaseLruEntry (Address: 0x1800523d0)
- I_CryptRemoveLruEntry (Address: 0x1800523d8)
- I_CryptUninstallAsn1Module (Address: 0x1800523b8)
KERNEL32.dll
- AcquireSRWLockExclusive (Address: 0x1800524d8)
- AcquireSRWLockShared (Address: 0x180052518)
- CloseHandle (Address: 0x1800524f0)
- CloseThreadpoolTimer (Address: 0x1800524d0)
- CompareFileTime (Address: 0x180052690)
- CreateDirectoryW (Address: 0x1800527a0)
- CreateEventA (Address: 0x180052788)
- CreateFileMappingA (Address: 0x1800527d0)
- CreateFileMappingW (Address: 0x1800526d8)
- CreateFileW (Address: 0x180052618)
- CreateMutexA (Address: 0x180052790)
- CreateMutexExW (Address: 0x180052510)
- CreateSemaphoreExW (Address: 0x180052570)
- CreateThreadpoolTimer (Address: 0x180052508)
- DebugBreak (Address: 0x180052580)
- DeleteCriticalSection (Address: 0x1800525e0)
- DisableThreadLibraryCalls (Address: 0x180052550)
- DuplicateHandle (Address: 0x1800526c8)
- EnterCriticalSection (Address: 0x180052558)
- ExpandEnvironmentStringsA (Address: 0x180052658)
- ExpandEnvironmentStringsW (Address: 0x180052718)
- FileTimeToSystemTime (Address: 0x180052768)
- FindClose (Address: 0x1800527f0)
- FindFirstFileW (Address: 0x1800527e0)
- FindNextFileW (Address: 0x1800527e8)
- FindResourceExA (Address: 0x1800525c0)
- FindResourceW (Address: 0x1800526d0)
- FlushViewOfFile (Address: 0x180052780)
- FormatMessageW (Address: 0x180052630)
- FreeLibrary (Address: 0x180052560)
- FreeResource (Address: 0x1800525b0)
- GetCurrentDirectoryW (Address: 0x1800526b0)
- GetCurrentProcess (Address: 0x180052680)
- GetCurrentProcessId (Address: 0x180052520)
- GetCurrentThread (Address: 0x180052778)
- GetCurrentThreadId (Address: 0x180052638)
- GetDateFormatA (Address: 0x180052740)
- GetEnvironmentVariableA (Address: 0x180052540)
- GetFileAttributesExW (Address: 0x180052620)
- GetFileAttributesW (Address: 0x1800527f8)
- GetFileInformationByHandle (Address: 0x1800526b8)
- GetFileSize (Address: 0x180052750)
- GetFileSizeEx (Address: 0x1800527b0)
- GetLastError (Address: 0x1800524b8)
- GetLocalTime (Address: 0x180052748)
- GetModuleFileNameA (Address: 0x180052698)
- GetModuleFileNameW (Address: 0x180052668)
- GetModuleHandleA (Address: 0x1800526f0)
- GetModuleHandleExA (Address: 0x1800525b8)
- GetModuleHandleExW (Address: 0x180052650)
- GetModuleHandleW (Address: 0x180052590)
- GetPrivateProfileStringW (Address: 0x180052670)
- GetProcAddress (Address: 0x1800525f0)
- GetProcessHeap (Address: 0x180052598)
- GetSystemDirectoryW (Address: 0x1800526a0)
- GetSystemInfo (Address: 0x1800527c8)
- GetSystemTimeAsFileTime (Address: 0x180052628)
- GetTickCount64 (Address: 0x180052608)
- GetTimeFormatA (Address: 0x180052738)
- HeapAlloc (Address: 0x180052600)
- HeapFree (Address: 0x180052688)
- InitializeCriticalSection (Address: 0x180052648)
- InitializeCriticalSectionEx (Address: 0x1800524b0)
- IsDebuggerPresent (Address: 0x180052530)
- LeaveCriticalSection (Address: 0x180052528)
- LoadLibraryA (Address: 0x1800525d8)
- LoadLibraryExA (Address: 0x180052640)
- LoadLibraryExW (Address: 0x1800526e0)
- LoadLibraryW (Address: 0x180052568)
- LoadResource (Address: 0x1800525d0)
- LocalAlloc (Address: 0x1800526a8)
- LocalFree (Address: 0x180052578)
- LocalReAlloc (Address: 0x180052758)
- LockResource (Address: 0x1800525c8)
- lstrlenA (Address: 0x180052660)
- lstrlenW (Address: 0x1800526e8)
- MapViewOfFile (Address: 0x1800527d8)
- MultiByteToWideChar (Address: 0x1800525e8)
- OpenSemaphoreW (Address: 0x1800524e8)
- OutputDebugStringA (Address: 0x180052720)
- OutputDebugStringW (Address: 0x1800524c8)
- ReadFile (Address: 0x1800525f8)
- ReleaseMutex (Address: 0x180052770)
- ReleaseSemaphore (Address: 0x180052538)
- ReleaseSRWLockExclusive (Address: 0x1800524c0)
- ReleaseSRWLockShared (Address: 0x180052500)
- ResetEvent (Address: 0x1800525a0)
- SetEndOfFile (Address: 0x180052730)
- SetEvent (Address: 0x180052548)
- SetFileAttributesW (Address: 0x180052800)
- SetFilePointer (Address: 0x180052610)
- SetFilePointerEx (Address: 0x1800527b8)
- SetLastError (Address: 0x180052678)
- SetThreadpoolTimer (Address: 0x1800524f8)
- SetUnhandledExceptionFilter (Address: 0x180052700)
- SizeofResource (Address: 0x1800525a8)
- Sleep (Address: 0x1800526c0)
- SystemTimeToFileTime (Address: 0x180052760)
- TerminateProcess (Address: 0x180052708)
- UnhandledExceptionFilter (Address: 0x1800526f8)
- UnmapViewOfFile (Address: 0x1800527c0)
- VirtualUnlock (Address: 0x1800527a8)
- WaitForMultipleObjectsEx (Address: 0x180052798)
- WaitForSingleObject (Address: 0x1800524a8)
- WaitForSingleObjectEx (Address: 0x1800524e0)
- WaitForThreadpoolTimerCallbacks (Address: 0x180052728)
- WideCharToMultiByte (Address: 0x180052588)
- WriteFile (Address: 0x180052710)
MSASN1.dll
- ASN1_CloseModule (Address: 0x180052990)
- ASN1_CreateModule (Address: 0x180052888)
- ASN1_Decode (Address: 0x180052818)
- ASN1_Encode (Address: 0x180052828)
- ASN1_FreeDecoded (Address: 0x180052830)
- ASN1_FreeEncoded (Address: 0x180052820)
- ASN1_SetEncoderOption (Address: 0x180052810)
- ASN1BERDecBitString (Address: 0x180052870)
- ASN1BERDecBool (Address: 0x180052928)
- ASN1BERDecChar16String (Address: 0x180052898)
- ASN1BERDecCharString (Address: 0x180052840)
- ASN1BERDecEndOfContents (Address: 0x180052920)
- ASN1BERDecExplicitTag (Address: 0x1800528d8)
- ASN1BERDecNotEndOfContents (Address: 0x180052910)
- ASN1BERDecNull (Address: 0x180052848)
- ASN1BERDecObjectIdentifier2 (Address: 0x180052998)
- ASN1BERDecOctetString (Address: 0x180052908)
- ASN1BERDecOctetString2 (Address: 0x180052858)
- ASN1BERDecOpenType2 (Address: 0x1800528b0)
- ASN1BERDecPeekTag (Address: 0x1800528e0)
- ASN1BERDecS32Val (Address: 0x180052880)
- ASN1BERDecU32Val (Address: 0x180052850)
- ASN1BERDecUTCTime (Address: 0x180052868)
- ASN1BEREncBitString (Address: 0x1800528f8)
- ASN1BEREncBool (Address: 0x180052978)
- ASN1BEREncChar16String (Address: 0x180052860)
- ASN1BEREncCharString (Address: 0x180052960)
- ASN1BEREncEndOfContents (Address: 0x180052968)
- ASN1BEREncExplicitTag (Address: 0x180052918)
- ASN1BEREncNull (Address: 0x180052980)
- ASN1BEREncObjectIdentifier2 (Address: 0x180052958)
- ASN1BEREncOctetString (Address: 0x180052988)
- ASN1BEREncOpenType (Address: 0x180052890)
- ASN1BEREncRemoveZeroBits (Address: 0x1800528b8)
- ASN1BEREncS32 (Address: 0x180052948)
- ASN1BEREncU32 (Address: 0x180052900)
- ASN1bitstring_cmp (Address: 0x1800528c0)
- ASN1bitstring_free (Address: 0x180052838)
- ASN1CEREncBeginBlk (Address: 0x1800528a0)
- ASN1CEREncEndBlk (Address: 0x1800528a8)
- ASN1CEREncFlushBlkElement (Address: 0x180052950)
- ASN1CEREncNewBlkElement (Address: 0x180052970)
- ASN1CEREncUTCTime (Address: 0x1800528f0)
- ASN1char16string_free (Address: 0x1800528e8)
- ASN1charstring_free (Address: 0x180052878)
- ASN1DecRealloc (Address: 0x180052938)
- ASN1DecSetError (Address: 0x1800528d0)
- ASN1EncSetError (Address: 0x180052940)
- ASN1Free (Address: 0x1800529a0)
- ASN1objectidentifier_free (Address: 0x180052930)
- ASN1octetstring_free (Address: 0x1800528c8)
msvcrt.dll
- __C_specific_handler (Address: 0x180052bc0)
- __CxxFrameHandler3 (Address: 0x180052bc8)
- __dllonexit (Address: 0x180052af8)
- _amsg_exit (Address: 0x180052b20)
- _callnewh (Address: 0x180052b38)
- _CxxThrowException (Address: 0x180052b30)
- _errno (Address: 0x180052b50)
- _initterm (Address: 0x180052b18)
- _itow_s (Address: 0x180052b60)
- _lock (Address: 0x180052b08)
- _ltoa (Address: 0x180052a88)
- _memicmp (Address: 0x180052ab0)
- _onexit (Address: 0x180052ae8)
- _purecall (Address: 0x180052b90)
- _snwscanf_s (Address: 0x180052ac8)
- _stricmp (Address: 0x180052ab8)
- _unlock (Address: 0x180052b00)
- _vsnprintf (Address: 0x180052a80)
- _vsnwprintf (Address: 0x180052bb8)
- _wcsicmp (Address: 0x180052b68)
- _wcsnicmp (Address: 0x180052ac0)
- _wtol (Address: 0x180052ad0)
- _XcptFilter (Address: 0x180052b28)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180052b80)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x180052b98)
- ??0exception@@QEAA@XZ (Address: 0x180052ba0)
- ??1exception@@UEAA@XZ (Address: 0x180052ba8)
- ??1type_info@@UEAA@XZ (Address: 0x180052b10)
- ?what@exception@@UEBAPEBDXZ (Address: 0x180052b88)
- atol (Address: 0x180052b70)
- bsearch (Address: 0x180052af0)
- free (Address: 0x180052b48)
- malloc (Address: 0x180052b40)
- memcmp (Address: 0x180052a68)
- memcpy (Address: 0x180052a60)
- memcpy_s (Address: 0x180052bb0)
- memmove (Address: 0x180052a58)
- memmove_s (Address: 0x180052b78)
- memset (Address: 0x180052a78)
- qsort (Address: 0x180052a98)
- qsort_s (Address: 0x180052ae0)
- strcmp (Address: 0x180052a70)
- towupper (Address: 0x180052ad8)
- wcscat_s (Address: 0x180052b58)
- wcschr (Address: 0x180052aa0)
- wcscmp (Address: 0x180052bd0)
- wcsrchr (Address: 0x180052a90)
- wcstol (Address: 0x180052aa8)
ntdll.dll
- LdrResSearchResource (Address: 0x180052be0)
- NtQuerySystemEnvironmentValueEx (Address: 0x180052c88)
- NtQuerySystemInformation (Address: 0x180052c58)
- RtlAcquireSRWLockExclusive (Address: 0x180052c08)
- RtlAcquireSRWLockShared (Address: 0x180052c00)
- RtlAllocateHeap (Address: 0x180052c20)
- RtlCaptureContext (Address: 0x180052c80)
- RtlCompareUnicodeString (Address: 0x180052bf0)
- RtlCreateUnicodeString (Address: 0x180052c30)
- RtlEqualUnicodeString (Address: 0x180052be8)
- RtlFreeHeap (Address: 0x180052c68)
- RtlFreeUnicodeString (Address: 0x180052c50)
- RtlGetVersion (Address: 0x180052c28)
- RtlImageNtHeaderEx (Address: 0x180052c38)
- RtlInitializeSRWLock (Address: 0x180052c18)
- RtlInitUnicodeString (Address: 0x180052c48)
- RtlLookupFunctionEntry (Address: 0x180052c78)
- RtlNtStatusToDosError (Address: 0x180052c60)
- RtlReleaseSRWLockExclusive (Address: 0x180052c10)
- RtlReleaseSRWLockShared (Address: 0x180052bf8)
- RtlRunOnceExecuteOnce (Address: 0x180052c40)
- RtlVirtualUnwind (Address: 0x180052c70)
RPCRT4.dll
- NdrClientCall3 (Address: 0x1800529b0)
- RpcBindingFree (Address: 0x1800529c8)
- RpcBindingFromStringBindingW (Address: 0x1800529c0)
- RpcBindingSetAuthInfoExW (Address: 0x1800529d0)
- RpcEpResolveBinding (Address: 0x1800529e0)
- RpcStringBindingComposeW (Address: 0x1800529b8)
- RpcStringFreeW (Address: 0x1800529d8)
USER32.dll
- GetDesktopWindow (Address: 0x1800529f8)
- MessageBoxA (Address: 0x1800529f0)