wintrust.dll

Description: Microsoft Trust Verification APIs

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.26100.4654

Architecture: 64-bit

Operating System: Windows NT

SHA256: a097ad47ed8ca0370e8d76393f6c1d70

File Size: 462.3 KB

Uploaded At: Dec. 3, 2025, 2:38 a.m.

Views: 9

Exported Functions

  • CryptCATVerifyMember (Ordinal: 1, Address: 0x26810)
  • CryptSIPGetInfo (Ordinal: 2, Address: 0x20030)
  • CryptSIPGetRegWorkingFlags (Ordinal: 3, Address: 0x1ff20)
  • GenericChainCertificateTrust (Ordinal: 4, Address: 0x2e9f0)
  • GenericChainFinalProv (Ordinal: 5, Address: 0x2ed60)
  • HTTPSCertificateTrust (Ordinal: 6, Address: 0x2f380)
  • SetMessageDigestInfo (Ordinal: 7, Address: 0x313e0)
  • SoftpubDefCertInit (Ordinal: 8, Address: 0x32520)
  • SoftpubFreeDefUsageCallData (Ordinal: 9, Address: 0x32620)
  • SoftpubLoadDefUsageCallData (Ordinal: 10, Address: 0x32670)
  • WTHelperCertFindIssuerCertificate (Ordinal: 11, Address: 0x6c50)
  • AddPersonalTrustDBPages (Ordinal: 12, Address: 0x327c0)
  • CatalogCompactHashDatabase (Ordinal: 13, Address: 0x228e0)
  • ConfigCiFinalPolicy (Ordinal: 14, Address: 0x35ee0)
  • ConfigCiPackageFamilyNameCheck (Ordinal: 15, Address: 0x367d0)
  • CryptCATAdminAcquireContext (Ordinal: 16, Address: 0x28b50)
  • CryptCATAdminAcquireContext2 (Ordinal: 17, Address: 0x28b70)
  • CryptCATAdminAddCatalog (Ordinal: 18, Address: 0x28c50)
  • CryptCATAdminCalcHashFromFileHandle (Ordinal: 19, Address: 0x28fb0)
  • CryptCATAdminCalcHashFromFileHandle2 (Ordinal: 20, Address: 0x29010)
  • CryptCATAdminEnumCatalogFromHash (Ordinal: 21, Address: 0x29090)
  • CryptCATAdminPauseServiceForBackup (Ordinal: 22, Address: 0x29360)
  • CryptCATAdminReleaseCatalogContext (Ordinal: 23, Address: 0x293b0)
  • CryptCATAdminReleaseContext (Ordinal: 24, Address: 0x29470)
  • CryptCATAdminRemoveCatalog (Ordinal: 25, Address: 0x294d0)
  • CryptCATAdminResolveCatalogPath (Ordinal: 26, Address: 0x29520)
  • CryptCATAllocSortedMemberInfo (Ordinal: 27, Address: 0x26860)
  • CryptCATCDFClose (Ordinal: 28, Address: 0x2b070)
  • CryptCATCDFEnumAttributes (Ordinal: 29, Address: 0x2b120)
  • CryptCATCDFEnumAttributesWithCDFTag (Ordinal: 30, Address: 0x2b140)
  • CryptCATCDFEnumCatAttributes (Ordinal: 31, Address: 0x2b190)
  • CryptCATCDFEnumMembers (Ordinal: 32, Address: 0x2b2d0)
  • CryptCATCDFEnumMembersByCDFTag (Ordinal: 33, Address: 0x2b340)
  • CryptCATCDFEnumMembersByCDFTagEx (Ordinal: 34, Address: 0x2b360)
  • CryptCATCDFOpen (Ordinal: 35, Address: 0x2b3b0)
  • CryptCATCatalogInfoFromContext (Ordinal: 36, Address: 0x29660)
  • CryptCATClose (Ordinal: 37, Address: 0x26940)
  • CryptCATEnumerateAttr (Ordinal: 38, Address: 0x26ae0)
  • CryptCATEnumerateCatAttr (Ordinal: 39, Address: 0x26b50)
  • CryptCATEnumerateMember (Ordinal: 40, Address: 0x26bd0)
  • CryptCATFreeSortedMemberInfo (Ordinal: 41, Address: 0x26cc0)
  • CryptCATGetAttrInfo (Ordinal: 42, Address: 0x26d00)
  • CryptCATGetCatAttrInfo (Ordinal: 43, Address: 0x26db0)
  • CryptCATGetMemberInfo (Ordinal: 44, Address: 0x26e40)
  • CryptCATHandleFromStore (Ordinal: 45, Address: 0x1ce70)
  • CryptCATOpen (Ordinal: 46, Address: 0x26f10)
  • CryptCATPersistStore (Ordinal: 47, Address: 0x270a0)
  • CryptCATPutAttrInfo (Ordinal: 48, Address: 0x270e0)
  • CryptCATPutCatAttrInfo (Ordinal: 49, Address: 0x27310)
  • CryptCATPutMemberInfo (Ordinal: 50, Address: 0x27590)
  • CryptCATStoreFromHandle (Ordinal: 51, Address: 0x1ce70)
  • CryptSIPCreateIndirectData (Ordinal: 52, Address: 0x20440)
  • CryptSIPGetCaps (Ordinal: 53, Address: 0x20500)
  • CryptSIPGetSealedDigest (Ordinal: 54, Address: 0x20590)
  • CryptSIPGetSignedDataMsg (Ordinal: 55, Address: 0x20660)
  • CryptSIPPutSignedDataMsg (Ordinal: 56, Address: 0x20780)
  • CryptSIPRemoveSignedDataMsg (Ordinal: 57, Address: 0x20860)
  • CryptSIPVerifyIndirectData (Ordinal: 58, Address: 0x20900)
  • DllRegisterServer (Ordinal: 59, Address: 0x14700)
  • DllUnregisterServer (Ordinal: 60, Address: 0x14750)
  • DriverCleanupPolicy (Ordinal: 61, Address: 0x378b0)
  • DriverFinalPolicy (Ordinal: 62, Address: 0x37980)
  • DriverInitializePolicy (Ordinal: 63, Address: 0x37e70)
  • FindCertsByIssuer (Ordinal: 64, Address: 0x38cf0)
  • GetAuthenticodeSha256Hash (Ordinal: 65, Address: 0x36a90)
  • HTTPSFinalProv (Ordinal: 66, Address: 0x2f810)
  • IsCatalogFile (Ordinal: 67, Address: 0x2cd30)
  • MsCatConstructHashTag (Ordinal: 68, Address: 0x2d610)
  • MsCatFreeHashTag (Ordinal: 69, Address: 0x2d6d0)
  • OfficeCleanupPolicy (Ordinal: 70, Address: 0x313e0)
  • OfficeInitializePolicy (Ordinal: 71, Address: 0x313e0)
  • OpenPersonalTrustDBDialog (Ordinal: 72, Address: 0x327f0)
  • OpenPersonalTrustDBDialogEx (Ordinal: 73, Address: 0x32800)
  • SoftpubAuthenticode (Ordinal: 74, Address: 0x3a340)
  • SoftpubCheckCert (Ordinal: 75, Address: 0x3a370)
  • SoftpubCleanup (Ordinal: 76, Address: 0x3a390)
  • SoftpubDllRegisterServer (Ordinal: 77, Address: 0x3a530)
  • SoftpubDllUnregisterServer (Ordinal: 78, Address: 0x3a7b0)
  • SoftpubDumpStructure (Ordinal: 79, Address: 0x3b3c0)
  • SoftpubInitialize (Ordinal: 80, Address: 0x3bf10)
  • SoftpubLoadMessage (Ordinal: 81, Address: 0x3db40)
  • SoftpubLoadSignature (Ordinal: 82, Address: 0x323e0)
  • TrustDecode (Ordinal: 83, Address: 0x19260)
  • TrustFindIssuerCertificate (Ordinal: 84, Address: 0x19350)
  • TrustFreeDecode (Ordinal: 85, Address: 0x19540)
  • TrustIsCertificateSelfSigned (Ordinal: 86, Address: 0x19570)
  • TrustOpenStores (Ordinal: 87, Address: 0x19600)
  • WTHelperCertCheckValidSignature (Ordinal: 88, Address: 0x1c460)
  • WTHelperCertIsSelfSigned (Ordinal: 89, Address: 0x6c90)
  • WTHelperCheckCertUsage (Ordinal: 90, Address: 0x1c490)
  • WTHelperGetAgencyInfo (Ordinal: 91, Address: 0x1c600)
  • WTHelperGetFileHandle (Ordinal: 92, Address: 0x1c700)
  • WTHelperGetFileHash (Ordinal: 93, Address: 0x1c180)
  • WTHelperGetFileName (Ordinal: 94, Address: 0x1c750)
  • WTHelperGetKnownUsages (Ordinal: 95, Address: 0x1c7f0)
  • WTHelperGetProvCertFromChain (Ordinal: 96, Address: 0x1c8a0)
  • WTHelperGetProvPrivateDataFromChain (Ordinal: 97, Address: 0x1c8c0)
  • WTHelperGetProvSignerFromChain (Ordinal: 98, Address: 0x1c920)
  • WTHelperIsChainedToMicrosoft (Ordinal: 99, Address: 0x1c960)
  • WTHelperIsChainedToMicrosoftFromStateData (Ordinal: 100, Address: 0x1cb00)
  • WTHelperIsInRootStore (Ordinal: 101, Address: 0x1cbd0)
  • WTHelperOpenKnownStores (Ordinal: 102, Address: 0x1cce0)
  • WTHelperProvDataFromStateData (Ordinal: 103, Address: 0x1ce70)
  • WVTAsn1CatMemberInfo2Decode (Ordinal: 104, Address: 0x15810)
  • WVTAsn1CatMemberInfo2Encode (Ordinal: 105, Address: 0x158e0)
  • WVTAsn1CatMemberInfoDecode (Ordinal: 106, Address: 0x159a0)
  • WVTAsn1CatMemberInfoEncode (Ordinal: 107, Address: 0x15aa0)
  • WVTAsn1CatNameValueDecode (Ordinal: 108, Address: 0x15b00)
  • WVTAsn1CatNameValueEncode (Ordinal: 109, Address: 0x15c30)
  • WVTAsn1IntentToSealAttributeDecode (Ordinal: 110, Address: 0x15ca0)
  • WVTAsn1IntentToSealAttributeEncode (Ordinal: 111, Address: 0x15d50)
  • WVTAsn1SealingSignatureAttributeDecode (Ordinal: 112, Address: 0x15d90)
  • WVTAsn1SealingSignatureAttributeEncode (Ordinal: 113, Address: 0x15ed0)
  • WVTAsn1SealingTimestampAttributeDecode (Ordinal: 114, Address: 0x15f90)
  • WVTAsn1SealingTimestampAttributeEncode (Ordinal: 115, Address: 0x160b0)
  • WVTAsn1SpcFinancialCriteriaInfoDecode (Ordinal: 116, Address: 0x16110)
  • WVTAsn1SpcFinancialCriteriaInfoEncode (Ordinal: 117, Address: 0x161d0)
  • WVTAsn1SpcIndirectDataContentDecode (Ordinal: 118, Address: 0x16210)
  • WVTAsn1SpcIndirectDataContentEncode (Ordinal: 119, Address: 0x163a0)
  • WVTAsn1SpcLinkDecode (Ordinal: 120, Address: 0x16490)
  • WVTAsn1SpcLinkEncode (Ordinal: 121, Address: 0x16570)
  • WVTAsn1SpcMinimalCriteriaInfoDecode (Ordinal: 122, Address: 0x165e0)
  • WVTAsn1SpcMinimalCriteriaInfoEncode (Ordinal: 123, Address: 0x166a0)
  • WVTAsn1SpcPeImageDataDecode (Ordinal: 124, Address: 0x166e0)
  • WVTAsn1SpcPeImageDataEncode (Ordinal: 125, Address: 0x16840)
  • WVTAsn1SpcSigInfoDecode (Ordinal: 126, Address: 0x16910)
  • WVTAsn1SpcSigInfoEncode (Ordinal: 127, Address: 0x16a00)
  • WVTAsn1SpcSpAgencyInfoDecode (Ordinal: 128, Address: 0x16a70)
  • WVTAsn1SpcSpAgencyInfoEncode (Ordinal: 129, Address: 0x16d50)
  • WVTAsn1SpcSpOpusInfoDecode (Ordinal: 130, Address: 0x16f50)
  • WVTAsn1SpcSpOpusInfoEncode (Ordinal: 131, Address: 0x170d0)
  • WVTAsn1SpcStatementTypeDecode (Ordinal: 132, Address: 0x171e0)
  • WVTAsn1SpcStatementTypeEncode (Ordinal: 133, Address: 0x17310)
  • WinVerifyTrust (Ordinal: 134, Address: 0x1c270)
  • WinVerifyTrustEx (Ordinal: 135, Address: 0x1c300)
  • WintrustAddActionID (Ordinal: 136, Address: 0x17480)
  • WintrustAddDefaultForUsage (Ordinal: 137, Address: 0x19770)
  • WintrustCertificateTrust (Ordinal: 138, Address: 0x13840)
  • WintrustCryptSIPGetCaps (Ordinal: 139, Address: 0x1da10)
  • WintrustCryptSIPGetSealedDigest (Ordinal: 140, Address: 0x1dae0)
  • WintrustCryptSIPLoad (Ordinal: 141, Address: 0x1dbf0)
  • WintrustCryptSIPRetrieveSubjectGuid (Ordinal: 142, Address: 0x1dc80)
  • WintrustGetDefaultForUsage (Ordinal: 143, Address: 0x19a60)
  • WintrustGetRegPolicyFlags (Ordinal: 144, Address: 0x18730)
  • WintrustLoadFunctionPointers (Ordinal: 145, Address: 0x17ee0)
  • WintrustRemoveActionID (Ordinal: 146, Address: 0x176a0)
  • WintrustSetDefaultIncludePEPageHashes (Ordinal: 147, Address: 0x227d0)
  • WintrustSetRegPolicyFlags (Ordinal: 148, Address: 0x187f0)
  • mscat32DllRegisterServer (Ordinal: 149, Address: 0x22880)
  • mscat32DllUnregisterServer (Ordinal: 150, Address: 0x22880)
  • mssip32DllRegisterServer (Ordinal: 151, Address: 0x20a10)
  • mssip32DllUnregisterServer (Ordinal: 152, Address: 0x20cd0)

Imported DLLs & Functions

ADVAPI32.dll
  • AddAccessAllowedAceEx (Address: 0x1800546f0)
  • AddAce (Address: 0x1800546d0)
  • AdjustTokenPrivileges (Address: 0x180054788)
  • AllocateAndInitializeSid (Address: 0x1800547d0)
  • ChangeServiceConfigA (Address: 0x1800547d8)
  • CloseServiceHandle (Address: 0x1800547b8)
  • ControlService (Address: 0x1800547e0)
  • ConvertStringSidToSidW (Address: 0x180054740)
  • CopySid (Address: 0x180054728)
  • CryptAcquireContextA (Address: 0x1800546c8)
  • CryptAcquireContextW (Address: 0x1800548a8)
  • CryptCreateHash (Address: 0x180054890)
  • CryptDestroyHash (Address: 0x180054708)
  • CryptGetHashParam (Address: 0x180054710)
  • CryptHashData (Address: 0x180054700)
  • CryptReleaseContext (Address: 0x180054830)
  • CryptSetProvParam (Address: 0x1800548b0)
  • DuplicateTokenEx (Address: 0x180054778)
  • EqualSid (Address: 0x1800547b0)
  • EventRegister (Address: 0x180054878)
  • EventUnregister (Address: 0x180054880)
  • EventWrite (Address: 0x180054898)
  • EventWriteTransfer (Address: 0x180054888)
  • FreeSid (Address: 0x1800547f8)
  • GetAce (Address: 0x180054748)
  • GetAclInformation (Address: 0x180054750)
  • GetFileSecurityW (Address: 0x1800546d8)
  • GetLengthSid (Address: 0x180054738)
  • GetSecurityDescriptorDacl (Address: 0x180054760)
  • GetSidIdentifierAuthority (Address: 0x180054798)
  • GetSidSubAuthority (Address: 0x180054720)
  • GetSidSubAuthorityCount (Address: 0x180054718)
  • GetTokenInformation (Address: 0x180054810)
  • InitializeAcl (Address: 0x1800546e8)
  • InitializeSecurityDescriptor (Address: 0x1800546e0)
  • IsValidSid (Address: 0x180054730)
  • LookupAccountSidW (Address: 0x1800546f8)
  • LookupPrivilegeValueW (Address: 0x180054790)
  • OpenProcessToken (Address: 0x1800547f0)
  • OpenSCManagerW (Address: 0x1800547c0)
  • OpenServiceW (Address: 0x180054808)
  • OpenThreadToken (Address: 0x180054770)
  • QueryServiceConfigA (Address: 0x1800547c8)
  • QueryServiceStatus (Address: 0x1800547a8)
  • RegCloseKey (Address: 0x180054848)
  • RegCreateKeyExW (Address: 0x180054858)
  • RegDeleteKeyExW (Address: 0x180054850)
  • RegEnumKeyExA (Address: 0x180054828)
  • RegEnumValueA (Address: 0x1800548a0)
  • RegGetValueW (Address: 0x1800547a0)
  • RegOpenKeyExA (Address: 0x180054820)
  • RegOpenKeyExW (Address: 0x180054868)
  • RegQueryInfoKeyA (Address: 0x180054818)
  • RegQueryValueExA (Address: 0x180054838)
  • RegQueryValueExW (Address: 0x180054870)
  • RegSetValueExA (Address: 0x180054840)
  • RegSetValueExW (Address: 0x180054860)
  • SetFileSecurityW (Address: 0x180054758)
  • SetSecurityDescriptorDacl (Address: 0x180054768)
  • SetThreadToken (Address: 0x180054780)
  • StartServiceA (Address: 0x1800547e8)
  • StartServiceW (Address: 0x180054800)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x1800550e8)
  • BCryptCreateHash (Address: 0x180055108)
  • BCryptDestroyHash (Address: 0x180055120)
  • BCryptDestroyKey (Address: 0x180055100)
  • BCryptFinishHash (Address: 0x180055118)
  • BCryptGetProperty (Address: 0x1800550f8)
  • BCryptHashData (Address: 0x180055110)
  • BCryptOpenAlgorithmProvider (Address: 0x1800550f0)
  • BCryptVerifySignature (Address: 0x1800550e0)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x1800549c8)
  • CertAddStoreToCollection (Address: 0x180054ac8)
  • CertCloseStore (Address: 0x180054af8)
  • CertCompareCertificate (Address: 0x180054a40)
  • CertCompareCertificateName (Address: 0x180054ab0)
  • CertCompareIntegerBlob (Address: 0x1800548d0)
  • CertComparePublicKeyInfo (Address: 0x180054b10)
  • CertControlStore (Address: 0x180054a60)
  • CertCreateCertificateChainEngine (Address: 0x180054b18)
  • CertCreateCertificateContext (Address: 0x180054a10)
  • CertCreateContext (Address: 0x180054978)
  • CertCreateCTLContext (Address: 0x1800549f0)
  • CertDeleteCertificateFromStore (Address: 0x1800549c0)
  • CertDuplicateCertificateContext (Address: 0x180054b38)
  • CertDuplicateStore (Address: 0x180054b30)
  • CertEnumCertificatesInStore (Address: 0x1800549d0)
  • CertFindAttribute (Address: 0x180054ae8)
  • CertFindCertificateInStore (Address: 0x1800548f8)
  • CertFindExtension (Address: 0x180054ac0)
  • CertFindRDNAttr (Address: 0x180054a38)
  • CertFindSubjectInCTL (Address: 0x1800549e0)
  • CertFindSubjectInSortedCTL (Address: 0x180054960)
  • CertFreeCertificateChain (Address: 0x180054b00)
  • CertFreeCertificateChainEngine (Address: 0x180054ae0)
  • CertFreeCertificateContext (Address: 0x180054b28)
  • CertFreeCTLContext (Address: 0x180054b20)
  • CertGetCertificateChain (Address: 0x180054ad8)
  • CertGetCertificateContextProperty (Address: 0x180054908)
  • CertGetEnhancedKeyUsage (Address: 0x180054ad0)
  • CertGetIssuerCertificateFromStore (Address: 0x180054b60)
  • CertGetNameStringW (Address: 0x1800549f8)
  • CertGetSubjectCertificateFromStore (Address: 0x1800549b8)
  • CertOIDToAlgId (Address: 0x1800548e8)
  • CertOpenStore (Address: 0x180054b08)
  • CertOpenSystemStoreA (Address: 0x180054a18)
  • CertRDNValueToStrW (Address: 0x180054a30)
  • CertSetCertificateContextProperty (Address: 0x180054a28)
  • CertVerifyCertificateChainPolicy (Address: 0x180054900)
  • CertVerifySubjectCertificateContext (Address: 0x1800548d8)
  • CertVerifyTimeValidity (Address: 0x1800548c8)
  • CertVerifyValidityNesting (Address: 0x1800548c0)
  • CryptDecodeObject (Address: 0x180054a58)
  • CryptDecodeObjectEx (Address: 0x180054aa8)
  • CryptEncodeObject (Address: 0x180054940)
  • CryptEncodeObjectEx (Address: 0x180054948)
  • CryptEnumOIDInfo (Address: 0x180054910)
  • CryptExportPublicKeyInfo (Address: 0x180054a20)
  • CryptFindOIDInfo (Address: 0x180054938)
  • CryptHashCertificate2 (Address: 0x180054a08)
  • CryptImportPublicKeyInfoEx2 (Address: 0x1800549b0)
  • CryptInstallOIDFunctionAddress (Address: 0x180054ab8)
  • CryptMemFree (Address: 0x180054998)
  • CryptMsgClose (Address: 0x1800548e0)
  • CryptMsgControl (Address: 0x1800549a0)
  • CryptMsgDuplicate (Address: 0x180054980)
  • CryptMsgEncodeAndSignCTL (Address: 0x180054988)
  • CryptMsgGetParam (Address: 0x1800549a8)
  • CryptMsgOpenToDecode (Address: 0x1800549e8)
  • CryptMsgUpdate (Address: 0x1800549d8)
  • CryptMsgVerifyCountersignatureEncodedEx (Address: 0x180054990)
  • CryptQueryObject (Address: 0x180054af0)
  • CryptRegisterOIDFunction (Address: 0x180054b58)
  • CryptSIPAddProvider (Address: 0x180054930)
  • CryptSIPLoad (Address: 0x180054920)
  • CryptSIPRemoveProvider (Address: 0x180054928)
  • CryptSIPRetrieveSubjectGuid (Address: 0x180054918)
  • CryptSIPRetrieveSubjectGuidForCatalogFile (Address: 0x180054968)
  • CryptStringToBinaryW (Address: 0x180054958)
  • CryptUnregisterOIDFunction (Address: 0x180054b48)
  • CryptVerifyMessageSignature (Address: 0x180054a00)
  • I_CryptCreateLruCache (Address: 0x180054a70)
  • I_CryptCreateLruEntry (Address: 0x180054a78)
  • I_CryptFindLruEntryData (Address: 0x180054a90)
  • I_CryptFlushLruCache (Address: 0x180054a48)
  • I_CryptFreeLruCache (Address: 0x180054a50)
  • I_CryptGetAsn1Decoder (Address: 0x180054a68)
  • I_CryptGetAsn1Encoder (Address: 0x180054b40)
  • I_CryptGetDefaultCryptProv (Address: 0x180054950)
  • I_CryptGetTls (Address: 0x180054970)
  • I_CryptInsertLruEntry (Address: 0x180054a88)
  • I_CryptInstallAsn1Module (Address: 0x180054b50)
  • I_CryptReadTrustedPublisherDWORDValueFromRegistry (Address: 0x1800548f0)
  • I_CryptReleaseLruEntry (Address: 0x180054a98)
  • I_CryptRemoveLruEntry (Address: 0x180054aa0)
  • I_CryptUninstallAsn1Module (Address: 0x180054a80)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x180054ba0)
  • AcquireSRWLockShared (Address: 0x180054be0)
  • CloseHandle (Address: 0x180054bb8)
  • CloseThreadpoolTimer (Address: 0x180054b98)
  • CompareFileTime (Address: 0x180054d60)
  • CreateDirectoryW (Address: 0x180054e78)
  • CreateEventA (Address: 0x180054e60)
  • CreateFileMappingA (Address: 0x180054ea8)
  • CreateFileMappingW (Address: 0x180054da0)
  • CreateFileW (Address: 0x180054ce0)
  • CreateMutexA (Address: 0x180054e68)
  • CreateMutexExW (Address: 0x180054bd8)
  • CreateSemaphoreExW (Address: 0x180054c38)
  • CreateThreadpoolTimer (Address: 0x180054bd0)
  • DebugBreak (Address: 0x180054c48)
  • DeleteCriticalSection (Address: 0x180054ca8)
  • DisableThreadLibraryCalls (Address: 0x180054c18)
  • DuplicateHandle (Address: 0x180054d90)
  • EnterCriticalSection (Address: 0x180054c20)
  • ExpandEnvironmentStringsA (Address: 0x180054d20)
  • ExpandEnvironmentStringsW (Address: 0x180054df0)
  • FileTimeToSystemTime (Address: 0x180054e40)
  • FindClose (Address: 0x180054ec8)
  • FindFirstFileW (Address: 0x180054eb8)
  • FindNextFileW (Address: 0x180054ec0)
  • FindResourceExA (Address: 0x180054c88)
  • FindResourceW (Address: 0x180054d98)
  • FlushViewOfFile (Address: 0x180054e58)
  • FormatMessageW (Address: 0x180054d00)
  • FreeLibrary (Address: 0x180054c28)
  • FreeResource (Address: 0x180054c78)
  • GetCurrentDirectoryW (Address: 0x180054e80)
  • GetCurrentProcess (Address: 0x180054d48)
  • GetCurrentProcessId (Address: 0x180054be8)
  • GetCurrentThread (Address: 0x180054e50)
  • GetCurrentThreadId (Address: 0x180054d10)
  • GetDateFormatA (Address: 0x180054e18)
  • GetEnvironmentVariableA (Address: 0x180054c08)
  • GetFileAttributesExW (Address: 0x180054ce8)
  • GetFileAttributesW (Address: 0x180054ed0)
  • GetFileInformationByHandle (Address: 0x180054d80)
  • GetFileSize (Address: 0x180054e28)
  • GetFileSizeEx (Address: 0x180054e88)
  • GetLastError (Address: 0x180054e48)
  • GetLocalTime (Address: 0x180054e20)
  • GetModuleFileNameA (Address: 0x180054d68)
  • GetModuleFileNameW (Address: 0x180054d30)
  • GetModuleHandleA (Address: 0x180054db8)
  • GetModuleHandleExA (Address: 0x180054c80)
  • GetModuleHandleExW (Address: 0x180054d40)
  • GetModuleHandleW (Address: 0x180054c58)
  • GetPrivateProfileStringW (Address: 0x180054d38)
  • GetProcAddress (Address: 0x180054cb8)
  • GetProcessHeap (Address: 0x180054c60)
  • GetSystemDirectoryW (Address: 0x180054d70)
  • GetSystemInfo (Address: 0x180054ea0)
  • GetSystemTimeAsFileTime (Address: 0x180054cf0)
  • GetTickCount (Address: 0x180054de0)
  • GetTickCount64 (Address: 0x180054cd0)
  • GetTimeFormatA (Address: 0x180054e10)
  • HeapAlloc (Address: 0x180054cc8)
  • HeapFree (Address: 0x180054d58)
  • InitializeCriticalSection (Address: 0x180054d18)
  • InitializeCriticalSectionEx (Address: 0x180054b80)
  • IsDebuggerPresent (Address: 0x180054bf8)
  • LeaveCriticalSection (Address: 0x180054bf0)
  • LoadLibraryA (Address: 0x180054ca0)
  • LoadLibraryExA (Address: 0x180054d08)
  • LoadLibraryExW (Address: 0x180054da8)
  • LoadLibraryW (Address: 0x180054c30)
  • LoadResource (Address: 0x180054c98)
  • LocalAlloc (Address: 0x180054cf8)
  • LocalFree (Address: 0x180054c40)
  • LocalReAlloc (Address: 0x180054e30)
  • LockResource (Address: 0x180054c90)
  • lstrlenA (Address: 0x180054d28)
  • lstrlenW (Address: 0x180054db0)
  • MapViewOfFile (Address: 0x180054eb0)
  • MultiByteToWideChar (Address: 0x180054cb0)
  • OpenSemaphoreW (Address: 0x180054bb0)
  • OutputDebugStringA (Address: 0x180054df8)
  • OutputDebugStringW (Address: 0x180054b90)
  • QueryPerformanceCounter (Address: 0x180054dd8)
  • ReadFile (Address: 0x180054cc0)
  • ReleaseMutex (Address: 0x180054b78)
  • ReleaseSemaphore (Address: 0x180054c00)
  • ReleaseSRWLockExclusive (Address: 0x180054b88)
  • ReleaseSRWLockShared (Address: 0x180054bc8)
  • ResetEvent (Address: 0x180054c68)
  • SetEndOfFile (Address: 0x180054e08)
  • SetEvent (Address: 0x180054c10)
  • SetFileAttributesW (Address: 0x180054ed8)
  • SetFilePointer (Address: 0x180054cd8)
  • SetFilePointerEx (Address: 0x180054e90)
  • SetLastError (Address: 0x180054d50)
  • SetThreadpoolTimer (Address: 0x180054bc0)
  • SetUnhandledExceptionFilter (Address: 0x180054dc8)
  • SizeofResource (Address: 0x180054c70)
  • Sleep (Address: 0x180054d88)
  • SystemTimeToFileTime (Address: 0x180054e38)
  • TerminateProcess (Address: 0x180054dd0)
  • UnhandledExceptionFilter (Address: 0x180054dc0)
  • UnmapViewOfFile (Address: 0x180054e98)
  • VirtualUnlock (Address: 0x180054d78)
  • WaitForMultipleObjectsEx (Address: 0x180054e70)
  • WaitForSingleObject (Address: 0x180054b70)
  • WaitForSingleObjectEx (Address: 0x180054ba8)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180054e00)
  • WideCharToMultiByte (Address: 0x180054c50)
  • WriteFile (Address: 0x180054de8)
MSASN1.dll
  • ASN1_CloseModule (Address: 0x180055068)
  • ASN1_CreateModule (Address: 0x180054f60)
  • ASN1_Decode (Address: 0x180054ef0)
  • ASN1_Encode (Address: 0x180054f00)
  • ASN1_FreeDecoded (Address: 0x180054f08)
  • ASN1_FreeEncoded (Address: 0x180054ef8)
  • ASN1_SetEncoderOption (Address: 0x180054ee8)
  • ASN1BERDecBitString (Address: 0x180054f48)
  • ASN1BERDecBool (Address: 0x180055000)
  • ASN1BERDecChar16String (Address: 0x180054f70)
  • ASN1BERDecCharString (Address: 0x180054f18)
  • ASN1BERDecEndOfContents (Address: 0x180054ff8)
  • ASN1BERDecExplicitTag (Address: 0x180054fb0)
  • ASN1BERDecNotEndOfContents (Address: 0x180054fe8)
  • ASN1BERDecNull (Address: 0x180054f20)
  • ASN1BERDecObjectIdentifier2 (Address: 0x180055070)
  • ASN1BERDecOctetString (Address: 0x180054fe0)
  • ASN1BERDecOctetString2 (Address: 0x180054f30)
  • ASN1BERDecOpenType2 (Address: 0x180054f88)
  • ASN1BERDecPeekTag (Address: 0x180054fb8)
  • ASN1BERDecS32Val (Address: 0x180054f58)
  • ASN1BERDecU32Val (Address: 0x180054f28)
  • ASN1BERDecUTCTime (Address: 0x180054f40)
  • ASN1BEREncBitString (Address: 0x180054fd0)
  • ASN1BEREncBool (Address: 0x180055050)
  • ASN1BEREncChar16String (Address: 0x180054f38)
  • ASN1BEREncCharString (Address: 0x180055038)
  • ASN1BEREncEndOfContents (Address: 0x180055040)
  • ASN1BEREncExplicitTag (Address: 0x180054ff0)
  • ASN1BEREncNull (Address: 0x180055058)
  • ASN1BEREncObjectIdentifier2 (Address: 0x180055030)
  • ASN1BEREncOctetString (Address: 0x180055060)
  • ASN1BEREncOpenType (Address: 0x180054f68)
  • ASN1BEREncRemoveZeroBits (Address: 0x180054f90)
  • ASN1BEREncS32 (Address: 0x180055020)
  • ASN1BEREncU32 (Address: 0x180054fd8)
  • ASN1bitstring_cmp (Address: 0x180054f98)
  • ASN1bitstring_free (Address: 0x180054f10)
  • ASN1CEREncBeginBlk (Address: 0x180054f78)
  • ASN1CEREncEndBlk (Address: 0x180054f80)
  • ASN1CEREncFlushBlkElement (Address: 0x180055028)
  • ASN1CEREncNewBlkElement (Address: 0x180055048)
  • ASN1CEREncUTCTime (Address: 0x180054fc8)
  • ASN1char16string_free (Address: 0x180054fc0)
  • ASN1charstring_free (Address: 0x180054f50)
  • ASN1DecRealloc (Address: 0x180055010)
  • ASN1DecSetError (Address: 0x180054fa8)
  • ASN1EncSetError (Address: 0x180055018)
  • ASN1Free (Address: 0x180055078)
  • ASN1objectidentifier_free (Address: 0x180055008)
  • ASN1octetstring_free (Address: 0x180054fa0)
msvcrt.dll
  • __C_specific_handler (Address: 0x180055298)
  • __CxxFrameHandler3 (Address: 0x1800552a0)
  • __dllonexit (Address: 0x1800551d0)
  • _amsg_exit (Address: 0x1800551f8)
  • _callnewh (Address: 0x180055210)
  • _CxxThrowException (Address: 0x180055208)
  • _errno (Address: 0x180055228)
  • _initterm (Address: 0x1800551f0)
  • _itow_s (Address: 0x180055238)
  • _lock (Address: 0x1800551e0)
  • _ltoa (Address: 0x180055160)
  • _memicmp (Address: 0x180055188)
  • _onexit (Address: 0x1800551c0)
  • _purecall (Address: 0x180055268)
  • _snwscanf_s (Address: 0x1800551a0)
  • _stricmp (Address: 0x180055190)
  • _unlock (Address: 0x1800551d8)
  • _vsnprintf (Address: 0x180055158)
  • _vsnwprintf (Address: 0x180055290)
  • _wcsicmp (Address: 0x180055240)
  • _wcsnicmp (Address: 0x180055198)
  • _wtol (Address: 0x1800551a8)
  • _XcptFilter (Address: 0x180055200)
  • ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180055258)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180055270)
  • ??0exception@@QEAA@XZ (Address: 0x180055278)
  • ??1exception@@UEAA@XZ (Address: 0x180055280)
  • ??1type_info@@UEAA@XZ (Address: 0x1800551e8)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180055260)
  • atol (Address: 0x180055248)
  • bsearch (Address: 0x1800551c8)
  • free (Address: 0x180055220)
  • malloc (Address: 0x180055218)
  • memcmp (Address: 0x180055140)
  • memcpy (Address: 0x180055138)
  • memcpy_s (Address: 0x180055288)
  • memmove (Address: 0x180055130)
  • memmove_s (Address: 0x180055250)
  • memset (Address: 0x180055150)
  • qsort (Address: 0x180055170)
  • qsort_s (Address: 0x1800551b8)
  • strcmp (Address: 0x180055148)
  • towupper (Address: 0x1800551b0)
  • wcscat_s (Address: 0x180055230)
  • wcschr (Address: 0x180055178)
  • wcscmp (Address: 0x1800552a8)
  • wcsrchr (Address: 0x180055168)
  • wcstol (Address: 0x180055180)
ntdll.dll
  • LdrResSearchResource (Address: 0x1800552b8)
  • NtQuerySystemEnvironmentValueEx (Address: 0x180055360)
  • NtQuerySystemInformation (Address: 0x180055330)
  • RtlAcquireSRWLockExclusive (Address: 0x1800552e0)
  • RtlAcquireSRWLockShared (Address: 0x1800552d8)
  • RtlAllocateHeap (Address: 0x1800552f8)
  • RtlCaptureContext (Address: 0x180055358)
  • RtlCompareUnicodeString (Address: 0x1800552c8)
  • RtlCreateUnicodeString (Address: 0x180055308)
  • RtlEqualUnicodeString (Address: 0x1800552c0)
  • RtlFreeHeap (Address: 0x180055340)
  • RtlFreeUnicodeString (Address: 0x180055328)
  • RtlGetVersion (Address: 0x180055300)
  • RtlImageNtHeaderEx (Address: 0x180055310)
  • RtlInitializeSRWLock (Address: 0x1800552f0)
  • RtlInitUnicodeString (Address: 0x180055320)
  • RtlLookupFunctionEntry (Address: 0x180055350)
  • RtlNtStatusToDosError (Address: 0x180055338)
  • RtlReleaseSRWLockExclusive (Address: 0x1800552e8)
  • RtlReleaseSRWLockShared (Address: 0x1800552d0)
  • RtlRunOnceExecuteOnce (Address: 0x180055318)
  • RtlVirtualUnwind (Address: 0x180055348)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x180055088)
  • RpcBindingFree (Address: 0x1800550a0)
  • RpcBindingFromStringBindingW (Address: 0x180055098)
  • RpcBindingSetAuthInfoExW (Address: 0x1800550a8)
  • RpcEpResolveBinding (Address: 0x1800550b8)
  • RpcStringBindingComposeW (Address: 0x180055090)
  • RpcStringFreeW (Address: 0x1800550b0)
USER32.dll
  • GetDesktopWindow (Address: 0x1800550d0)
  • MessageBoxA (Address: 0x1800550c8)