wintrust.dll
Description: Microsoft Trust Verification APIs
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.26100.4654
Architecture: 32-bit
Operating System: Windows NT
SHA256: 14ca3fada84914655083d201f1191e9a
File Size: 352.8 KB
Uploaded At: Dec. 3, 2025, 2:38 a.m.
Views: 9
Exported Functions
- CryptCATVerifyMember (Ordinal: 1, Address: 0x28bd0)
- CryptSIPGetInfo (Ordinal: 2, Address: 0x23480)
- CryptSIPGetRegWorkingFlags (Ordinal: 3, Address: 0x23470)
- GenericChainCertificateTrust (Ordinal: 4, Address: 0x2e950)
- GenericChainFinalProv (Ordinal: 5, Address: 0x2ebf0)
- HTTPSCertificateTrust (Ordinal: 6, Address: 0x2f1b0)
- SetMessageDigestInfo (Ordinal: 7, Address: 0x306a0)
- SoftpubDefCertInit (Ordinal: 8, Address: 0x311a0)
- SoftpubFreeDefUsageCallData (Ordinal: 9, Address: 0x31380)
- SoftpubLoadDefUsageCallData (Ordinal: 10, Address: 0x31270)
- WTHelperCertFindIssuerCertificate (Ordinal: 11, Address: 0xe2e0)
- AddPersonalTrustDBPages (Ordinal: 12, Address: 0x313c0)
- CatalogCompactHashDatabase (Ordinal: 13, Address: 0x24c90)
- ConfigCiFinalPolicy (Ordinal: 14, Address: 0x339d0)
- ConfigCiPackageFamilyNameCheck (Ordinal: 15, Address: 0x33730)
- CryptCATAdminAcquireContext2 (Ordinal: 16, Address: 0x292f0)
- CryptCATAdminAcquireContext (Ordinal: 17, Address: 0x292c0)
- CryptCATAdminAddCatalog (Ordinal: 18, Address: 0x29430)
- CryptCATAdminCalcHashFromFileHandle2 (Ordinal: 19, Address: 0x2a050)
- CryptCATAdminCalcHashFromFileHandle (Ordinal: 20, Address: 0x2a000)
- CryptCATAdminEnumCatalogFromHash (Ordinal: 21, Address: 0x29b80)
- CryptCATAdminPauseServiceForBackup (Ordinal: 22, Address: 0x29fc0)
- CryptCATAdminReleaseCatalogContext (Ordinal: 23, Address: 0x29e30)
- CryptCATAdminReleaseContext (Ordinal: 24, Address: 0x293e0)
- CryptCATAdminRemoveCatalog (Ordinal: 25, Address: 0x29720)
- CryptCATAdminResolveCatalogPath (Ordinal: 26, Address: 0x29eb0)
- CryptCATAllocSortedMemberInfo (Ordinal: 27, Address: 0x289a0)
- CryptCATCDFClose (Ordinal: 28, Address: 0x2af40)
- CryptCATCDFEnumAttributes (Ordinal: 29, Address: 0x2ba70)
- CryptCATCDFEnumAttributesWithCDFTag (Ordinal: 30, Address: 0x2baa0)
- CryptCATCDFEnumCatAttributes (Ordinal: 31, Address: 0x2b180)
- CryptCATCDFEnumMembers (Ordinal: 32, Address: 0x2b790)
- CryptCATCDFEnumMembersByCDFTag (Ordinal: 33, Address: 0x2b820)
- CryptCATCDFEnumMembersByCDFTagEx (Ordinal: 34, Address: 0x2b7e0)
- CryptCATCDFOpen (Ordinal: 35, Address: 0x2aa50)
- CryptCATCatalogInfoFromContext (Ordinal: 36, Address: 0x29d90)
- CryptCATClose (Ordinal: 37, Address: 0x28460)
- CryptCATEnumerateAttr (Ordinal: 38, Address: 0x28ed0)
- CryptCATEnumerateCatAttr (Ordinal: 39, Address: 0x28880)
- CryptCATEnumerateMember (Ordinal: 40, Address: 0x28e10)
- CryptCATFreeSortedMemberInfo (Ordinal: 41, Address: 0x28a60)
- CryptCATGetAttrInfo (Ordinal: 42, Address: 0x28c20)
- CryptCATGetCatAttrInfo (Ordinal: 43, Address: 0x285f0)
- CryptCATGetMemberInfo (Ordinal: 44, Address: 0x288f0)
- CryptCATHandleFromStore (Ordinal: 45, Address: 0x20000)
- CryptCATOpen (Ordinal: 46, Address: 0x28310)
- CryptCATPersistStore (Ordinal: 47, Address: 0x285b0)
- CryptCATPutAttrInfo (Ordinal: 48, Address: 0x28ca0)
- CryptCATPutCatAttrInfo (Ordinal: 49, Address: 0x28660)
- CryptCATPutMemberInfo (Ordinal: 50, Address: 0x28aa0)
- CryptCATStoreFromHandle (Ordinal: 51, Address: 0x20000)
- CryptSIPCreateIndirectData (Ordinal: 52, Address: 0x22af0)
- CryptSIPGetCaps (Ordinal: 53, Address: 0x22c60)
- CryptSIPGetSealedDigest (Ordinal: 54, Address: 0x22ce0)
- CryptSIPGetSignedDataMsg (Ordinal: 55, Address: 0x22940)
- CryptSIPPutSignedDataMsg (Ordinal: 56, Address: 0x229f0)
- CryptSIPRemoveSignedDataMsg (Ordinal: 57, Address: 0x22a80)
- CryptSIPVerifyIndirectData (Ordinal: 58, Address: 0x22b80)
- DllRegisterServer (Ordinal: 59, Address: 0x19e30)
- DllUnregisterServer (Ordinal: 60, Address: 0x19e70)
- DriverCleanupPolicy (Ordinal: 61, Address: 0x350a0)
- DriverFinalPolicy (Ordinal: 62, Address: 0x35270)
- DriverInitializePolicy (Ordinal: 63, Address: 0x34ed0)
- FindCertsByIssuer (Ordinal: 64, Address: 0x364e0)
- GetAuthenticodeSha256Hash (Ordinal: 65, Address: 0x331c0)
- HTTPSFinalProv (Ordinal: 66, Address: 0x2f410)
- IsCatalogFile (Ordinal: 67, Address: 0x2d250)
- MsCatConstructHashTag (Ordinal: 68, Address: 0x2d980)
- MsCatFreeHashTag (Ordinal: 69, Address: 0x2da10)
- OfficeCleanupPolicy (Ordinal: 70, Address: 0x36850)
- OfficeInitializePolicy (Ordinal: 71, Address: 0x36850)
- OpenPersonalTrustDBDialog (Ordinal: 72, Address: 0x314a0)
- OpenPersonalTrustDBDialogEx (Ordinal: 73, Address: 0x313e0)
- SoftpubAuthenticode (Ordinal: 74, Address: 0x374f0)
- SoftpubCheckCert (Ordinal: 75, Address: 0x37520)
- SoftpubCleanup (Ordinal: 76, Address: 0x37540)
- SoftpubDllRegisterServer (Ordinal: 77, Address: 0x37670)
- SoftpubDllUnregisterServer (Ordinal: 78, Address: 0x378c0)
- SoftpubDumpStructure (Ordinal: 79, Address: 0x37a20)
- SoftpubInitialize (Ordinal: 80, Address: 0x38c00)
- SoftpubLoadMessage (Ordinal: 81, Address: 0x38e00)
- SoftpubLoadSignature (Ordinal: 82, Address: 0x2f5f0)
- TrustDecode (Ordinal: 83, Address: 0x1d740)
- TrustFindIssuerCertificate (Ordinal: 84, Address: 0x1d230)
- TrustFreeDecode (Ordinal: 85, Address: 0x1d7e0)
- TrustIsCertificateSelfSigned (Ordinal: 86, Address: 0x1d4d0)
- TrustOpenStores (Ordinal: 87, Address: 0x1d3b0)
- WTHelperCertCheckValidSignature (Ordinal: 88, Address: 0x20020)
- WTHelperCertIsSelfSigned (Ordinal: 89, Address: 0xe1b0)
- WTHelperCheckCertUsage (Ordinal: 90, Address: 0x1fc80)
- WTHelperGetAgencyInfo (Ordinal: 91, Address: 0x1fbf0)
- WTHelperGetFileHandle (Ordinal: 92, Address: 0x1f9e0)
- WTHelperGetFileHash (Ordinal: 93, Address: 0x1e030)
- WTHelperGetFileName (Ordinal: 94, Address: 0x1fa30)
- WTHelperGetKnownUsages (Ordinal: 95, Address: 0x1ff80)
- WTHelperGetProvCertFromChain (Ordinal: 96, Address: 0x1f9b0)
- WTHelperGetProvPrivateDataFromChain (Ordinal: 97, Address: 0x1f910)
- WTHelperGetProvSignerFromChain (Ordinal: 98, Address: 0x1f970)
- WTHelperIsChainedToMicrosoft (Ordinal: 99, Address: 0x200e0)
- WTHelperIsChainedToMicrosoftFromStateData (Ordinal: 100, Address: 0x20050)
- WTHelperIsInRootStore (Ordinal: 101, Address: 0x1fde0)
- WTHelperOpenKnownStores (Ordinal: 102, Address: 0x1fac0)
- WTHelperProvDataFromStateData (Ordinal: 103, Address: 0x20000)
- WVTAsn1CatMemberInfo2Decode (Ordinal: 104, Address: 0x1bb00)
- WVTAsn1CatMemberInfo2Encode (Ordinal: 105, Address: 0x1ba60)
- WVTAsn1CatMemberInfoDecode (Ordinal: 106, Address: 0x1b9b0)
- WVTAsn1CatMemberInfoEncode (Ordinal: 107, Address: 0x1b890)
- WVTAsn1CatNameValueDecode (Ordinal: 108, Address: 0x1b8e0)
- WVTAsn1CatNameValueEncode (Ordinal: 109, Address: 0x1b830)
- WVTAsn1IntentToSealAttributeDecode (Ordinal: 110, Address: 0x1bc70)
- WVTAsn1IntentToSealAttributeEncode (Ordinal: 111, Address: 0x1bba0)
- WVTAsn1SealingSignatureAttributeDecode (Ordinal: 112, Address: 0x1bd50)
- WVTAsn1SealingSignatureAttributeEncode (Ordinal: 113, Address: 0x1bbd0)
- WVTAsn1SealingTimestampAttributeDecode (Ordinal: 114, Address: 0x1be40)
- WVTAsn1SealingTimestampAttributeEncode (Ordinal: 115, Address: 0x1bdf0)
- WVTAsn1SpcFinancialCriteriaInfoDecode (Ordinal: 116, Address: 0x1b100)
- WVTAsn1SpcFinancialCriteriaInfoEncode (Ordinal: 117, Address: 0x1b0d0)
- WVTAsn1SpcIndirectDataContentDecode (Ordinal: 118, Address: 0x1aad0)
- WVTAsn1SpcIndirectDataContentEncode (Ordinal: 119, Address: 0x1aa00)
- WVTAsn1SpcLinkDecode (Ordinal: 120, Address: 0x1b530)
- WVTAsn1SpcLinkEncode (Ordinal: 121, Address: 0x1b4f0)
- WVTAsn1SpcMinimalCriteriaInfoDecode (Ordinal: 122, Address: 0x1b050)
- WVTAsn1SpcMinimalCriteriaInfoEncode (Ordinal: 123, Address: 0x1b020)
- WVTAsn1SpcPeImageDataDecode (Ordinal: 124, Address: 0x1b660)
- WVTAsn1SpcPeImageDataEncode (Ordinal: 125, Address: 0x1b5d0)
- WVTAsn1SpcSigInfoDecode (Ordinal: 126, Address: 0x1b7a0)
- WVTAsn1SpcSigInfoEncode (Ordinal: 127, Address: 0x1b740)
- WVTAsn1SpcSpAgencyInfoDecode (Ordinal: 128, Address: 0x1ae30)
- WVTAsn1SpcSpAgencyInfoEncode (Ordinal: 129, Address: 0x1ac80)
- WVTAsn1SpcSpOpusInfoDecode (Ordinal: 130, Address: 0x1b3f0)
- WVTAsn1SpcSpOpusInfoEncode (Ordinal: 131, Address: 0x1b320)
- WVTAsn1SpcStatementTypeDecode (Ordinal: 132, Address: 0x1b230)
- WVTAsn1SpcStatementTypeEncode (Ordinal: 133, Address: 0x1b190)
- WinVerifyTrust (Ordinal: 134, Address: 0x1dfd0)
- WinVerifyTrustEx (Ordinal: 135, Address: 0x1df10)
- WintrustAddActionID (Ordinal: 136, Address: 0x1bf10)
- WintrustAddDefaultForUsage (Ordinal: 137, Address: 0x1da40)
- WintrustCertificateTrust (Ordinal: 138, Address: 0x12c90)
- WintrustCryptSIPGetCaps (Ordinal: 139, Address: 0x20c70)
- WintrustCryptSIPGetSealedDigest (Ordinal: 140, Address: 0x20cf0)
- WintrustCryptSIPLoad (Ordinal: 141, Address: 0x20c10)
- WintrustCryptSIPRetrieveSubjectGuid (Ordinal: 142, Address: 0x20b70)
- WintrustGetDefaultForUsage (Ordinal: 143, Address: 0x1dc50)
- WintrustGetRegPolicyFlags (Ordinal: 144, Address: 0x1cec0)
- WintrustLoadFunctionPointers (Ordinal: 145, Address: 0x1c110)
- WintrustRemoveActionID (Ordinal: 146, Address: 0x1c090)
- WintrustSetDefaultIncludePEPageHashes (Ordinal: 147, Address: 0x235b0)
- WintrustSetRegPolicyFlags (Ordinal: 148, Address: 0x1cf50)
- mscat32DllRegisterServer (Ordinal: 149, Address: 0x24fa0)
- mscat32DllUnregisterServer (Ordinal: 150, Address: 0x24fa0)
- mssip32DllRegisterServer (Ordinal: 151, Address: 0x23060)
- mssip32DllUnregisterServer (Ordinal: 152, Address: 0x23300)
Imported DLLs & Functions
ADVAPI32.dll
- AddAccessAllowedAceEx (Address: 0x47650014)
- AddAce (Address: 0x47650004)
- AdjustTokenPrivileges (Address: 0x47650038)
- AllocateAndInitializeSid (Address: 0x47650094)
- ChangeServiceConfigA (Address: 0x47650098)
- CloseServiceHandle (Address: 0x47650088)
- ControlService (Address: 0x47650000)
- ConvertStringSidToSidW (Address: 0x476500f4)
- CopySid (Address: 0x47650068)
- CryptAcquireContextA (Address: 0x476500c0)
- CryptAcquireContextW (Address: 0x47650044)
- CryptCreateHash (Address: 0x47650050)
- CryptDestroyHash (Address: 0x47650058)
- CryptGetHashParam (Address: 0x4765005c)
- CryptHashData (Address: 0x47650054)
- CryptReleaseContext (Address: 0x476500c4)
- CryptSetProvParam (Address: 0x47650040)
- DuplicateTokenEx (Address: 0x47650030)
- EqualSid (Address: 0x47650084)
- EventRegister (Address: 0x476500e8)
- EventUnregister (Address: 0x476500ec)
- EventWrite (Address: 0x4765004c)
- EventWriteTransfer (Address: 0x476500f0)
- FreeSid (Address: 0x476500a4)
- GetAce (Address: 0x4765001c)
- GetAclInformation (Address: 0x47650020)
- GetFileSecurityW (Address: 0x47650008)
- GetLengthSid (Address: 0x47650070)
- GetSecurityDescriptorDacl (Address: 0x47650028)
- GetSidIdentifierAuthority (Address: 0x47650078)
- GetSidSubAuthority (Address: 0x47650064)
- GetSidSubAuthorityCount (Address: 0x47650060)
- GetTokenInformation (Address: 0x476500b0)
- InitializeAcl (Address: 0x47650010)
- InitializeSecurityDescriptor (Address: 0x4765000c)
- IsValidSid (Address: 0x4765006c)
- LookupAccountSidW (Address: 0x47650018)
- LookupPrivilegeValueW (Address: 0x4765003c)
- OpenProcessToken (Address: 0x476500a0)
- OpenSCManagerW (Address: 0x4765008c)
- OpenServiceW (Address: 0x476500ac)
- OpenThreadToken (Address: 0x47650074)
- QueryServiceConfigA (Address: 0x47650090)
- QueryServiceStatus (Address: 0x47650080)
- RegCloseKey (Address: 0x476500d0)
- RegCreateKeyExW (Address: 0x476500d8)
- RegDeleteKeyExW (Address: 0x476500d4)
- RegEnumKeyExA (Address: 0x476500bc)
- RegEnumValueA (Address: 0x47650048)
- RegGetValueW (Address: 0x4765007c)
- RegOpenKeyExA (Address: 0x476500b8)
- RegOpenKeyExW (Address: 0x476500e0)
- RegQueryInfoKeyA (Address: 0x476500b4)
- RegQueryValueExA (Address: 0x476500c8)
- RegQueryValueExW (Address: 0x476500e4)
- RegSetValueExA (Address: 0x476500cc)
- RegSetValueExW (Address: 0x476500dc)
- SetFileSecurityW (Address: 0x47650024)
- SetSecurityDescriptorDacl (Address: 0x4765002c)
- SetThreadToken (Address: 0x47650034)
- StartServiceA (Address: 0x4765009c)
- StartServiceW (Address: 0x476500a8)
bcrypt.dll
- BCryptCloseAlgorithmProvider (Address: 0x47650510)
- BCryptCreateHash (Address: 0x4765050c)
- BCryptDestroyHash (Address: 0x47650520)
- BCryptDestroyKey (Address: 0x47650528)
- BCryptFinishHash (Address: 0x4765051c)
- BCryptGetProperty (Address: 0x4765052c)
- BCryptHashData (Address: 0x47650524)
- BCryptOpenAlgorithmProvider (Address: 0x47650514)
- BCryptVerifySignature (Address: 0x47650518)
CRYPT32.dll
- CertAddCertificateContextToStore (Address: 0x47650180)
- CertAddStoreToCollection (Address: 0x476501f4)
- CertCloseStore (Address: 0x4765020c)
- CertCompareCertificate (Address: 0x476501bc)
- CertCompareCertificateName (Address: 0x476501ec)
- CertCompareIntegerBlob (Address: 0x47650104)
- CertComparePublicKeyInfo (Address: 0x47650218)
- CertControlStore (Address: 0x4765024c)
- CertCreateCertificateChainEngine (Address: 0x4765021c)
- CertCreateCertificateContext (Address: 0x476501a4)
- CertCreateContext (Address: 0x476501c0)
- CertCreateCTLContext (Address: 0x47650194)
- CertDeleteCertificateFromStore (Address: 0x4765017c)
- CertDuplicateCertificateContext (Address: 0x4765022c)
- CertDuplicateStore (Address: 0x47650228)
- CertEnumCertificatesInStore (Address: 0x47650184)
- CertFindAttribute (Address: 0x47650204)
- CertFindCertificateInStore (Address: 0x47650118)
- CertFindExtension (Address: 0x476501f0)
- CertFindRDNAttr (Address: 0x476501b8)
- CertFindSubjectInCTL (Address: 0x4765018c)
- CertFindSubjectInSortedCTL (Address: 0x4765014c)
- CertFreeCertificateChain (Address: 0x47650210)
- CertFreeCertificateChainEngine (Address: 0x47650200)
- CertFreeCertificateContext (Address: 0x47650224)
- CertFreeCTLContext (Address: 0x47650220)
- CertGetCertificateChain (Address: 0x476501fc)
- CertGetCertificateContextProperty (Address: 0x47650120)
- CertGetEnhancedKeyUsage (Address: 0x476501f8)
- CertGetIssuerCertificateFromStore (Address: 0x47650158)
- CertGetNameStringW (Address: 0x47650198)
- CertGetSubjectCertificateFromStore (Address: 0x47650178)
- CertOIDToAlgId (Address: 0x47650110)
- CertOpenStore (Address: 0x47650214)
- CertOpenSystemStoreA (Address: 0x476501a8)
- CertRDNValueToStrW (Address: 0x476501b4)
- CertSetCertificateContextProperty (Address: 0x476501b0)
- CertVerifyCertificateChainPolicy (Address: 0x4765011c)
- CertVerifySubjectCertificateContext (Address: 0x47650108)
- CertVerifyTimeValidity (Address: 0x47650100)
- CertVerifyValidityNesting (Address: 0x476500fc)
- CryptDecodeObject (Address: 0x476501d4)
- CryptDecodeObjectEx (Address: 0x476501e8)
- CryptEncodeObject (Address: 0x4765013c)
- CryptEncodeObjectEx (Address: 0x47650140)
- CryptEnumOIDInfo (Address: 0x47650124)
- CryptExportPublicKeyInfo (Address: 0x476501ac)
- CryptFindOIDInfo (Address: 0x47650138)
- CryptHashCertificate2 (Address: 0x476501a0)
- CryptImportPublicKeyInfoEx2 (Address: 0x47650174)
- CryptInstallOIDFunctionAddress (Address: 0x47650240)
- CryptMemFree (Address: 0x47650168)
- CryptMsgClose (Address: 0x4765010c)
- CryptMsgControl (Address: 0x4765016c)
- CryptMsgDuplicate (Address: 0x4765015c)
- CryptMsgEncodeAndSignCTL (Address: 0x47650160)
- CryptMsgGetParam (Address: 0x47650170)
- CryptMsgOpenToDecode (Address: 0x47650190)
- CryptMsgUpdate (Address: 0x47650188)
- CryptMsgVerifyCountersignatureEncodedEx (Address: 0x47650164)
- CryptQueryObject (Address: 0x47650208)
- CryptRegisterOIDFunction (Address: 0x4765023c)
- CryptSIPAddProvider (Address: 0x47650134)
- CryptSIPLoad (Address: 0x4765012c)
- CryptSIPRemoveProvider (Address: 0x47650130)
- CryptSIPRetrieveSubjectGuid (Address: 0x47650128)
- CryptSIPRetrieveSubjectGuidForCatalogFile (Address: 0x47650150)
- CryptStringToBinaryW (Address: 0x47650148)
- CryptUnregisterOIDFunction (Address: 0x47650234)
- CryptVerifyMessageSignature (Address: 0x4765019c)
- I_CryptCreateLruCache (Address: 0x476501cc)
- I_CryptCreateLruEntry (Address: 0x476501d0)
- I_CryptFindLruEntryData (Address: 0x476501dc)
- I_CryptFlushLruCache (Address: 0x476501c4)
- I_CryptFreeLruCache (Address: 0x476501c8)
- I_CryptGetAsn1Decoder (Address: 0x47650248)
- I_CryptGetAsn1Encoder (Address: 0x47650230)
- I_CryptGetDefaultCryptProv (Address: 0x47650144)
- I_CryptGetTls (Address: 0x47650154)
- I_CryptInsertLruEntry (Address: 0x476501d8)
- I_CryptInstallAsn1Module (Address: 0x47650238)
- I_CryptReadTrustedPublisherDWORDValueFromRegistry (Address: 0x47650114)
- I_CryptReleaseLruEntry (Address: 0x476501e0)
- I_CryptRemoveLruEntry (Address: 0x476501e4)
- I_CryptUninstallAsn1Module (Address: 0x47650244)
KERNEL32.dll
- AcquireSRWLockExclusive (Address: 0x47650260)
- AcquireSRWLockShared (Address: 0x47650280)
- CloseHandle (Address: 0x4765026c)
- CloseThreadpoolTimer (Address: 0x4765025c)
- CompareFileTime (Address: 0x47650354)
- CreateDirectoryW (Address: 0x4765034c)
- CreateEventA (Address: 0x476503bc)
- CreateFileMappingA (Address: 0x476503e4)
- CreateFileMappingW (Address: 0x476503b4)
- CreateFileW (Address: 0x4765039c)
- CreateMutexA (Address: 0x476503c0)
- CreateMutexExW (Address: 0x4765027c)
- CreateSemaphoreExW (Address: 0x476502bc)
- CreateThreadpoolTimer (Address: 0x47650278)
- DebugBreak (Address: 0x476502e4)
- DeleteCriticalSection (Address: 0x4765030c)
- DisableThreadLibraryCalls (Address: 0x4765029c)
- DuplicateHandle (Address: 0x476503c8)
- EnterCriticalSection (Address: 0x476502b8)
- ExpandEnvironmentStringsA (Address: 0x4765031c)
- ExpandEnvironmentStringsW (Address: 0x47650378)
- FileTimeToSystemTime (Address: 0x47650398)
- FindClose (Address: 0x476503f4)
- FindFirstFileW (Address: 0x476503ec)
- FindNextFileW (Address: 0x476503f0)
- FindResourceExA (Address: 0x476502d4)
- FindResourceW (Address: 0x476503b8)
- FlushViewOfFile (Address: 0x4765035c)
- FormatMessageW (Address: 0x4765032c)
- FreeLibrary (Address: 0x476502a4)
- FreeResource (Address: 0x476502cc)
- GetCurrentDirectoryW (Address: 0x47650404)
- GetCurrentProcess (Address: 0x47650330)
- GetCurrentProcessId (Address: 0x47650284)
- GetCurrentThread (Address: 0x476503b0)
- GetCurrentThreadId (Address: 0x47650334)
- GetDateFormatA (Address: 0x47650384)
- GetEnvironmentVariableA (Address: 0x47650294)
- GetFileAttributesExW (Address: 0x47650300)
- GetFileAttributesW (Address: 0x476503f8)
- GetFileInformationByHandle (Address: 0x476503cc)
- GetFileSize (Address: 0x4765038c)
- GetFileSizeEx (Address: 0x476503d4)
- GetLastError (Address: 0x476503a0)
- GetLocalTime (Address: 0x47650388)
- GetModuleFileNameA (Address: 0x47650358)
- GetModuleFileNameW (Address: 0x47650324)
- GetModuleHandleA (Address: 0x476503a4)
- GetModuleHandleExA (Address: 0x476502d0)
- GetModuleHandleExW (Address: 0x4765033c)
- GetModuleHandleW (Address: 0x476502f4)
- GetPrivateProfileStringW (Address: 0x47650328)
- GetProcAddress (Address: 0x47650314)
- GetProcessHeap (Address: 0x47650308)
- GetSystemDirectoryW (Address: 0x476503fc)
- GetSystemInfo (Address: 0x476503e0)
- GetSystemTimeAsFileTime (Address: 0x47650304)
- GetTickCount (Address: 0x47650370)
- GetTickCount64 (Address: 0x47650400)
- GetTimeFormatA (Address: 0x47650380)
- HeapAlloc (Address: 0x47650318)
- HeapFree (Address: 0x47650348)
- InitializeCriticalSection (Address: 0x47650338)
- InitializeCriticalSectionEx (Address: 0x476502ac)
- IsDebuggerPresent (Address: 0x4765028c)
- LeaveCriticalSection (Address: 0x476502b0)
- LoadLibraryA (Address: 0x476502e0)
- LoadLibraryExA (Address: 0x47650310)
- LoadLibraryExW (Address: 0x476503ac)
- LoadLibraryW (Address: 0x476502a8)
- LoadResource (Address: 0x476502dc)
- LocalAlloc (Address: 0x47650344)
- LocalFree (Address: 0x476502c0)
- LocalReAlloc (Address: 0x47650390)
- LockResource (Address: 0x476502d8)
- lstrlenA (Address: 0x47650320)
- lstrlenW (Address: 0x476503a8)
- MapViewOfFile (Address: 0x476503e8)
- MultiByteToWideChar (Address: 0x476502e8)
- OpenSemaphoreW (Address: 0x47650268)
- OutputDebugStringA (Address: 0x4765037c)
- OutputDebugStringW (Address: 0x47650258)
- QueryPerformanceCounter (Address: 0x4765036c)
- ReadFile (Address: 0x476502f0)
- ReleaseMutex (Address: 0x47650288)
- ReleaseSemaphore (Address: 0x476502b4)
- ReleaseSRWLockExclusive (Address: 0x47650254)
- ReleaseSRWLockShared (Address: 0x47650274)
- ResetEvent (Address: 0x476502c4)
- SetEndOfFile (Address: 0x47650408)
- SetEvent (Address: 0x47650298)
- SetFileAttributesW (Address: 0x476502f8)
- SetFilePointer (Address: 0x476502fc)
- SetFilePointerEx (Address: 0x476503d8)
- SetLastError (Address: 0x47650340)
- SetThreadpoolTimer (Address: 0x47650270)
- SetUnhandledExceptionFilter (Address: 0x47650364)
- SizeofResource (Address: 0x476502c8)
- Sleep (Address: 0x47650350)
- SystemTimeToFileTime (Address: 0x47650394)
- TerminateProcess (Address: 0x47650368)
- UnhandledExceptionFilter (Address: 0x47650360)
- UnmapViewOfFile (Address: 0x476503dc)
- VirtualUnlock (Address: 0x476503d0)
- WaitForMultipleObjectsEx (Address: 0x476503c4)
- WaitForSingleObject (Address: 0x47650290)
- WaitForSingleObjectEx (Address: 0x47650264)
- WaitForThreadpoolTimerCallbacks (Address: 0x476502a0)
- WideCharToMultiByte (Address: 0x476502ec)
- WriteFile (Address: 0x47650374)
MSASN1.dll
- ASN1_CloseModule (Address: 0x476504c4)
- ASN1_CreateModule (Address: 0x47650428)
- ASN1_Decode (Address: 0x47650414)
- ASN1_Encode (Address: 0x4765041c)
- ASN1_FreeDecoded (Address: 0x47650420)
- ASN1_FreeEncoded (Address: 0x47650418)
- ASN1_SetEncoderOption (Address: 0x47650410)
- ASN1BERDecBitString (Address: 0x47650444)
- ASN1BERDecBool (Address: 0x47650490)
- ASN1BERDecChar16String (Address: 0x476504d0)
- ASN1BERDecCharString (Address: 0x47650440)
- ASN1BERDecEndOfContents (Address: 0x4765048c)
- ASN1BERDecExplicitTag (Address: 0x47650468)
- ASN1BERDecNotEndOfContents (Address: 0x47650484)
- ASN1BERDecNull (Address: 0x4765042c)
- ASN1BERDecObjectIdentifier2 (Address: 0x476504c8)
- ASN1BERDecOctetString (Address: 0x47650480)
- ASN1BERDecOctetString2 (Address: 0x47650434)
- ASN1BERDecOpenType2 (Address: 0x47650454)
- ASN1BERDecPeekTag (Address: 0x4765046c)
- ASN1BERDecS32Val (Address: 0x476504d8)
- ASN1BERDecU32Val (Address: 0x47650430)
- ASN1BERDecUTCTime (Address: 0x4765043c)
- ASN1BEREncBitString (Address: 0x47650478)
- ASN1BEREncBool (Address: 0x476504b8)
- ASN1BEREncChar16String (Address: 0x47650438)
- ASN1BEREncCharString (Address: 0x476504ac)
- ASN1BEREncEndOfContents (Address: 0x476504b0)
- ASN1BEREncExplicitTag (Address: 0x47650488)
- ASN1BEREncNull (Address: 0x476504bc)
- ASN1BEREncObjectIdentifier2 (Address: 0x476504a8)
- ASN1BEREncOctetString (Address: 0x476504c0)
- ASN1BEREncOpenType (Address: 0x476504d4)
- ASN1BEREncRemoveZeroBits (Address: 0x47650458)
- ASN1BEREncS32 (Address: 0x476504a0)
- ASN1BEREncU32 (Address: 0x4765047c)
- ASN1bitstring_cmp (Address: 0x4765045c)
- ASN1bitstring_free (Address: 0x47650424)
- ASN1CEREncBeginBlk (Address: 0x4765044c)
- ASN1CEREncEndBlk (Address: 0x47650450)
- ASN1CEREncFlushBlkElement (Address: 0x476504a4)
- ASN1CEREncNewBlkElement (Address: 0x476504b4)
- ASN1CEREncUTCTime (Address: 0x47650474)
- ASN1char16string_free (Address: 0x47650470)
- ASN1charstring_free (Address: 0x47650448)
- ASN1DecRealloc (Address: 0x47650498)
- ASN1DecSetError (Address: 0x47650464)
- ASN1EncSetError (Address: 0x4765049c)
- ASN1Free (Address: 0x476504cc)
- ASN1objectidentifier_free (Address: 0x47650494)
- ASN1octetstring_free (Address: 0x47650460)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x476505c4)
- __dllonexit (Address: 0x47650544)
- _amsg_exit (Address: 0x4765056c)
- _callnewh (Address: 0x476505b8)
- _CxxThrowException (Address: 0x476505b4)
- _errno (Address: 0x47650590)
- _except_handler4_common (Address: 0x47650534)
- _initterm (Address: 0x476505e4)
- _itow_s (Address: 0x47650598)
- _lock (Address: 0x4765053c)
- _ltoa (Address: 0x4765054c)
- _memicmp (Address: 0x47650560)
- _onexit (Address: 0x4765057c)
- _purecall (Address: 0x476505c8)
- _snwscanf_s (Address: 0x476505e0)
- _stricmp (Address: 0x47650564)
- _unlock (Address: 0x47650540)
- _vsnprintf (Address: 0x47650548)
- _vsnwprintf (Address: 0x476505dc)
- _wcsicmp (Address: 0x4765059c)
- _wcsnicmp (Address: 0x47650568)
- _wtol (Address: 0x47650570)
- _XcptFilter (Address: 0x47650584)
- ??0exception@@QAE@ABQBD@Z (Address: 0x476505a8)
- ??0exception@@QAE@ABV0@@Z (Address: 0x476505cc)
- ??0exception@@QAE@XZ (Address: 0x476505d0)
- ??1exception@@UAE@XZ (Address: 0x476505d4)
- ??1type_info@@UAE@XZ (Address: 0x47650538)
- ?what@exception@@UBEPBDXZ (Address: 0x476505ac)
- atol (Address: 0x476505a0)
- bsearch (Address: 0x476505b0)
- free (Address: 0x4765058c)
- malloc (Address: 0x47650588)
- memcmp (Address: 0x476505c0)
- memcpy (Address: 0x476505bc)
- memcpy_s (Address: 0x476505d8)
- memmove (Address: 0x47650580)
- memmove_s (Address: 0x476505a4)
- memset (Address: 0x476505e8)
- qsort (Address: 0x47650554)
- qsort_s (Address: 0x47650578)
- towupper (Address: 0x47650574)
- wcscat_s (Address: 0x47650594)
- wcschr (Address: 0x47650558)
- wcsrchr (Address: 0x47650550)
- wcstol (Address: 0x4765055c)
ntdll.dll
- LdrResSearchResource (Address: 0x476505f0)
- NtQuerySystemEnvironmentValueEx (Address: 0x47650638)
- NtQuerySystemInformation (Address: 0x4765062c)
- RtlAcquireSRWLockExclusive (Address: 0x47650604)
- RtlAcquireSRWLockShared (Address: 0x47650600)
- RtlAllocateHeap (Address: 0x47650610)
- RtlCompareUnicodeString (Address: 0x476505f8)
- RtlCreateUnicodeString (Address: 0x47650618)
- RtlEqualUnicodeString (Address: 0x476505f4)
- RtlFreeHeap (Address: 0x47650634)
- RtlFreeUnicodeString (Address: 0x47650628)
- RtlGetVersion (Address: 0x47650614)
- RtlImageNtHeaderEx (Address: 0x4765061c)
- RtlInitializeSRWLock (Address: 0x4765060c)
- RtlInitUnicodeString (Address: 0x47650624)
- RtlNtStatusToDosError (Address: 0x47650630)
- RtlReleaseSRWLockExclusive (Address: 0x47650608)
- RtlReleaseSRWLockShared (Address: 0x476505fc)
- RtlRunOnceExecuteOnce (Address: 0x47650620)
RPCRT4.dll
- NdrClientCall2 (Address: 0x476504ec)
- RpcBindingFree (Address: 0x476504e8)
- RpcBindingFromStringBindingW (Address: 0x476504f8)
- RpcBindingSetAuthInfoExW (Address: 0x476504f0)
- RpcEpResolveBinding (Address: 0x476504e4)
- RpcStringBindingComposeW (Address: 0x476504f4)
- RpcStringFreeW (Address: 0x476504e0)
USER32.dll
- GetDesktopWindow (Address: 0x47650504)
- MessageBoxA (Address: 0x47650500)