kwpsshellext.dll
Description: KWPS Shellext
Authors: Copyright©2025 Kingsoft Corporation. All rights reserved.
Version: 12.1.0.23542
Architecture: 32-bit
Operating System: Windows NT
SHA256: bbd7dae37d401a567c6e780179232f9d
File Size: 1.3 MB
Uploaded At: Dec. 4, 2025, 6:12 a.m.
Views: 6
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x5c10)
- DllGetClassObject (Ordinal: 2, Address: 0x5cc0)
- DllInstall (Ordinal: 3, Address: 0x5e90)
- DllRegisterServer (Ordinal: 4, Address: 0x5ec0)
- DllUnregisterServer (Ordinal: 5, Address: 0x7560)
Imported DLLs & Functions
KERNEL32.dll
- AcquireSRWLockExclusive (Address: 0x100f7224)
- AreFileApisANSI (Address: 0x100f7240)
- CloseHandle (Address: 0x100f707c)
- CompareFileTime (Address: 0x100f70e8)
- CompareStringEx (Address: 0x100f7254)
- CompareStringW (Address: 0x100f71dc)
- CreateDirectoryW (Address: 0x100f70ec)
- CreateEventW (Address: 0x100f715c)
- CreateFileW (Address: 0x100f70c4)
- CreateProcessW (Address: 0x100f7138)
- CreateToolhelp32Snapshot (Address: 0x100f7148)
- DecodePointer (Address: 0x100f7010)
- DeleteCriticalSection (Address: 0x100f7020)
- DeleteFileW (Address: 0x100f7134)
- DisableThreadLibraryCalls (Address: 0x100f702c)
- EncodePointer (Address: 0x100f7030)
- EnterCriticalSection (Address: 0x100f704c)
- EnumSystemLocalesW (Address: 0x100f71c4)
- ExitProcess (Address: 0x100f71f0)
- ExpandEnvironmentStringsW (Address: 0x100f713c)
- FileTimeToSystemTime (Address: 0x100f7114)
- FindClose (Address: 0x100f70f0)
- FindFirstFileExW (Address: 0x100f7238)
- FindFirstFileW (Address: 0x100f70a8)
- FindNextFileW (Address: 0x100f70f4)
- FindResourceExW (Address: 0x100f70bc)
- FindResourceW (Address: 0x100f7070)
- FlushFileBuffers (Address: 0x100f71b8)
- FlushInstructionCache (Address: 0x100f717c)
- FormatMessageA (Address: 0x100f7218)
- FreeEnvironmentStringsW (Address: 0x100f7198)
- FreeLibrary (Address: 0x100f7054)
- GetACP (Address: 0x100f71a8)
- GetCommandLineA (Address: 0x100f71a0)
- GetCommandLineW (Address: 0x100f711c)
- GetCompressedFileSizeW (Address: 0x100f7158)
- GetConsoleCP (Address: 0x100f71b4)
- GetConsoleMode (Address: 0x100f71c0)
- GetCPInfo (Address: 0x100f7258)
- GetCurrentProcess (Address: 0x100f70d8)
- GetCurrentProcessId (Address: 0x100f7024)
- GetCurrentThread (Address: 0x100f70b0)
- GetCurrentThreadId (Address: 0x100f7028)
- GetDateFormatW (Address: 0x100f71e4)
- GetDriveTypeW (Address: 0x100f7098)
- GetEnvironmentStringsW (Address: 0x100f719c)
- GetEnvironmentVariableW (Address: 0x100f712c)
- GetFileAttributesExW (Address: 0x100f70fc)
- GetFileAttributesW (Address: 0x100f70f8)
- GetFileInformationByHandleEx (Address: 0x100f70cc)
- GetFileSizeEx (Address: 0x100f70c8)
- GetFileType (Address: 0x100f71e8)
- GetLastError (Address: 0x100f7018)
- GetLocaleInfoEx (Address: 0x100f7250)
- GetLocaleInfoW (Address: 0x100f71d4)
- GetLocalTime (Address: 0x100f7094)
- GetLongPathNameW (Address: 0x100f7154)
- GetModuleFileNameW (Address: 0x100f7058)
- GetModuleHandleExW (Address: 0x100f71f4)
- GetModuleHandleW (Address: 0x100f705c)
- GetNumberFormatW (Address: 0x100f70d0)
- GetOEMCP (Address: 0x100f71a4)
- GetPrivateProfileIntW (Address: 0x100f7120)
- GetPrivateProfileStringW (Address: 0x100f7124)
- GetProcAddress (Address: 0x100f7060)
- GetProcessHeap (Address: 0x100f7048)
- GetStartupInfoW (Address: 0x100f7270)
- GetStdHandle (Address: 0x100f71ec)
- GetStringTypeW (Address: 0x100f7230)
- GetSystemDirectoryW (Address: 0x100f709c)
- GetSystemInfo (Address: 0x100f7214)
- GetSystemTime (Address: 0x100f710c)
- GetSystemTimeAsFileTime (Address: 0x100f724c)
- GetSystemWow64DirectoryW (Address: 0x100f70ac)
- GetThreadContext (Address: 0x100f7174)
- GetTickCount (Address: 0x100f70a4)
- GetTimeFormatW (Address: 0x100f71e0)
- GetTimeZoneInformation (Address: 0x100f71b0)
- GetUserDefaultLCID (Address: 0x100f71c8)
- GetUserDefaultUILanguage (Address: 0x100f7128)
- GetWindowsDirectoryW (Address: 0x100f70dc)
- GlobalLock (Address: 0x100f7088)
- GlobalUnlock (Address: 0x100f7084)
- HeapAlloc (Address: 0x100f7038)
- HeapDestroy (Address: 0x100f7034)
- HeapFree (Address: 0x100f7040)
- HeapReAlloc (Address: 0x100f703c)
- HeapSize (Address: 0x100f7044)
- InitializeCriticalSectionAndSpinCount (Address: 0x100f701c)
- InitializeCriticalSectionEx (Address: 0x100f7228)
- InitializeSListHead (Address: 0x100f7004)
- InitializeSRWLock (Address: 0x100f721c)
- InterlockedFlushSList (Address: 0x100f7208)
- InterlockedPushEntrySList (Address: 0x100f720c)
- IsDebuggerPresent (Address: 0x100f725c)
- IsProcessorFeaturePresent (Address: 0x100f7194)
- IsValidCodePage (Address: 0x100f71ac)
- IsValidLocale (Address: 0x100f71cc)
- IsWow64Process (Address: 0x100f70e0)
- LCMapStringEx (Address: 0x100f7248)
- LCMapStringW (Address: 0x100f71d8)
- LeaveCriticalSection (Address: 0x100f7050)
- LoadLibraryExA (Address: 0x100f7190)
- LoadLibraryExW (Address: 0x100f7064)
- LoadLibraryW (Address: 0x100f70a0)
- LoadResource (Address: 0x100f7068)
- LocalFree (Address: 0x100f7234)
- LockResource (Address: 0x100f70c0)
- lstrcmpiW (Address: 0x100f7074)
- lstrlenW (Address: 0x100f70e4)
- MultiByteToWideChar (Address: 0x100f7078)
- OpenProcess (Address: 0x100f7080)
- OutputDebugStringA (Address: 0x100f7160)
- OutputDebugStringW (Address: 0x100f700c)
- Process32FirstW (Address: 0x100f714c)
- Process32NextW (Address: 0x100f7150)
- ProcessIdToSessionId (Address: 0x100f7144)
- QueryFullProcessImageNameW (Address: 0x100f708c)
- QueryPerformanceCounter (Address: 0x100f7164)
- QueryPerformanceFrequency (Address: 0x100f7168)
- RaiseException (Address: 0x100f7014)
- ReadConsoleW (Address: 0x100f71bc)
- ReadFile (Address: 0x100f7100)
- ReleaseSRWLockExclusive (Address: 0x100f7220)
- ResetEvent (Address: 0x100f7264)
- ResumeThread (Address: 0x100f7170)
- RtlUnwind (Address: 0x100f7210)
- SetEndOfFile (Address: 0x100f723c)
- SetEnvironmentVariableW (Address: 0x100f7130)
- SetEvent (Address: 0x100f7260)
- SetFilePointerEx (Address: 0x100f7104)
- SetLastError (Address: 0x100f70d4)
- SetStdHandle (Address: 0x100f7008)
- SetThreadContext (Address: 0x100f7178)
- SetUnhandledExceptionFilter (Address: 0x100f726c)
- SizeofResource (Address: 0x100f706c)
- Sleep (Address: 0x100f7140)
- SuspendThread (Address: 0x100f716c)
- SystemTimeToFileTime (Address: 0x100f7118)
- SystemTimeToTzSpecificLocalTime (Address: 0x100f7110)
- TerminateProcess (Address: 0x100f71d0)
- TlsAlloc (Address: 0x100f7204)
- TlsFree (Address: 0x100f71f8)
- TlsGetValue (Address: 0x100f7200)
- TlsSetValue (Address: 0x100f71fc)
- TryEnterCriticalSection (Address: 0x100f722c)
- UnhandledExceptionFilter (Address: 0x100f7268)
- VerifyVersionInfoW (Address: 0x100f70b8)
- VerSetConditionMask (Address: 0x100f70b4)
- VirtualAlloc (Address: 0x100f7180)
- VirtualFree (Address: 0x100f7188)
- VirtualProtect (Address: 0x100f7184)
- VirtualQuery (Address: 0x100f718c)
- WaitForSingleObjectEx (Address: 0x100f7244)
- WideCharToMultiByte (Address: 0x100f7090)
- WriteConsoleW (Address: 0x100f7000)
- WriteFile (Address: 0x100f7108)
PROPSYS.dll
- PropVariantToString (Address: 0x100f7278)
USER32.dll
- CharNextW (Address: 0x100f72fc)
- CreateMenu (Address: 0x100f72e4)
- EnumChildWindows (Address: 0x100f7280)
- FindWindowExW (Address: 0x100f72a0)
- GetDC (Address: 0x100f72d0)
- GetDlgCtrlID (Address: 0x100f728c)
- GetDlgItem (Address: 0x100f72bc)
- GetDlgItemTextW (Address: 0x100f7290)
- GetIconInfo (Address: 0x100f72c8)
- GetMenuItemCount (Address: 0x100f72f8)
- GetMenuItemInfoW (Address: 0x100f72f4)
- GetMenuStringW (Address: 0x100f72e8)
- GetParent (Address: 0x100f72a4)
- GetSubMenu (Address: 0x100f7294)
- GetSysColor (Address: 0x100f7284)
- GetWindowLongW (Address: 0x100f72ac)
- GetWindowRect (Address: 0x100f72b0)
- GetWindowTextLengthW (Address: 0x100f72b4)
- GetWindowTextW (Address: 0x100f72b8)
- InsertMenuItemW (Address: 0x100f72d4)
- InsertMenuW (Address: 0x100f72e0)
- KillTimer (Address: 0x100f72ec)
- MonitorFromWindow (Address: 0x100f7298)
- ReleaseDC (Address: 0x100f72cc)
- RemoveMenu (Address: 0x100f72dc)
- SendMessageW (Address: 0x100f72c4)
- SetDlgItemTextW (Address: 0x100f7300)
- SetMenuItemBitmaps (Address: 0x100f72d8)
- SetTimer (Address: 0x100f72f0)
- SetWindowLongW (Address: 0x100f72a8)
- SetWindowPos (Address: 0x100f72c0)
- SetWindowTextW (Address: 0x100f7288)
- SystemParametersInfoW (Address: 0x100f729c)