MCENTERS (3).exe

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: 485a89a78b8af031106f2b6052e2447b

File Size: 249.0 KB

Uploaded At: March 22, 2026, 1:49 p.m.

Views: 14

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess, WriteProcessMemory

Exported Functions

  • ?AddError@@YAXPEB_W@Z (Ordinal: 1, Address: 0x6030)
  • ?AddLog@@YAXPEB_W0@Z (Ordinal: 2, Address: 0x6020)
  • ?AddLog@@YAXPEB_W@Z (Ordinal: 3, Address: 0x6010)
  • ?MainLogic@@YAXXZ (Ordinal: 4, Address: 0x6000)
  • ChangePatchValues (Ordinal: 5, Address: 0x1860)
  • EnableDebugPriv (Ordinal: 6, Address: 0x17c0)
  • GetHandles (Ordinal: 7, Address: 0x1b60)
  • IsValidApp (Ordinal: 8, Address: 0x1880)
  • LaunchApp (Ordinal: 9, Address: 0x17b0)
  • ModifyApp (Ordinal: 10, Address: 0x1a50)
  • SetDataSource (Ordinal: 11, Address: 0x12a0)
  • TryFindValue (Ordinal: 12, Address: 0x1390)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x140007010)
  • LookupPrivilegeValueW (Address: 0x140007000)
  • OpenProcessToken (Address: 0x140007008)
api-ms-win-crt-heap-l1-1-0.dll
  • _callnewh (Address: 0x140007198)
  • _set_new_mode (Address: 0x1400071a0)
  • free (Address: 0x140007188)
  • malloc (Address: 0x140007190)
api-ms-win-crt-locale-l1-1-0.dll
  • _configthreadlocale (Address: 0x1400071b0)
api-ms-win-crt-math-l1-1-0.dll
  • __setusermatherr (Address: 0x1400071c0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _c_exit (Address: 0x1400071d8)
  • _cexit (Address: 0x140007240)
  • _configure_narrow_argv (Address: 0x1400071e0)
  • _crt_atexit (Address: 0x140007248)
  • _exit (Address: 0x140007200)
  • _get_narrow_winmain_command_line (Address: 0x140007220)
  • _initialize_narrow_environment (Address: 0x1400071f0)
  • _initialize_onexit_table (Address: 0x140007258)
  • _initterm (Address: 0x140007218)
  • _initterm_e (Address: 0x140007210)
  • _invalid_parameter_noinfo_noreturn (Address: 0x1400071f8)
  • _register_onexit_function (Address: 0x140007250)
  • _register_thread_local_exe_atexit_callback (Address: 0x140007228)
  • _seh_filter_exe (Address: 0x140007238)
  • _set_app_type (Address: 0x140007230)
  • abort (Address: 0x1400071d0)
  • exit (Address: 0x140007208)
  • terminate (Address: 0x1400071e8)
api-ms-win-crt-stdio-l1-1-0.dll
  • __p__commode (Address: 0x140007268)
  • _set_fmode (Address: 0x140007270)
api-ms-win-crt-string-l1-1-0.dll
  • _stricmp (Address: 0x140007288)
  • wcscat_s (Address: 0x140007280)
KERNEL32.dll
  • CloseHandle (Address: 0x140007020)
  • CreateToolhelp32Snapshot (Address: 0x140007080)
  • DeleteCriticalSection (Address: 0x140007070)
  • GetCurrentProcess (Address: 0x140007038)
  • GetCurrentProcessId (Address: 0x1400070c8)
  • GetCurrentThreadId (Address: 0x1400070d0)
  • GetLastError (Address: 0x140007088)
  • GetModuleHandleW (Address: 0x1400070b8)
  • GetStartupInfoW (Address: 0x1400070b0)
  • GetSystemTimeAsFileTime (Address: 0x1400070d8)
  • InitializeCriticalSectionEx (Address: 0x140007078)
  • InitializeSListHead (Address: 0x1400070e0)
  • IsDebuggerPresent (Address: 0x1400070a8)
  • IsProcessorFeaturePresent (Address: 0x1400070a0)
  • OpenProcess (Address: 0x140007028)
  • OutputDebugStringW (Address: 0x1400070f0)
  • Process32FirstW (Address: 0x140007048)
  • Process32NextW (Address: 0x140007050)
  • QueryPerformanceCounter (Address: 0x1400070c0)
  • ReadProcessMemory (Address: 0x140007030)
  • RtlCaptureContext (Address: 0x1400070e8)
  • RtlLookupFunctionEntry (Address: 0x140007058)
  • RtlVirtualUnwind (Address: 0x140007060)
  • SetUnhandledExceptionFilter (Address: 0x140007090)
  • Sleep (Address: 0x1400070f8)
  • TerminateProcess (Address: 0x140007098)
  • UnhandledExceptionFilter (Address: 0x140007068)
  • WriteProcessMemory (Address: 0x140007040)
mscoree.dll
  • _CorExeMain (Address: 0x140007298)
MSVCP140.dll
  • ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x140007108)
ole32.dll
  • CoCreateInstance (Address: 0x1400072a8)
  • CoInitializeEx (Address: 0x1400072b0)
  • CoUninitialize (Address: 0x1400072b8)
VCRUNTIME140_1.dll
  • __CxxFrameHandler4 (Address: 0x140007178)
VCRUNTIME140.dll
  • __C_specific_handler (Address: 0x140007130)
  • __current_exception (Address: 0x140007148)
  • __current_exception_context (Address: 0x140007128)
  • __FrameUnwindFilter (Address: 0x140007160)
  • __std_exception_copy (Address: 0x140007140)
  • __std_exception_destroy (Address: 0x140007138)
  • _CxxThrowException (Address: 0x140007118)
  • memchr (Address: 0x140007168)
  • memcpy (Address: 0x140007150)
  • memmove (Address: 0x140007120)
  • memset (Address: 0x140007158)