VtIndicator - Copy.dll

Description:

Authors:

Version:

Architecture: 32-bit

Operating System:

SHA256: f1fbb4c0449a6476957c95c3af7048f3

File Size: 228.0 KB

Uploaded At: March 28, 2026, 4:32 p.m.

Views: 8

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • MSXInfo (Ordinal: 1, Address: 0x17220)
  • MSXNthFunction (Ordinal: 2, Address: 0x170b0)
  • RahulBD (Ordinal: 3, Address: 0x17030)
  • RahulTD (Ordinal: 4, Address: 0x16ff0)
  • RahulTH1 (Ordinal: 5, Address: 0x16ef0)
  • RahulTH2 (Ordinal: 6, Address: 0x16f30)
  • RahulZDO (Ordinal: 7, Address: 0x16f70)
  • RahulZH (Ordinal: 8, Address: 0x16fb0)

Imported DLLs & Functions

ADVAPI32.dll
  • RegCloseKey (Address: 0x1002b00c)
  • RegCreateKeyExA (Address: 0x1002b010)
  • RegOpenKeyExA (Address: 0x1002b004)
  • RegQueryValueExA (Address: 0x1002b008)
  • RegSetValueExA (Address: 0x1002b000)
iphlpapi.dll
  • GetAdaptersInfo (Address: 0x1002b21c)
KERNEL32.dll
  • CloseHandle (Address: 0x1002b054)
  • CreateFileA (Address: 0x1002b080)
  • CreateThread (Address: 0x1002b168)
  • DeleteCriticalSection (Address: 0x1002b01c)
  • DeviceIoControl (Address: 0x1002b07c)
  • EnterCriticalSection (Address: 0x1002b0b8)
  • ExitProcess (Address: 0x1002b10c)
  • ExitThread (Address: 0x1002b160)
  • FindResourceA (Address: 0x1002b02c)
  • FindResourceExA (Address: 0x1002b030)
  • FlushFileBuffers (Address: 0x1002b0a0)
  • FreeEnvironmentStringsA (Address: 0x1002b0e8)
  • FreeEnvironmentStringsW (Address: 0x1002b0e0)
  • FreeLibrary (Address: 0x1002b038)
  • GetACP (Address: 0x1002b084)
  • GetCommandLineA (Address: 0x1002b16c)
  • GetConsoleCP (Address: 0x1002b0cc)
  • GetConsoleMode (Address: 0x1002b0b4)
  • GetConsoleOutputCP (Address: 0x1002b0a8)
  • GetCPInfo (Address: 0x1002b170)
  • GetCurrentProcess (Address: 0x1002b124)
  • GetCurrentProcessId (Address: 0x1002b05c)
  • GetCurrentThreadId (Address: 0x1002b164)
  • GetEnvironmentStrings (Address: 0x1002b0e4)
  • GetEnvironmentStringsW (Address: 0x1002b0dc)
  • GetFileType (Address: 0x1002b0f0)
  • GetLastError (Address: 0x1002b0bc)
  • GetLocaleInfoA (Address: 0x1002b088)
  • GetModuleFileNameA (Address: 0x1002b04c)
  • GetModuleHandleA (Address: 0x1002b15c)
  • GetOEMCP (Address: 0x1002b14c)
  • GetProcAddress (Address: 0x1002b034)
  • GetProcessHeap (Address: 0x1002b060)
  • GetStartupInfoA (Address: 0x1002b0ec)
  • GetStdHandle (Address: 0x1002b104)
  • GetStringTypeA (Address: 0x1002b100)
  • GetStringTypeW (Address: 0x1002b0fc)
  • GetSystemDirectoryA (Address: 0x1002b040)
  • GetSystemTimeAsFileTime (Address: 0x1002b150)
  • GetThreadLocale (Address: 0x1002b08c)
  • GetTickCount (Address: 0x1002b0d4)
  • GetVersionExA (Address: 0x1002b090)
  • GetVolumeInformationA (Address: 0x1002b048)
  • GetWindowsDirectoryA (Address: 0x1002b050)
  • HeapAlloc (Address: 0x1002b068)
  • HeapCreate (Address: 0x1002b114)
  • HeapDestroy (Address: 0x1002b098)
  • HeapFree (Address: 0x1002b064)
  • HeapReAlloc (Address: 0x1002b070)
  • HeapSize (Address: 0x1002b09c)
  • InitializeCriticalSection (Address: 0x1002b018)
  • InterlockedDecrement (Address: 0x1002b178)
  • InterlockedExchange (Address: 0x1002b0c8)
  • InterlockedIncrement (Address: 0x1002b174)
  • IsDebuggerPresent (Address: 0x1002b118)
  • IsValidCodePage (Address: 0x1002b148)
  • LCMapStringA (Address: 0x1002b130)
  • LCMapStringW (Address: 0x1002b12c)
  • LeaveCriticalSection (Address: 0x1002b078)
  • LoadLibraryA (Address: 0x1002b03c)
  • LoadResource (Address: 0x1002b028)
  • LockResource (Address: 0x1002b024)
  • lstrlenA (Address: 0x1002b074)
  • lstrlenW (Address: 0x1002b06c)
  • MultiByteToWideChar (Address: 0x1002b0c4)
  • OpenProcess (Address: 0x1002b058)
  • QueryPerformanceCounter (Address: 0x1002b0d8)
  • RaiseException (Address: 0x1002b094)
  • RtlUnwind (Address: 0x1002b154)
  • SetFilePointer (Address: 0x1002b0d0)
  • SetHandleCount (Address: 0x1002b0f4)
  • SetLastError (Address: 0x1002b134)
  • SetStdHandle (Address: 0x1002b0b0)
  • SetUnhandledExceptionFilter (Address: 0x1002b11c)
  • SizeofResource (Address: 0x1002b020)
  • Sleep (Address: 0x1002b0f8)
  • TerminateProcess (Address: 0x1002b128)
  • TlsAlloc (Address: 0x1002b140)
  • TlsFree (Address: 0x1002b138)
  • TlsGetValue (Address: 0x1002b144)
  • TlsSetValue (Address: 0x1002b13c)
  • UnhandledExceptionFilter (Address: 0x1002b120)
  • VirtualAlloc (Address: 0x1002b158)
  • VirtualFree (Address: 0x1002b110)
  • WaitForSingleObject (Address: 0x1002b044)
  • WideCharToMultiByte (Address: 0x1002b0c0)
  • WriteConsoleA (Address: 0x1002b0ac)
  • WriteConsoleW (Address: 0x1002b0a4)
  • WriteFile (Address: 0x1002b108)
ole32.dll
  • CoCreateInstance (Address: 0x1002b230)
  • CoInitialize (Address: 0x1002b22c)
  • CoInitializeEx (Address: 0x1002b224)
  • CoUninitialize (Address: 0x1002b228)
OLEAUT32.dll
  • SysAllocStringLen (Address: 0x1002b188)
  • SysFreeString (Address: 0x1002b180)
  • SysStringLen (Address: 0x1002b18c)
  • VariantClear (Address: 0x1002b190)
  • VariantInit (Address: 0x1002b184)
PSAPI.DLL
  • EnumProcessModules (Address: 0x1002b19c)
  • GetModuleFileNameExA (Address: 0x1002b198)
USER32.dll
  • EnumDisplayDevicesA (Address: 0x1002b1ac)
  • MessageBoxExA (Address: 0x1002b1a8)
  • UnregisterClassA (Address: 0x1002b1a4)
WS2_32.dll
  • closesocket (Address: 0x1002b208)
  • gethostbyaddr (Address: 0x1002b1c8)
  • gethostbyname (Address: 0x1002b1dc)
  • getservbyname (Address: 0x1002b1d0)
  • getservbyport (Address: 0x1002b210)
  • htonl (Address: 0x1002b1d4)
  • htons (Address: 0x1002b1cc)
  • inet_addr (Address: 0x1002b1e4)
  • inet_ntoa (Address: 0x1002b1d8)
  • ntohs (Address: 0x1002b1c0)
  • WSACleanup (Address: 0x1002b1bc)
  • WSACloseEvent (Address: 0x1002b1b8)
  • WSAConnect (Address: 0x1002b1c4)
  • WSACreateEvent (Address: 0x1002b200)
  • WSAEnumNetworkEvents (Address: 0x1002b1b4)
  • WSAEventSelect (Address: 0x1002b1f8)
  • WSAGetLastError (Address: 0x1002b1e0)
  • WSAGetOverlappedResult (Address: 0x1002b1e8)
  • WSARecv (Address: 0x1002b1f4)
  • WSAResetEvent (Address: 0x1002b1f0)
  • WSASend (Address: 0x1002b1ec)
  • WSASetEvent (Address: 0x1002b1fc)
  • WSASetLastError (Address: 0x1002b214)
  • WSASocketA (Address: 0x1002b20c)
  • WSAStartup (Address: 0x1002b204)