paint.dll

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: fe40ef67c71e8ef2ce832624144838eb

File Size: 4.0 MB

Uploaded At: June 18, 2026, 12:36 a.m.

Views: 21

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess, CreateRemoteThread, WriteProcessMemory, VirtualAllocEx

Exported Functions

  • DllMain (Ordinal: 1, Address: 0x3990)

Imported DLLs & Functions

api-ms-win-core-synch-l1-2-0.dll
  • WaitOnAddress (Address: 0x1802b2cd0)
  • WakeByAddressAll (Address: 0x1802b2cd8)
  • WakeByAddressSingle (Address: 0x1802b2cf8)
api-ms-win-core-winrt-error-l1-1-0.dll
  • RoOriginateErrorW (Address: 0x1802b2fd0)
api-ms-win-crt-convert-l1-1-0.dll
  • atof (Address: 0x1802b3328)
  • mbrtowc (Address: 0x1802b3330)
  • strtol (Address: 0x1802b3338)
  • strtoll (Address: 0x1802b3340)
  • strtoul (Address: 0x1802b3348)
  • strtoull (Address: 0x1802b3350)
  • wcrtomb (Address: 0x1802b3358)
api-ms-win-crt-filesystem-l1-1-0.dll
  • _lock_file (Address: 0x1802b3368)
  • _unlock_file (Address: 0x1802b3370)
api-ms-win-crt-heap-l1-1-0.dll
  • calloc (Address: 0x1802b3380)
  • free (Address: 0x1802b3388)
  • malloc (Address: 0x1802b3390)
  • realloc (Address: 0x1802b3398)
api-ms-win-crt-locale-l1-1-0.dll
  • localeconv (Address: 0x1802b33a8)
api-ms-win-crt-math-l1-1-0.dll
  • acosf (Address: 0x1802b33b8)
  • atan2f (Address: 0x1802b33c0)
  • ceilf (Address: 0x1802b33c8)
  • cosf (Address: 0x1802b33d0)
  • fmodf (Address: 0x1802b33d8)
  • log (Address: 0x1802b33e0)
  • logf (Address: 0x1802b33e8)
  • pow (Address: 0x1802b33f0)
  • powf (Address: 0x1802b33f8)
  • sinf (Address: 0x1802b3400)
  • sqrtf (Address: 0x1802b3408)
api-ms-win-crt-private-l1-1-0.dll
  • memchr (Address: 0x1802b3418)
  • memcmp (Address: 0x1802b3420)
  • memcpy (Address: 0x1802b3428)
  • memmove (Address: 0x1802b3430)
  • strchr (Address: 0x1802b3438)
  • strstr (Address: 0x1802b3440)
api-ms-win-crt-runtime-l1-1-0.dll
  • _assert (Address: 0x1802b3450)
  • _errno (Address: 0x1802b3458)
  • _execute_onexit_table (Address: 0x1802b3460)
  • _exit (Address: 0x1802b3468)
  • _initialize_onexit_table (Address: 0x1802b3470)
  • _initterm (Address: 0x1802b3478)
  • _initterm_e (Address: 0x1802b3480)
  • _register_onexit_function (Address: 0x1802b3488)
  • abort (Address: 0x1802b3490)
  • strerror (Address: 0x1802b3498)
api-ms-win-crt-stdio-l1-1-0.dll
  • __acrt_iob_func (Address: 0x1802b34a8)
  • __stdio_common_vfprintf (Address: 0x1802b34b0)
  • _fileno (Address: 0x1802b3510)
  • _setmode (Address: 0x1802b34b8)
  • fclose (Address: 0x1802b34c0)
  • fflush (Address: 0x1802b34c8)
  • fopen (Address: 0x1802b3508)
  • fputc (Address: 0x1802b34d0)
  • fread (Address: 0x1802b34d8)
  • fseek (Address: 0x1802b34e0)
  • ftell (Address: 0x1802b34e8)
  • fwrite (Address: 0x1802b34f0)
  • getc (Address: 0x1802b34f8)
  • ungetc (Address: 0x1802b3500)
api-ms-win-crt-string-l1-1-0.dll
  • isdigit (Address: 0x1802b3520)
  • isspace (Address: 0x1802b3528)
  • isxdigit (Address: 0x1802b3530)
  • mbrlen (Address: 0x1802b3538)
  • memset (Address: 0x1802b3540)
  • strcmp (Address: 0x1802b3548)
  • strlen (Address: 0x1802b3550)
  • strncmp (Address: 0x1802b3558)
  • strncpy (Address: 0x1802b3560)
  • strnlen (Address: 0x1802b3568)
  • tolower (Address: 0x1802b3570)
  • toupper (Address: 0x1802b3578)
  • wcslen (Address: 0x1802b3580)
  • wcsnlen (Address: 0x1802b3588)
api-ms-win-crt-utility-l1-1-0.dll
  • qsort (Address: 0x1802b3598)
bcryptprimitives.dll
  • ProcessPrng (Address: 0x1802b2ce8)
combase.dll
  • CoCreateFreeThreadedMarshaler (Address: 0x1802b2fa0)
d3d11.dll
  • D3D11CreateDeviceAndSwapChain (Address: 0x1802b2d08)
d3d12.dll
  • D3D12CreateDevice (Address: 0x1802b2d18)
  • D3D12GetDebugInterface (Address: 0x1802b2d20)
  • D3D12SerializeRootSignature (Address: 0x1802b2d28)
d3d9.dll
  • Direct3DCreate9 (Address: 0x1802b2d38)
d3dcompiler_47.dll
  • D3DCompile (Address: 0x1802b2d48)
dxgi.dll
  • CreateDXGIFactory2 (Address: 0x1802b2d58)
  • DXGIGetDebugInterface1 (Address: 0x1802b2d60)
KERNEL32.dll
  • AddVectoredExceptionHandler (Address: 0x1802b3038)
kernel32.dll
  • AllocConsole (Address: 0x1802b2d70)
KERNEL32.dll
  • CancelIo (Address: 0x1802b3040)
kernel32.dll
  • CloseHandle (Address: 0x1802b2d78)
KERNEL32.dll
  • CompareStringOrdinal (Address: 0x1802b3048)
  • CopyFileExW (Address: 0x1802b3050)
  • CreateDirectoryW (Address: 0x1802b3058)
kernel32.dll
  • CreateEventExW (Address: 0x1802b2d80)
KERNEL32.dll
  • CreateEventW (Address: 0x1802b3060)
  • CreateFileMappingA (Address: 0x1802b3068)
  • CreateFileW (Address: 0x1802b3070)
  • CreateHardLinkW (Address: 0x1802b3078)
  • CreatePipe (Address: 0x1802b3080)
  • CreateProcessW (Address: 0x1802b3088)
kernel32.dll
  • CreateRemoteThread (Address: 0x1802b2d88)
KERNEL32.dll
  • CreateSymbolicLinkW (Address: 0x1802b3090)
  • CreateThread (Address: 0x1802b3098)
kernel32.dll
  • CreateToolhelp32Snapshot (Address: 0x1802b2d90)
KERNEL32.dll
  • CreateWaitableTimerExW (Address: 0x1802b30a0)
  • DeleteCriticalSection (Address: 0x1802b30a8)
  • DeleteFileW (Address: 0x1802b30b0)
  • DeleteProcThreadAttributeList (Address: 0x1802b30b8)
  • DeviceIoControl (Address: 0x1802b30c0)
  • DuplicateHandle (Address: 0x1802b30c8)
  • EnterCriticalSection (Address: 0x1802b30d0)
  • ExitProcess (Address: 0x1802b30d8)
  • FindClose (Address: 0x1802b30e0)
  • FindFirstFileExW (Address: 0x1802b30e8)
  • FindNextFileW (Address: 0x1802b30f0)
  • FlushFileBuffers (Address: 0x1802b30f8)
kernel32.dll
  • FlushInstructionCache (Address: 0x1802b2d98)
  • FormatMessageW (Address: 0x1802b2fe0)
  • FreeConsole (Address: 0x1802b2da0)
KERNEL32.dll
  • FreeEnvironmentStringsW (Address: 0x1802b3100)
kernel32.dll
  • FreeLibrary (Address: 0x1802b2da8)
  • FreeLibraryAndExitThread (Address: 0x1802b2db0)
KERNEL32.dll
  • GetCommandLineW (Address: 0x1802b3108)
kernel32.dll
  • GetConsoleMode (Address: 0x1802b2db8)
KERNEL32.dll
  • GetConsoleOutputCP (Address: 0x1802b3110)
  • GetCurrentDirectoryW (Address: 0x1802b3118)
kernel32.dll
  • GetCurrentProcess (Address: 0x1802b2dc0)
  • GetCurrentProcessId (Address: 0x1802b2dc8)
KERNEL32.dll
  • GetCurrentThread (Address: 0x1802b3120)
kernel32.dll
  • GetCurrentThreadId (Address: 0x1802b2dd0)
KERNEL32.dll
  • GetEnvironmentStringsW (Address: 0x1802b3128)
  • GetEnvironmentVariableW (Address: 0x1802b3130)
  • GetExitCodeProcess (Address: 0x1802b3138)
kernel32.dll
  • GetExitCodeThread (Address: 0x1802b2dd8)
KERNEL32.dll
  • GetFileAttributesW (Address: 0x1802b3140)
  • GetFileInformationByHandle (Address: 0x1802b3148)
  • GetFileInformationByHandleEx (Address: 0x1802b3150)
  • GetFileSizeEx (Address: 0x1802b3158)
  • GetFileType (Address: 0x1802b3160)
  • GetFinalPathNameByHandleW (Address: 0x1802b3168)
  • GetFullPathNameW (Address: 0x1802b3170)
kernel32.dll
  • GetLastError (Address: 0x1802b2de0)
  • GetModuleFileNameW (Address: 0x1802b2de8)
  • GetModuleHandleA (Address: 0x1802b2df0)
  • GetModuleHandleExA (Address: 0x1802b2df8)
  • GetModuleHandleW (Address: 0x1802b2e00)
KERNEL32.dll
  • GetOverlappedResult (Address: 0x1802b3178)
kernel32.dll
  • GetProcAddress (Address: 0x1802b2e08)
  • GetProcessHeap (Address: 0x1802b3008)
KERNEL32.dll
  • GetProcessId (Address: 0x1802b3180)
kernel32.dll
  • GetStdHandle (Address: 0x1802b2e10)
KERNEL32.dll
  • GetSystemDirectoryW (Address: 0x1802b3188)
kernel32.dll
  • GetSystemInfo (Address: 0x1802b2e18)
KERNEL32.dll
  • GetSystemTimePreciseAsFileTime (Address: 0x1802b3190)
  • GetTempPathW (Address: 0x1802b3198)
  • GetThreadContext (Address: 0x1802b31a0)
  • GetWindowsDirectoryW (Address: 0x1802b31a8)
kernel32.dll
  • HeapAlloc (Address: 0x1802b2e20)
  • HeapCreate (Address: 0x1802b2e28)
  • HeapDestroy (Address: 0x1802b2e30)
  • HeapFree (Address: 0x1802b2e38)
  • HeapReAlloc (Address: 0x1802b2e40)
KERNEL32.dll
  • InitializeCriticalSection (Address: 0x1802b31c0)
  • InitializeProcThreadAttributeList (Address: 0x1802b31c8)
  • InitOnceBeginInitialize (Address: 0x1802b31b0)
  • InitOnceComplete (Address: 0x1802b31b8)
  • LeaveCriticalSection (Address: 0x1802b31d0)
kernel32.dll
  • LoadLibraryA (Address: 0x1802b2e48)
  • LoadLibraryExA (Address: 0x1802b2fb0)
KERNEL32.dll
  • LockFileEx (Address: 0x1802b31d8)
  • lstrlenW (Address: 0x1802b3318)
  • MapViewOfFile (Address: 0x1802b31e0)
  • Module32FirstW (Address: 0x1802b31e8)
  • Module32NextW (Address: 0x1802b31f0)
  • MoveFileExW (Address: 0x1802b31f8)
  • MultiByteToWideChar (Address: 0x1802b3200)
kernel32.dll
  • OpenProcess (Address: 0x1802b2e50)
  • OpenThread (Address: 0x1802b2e58)
  • Process32FirstW (Address: 0x1802b2e60)
  • Process32NextW (Address: 0x1802b2e68)
KERNEL32.dll
  • QueryPerformanceCounter (Address: 0x1802b3208)
  • QueryPerformanceFrequency (Address: 0x1802b3210)
  • RaiseException (Address: 0x1802b3218)
  • ReadConsoleW (Address: 0x1802b3220)
  • ReadFile (Address: 0x1802b3228)
  • ReadFileEx (Address: 0x1802b3230)
  • RemoveDirectoryW (Address: 0x1802b3238)
kernel32.dll
  • ResumeThread (Address: 0x1802b2e70)
KERNEL32.dll
  • RtlCaptureContext (Address: 0x1802b3240)
  • RtlLookupFunctionEntry (Address: 0x1802b3248)
  • RtlUnwindEx (Address: 0x1802b3250)
  • RtlVirtualUnwind (Address: 0x1802b3258)
kernel32.dll
  • SetConsoleMode (Address: 0x1802b2e78)
KERNEL32.dll
  • SetCurrentDirectoryW (Address: 0x1802b3260)
  • SetEnvironmentVariableW (Address: 0x1802b3268)
  • SetFileAttributesW (Address: 0x1802b3270)
  • SetFileInformationByHandle (Address: 0x1802b3278)
  • SetFilePointerEx (Address: 0x1802b3280)
  • SetFileTime (Address: 0x1802b3288)
  • SetHandleInformation (Address: 0x1802b3290)
  • SetLastError (Address: 0x1802b3298)
  • SetThreadContext (Address: 0x1802b32a0)
  • SetThreadStackGuarantee (Address: 0x1802b32a8)
  • SetWaitableTimer (Address: 0x1802b32b0)
kernel32.dll
  • Sleep (Address: 0x1802b2e80)
KERNEL32.dll
  • SleepEx (Address: 0x1802b32b8)
kernel32.dll
  • SuspendThread (Address: 0x1802b2e88)
KERNEL32.dll
  • SwitchToThread (Address: 0x1802b32c0)
  • TerminateProcess (Address: 0x1802b32c8)
kernel32.dll
  • Thread32First (Address: 0x1802b2e90)
  • Thread32Next (Address: 0x1802b2e98)
KERNEL32.dll
  • TlsAlloc (Address: 0x1802b32d0)
  • TlsFree (Address: 0x1802b32d8)
kernel32.dll
  • TlsGetValue (Address: 0x1802b2ea0)
  • TlsSetValue (Address: 0x1802b2ea8)
KERNEL32.dll
  • UnlockFile (Address: 0x1802b32e0)
  • UnmapViewOfFile (Address: 0x1802b32e8)
  • UpdateProcThreadAttribute (Address: 0x1802b32f0)
kernel32.dll
  • VirtualAlloc (Address: 0x1802b2eb0)
  • VirtualAllocEx (Address: 0x1802b2eb8)
  • VirtualFree (Address: 0x1802b2ec0)
  • VirtualFreeEx (Address: 0x1802b2ec8)
  • VirtualProtect (Address: 0x1802b2ed0)
  • VirtualQuery (Address: 0x1802b2ed8)
KERNEL32.dll
  • WaitForMultipleObjects (Address: 0x1802b32f8)
kernel32.dll
  • WaitForSingleObject (Address: 0x1802b2ee0)
  • WaitForSingleObjectEx (Address: 0x1802b2ee8)
KERNEL32.dll
  • WideCharToMultiByte (Address: 0x1802b3300)
  • WriteConsoleW (Address: 0x1802b3308)
  • WriteFileEx (Address: 0x1802b3310)
kernel32.dll
  • WriteProcessMemory (Address: 0x1802b2ef0)
libstdc++-6.dll
  • __cxa_guard_acquire (Address: 0x1802b35e0)
  • __cxa_guard_release (Address: 0x1802b35e8)
ntdll.dll
  • NtCreateFile (Address: 0x1802b35a8)
  • NtCreateNamedPipeFile (Address: 0x1802b35b0)
  • NtOpenFile (Address: 0x1802b35b8)
  • NtReadFile (Address: 0x1802b35c0)
  • NtWriteFile (Address: 0x1802b35c8)
  • RtlNtStatusToDosError (Address: 0x1802b35d0)
oleaut32.dll
  • GetErrorInfo (Address: 0x1802b2ff0)
  • SetErrorInfo (Address: 0x1802b2ff8)
  • SysAllocStringLen (Address: 0x1802b3018)
  • SysFreeString (Address: 0x1802b3020)
  • SysStringLen (Address: 0x1802b3028)
opengl32.dll
  • wglGetProcAddress (Address: 0x1802b2f00)
rpcrt4.dll
  • UuidCreate (Address: 0x1802b2fc0)
user32.dll
  • CallWindowProcW (Address: 0x1802b2f10)
  • CreateWindowExW (Address: 0x1802b2f18)
  • DefWindowProcW (Address: 0x1802b2f20)
  • DestroyWindow (Address: 0x1802b2f28)
  • EnumWindows (Address: 0x1802b2f30)
  • FindWindowW (Address: 0x1802b2f38)
  • GetClientRect (Address: 0x1802b2f40)
  • GetDpiForWindow (Address: 0x1802b2f48)
  • GetKeyState (Address: 0x1802b2f50)
  • GetRawInputData (Address: 0x1802b2f58)
  • GetWindowThreadProcessId (Address: 0x1802b2f60)
  • MapVirtualKeyW (Address: 0x1802b2f68)
  • MessageBoxA (Address: 0x1802b2f70)
  • RegisterClassExW (Address: 0x1802b2f78)
  • SetWindowLongPtrW (Address: 0x1802b2f80)
  • UnregisterClassW (Address: 0x1802b2f88)
  • WindowFromDC (Address: 0x1802b2f90)
USERENV.dll
  • GetUserProfileDirectoryW (Address: 0x1802b35f8)
WS2_32.dll
  • accept (Address: 0x1802b3648)
  • bind (Address: 0x1802b3650)
  • closesocket (Address: 0x1802b3658)
  • connect (Address: 0x1802b3660)
  • freeaddrinfo (Address: 0x1802b3668)
  • getaddrinfo (Address: 0x1802b3670)
  • GetHostNameW (Address: 0x1802b3608)
  • getpeername (Address: 0x1802b3678)
  • getsockname (Address: 0x1802b3680)
  • getsockopt (Address: 0x1802b3688)
  • ioctlsocket (Address: 0x1802b3690)
  • listen (Address: 0x1802b3698)
  • recv (Address: 0x1802b36a0)
  • recvfrom (Address: 0x1802b36a8)
  • select (Address: 0x1802b36b0)
  • send (Address: 0x1802b36b8)
  • sendto (Address: 0x1802b36c0)
  • setsockopt (Address: 0x1802b36c8)
  • shutdown (Address: 0x1802b36d0)
  • WSACleanup (Address: 0x1802b3610)
  • WSADuplicateSocketW (Address: 0x1802b3618)
  • WSAGetLastError (Address: 0x1802b3620)
  • WSARecv (Address: 0x1802b3628)
  • WSASend (Address: 0x1802b3630)
  • WSASocketW (Address: 0x1802b3638)
  • WSAStartup (Address: 0x1802b3640)