paint.dll
Description:
Authors:
Version:
Architecture: 64-bit
Operating System:
SHA256: fe40ef67c71e8ef2ce832624144838eb
File Size: 4.0 MB
Uploaded At: June 18, 2026, 12:36 a.m.
Views: 21
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess, CreateRemoteThread, WriteProcessMemory, VirtualAllocEx
Exported Functions
- DllMain (Ordinal: 1, Address: 0x3990)
Imported DLLs & Functions
api-ms-win-core-synch-l1-2-0.dll
- WaitOnAddress (Address: 0x1802b2cd0)
- WakeByAddressAll (Address: 0x1802b2cd8)
- WakeByAddressSingle (Address: 0x1802b2cf8)
api-ms-win-core-winrt-error-l1-1-0.dll
- RoOriginateErrorW (Address: 0x1802b2fd0)
api-ms-win-crt-convert-l1-1-0.dll
- atof (Address: 0x1802b3328)
- mbrtowc (Address: 0x1802b3330)
- strtol (Address: 0x1802b3338)
- strtoll (Address: 0x1802b3340)
- strtoul (Address: 0x1802b3348)
- strtoull (Address: 0x1802b3350)
- wcrtomb (Address: 0x1802b3358)
api-ms-win-crt-filesystem-l1-1-0.dll
- _lock_file (Address: 0x1802b3368)
- _unlock_file (Address: 0x1802b3370)
api-ms-win-crt-heap-l1-1-0.dll
- calloc (Address: 0x1802b3380)
- free (Address: 0x1802b3388)
- malloc (Address: 0x1802b3390)
- realloc (Address: 0x1802b3398)
api-ms-win-crt-locale-l1-1-0.dll
- localeconv (Address: 0x1802b33a8)
api-ms-win-crt-math-l1-1-0.dll
- acosf (Address: 0x1802b33b8)
- atan2f (Address: 0x1802b33c0)
- ceilf (Address: 0x1802b33c8)
- cosf (Address: 0x1802b33d0)
- fmodf (Address: 0x1802b33d8)
- log (Address: 0x1802b33e0)
- logf (Address: 0x1802b33e8)
- pow (Address: 0x1802b33f0)
- powf (Address: 0x1802b33f8)
- sinf (Address: 0x1802b3400)
- sqrtf (Address: 0x1802b3408)
api-ms-win-crt-private-l1-1-0.dll
- memchr (Address: 0x1802b3418)
- memcmp (Address: 0x1802b3420)
- memcpy (Address: 0x1802b3428)
- memmove (Address: 0x1802b3430)
- strchr (Address: 0x1802b3438)
- strstr (Address: 0x1802b3440)
api-ms-win-crt-runtime-l1-1-0.dll
- _assert (Address: 0x1802b3450)
- _errno (Address: 0x1802b3458)
- _execute_onexit_table (Address: 0x1802b3460)
- _exit (Address: 0x1802b3468)
- _initialize_onexit_table (Address: 0x1802b3470)
- _initterm (Address: 0x1802b3478)
- _initterm_e (Address: 0x1802b3480)
- _register_onexit_function (Address: 0x1802b3488)
- abort (Address: 0x1802b3490)
- strerror (Address: 0x1802b3498)
api-ms-win-crt-stdio-l1-1-0.dll
- __acrt_iob_func (Address: 0x1802b34a8)
- __stdio_common_vfprintf (Address: 0x1802b34b0)
- _fileno (Address: 0x1802b3510)
- _setmode (Address: 0x1802b34b8)
- fclose (Address: 0x1802b34c0)
- fflush (Address: 0x1802b34c8)
- fopen (Address: 0x1802b3508)
- fputc (Address: 0x1802b34d0)
- fread (Address: 0x1802b34d8)
- fseek (Address: 0x1802b34e0)
- ftell (Address: 0x1802b34e8)
- fwrite (Address: 0x1802b34f0)
- getc (Address: 0x1802b34f8)
- ungetc (Address: 0x1802b3500)
api-ms-win-crt-string-l1-1-0.dll
- isdigit (Address: 0x1802b3520)
- isspace (Address: 0x1802b3528)
- isxdigit (Address: 0x1802b3530)
- mbrlen (Address: 0x1802b3538)
- memset (Address: 0x1802b3540)
- strcmp (Address: 0x1802b3548)
- strlen (Address: 0x1802b3550)
- strncmp (Address: 0x1802b3558)
- strncpy (Address: 0x1802b3560)
- strnlen (Address: 0x1802b3568)
- tolower (Address: 0x1802b3570)
- toupper (Address: 0x1802b3578)
- wcslen (Address: 0x1802b3580)
- wcsnlen (Address: 0x1802b3588)
api-ms-win-crt-utility-l1-1-0.dll
- qsort (Address: 0x1802b3598)
bcryptprimitives.dll
- ProcessPrng (Address: 0x1802b2ce8)
combase.dll
- CoCreateFreeThreadedMarshaler (Address: 0x1802b2fa0)
d3d11.dll
- D3D11CreateDeviceAndSwapChain (Address: 0x1802b2d08)
d3d12.dll
- D3D12CreateDevice (Address: 0x1802b2d18)
- D3D12GetDebugInterface (Address: 0x1802b2d20)
- D3D12SerializeRootSignature (Address: 0x1802b2d28)
d3d9.dll
- Direct3DCreate9 (Address: 0x1802b2d38)
d3dcompiler_47.dll
- D3DCompile (Address: 0x1802b2d48)
dxgi.dll
- CreateDXGIFactory2 (Address: 0x1802b2d58)
- DXGIGetDebugInterface1 (Address: 0x1802b2d60)
KERNEL32.dll
- AddVectoredExceptionHandler (Address: 0x1802b3038)
kernel32.dll
- AllocConsole (Address: 0x1802b2d70)
KERNEL32.dll
- CancelIo (Address: 0x1802b3040)
kernel32.dll
- CloseHandle (Address: 0x1802b2d78)
KERNEL32.dll
- CompareStringOrdinal (Address: 0x1802b3048)
- CopyFileExW (Address: 0x1802b3050)
- CreateDirectoryW (Address: 0x1802b3058)
kernel32.dll
- CreateEventExW (Address: 0x1802b2d80)
KERNEL32.dll
- CreateEventW (Address: 0x1802b3060)
- CreateFileMappingA (Address: 0x1802b3068)
- CreateFileW (Address: 0x1802b3070)
- CreateHardLinkW (Address: 0x1802b3078)
- CreatePipe (Address: 0x1802b3080)
- CreateProcessW (Address: 0x1802b3088)
kernel32.dll
- CreateRemoteThread (Address: 0x1802b2d88)
KERNEL32.dll
- CreateSymbolicLinkW (Address: 0x1802b3090)
- CreateThread (Address: 0x1802b3098)
kernel32.dll
- CreateToolhelp32Snapshot (Address: 0x1802b2d90)
KERNEL32.dll
- CreateWaitableTimerExW (Address: 0x1802b30a0)
- DeleteCriticalSection (Address: 0x1802b30a8)
- DeleteFileW (Address: 0x1802b30b0)
- DeleteProcThreadAttributeList (Address: 0x1802b30b8)
- DeviceIoControl (Address: 0x1802b30c0)
- DuplicateHandle (Address: 0x1802b30c8)
- EnterCriticalSection (Address: 0x1802b30d0)
- ExitProcess (Address: 0x1802b30d8)
- FindClose (Address: 0x1802b30e0)
- FindFirstFileExW (Address: 0x1802b30e8)
- FindNextFileW (Address: 0x1802b30f0)
- FlushFileBuffers (Address: 0x1802b30f8)
kernel32.dll
- FlushInstructionCache (Address: 0x1802b2d98)
- FormatMessageW (Address: 0x1802b2fe0)
- FreeConsole (Address: 0x1802b2da0)
KERNEL32.dll
- FreeEnvironmentStringsW (Address: 0x1802b3100)
kernel32.dll
- FreeLibrary (Address: 0x1802b2da8)
- FreeLibraryAndExitThread (Address: 0x1802b2db0)
KERNEL32.dll
- GetCommandLineW (Address: 0x1802b3108)
kernel32.dll
- GetConsoleMode (Address: 0x1802b2db8)
KERNEL32.dll
- GetConsoleOutputCP (Address: 0x1802b3110)
- GetCurrentDirectoryW (Address: 0x1802b3118)
kernel32.dll
- GetCurrentProcess (Address: 0x1802b2dc0)
- GetCurrentProcessId (Address: 0x1802b2dc8)
KERNEL32.dll
- GetCurrentThread (Address: 0x1802b3120)
kernel32.dll
- GetCurrentThreadId (Address: 0x1802b2dd0)
KERNEL32.dll
- GetEnvironmentStringsW (Address: 0x1802b3128)
- GetEnvironmentVariableW (Address: 0x1802b3130)
- GetExitCodeProcess (Address: 0x1802b3138)
kernel32.dll
- GetExitCodeThread (Address: 0x1802b2dd8)
KERNEL32.dll
- GetFileAttributesW (Address: 0x1802b3140)
- GetFileInformationByHandle (Address: 0x1802b3148)
- GetFileInformationByHandleEx (Address: 0x1802b3150)
- GetFileSizeEx (Address: 0x1802b3158)
- GetFileType (Address: 0x1802b3160)
- GetFinalPathNameByHandleW (Address: 0x1802b3168)
- GetFullPathNameW (Address: 0x1802b3170)
kernel32.dll
- GetLastError (Address: 0x1802b2de0)
- GetModuleFileNameW (Address: 0x1802b2de8)
- GetModuleHandleA (Address: 0x1802b2df0)
- GetModuleHandleExA (Address: 0x1802b2df8)
- GetModuleHandleW (Address: 0x1802b2e00)
KERNEL32.dll
- GetOverlappedResult (Address: 0x1802b3178)
kernel32.dll
- GetProcAddress (Address: 0x1802b2e08)
- GetProcessHeap (Address: 0x1802b3008)
KERNEL32.dll
- GetProcessId (Address: 0x1802b3180)
kernel32.dll
- GetStdHandle (Address: 0x1802b2e10)
KERNEL32.dll
- GetSystemDirectoryW (Address: 0x1802b3188)
kernel32.dll
- GetSystemInfo (Address: 0x1802b2e18)
KERNEL32.dll
- GetSystemTimePreciseAsFileTime (Address: 0x1802b3190)
- GetTempPathW (Address: 0x1802b3198)
- GetThreadContext (Address: 0x1802b31a0)
- GetWindowsDirectoryW (Address: 0x1802b31a8)
kernel32.dll
- HeapAlloc (Address: 0x1802b2e20)
- HeapCreate (Address: 0x1802b2e28)
- HeapDestroy (Address: 0x1802b2e30)
- HeapFree (Address: 0x1802b2e38)
- HeapReAlloc (Address: 0x1802b2e40)
KERNEL32.dll
- InitializeCriticalSection (Address: 0x1802b31c0)
- InitializeProcThreadAttributeList (Address: 0x1802b31c8)
- InitOnceBeginInitialize (Address: 0x1802b31b0)
- InitOnceComplete (Address: 0x1802b31b8)
- LeaveCriticalSection (Address: 0x1802b31d0)
kernel32.dll
- LoadLibraryA (Address: 0x1802b2e48)
- LoadLibraryExA (Address: 0x1802b2fb0)
KERNEL32.dll
- LockFileEx (Address: 0x1802b31d8)
- lstrlenW (Address: 0x1802b3318)
- MapViewOfFile (Address: 0x1802b31e0)
- Module32FirstW (Address: 0x1802b31e8)
- Module32NextW (Address: 0x1802b31f0)
- MoveFileExW (Address: 0x1802b31f8)
- MultiByteToWideChar (Address: 0x1802b3200)
kernel32.dll
- OpenProcess (Address: 0x1802b2e50)
- OpenThread (Address: 0x1802b2e58)
- Process32FirstW (Address: 0x1802b2e60)
- Process32NextW (Address: 0x1802b2e68)
KERNEL32.dll
- QueryPerformanceCounter (Address: 0x1802b3208)
- QueryPerformanceFrequency (Address: 0x1802b3210)
- RaiseException (Address: 0x1802b3218)
- ReadConsoleW (Address: 0x1802b3220)
- ReadFile (Address: 0x1802b3228)
- ReadFileEx (Address: 0x1802b3230)
- RemoveDirectoryW (Address: 0x1802b3238)
kernel32.dll
- ResumeThread (Address: 0x1802b2e70)
KERNEL32.dll
- RtlCaptureContext (Address: 0x1802b3240)
- RtlLookupFunctionEntry (Address: 0x1802b3248)
- RtlUnwindEx (Address: 0x1802b3250)
- RtlVirtualUnwind (Address: 0x1802b3258)
kernel32.dll
- SetConsoleMode (Address: 0x1802b2e78)
KERNEL32.dll
- SetCurrentDirectoryW (Address: 0x1802b3260)
- SetEnvironmentVariableW (Address: 0x1802b3268)
- SetFileAttributesW (Address: 0x1802b3270)
- SetFileInformationByHandle (Address: 0x1802b3278)
- SetFilePointerEx (Address: 0x1802b3280)
- SetFileTime (Address: 0x1802b3288)
- SetHandleInformation (Address: 0x1802b3290)
- SetLastError (Address: 0x1802b3298)
- SetThreadContext (Address: 0x1802b32a0)
- SetThreadStackGuarantee (Address: 0x1802b32a8)
- SetWaitableTimer (Address: 0x1802b32b0)
kernel32.dll
- Sleep (Address: 0x1802b2e80)
KERNEL32.dll
- SleepEx (Address: 0x1802b32b8)
kernel32.dll
- SuspendThread (Address: 0x1802b2e88)
KERNEL32.dll
- SwitchToThread (Address: 0x1802b32c0)
- TerminateProcess (Address: 0x1802b32c8)
kernel32.dll
- Thread32First (Address: 0x1802b2e90)
- Thread32Next (Address: 0x1802b2e98)
KERNEL32.dll
- TlsAlloc (Address: 0x1802b32d0)
- TlsFree (Address: 0x1802b32d8)
kernel32.dll
- TlsGetValue (Address: 0x1802b2ea0)
- TlsSetValue (Address: 0x1802b2ea8)
KERNEL32.dll
- UnlockFile (Address: 0x1802b32e0)
- UnmapViewOfFile (Address: 0x1802b32e8)
- UpdateProcThreadAttribute (Address: 0x1802b32f0)
kernel32.dll
- VirtualAlloc (Address: 0x1802b2eb0)
- VirtualAllocEx (Address: 0x1802b2eb8)
- VirtualFree (Address: 0x1802b2ec0)
- VirtualFreeEx (Address: 0x1802b2ec8)
- VirtualProtect (Address: 0x1802b2ed0)
- VirtualQuery (Address: 0x1802b2ed8)
KERNEL32.dll
- WaitForMultipleObjects (Address: 0x1802b32f8)
kernel32.dll
- WaitForSingleObject (Address: 0x1802b2ee0)
- WaitForSingleObjectEx (Address: 0x1802b2ee8)
KERNEL32.dll
- WideCharToMultiByte (Address: 0x1802b3300)
- WriteConsoleW (Address: 0x1802b3308)
- WriteFileEx (Address: 0x1802b3310)
kernel32.dll
- WriteProcessMemory (Address: 0x1802b2ef0)
libstdc++-6.dll
- __cxa_guard_acquire (Address: 0x1802b35e0)
- __cxa_guard_release (Address: 0x1802b35e8)
ntdll.dll
- NtCreateFile (Address: 0x1802b35a8)
- NtCreateNamedPipeFile (Address: 0x1802b35b0)
- NtOpenFile (Address: 0x1802b35b8)
- NtReadFile (Address: 0x1802b35c0)
- NtWriteFile (Address: 0x1802b35c8)
- RtlNtStatusToDosError (Address: 0x1802b35d0)
oleaut32.dll
- GetErrorInfo (Address: 0x1802b2ff0)
- SetErrorInfo (Address: 0x1802b2ff8)
- SysAllocStringLen (Address: 0x1802b3018)
- SysFreeString (Address: 0x1802b3020)
- SysStringLen (Address: 0x1802b3028)
opengl32.dll
- wglGetProcAddress (Address: 0x1802b2f00)
rpcrt4.dll
- UuidCreate (Address: 0x1802b2fc0)
user32.dll
- CallWindowProcW (Address: 0x1802b2f10)
- CreateWindowExW (Address: 0x1802b2f18)
- DefWindowProcW (Address: 0x1802b2f20)
- DestroyWindow (Address: 0x1802b2f28)
- EnumWindows (Address: 0x1802b2f30)
- FindWindowW (Address: 0x1802b2f38)
- GetClientRect (Address: 0x1802b2f40)
- GetDpiForWindow (Address: 0x1802b2f48)
- GetKeyState (Address: 0x1802b2f50)
- GetRawInputData (Address: 0x1802b2f58)
- GetWindowThreadProcessId (Address: 0x1802b2f60)
- MapVirtualKeyW (Address: 0x1802b2f68)
- MessageBoxA (Address: 0x1802b2f70)
- RegisterClassExW (Address: 0x1802b2f78)
- SetWindowLongPtrW (Address: 0x1802b2f80)
- UnregisterClassW (Address: 0x1802b2f88)
- WindowFromDC (Address: 0x1802b2f90)
USERENV.dll
- GetUserProfileDirectoryW (Address: 0x1802b35f8)
WS2_32.dll
- accept (Address: 0x1802b3648)
- bind (Address: 0x1802b3650)
- closesocket (Address: 0x1802b3658)
- connect (Address: 0x1802b3660)
- freeaddrinfo (Address: 0x1802b3668)
- getaddrinfo (Address: 0x1802b3670)
- GetHostNameW (Address: 0x1802b3608)
- getpeername (Address: 0x1802b3678)
- getsockname (Address: 0x1802b3680)
- getsockopt (Address: 0x1802b3688)
- ioctlsocket (Address: 0x1802b3690)
- listen (Address: 0x1802b3698)
- recv (Address: 0x1802b36a0)
- recvfrom (Address: 0x1802b36a8)
- select (Address: 0x1802b36b0)
- send (Address: 0x1802b36b8)
- sendto (Address: 0x1802b36c0)
- setsockopt (Address: 0x1802b36c8)
- shutdown (Address: 0x1802b36d0)
- WSACleanup (Address: 0x1802b3610)
- WSADuplicateSocketW (Address: 0x1802b3618)
- WSAGetLastError (Address: 0x1802b3620)
- WSARecv (Address: 0x1802b3628)
- WSASend (Address: 0x1802b3630)
- WSASocketW (Address: 0x1802b3638)
- WSAStartup (Address: 0x1802b3640)