iAuto.tieudattai.dll

Description:

Authors:

Version:

Architecture: 32-bit

Operating System:

SHA256: 3d4a03d43f37f894a34bf1ffa9a8689c

File Size: 844.0 KB

Uploaded At: June 18, 2026, 3:59 p.m.

Views: 27

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: WriteProcessMemory

Exported Functions

  • SetHook (Ordinal: 1, Address: 0xc860)
  • UnHook (Ordinal: 2, Address: 0xcd30)
  • InstallHook (Ordinal: 3, Address: 0x13fd0)

Imported DLLs & Functions

KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x100b30e0)
  • CloseHandle (Address: 0x100b300c)
  • CloseThreadpoolTimer (Address: 0x100b314c)
  • CloseThreadpoolWait (Address: 0x100b3158)
  • CompareStringEx (Address: 0x100b316c)
  • CompareStringW (Address: 0x100b31f8)
  • CreateEventA (Address: 0x100b302c)
  • CreateEventExW (Address: 0x100b3124)
  • CreateFileA (Address: 0x100b3000)
  • CreateFileMappingA (Address: 0x100b3064)
  • CreateFileW (Address: 0x100b3074)
  • CreateMutexA (Address: 0x100b3028)
  • CreateSemaphoreExW (Address: 0x100b3128)
  • CreateSymbolicLinkW (Address: 0x100b3164)
  • CreateThread (Address: 0x100b303c)
  • CreateThreadpoolTimer (Address: 0x100b3140)
  • CreateThreadpoolWait (Address: 0x100b3150)
  • CreateToolhelp32Snapshot (Address: 0x100b3068)
  • DecodePointer (Address: 0x100b3008)
  • DeleteCriticalSection (Address: 0x100b301c)
  • DeviceIoControl (Address: 0x100b3014)
  • DisableThreadLibraryCalls (Address: 0x100b3058)
  • EncodePointer (Address: 0x100b310c)
  • EnterCriticalSection (Address: 0x100b30f4)
  • EnumSystemLocalesW (Address: 0x100b320c)
  • ExitProcess (Address: 0x100b31c4)
  • FindClose (Address: 0x100b30a8)
  • FindFirstFileExW (Address: 0x100b30a4)
  • FindNextFileW (Address: 0x100b30a0)
  • FlsAlloc (Address: 0x100b31dc)
  • FlsFree (Address: 0x100b31e8)
  • FlsGetValue (Address: 0x100b31e0)
  • FlsSetValue (Address: 0x100b31e4)
  • FlushFileBuffers (Address: 0x100b30d4)
  • FlushProcessWriteBuffers (Address: 0x100b312c)
  • FormatMessageA (Address: 0x100b30ec)
  • FreeEnvironmentStringsW (Address: 0x100b3084)
  • FreeLibrary (Address: 0x100b31bc)
  • FreeLibraryWhenCallbackReturns (Address: 0x100b313c)
  • GetACP (Address: 0x100b3098)
  • GetCommandLineA (Address: 0x100b3090)
  • GetCommandLineW (Address: 0x100b308c)
  • GetConsoleMode (Address: 0x100b30cc)
  • GetConsoleOutputCP (Address: 0x100b30d0)
  • GetCPInfo (Address: 0x100b3170)
  • GetCurrentProcess (Address: 0x100b3034)
  • GetCurrentProcessId (Address: 0x100b3038)
  • GetCurrentProcessorNumber (Address: 0x100b3130)
  • GetCurrentThread (Address: 0x100b31d0)
  • GetCurrentThreadId (Address: 0x100b30e8)
  • GetDateFormatW (Address: 0x100b31f0)
  • GetEnvironmentStringsW (Address: 0x100b3088)
  • GetFileInformationByHandleEx (Address: 0x100b3160)
  • GetFileSizeEx (Address: 0x100b30c4)
  • GetFileType (Address: 0x100b30d8)
  • GetLastError (Address: 0x100b3010)
  • GetLocaleInfoEx (Address: 0x100b3108)
  • GetLocaleInfoW (Address: 0x100b3200)
  • GetModuleFileNameW (Address: 0x100b31cc)
  • GetModuleHandleA (Address: 0x100b305c)
  • GetModuleHandleExW (Address: 0x100b31c8)
  • GetModuleHandleW (Address: 0x100b315c)
  • GetOEMCP (Address: 0x100b3094)
  • GetProcAddress (Address: 0x100b3060)
  • GetProcessHeap (Address: 0x100b307c)
  • GetStartupInfoW (Address: 0x100b3190)
  • GetStdHandle (Address: 0x100b3210)
  • GetStringTypeW (Address: 0x100b3168)
  • GetSystemDirectoryA (Address: 0x100b3040)
  • GetSystemTimeAsFileTime (Address: 0x100b3134)
  • GetTempPathW (Address: 0x100b311c)
  • GetTickCount64 (Address: 0x100b3138)
  • GetTimeFormatW (Address: 0x100b31f4)
  • GetTimeZoneInformation (Address: 0x100b30b0)
  • GetUserDefaultLCID (Address: 0x100b3208)
  • HeapAlloc (Address: 0x100b31d4)
  • HeapFree (Address: 0x100b31d8)
  • HeapReAlloc (Address: 0x100b30b4)
  • HeapSize (Address: 0x100b30ac)
  • InitializeCriticalSectionAndSpinCount (Address: 0x100b31a8)
  • InitializeCriticalSectionEx (Address: 0x100b3018)
  • InitializeSListHead (Address: 0x100b3194)
  • InitOnceExecuteOnce (Address: 0x100b3120)
  • InterlockedFlushSList (Address: 0x100b31a0)
  • InterlockedPushEntrySList (Address: 0x100b319c)
  • IsDebuggerPresent (Address: 0x100b3174)
  • IsProcessorFeaturePresent (Address: 0x100b318c)
  • IsThreadAFiber (Address: 0x100b31ec)
  • IsValidCodePage (Address: 0x100b309c)
  • IsValidLocale (Address: 0x100b3204)
  • LCMapStringEx (Address: 0x100b3114)
  • LCMapStringW (Address: 0x100b31fc)
  • LeaveCriticalSection (Address: 0x100b30f8)
  • LoadLibraryExW (Address: 0x100b31c0)
  • LocalFree (Address: 0x100b3104)
  • MapViewOfFile (Address: 0x100b3050)
  • Module32First (Address: 0x100b306c)
  • MultiByteToWideChar (Address: 0x100b3110)
  • OutputDebugStringW (Address: 0x100b3178)
  • QueryPerformanceCounter (Address: 0x100b30fc)
  • QueryPerformanceFrequency (Address: 0x100b3100)
  • RaiseException (Address: 0x100b317c)
  • ReadConsoleW (Address: 0x100b30bc)
  • ReadFile (Address: 0x100b30c8)
  • ReleaseSRWLockExclusive (Address: 0x100b30dc)
  • RtlUnwind (Address: 0x100b3198)
  • SetConsoleCtrlHandler (Address: 0x100b30b8)
  • SetEndOfFile (Address: 0x100b3214)
  • SetEnvironmentVariableW (Address: 0x100b3080)
  • SetEvent (Address: 0x100b3020)
  • SetFileInformationByHandle (Address: 0x100b3118)
  • SetFilePointerEx (Address: 0x100b30c0)
  • SetLastError (Address: 0x100b31a4)
  • SetStdHandle (Address: 0x100b3078)
  • SetThreadpoolTimer (Address: 0x100b3144)
  • SetThreadpoolWait (Address: 0x100b3154)
  • SetUnhandledExceptionFilter (Address: 0x100b3184)
  • Sleep (Address: 0x100b3030)
  • TerminateProcess (Address: 0x100b3188)
  • TlsAlloc (Address: 0x100b31ac)
  • TlsFree (Address: 0x100b31b8)
  • TlsGetValue (Address: 0x100b31b0)
  • TlsSetValue (Address: 0x100b31b4)
  • TryAcquireSRWLockExclusive (Address: 0x100b30e4)
  • UnhandledExceptionFilter (Address: 0x100b3180)
  • UnmapViewOfFile (Address: 0x100b3054)
  • VirtualAlloc (Address: 0x100b3044)
  • VirtualProtect (Address: 0x100b3048)
  • WaitForSingleObject (Address: 0x100b3024)
  • WaitForThreadpoolTimerCallbacks (Address: 0x100b3148)
  • WideCharToMultiByte (Address: 0x100b30f0)
  • WriteConsoleW (Address: 0x100b3070)
  • WriteFile (Address: 0x100b3004)
  • WriteProcessMemory (Address: 0x100b304c)
USER32.dll
  • CallWindowProcA (Address: 0x100b3220)
  • EnumWindows (Address: 0x100b3254)
  • GetClassNameA (Address: 0x100b3250)
  • GetWindow (Address: 0x100b3248)
  • GetWindowThreadProcessId (Address: 0x100b324c)
  • IsWindow (Address: 0x100b3228)
  • IsWindowVisible (Address: 0x100b3234)
  • MoveWindow (Address: 0x100b3230)
  • RegisterWindowMessageA (Address: 0x100b321c)
  • SetForegroundWindow (Address: 0x100b3238)
  • SetWindowLongA (Address: 0x100b323c)
  • SetWindowsHookExA (Address: 0x100b3244)
  • ShowWindow (Address: 0x100b322c)
  • UnhookWindowsHookEx (Address: 0x100b3240)
  • UnregisterClassA (Address: 0x100b3224)
WS2_32.dll
  • connect (Address: 0x100b325c)
  • gethostbyname (Address: 0x100b327c)
  • htons (Address: 0x100b3260)
  • inet_addr (Address: 0x100b3264)
  • inet_ntoa (Address: 0x100b3268)
  • recv (Address: 0x100b326c)
  • send (Address: 0x100b3270)
  • sendto (Address: 0x100b3274)
  • socket (Address: 0x100b3278)