P2P.dll

  • File Path: C:\Windows\system32\P2P.dll
  • Description: Peer-to-Peer Grouping

Hashes

Type Hash
MD5 7BD2C9A89DC4466E4A62A6F0912CE88E
SHA1 CD38EF1CA4520A75EF2CDC5CC5F13569E5BEA419
SHA256 19A1572E8CC59D2F1D41A442C8A4D476CFC17A8AD8FE0F0BD0B020F12A11CF13
SHA384 E75BF820A0B05B7C04447012CDCDD059FF0B6D72DC0FFE59BE6675381D7ECBE9FE822F79344EC5F31F9C074E25D18218
SHA512 5DC9CEB3927C9DE0B807280388C9130F13BB9FFC428D7436FB4B3577EB7810396915F7008222B7787257E636551A4E031DC6E8D0F9260171661C05E52F88D30B
SSDEEP 3072:+MN/AshbLTIADLlPuAhPSEAE5FX8ArpACg14XLMkfL://AsVTIAJxhKEAurp6kf
IMP 2B2EB0E07656EED7E06650B616F923EB
PESHA1 C9FA35B3A12E35323EF45F1F9047AB4CDB855A03
PE256 E31CBB227E157F3B9367564D3DADFC4AB7EFACF370D32275FA318CB03FB11B82

DLL Exports:

Function Name Ordinal Type
PeerGroupOpenDirectConnection 76 Exported Function
PeerGroupParseInvitation 77 Exported Function
PeerGroupPasswordJoin 78 Exported Function
PeerGroupOpen 75 Exported Function
PeerGroupImportDatabase 72 Exported Function
PeerGroupIssueCredentials 73 Exported Function
PeerGroupJoin 74 Exported Function
PeerGroupSendData 83 Exported Function
PeerGroupSetProperties 84 Exported Function
PeerGroupShutdown 85 Exported Function
PeerGroupSearchRecords 82 Exported Function
PeerGroupPeerTimeToUniversalTime 79 Exported Function
PeerGroupRegisterEvent 80 Exported Function
PeerGroupResumePasswordAuthentication 81 Exported Function
PeerGroupEnumMembers 63 Exported Function
PeerGroupEnumRecords 64 Exported Function
PeerGroupExportConfig 65 Exported Function
PeerGroupEnumConnections 62 Exported Function
PeerGroupCreatePasswordInvitation 59 Exported Function
PeerGroupDelete 60 Exported Function
PeerGroupDeleteRecord 61 Exported Function
PeerGroupGetStatus 70 Exported Function
PeerGroupHandlePowerEvent 1 Exported Function
PeerGroupImportConfig 71 Exported Function
PeerGroupGetRecord 69 Exported Function
PeerGroupExportDatabase 66 Exported Function
PeerGroupGetEventData 67 Exported Function
PeerGroupGetProperties 68 Exported Function
PeerPnrpGetEndpoint 104 Exported Function
PeerPnrpRegister 105 Exported Function
PeerPnrpResolve 106 Exported Function
PeerPnrpGetCloudInfo 103 Exported Function
PeerIdentitySetFriendlyName 100 Exported Function
PeerNameToPeerHostName 101 Exported Function
PeerPnrpEndResolve 102 Exported Function
PeerPnrpUpdateRegistration 111 Exported Function
PeerSSPAddCredentials 112 Exported Function
PeerSSPRemoveCredentials 113 Exported Function
PeerPnrpUnregister 110 Exported Function
PeerPnrpShutdown 107 Exported Function
PeerPnrpStartResolve 108 Exported Function
PeerPnrpStartup 109 Exported Function
PeerHostNameToPeerName 90 Exported Function
PeerIdentityCreate 91 Exported Function
PeerIdentityDelete 92 Exported Function
PeerGroupUpdateRecord 89 Exported Function
PeerGroupStartup 86 Exported Function
PeerGroupUniversalTimeToPeerTime 87 Exported Function
PeerGroupUnregisterEvent 88 Exported Function
PeerIdentityGetFriendlyName 97 Exported Function
PeerIdentityGetXML 98 Exported Function
PeerIdentityImport 99 Exported Function
PeerIdentityGetDefault 96 Exported Function
PeerIdentityExport 93 Exported Function
PeerIdentityGetCert 94 Exported Function
PeerIdentityGetCryptKey 95 Exported Function
PeerGroupCreateInvitation 58 Exported Function
PeerCollabGetContact 20 Exported Function
PeerCollabGetEndpointName 21 Exported Function
PeerCollabGetEventData 22 Exported Function
PeerCollabGetApplicationRegistrationInfo 19 Exported Function
PeerCollabEnumPeopleNearMe 16 Exported Function
PeerCollabExportContact 17 Exported Function
PeerCollabGetAppLaunchInfo 18 Exported Function
PeerCollabInviteEndpoint 27 Exported Function
PeerCollabParseContact 28 Exported Function
PeerCollabQueryContactData 29 Exported Function
PeerCollabInviteContact 26 Exported Function
PeerCollabGetInvitationResponse 23 Exported Function
PeerCollabGetPresenceInfo 24 Exported Function
PeerCollabGetSigninOptions 25 Exported Function
PeerCollabCancelInvitation 6 Exported Function
PeerCollabCloseHandle 7 Exported Function
PeerCollabDeleteContact 8 Exported Function
PeerCollabAsyncInviteEndpoint 5 Exported Function
DllMain 2 Exported Function
PeerCollabAddContact 3 Exported Function
PeerCollabAsyncInviteContact 4 Exported Function
PeerCollabEnumContacts 13 Exported Function
PeerCollabEnumEndpoints 14 Exported Function
PeerCollabEnumObjects 15 Exported Function
PeerCollabEnumApplications 12 Exported Function
PeerCollabDeleteEndpointData 9 Exported Function
PeerCollabDeleteObject 10 Exported Function
PeerCollabEnumApplicationRegistrationInfo 11 Exported Function
PeerEnumIdentities 48 Exported Function
PeerFreeData 49 Exported Function
PeerGetItemCount 50 Exported Function
PeerEnumGroups 47 Exported Function
PeerCollabUpdateContact 44 Exported Function
PeerCreatePeerName 45 Exported Function
PeerEndEnumeration 46 Exported Function
PeerGroupConnect 55 Exported Function
PeerGroupConnectByAddress 56 Exported Function
PeerGroupCreate 57 Exported Function
PeerGroupCloseDirectConnection 54 Exported Function
PeerGetNextItem 51 Exported Function
PeerGroupAddRecord 52 Exported Function
PeerGroupClose 53 Exported Function
PeerCollabSetObject 34 Exported Function
PeerCollabSetPresenceInfo 35 Exported Function
PeerCollabShutdown 36 Exported Function
PeerCollabSetEndpointName 33 Exported Function
PeerCollabRefreshEndpointData 30 Exported Function
PeerCollabRegisterApplication 31 Exported Function
PeerCollabRegisterEvent 32 Exported Function
PeerCollabUnregisterApplication 41 Exported Function
PeerCollabUnregisterEvent 42 Exported Function
PeerCollabUnsubscribeEndpointData 43 Exported Function
PeerCollabSubscribeEndpointData 40 Exported Function
PeerCollabSignin 37 Exported Function
PeerCollabSignout 38 Exported Function
PeerCollabStartup 39 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: p2p.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/19a1572e8cc59d2f1d41a442c8a4d476cfc17a8ad8fe0f0bd0b020f12a11cf13/detection/

Possible Misuse

The following table contains possible examples of P2P.dll being misused. While P2P.dll is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .P2P.dll``{:.highlight .language-cmhg} © ESET 2014-2018

MIT License. Copyright (c) 2020-2021 Strontic.