P2P.dll

  • File Path: C:\Windows\SysWOW64\P2P.dll
  • Description: Peer-to-Peer Grouping

Hashes

Type Hash
MD5 CFBD919C41AA7DF9B66AFEBBC6F4BECC
SHA1 F3C25394E1711B69D27E6B80484560031E7D6E62
SHA256 29C36C4CD7D6B25ED8D968FABC5A1BA8E23433981A2D076DE533F9BAF06BB7D4
SHA384 D5F7CC5A6D120E5AC3207BEAEBC988D1BECA2FB367416D2F0C5A58FEE3C557742349615F0B465C018AACB8D37451D00E
SHA512 04304580574046C82D3404A1AC7F8D211F818E0393D06C4A8BDBAEDC793CA2FCECD6EE48312BF66EB437E950DEBB63F3F3B8BA914F6B44B0D13A6BEAF3285A0A
SSDEEP 3072:oHy7VnvhVheAViykRq0bFQSKYOC8OBqHtWVEjEKPpTPrjmJ6kYUsLZwQJTxDPzVB:oS7Vn5VheAViykRqRSKYOC8OBqHtWVEw
IMP 2EC66E02233AC08D0BF78D63B46FB357
PESHA1 01314AC315BE4111F6DDE97F531B0DD92EB8EB43
PE256 705D32286EE9658528626BB59F1DC76DEAF09F7F089E2D664F8787CD1687A40D

DLL Exports:

Function Name Ordinal Type
PeerGroupOpenDirectConnection 76 Exported Function
PeerGroupParseInvitation 77 Exported Function
PeerGroupPasswordJoin 78 Exported Function
PeerGroupOpen 75 Exported Function
PeerGroupImportDatabase 72 Exported Function
PeerGroupIssueCredentials 73 Exported Function
PeerGroupJoin 74 Exported Function
PeerGroupSendData 83 Exported Function
PeerGroupSetProperties 84 Exported Function
PeerGroupShutdown 85 Exported Function
PeerGroupSearchRecords 82 Exported Function
PeerGroupPeerTimeToUniversalTime 79 Exported Function
PeerGroupRegisterEvent 80 Exported Function
PeerGroupResumePasswordAuthentication 81 Exported Function
PeerGroupEnumMembers 63 Exported Function
PeerGroupEnumRecords 64 Exported Function
PeerGroupExportConfig 65 Exported Function
PeerGroupEnumConnections 62 Exported Function
PeerGroupCreatePasswordInvitation 59 Exported Function
PeerGroupDelete 60 Exported Function
PeerGroupDeleteRecord 61 Exported Function
PeerGroupGetStatus 70 Exported Function
PeerGroupHandlePowerEvent 1 Exported Function
PeerGroupImportConfig 71 Exported Function
PeerGroupGetRecord 69 Exported Function
PeerGroupExportDatabase 66 Exported Function
PeerGroupGetEventData 67 Exported Function
PeerGroupGetProperties 68 Exported Function
PeerPnrpGetEndpoint 104 Exported Function
PeerPnrpRegister 105 Exported Function
PeerPnrpResolve 106 Exported Function
PeerPnrpGetCloudInfo 103 Exported Function
PeerIdentitySetFriendlyName 100 Exported Function
PeerNameToPeerHostName 101 Exported Function
PeerPnrpEndResolve 102 Exported Function
PeerPnrpUpdateRegistration 111 Exported Function
PeerSSPAddCredentials 112 Exported Function
PeerSSPRemoveCredentials 113 Exported Function
PeerPnrpUnregister 110 Exported Function
PeerPnrpShutdown 107 Exported Function
PeerPnrpStartResolve 108 Exported Function
PeerPnrpStartup 109 Exported Function
PeerHostNameToPeerName 90 Exported Function
PeerIdentityCreate 91 Exported Function
PeerIdentityDelete 92 Exported Function
PeerGroupUpdateRecord 89 Exported Function
PeerGroupStartup 86 Exported Function
PeerGroupUniversalTimeToPeerTime 87 Exported Function
PeerGroupUnregisterEvent 88 Exported Function
PeerIdentityGetFriendlyName 97 Exported Function
PeerIdentityGetXML 98 Exported Function
PeerIdentityImport 99 Exported Function
PeerIdentityGetDefault 96 Exported Function
PeerIdentityExport 93 Exported Function
PeerIdentityGetCert 94 Exported Function
PeerIdentityGetCryptKey 95 Exported Function
PeerGroupCreateInvitation 58 Exported Function
PeerCollabGetContact 20 Exported Function
PeerCollabGetEndpointName 21 Exported Function
PeerCollabGetEventData 22 Exported Function
PeerCollabGetApplicationRegistrationInfo 19 Exported Function
PeerCollabEnumPeopleNearMe 16 Exported Function
PeerCollabExportContact 17 Exported Function
PeerCollabGetAppLaunchInfo 18 Exported Function
PeerCollabInviteEndpoint 27 Exported Function
PeerCollabParseContact 28 Exported Function
PeerCollabQueryContactData 29 Exported Function
PeerCollabInviteContact 26 Exported Function
PeerCollabGetInvitationResponse 23 Exported Function
PeerCollabGetPresenceInfo 24 Exported Function
PeerCollabGetSigninOptions 25 Exported Function
PeerCollabCancelInvitation 6 Exported Function
PeerCollabCloseHandle 7 Exported Function
PeerCollabDeleteContact 8 Exported Function
PeerCollabAsyncInviteEndpoint 5 Exported Function
DllMain 2 Exported Function
PeerCollabAddContact 3 Exported Function
PeerCollabAsyncInviteContact 4 Exported Function
PeerCollabEnumContacts 13 Exported Function
PeerCollabEnumEndpoints 14 Exported Function
PeerCollabEnumObjects 15 Exported Function
PeerCollabEnumApplications 12 Exported Function
PeerCollabDeleteEndpointData 9 Exported Function
PeerCollabDeleteObject 10 Exported Function
PeerCollabEnumApplicationRegistrationInfo 11 Exported Function
PeerEnumIdentities 48 Exported Function
PeerFreeData 49 Exported Function
PeerGetItemCount 50 Exported Function
PeerEnumGroups 47 Exported Function
PeerCollabUpdateContact 44 Exported Function
PeerCreatePeerName 45 Exported Function
PeerEndEnumeration 46 Exported Function
PeerGroupConnect 55 Exported Function
PeerGroupConnectByAddress 56 Exported Function
PeerGroupCreate 57 Exported Function
PeerGroupCloseDirectConnection 54 Exported Function
PeerGetNextItem 51 Exported Function
PeerGroupAddRecord 52 Exported Function
PeerGroupClose 53 Exported Function
PeerCollabSetObject 34 Exported Function
PeerCollabSetPresenceInfo 35 Exported Function
PeerCollabShutdown 36 Exported Function
PeerCollabSetEndpointName 33 Exported Function
PeerCollabRefreshEndpointData 30 Exported Function
PeerCollabRegisterApplication 31 Exported Function
PeerCollabRegisterEvent 32 Exported Function
PeerCollabUnregisterApplication 41 Exported Function
PeerCollabUnregisterEvent 42 Exported Function
PeerCollabUnsubscribeEndpointData 43 Exported Function
PeerCollabSubscribeEndpointData 40 Exported Function
PeerCollabSignin 37 Exported Function
PeerCollabSignout 38 Exported Function
PeerCollabStartup 39 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: p2p.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/29c36c4cd7d6b25ed8d968fabc5a1ba8e23433981a2d076de533f9baf06bb7d4/detection/

Possible Misuse

The following table contains possible examples of P2P.dll being misused. While P2P.dll is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .P2P.dll``{:.highlight .language-cmhg} © ESET 2014-2018

MIT License. Copyright (c) 2020-2021 Strontic.