api-ms-win-core-processthreads-l1-1-1.dll

  • File Path: C:\Program Files (x86)\Microsoft Office\root\Client\api-ms-win-core-processthreads-l1-1-1.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 C2EAD5FCCE95A04D31810768A3D44D57
SHA1 96E791B4D217B3612B0263E8DF2F00009D5AF8D8
SHA256 42A9A3D8A4A7C82CB6EC42C62D3A522DAA95BEB01ECB776AAC2BFD4AA1E58D62
SHA384 31CC931248C79424DDB886E9FA13F0B8B92C060686B91F9E2DF9C034EE8C444ED7039137B5B90F1AFD173C1D8DD569F0
SHA512 C90048481D8F0A5EDA2EB6E7703B5A064F481BB7D8C78970408B374CB82E89FEBC2E36633F1F3E28323FB633D6A95AA1050A626CB0CB5EC62E9010491AAE91F4
SSDEEP 192:QgxDfIeJWVghW/c7l9YOCAs/nGfe4pBjSfxyWNArXVWQ4mWgBHqnaj9RlS6V6Qg:JDfIeJW2hWk7QA0GftpBjxdBHlBRAky
PESHA1 92D5B7C649781ECB2346D654D2139B7F7F040EF0
PE256 938F37EA3832B52C15AEEDA8EEE0E3F11694646EFAD322318E183215A63513DB

DLL Exports:

Function Name Ordinal Type
IsProcessorFeaturePresent 10 Exported Function
GetThreadTimes 9 Exported Function
GetThreadIdealProcessorEx 8 Exported Function
OpenProcess 11 Exported Function
SetThreadIdealProcessorEx 14 Exported Function
SetThreadContext 13 Exported Function
SetProcessMitigationPolicy 12 Exported Function
GetCurrentProcessorNumberEx 3 Exported Function
GetCurrentProcessorNumber 2 Exported Function
FlushInstructionCache 1 Exported Function
GetCurrentThreadStackLimits 4 Exported Function
GetThreadContext 7 Exported Function
GetProcessMitigationPolicy 6 Exported Function
GetProcessHandleCount 5 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.10240.16384 (th1.150709-1700)
  • Product Version: 10.0.10240.16384
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/42a9a3d8a4a7c82cb6ec42c62d3a522daa95beb01ecb776aac2bfd4aa1e58d62/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 35
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 36
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 38
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 30
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 38
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 30
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 40
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 25
C:\Windows\system32\mrt_map.dll 30
C:\Windows\system32\mrt100.dll 30
C:\WINDOWS\system32\TsWpfWrp.exe 29
C:\Windows\system32\TsWpfWrp.exe 27
C:\Windows\SysWOW64\mrt_map.dll 35
C:\Windows\SysWOW64\mrt100.dll 36
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 36
C:\Windows\SysWOW64\TsWpfWrp.exe 29

MIT License. Copyright (c) 2020-2021 Strontic.