api-ms-win-core-processthreads-l1-1-1.dll

  • File Path: C:\Program Files (x86)\Cisco Systems\Cisco Jabber\api-ms-win-core-processthreads-l1-1-1.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 F43A8E9CD787B6D91BB29DBB8EB1A4E5
SHA1 336B61853627E6E64A10FBB930577D30334E615E
SHA256 5BACBBE62E36AD0F6D7742E70361F26BC56A44DBD28CC0291F588420E0C218A6
SHA384 B6C58777D004FB5043B64BDCF9BA3A86EEEEDADB5E5275E87B13CBD625C7356006893E69AF9460FE5CA10BDB8D3F348E
SHA512 1FDC1170907346EF0ECED900DE9091136A6626C4BFC8B4416DFEBBE356F35F9C2BE0D2CF6C37E3DD231F3DB8B5A3AFE8973F15A45544C0C1C10682FE03911616
SSDEEP 384:2vDfIexWlhWsJA0GftpBjeQzg61/lgQ3PU:TeAviMwgqOx
PESHA1 C8547C3EFC4D8CAA0E12AE37BEA6E24DEA4058D1
PE256 93A23565ECC400987759B16D47867CD7DD5E70A6AFAAC2152A5910F62BAFE03A

DLL Exports:

Function Name Ordinal Type
IsProcessorFeaturePresent 10 Exported Function
GetThreadTimes 9 Exported Function
GetThreadIdealProcessorEx 8 Exported Function
OpenProcess 11 Exported Function
SetThreadIdealProcessorEx 14 Exported Function
SetThreadContext 13 Exported Function
SetProcessMitigationPolicy 12 Exported Function
GetCurrentProcessorNumberEx 3 Exported Function
GetCurrentProcessorNumber 2 Exported Function
FlushInstructionCache 1 Exported Function
GetCurrentThreadStackLimits 4 Exported Function
GetThreadContext 7 Exported Function
GetProcessMitigationPolicy 6 Exported Function
GetProcessHandleCount 5 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.14393.33 (rs1_release_sec.160727-1952)
  • Product Version: 10.0.14393.33
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/5bacbbe62e36ad0f6d7742e70361f26bc56a44dbd28cc0291f588420e0c218a6/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 40
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 30
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 36
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 35
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 36
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 35
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 38
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 36
C:\Windows\system32\mrt_map.dll 27
C:\Windows\system32\mrt100.dll 25
C:\WINDOWS\system32\TsWpfWrp.exe 30
C:\Windows\system32\TsWpfWrp.exe 32
C:\Windows\SysWOW64\mrt_map.dll 27
C:\Windows\SysWOW64\mrt100.dll 27
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 30
C:\Windows\SysWOW64\TsWpfWrp.exe 27

MIT License. Copyright (c) 2020-2021 Strontic.