api-ms-win-crt-heap-l1-1-0.dll

  • File Path: C:\Program Files (x86)\Cisco Systems\Cisco Jabber\x64\api-ms-win-crt-heap-l1-1-0.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 2DCE97F2AE249B5299BEEFD8E034FF27
SHA1 6AFAB1CF529EEE69A4ADC2CD2A2F3362C5C1D0DF
SHA256 865C4A0D6A0027C1B623490550DCC135BFCD9B80564CF0B2028288AC37E70B85
SHA384 09E2D91E3E90A91A0D47514DE0E3E35E1EBB57A9933C1311DD8A3BF26014095F4AF66F1C4350C61820EE3DA810F0B85B
SHA512 5315CDD690F74371B5C78B00A03FAA93ABF082685ACD6FF551714B4DD3E11BC3C9C77A7F621F1D7639024CFA20C188F5AAE5B06946ED79453B0CEBCC6EF50CD7
SSDEEP 384:xp2WlhWGyAA0GftpBjXVE4hg6hlTIw3RrvH:xptZix64hgoR7H
IMP n/a
PESHA1 412835B3D81BDF8A8727B84F87784D95E908D329
PE256 583F88AB879BE4FAB6D70DCA54923C20716B105ABDC4E051E11FF7A217D83CB2

DLL Exports:

Function Name Ordinal Type
_msize 18 Exported Function
_query_new_handler 19 Exported Function
_query_new_mode 20 Exported Function
_heapmin 15 Exported Function
_heapwalk 16 Exported Function
_malloc_base 17 Exported Function
_realloc_base 21 Exported Function
free 25 Exported Function
malloc 26 Exported Function
realloc 27 Exported Function
_recalloc 22 Exported Function
_set_new_mode 23 Exported Function
calloc 24 Exported Function
_heapchk 14 Exported Function
_aligned_offset_malloc 4 Exported Function
_aligned_offset_realloc 5 Exported Function
_aligned_offset_recalloc 6 Exported Function
_aligned_free 1 Exported Function
_aligned_malloc 2 Exported Function
_aligned_msize 3 Exported Function
_aligned_realloc 7 Exported Function
_expand 11 Exported Function
_free_base 12 Exported Function
_get_heap_handle 13 Exported Function
_aligned_recalloc 8 Exported Function
_callnewh 9 Exported Function
_calloc_base 10 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.14393.33 (rs1_release_sec.160727-1952)
  • Product Version: 10.0.14393.33
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/67
  • VirusTotal Link: https://www.virustotal.com/gui/file/865c4a0d6a0027c1b623490550dcc135bfcd9b80564cf0b2028288ac37e70b85/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 36
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 35
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 29
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 29
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 35
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 33
C:\Windows\system32\mrt_map.dll 27
C:\Windows\system32\mrt100.dll 25
C:\WINDOWS\system32\TsWpfWrp.exe 29
C:\Windows\system32\TsWpfWrp.exe 29
C:\Windows\SysWOW64\mrt_map.dll 30
C:\Windows\SysWOW64\mrt100.dll 30
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 32
C:\Windows\SysWOW64\TsWpfWrp.exe 24

MIT License. Copyright (c) 2020 Strontic.