api-ms-win-crt-process-l1-1-0.dll

  • File Path: C:\Program Files (x86)\Cisco Systems\Cisco Jabber\api-ms-win-crt-process-l1-1-0.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 8A52955759DD1E590238C4FAF0AE9039
SHA1 1260978EE67727C169B99BF9FB68C558010D2935
SHA256 6CAE3CE572DE3779BBEBFA1D293B2D4553807620DE02CD03B441F9583FD57D4E
SHA384 A44CF0319C32963042ABFC112CBDF97327D7CDC2945FF5E38B5669DCA5075456D9430462549C66C6936FE2C909F4EE92
SHA512 404DF79858DA17ACF89246F502F22AEDADE1E04F425957063FA7C6D7F0725D3ED27462ABCCC586856D024C54E8D7547879A38BC7C679E34F3E7C7CA63ED707C3
SSDEEP 384:QjcWohW8C25A0GftpBjFc0eg6ZlC0DQyU4:999ivcVgD0DC4
IMP n/a
PESHA1 F50167B73E365EF68097DB379CCBED4585FB0D94
PE256 64E6CE2FBFAB0B46850749F431D3D6B07E6675A832CB52EB40158D272550F046

DLL Exports:

Function Name Ordinal Type
_wexecv 25 Exported Function
_wexeclpe 24 Exported Function
_wexecvp 27 Exported Function
_wexecve 26 Exported Function
_wexeclp 23 Exported Function
_unloaddll 20 Exported Function
_spawnvpe 19 Exported Function
_wexecle 22 Exported Function
_wexecl 21 Exported Function
_wspawnve 34 Exported Function
_wspawnv 33 Exported Function
_wspawnvpe 36 Exported Function
_wspawnvp 35 Exported Function
_wspawnlpe 32 Exported Function
_wspawnl 29 Exported Function
_wexecvpe 28 Exported Function
_wspawnlp 31 Exported Function
_wspawnle 30 Exported Function
_execv 7 Exported Function
_execlpe 6 Exported Function
_execvp 9 Exported Function
_execve 8 Exported Function
_execlp 5 Exported Function
_cwait 2 Exported Function
_beep 1 Exported Function
_execle 4 Exported Function
_execl 3 Exported Function
_spawnv 16 Exported Function
_spawnlpe 15 Exported Function
_spawnvp 18 Exported Function
_spawnve 17 Exported Function
_spawnlp 14 Exported Function
_loaddll 11 Exported Function
_execvpe 10 Exported Function
_spawnle 13 Exported Function
_spawnl 12 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.14388.0 (rs1_release.160709-1635)
  • Product Version: 10.0.14388.0
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/6cae3ce572de3779bbebfa1d293b2d4553807620de02cd03b441f9583fd57d4e/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 36
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 33
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 40
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 40
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 32
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 30
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 33
C:\Windows\system32\mrt_map.dll 27
C:\Windows\system32\mrt100.dll 25
C:\WINDOWS\system32\TsWpfWrp.exe 30
C:\Windows\system32\TsWpfWrp.exe 25
C:\Windows\SysWOW64\mrt_map.dll 25
C:\Windows\SysWOW64\mrt100.dll 30
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 27
C:\Windows\SysWOW64\TsWpfWrp.exe 25

MIT License. Copyright (c) 2020 Strontic.