api-ms-win-crt-process-l1-1-0.dll

  • File Path: C:\Program Files\Common Files\microsoft shared\ClickToRun\api-ms-win-crt-process-l1-1-0.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 E18FD20E089CB2C2C58556575828BE36
SHA1 1CCDC9443BAE71A5455EFF93A304EAE16F087BE7
SHA256 B06B2D8C944BFF73BD5A4AAD1CAD6A4D724633E7BD6C6B9E236E35A99B1D35F2
SHA384 8DC216FFDEE87B50BAD8074CB9FDD6BE170E36BDC31843BD59F24F849CDD85B233FC992A0195C1BBDD92DF7F8AF0EF16
SHA512 630D4992120FF0646F16D95A5A2CEA6C727F87E01124EBD7F1158CEF69ADCD7D04B5676BD47FAC4462C05CF070C520B6DC0016C30705B50894D406992C81F44F
SSDEEP 384:QhitIDW2hWkgbCA0GftpBjCKSy4lXBtFwyIU:QYmW8i8ybU
IMP n/a
PESHA1 3988585CAD8E656EE6025DE2F5BDF8073CB41965
PE256 544781A5A3079B8FE0DC509CE6B3F55A8D5307A716F46E5BBFE70DEC658611FB

DLL Exports:

Function Name Ordinal Type
_wexecv 25 Exported Function
_wexeclpe 24 Exported Function
_wexecvp 27 Exported Function
_wexecve 26 Exported Function
_wexeclp 23 Exported Function
_unloaddll 20 Exported Function
_spawnvpe 19 Exported Function
_wexecle 22 Exported Function
_wexecl 21 Exported Function
_wspawnve 34 Exported Function
_wspawnv 33 Exported Function
_wspawnvpe 36 Exported Function
_wspawnvp 35 Exported Function
_wspawnlpe 32 Exported Function
_wspawnl 29 Exported Function
_wexecvpe 28 Exported Function
_wspawnlp 31 Exported Function
_wspawnle 30 Exported Function
_execv 7 Exported Function
_execlpe 6 Exported Function
_execvp 9 Exported Function
_execve 8 Exported Function
_execlp 5 Exported Function
_cwait 2 Exported Function
_beep 1 Exported Function
_execle 4 Exported Function
_execl 3 Exported Function
_spawnv 16 Exported Function
_spawnlpe 15 Exported Function
_spawnvp 18 Exported Function
_spawnve 17 Exported Function
_spawnlp 14 Exported Function
_loaddll 11 Exported Function
_execvpe 10 Exported Function
_spawnle 13 Exported Function
_spawnl 12 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.10240.16384 (th1.150709-1700)
  • Product Version: 10.0.10240.16384
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/b06b2d8c944bff73bd5a4aad1cad6a4d724633e7bd6c6b9e236e35a99b1d35f2/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 32
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 41
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 30
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 41
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 30
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 32
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 25
C:\Windows\system32\mrt_map.dll 24
C:\Windows\system32\mrt100.dll 27
C:\WINDOWS\system32\TsWpfWrp.exe 25
C:\Windows\system32\TsWpfWrp.exe 29
C:\Windows\SysWOW64\mrt_map.dll 27
C:\Windows\SysWOW64\mrt100.dll 35
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 32
C:\Windows\SysWOW64\TsWpfWrp.exe 24

MIT License. Copyright (c) 2020 Strontic.