By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

PE (Portable Executable)

IAT

# rva value meaning
0 0x2000 0x9a54 ksecdd.sys!BCryptDestroyKey
1 0x2008 0x9a40 ksecdd.sys!BCryptImportKeyPair
2 0x2010 0x9a2a ksecdd.sys!BCryptCloseAlgorithmProvider
3 0x2018 0x9a0a ksecdd.sys!BCryptVerifySignature
4 0x2020 0x99f2 ksecdd.sys!BCryptFinishHash
5 0x2028 0x99de ksecdd.sys!BCryptHashData
6 0x2030 0x99cc ksecdd.sys!BCryptDestroyHash
7 0x2038 0x99b8 ksecdd.sys!BCryptOpenAlgorithmProvider
8 0x2040 0x999a ksecdd.sys!BCryptGetProperty
9 0x2048 0x9a68
10 0x2050 0x0 ntoskrnl.exe!SePrivilegeCheck
11 0x2058 0x943e ntoskrnl.exe!ZwOpenKey
12 0x2060 0x9452 ntoskrnl.exe!ProbeForRead
13 0x2068 0x945e ntoskrnl.exe!RtlGetVersion
14 0x2070 0x946e ntoskrnl.exe!PsProcessType
15 0x2078 0x947e ntoskrnl.exe!ObOpenObjectByName
16 0x2080 0x948e ntoskrnl.exe!ObGetObjectType
17 0x2088 0x94a4 ntoskrnl.exe!PsReleaseProcessExitSynchronization
18 0x2090 0x94b6 ntoskrnl.exe!ZwQueryObject
19 0x2098 0x94dc ntoskrnl.exe!RtlEqualUnicodeString