Skip to content

Instantly share code, notes, and snippets.

@blaquee
Created September 13, 2021 14:05
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save blaquee/edf9fc54df24c22ea4bf8a4aa51c96a2 to your computer and use it in GitHub Desktop.
Save blaquee/edf9fc54df24c22ea4bf8a4aa51c96a2 to your computer and use it in GitHub Desktop.
ALPC Binaries in Sys32
DLL utilizing ALPC
Name: C:\Windows\System32\AudioSes.dll
Name: C:\Windows\System32\CoreMessaging.dll
Name: C:\Windows\System32\csrsrv.dll
Name: C:\Windows\System32\daxexec.dll
Name: C:\Windows\System32\DispBroker.dll
Name: C:\Windows\System32\dps.dll
Name: C:\Windows\System32\dwmapi.dll
Name: C:\Windows\System32\dwmghost.dll
Name: C:\Windows\System32\dwminit.dll
Name: C:\Windows\System32\dwmredir.dll
Name: C:\Windows\System32\DWrite.dll
Name: C:\Windows\System32\Faultrep.dll
Name: C:\Windows\System32\FntCache.dll
Name: C:\Windows\System32\GameInputRedist.dll
Name: C:\Windows\System32\HologramWorld.dll
Name: C:\Windows\System32\HoloSI.PCShell.dll
Name: C:\Windows\System32\Hydrogen.dll
Name: C:\Windows\System32\ISM.dll
Name: C:\Windows\System32\lsm.dll
Name: C:\Windows\System32\msctf.dll
Name: C:\Windows\System32\PsmServiceExtHost.dll
Name: C:\Windows\System32\RotMgr.dll
Name: C:\Windows\System32\rpcrt4.dll
Name: C:\Windows\System32\SDFHost.dll
Name: C:\Windows\System32\umpo.dll
Name: C:\Windows\System32\uxinit.dll
Name: C:\Windows\System32\wdi.dll
Name: C:\Windows\System32\wer.dll
Name: C:\Windows\System32\werdiagcontroller.dll
Name: C:\Windows\System32\wersvc.dll
Name: C:\Windows\System32\werui.dll
Name: C:\Windows\System32\Windows.Devices.Lights.dll
Name: C:\Windows\System32\winsrvext.dll
Name: C:\Windows\System32\wow64.dll
Name: C:\Windows\System32\WUDFPlatform.dll
Name: C:\Windows\System32\drivers\UMDF\SDFLauncher.dll
Name: C:\Windows\System32\DriverStore\FileRepository\sdflauncher.inf_amd64_1ea082c6cf8f6982\SDFLauncher.dll
Exe's importing ALPC API's
Name: C:\Windows\System32\audiodg.exe
Name: C:\Windows\System32\conhost.exe
Name: C:\Windows\System32\dwm.exe
Name: C:\Windows\System32\smss.exe
Name: C:\Windows\System32\WerFault.exe
Name: C:\Windows\System32\wermgr.exe
Name: C:\Windows\System32\WUDFCompanionHost.exe
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment