¿Para qué sirve la dll cloudAP.dll?

Cloud AP Security Package

Dependencias de la dll cloudAP.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\cloudAP.dll

File Type: DLL

  Image has the following dependencies:

    api-ms-win-crt-runtime-l1-1-0.dll
    api-ms-win-crt-private-l1-1-0.dll
    api-ms-win-crt-string-l1-1-0.dll
    api-ms-win-core-libraryloader-l1-2-0.dll
    api-ms-win-eventing-provider-l1-1-0.dll
    api-ms-win-core-processthreads-l1-1-0.dll
    api-ms-win-core-localization-l1-2-0.dll
    api-ms-win-core-heap-l1-1-0.dll
    api-ms-win-core-debug-l1-1-0.dll
    api-ms-win-core-errorhandling-l1-1-0.dll
    api-ms-win-core-synch-l1-1-0.dll
    api-ms-win-core-handle-l1-1-0.dll
    api-ms-win-core-threadpool-l1-2-0.dll
    bcrypt.dll
    USERENV.dll
    api-ms-win-core-file-l1-1-0.dll
    api-ms-win-core-kernel32-legacy-l1-1-0.dll
    api-ms-win-security-sddl-l1-1-0.dll
    api-ms-win-core-registry-l1-1-0.dll
    api-ms-win-core-heap-l2-1-0.dll
    RPCRT4.dll
    api-ms-win-core-threadpool-legacy-l1-1-0.dll
    SspiCli.dll
    api-ms-win-security-base-l1-1-0.dll
    api-ms-win-core-processenvironment-l1-1-0.dll
    api-ms-win-core-registry-l2-1-0.dll
    api-ms-win-core-registry-l1-1-1.dll
    CRYPT32.dll
    api-ms-win-security-cryptoapi-l1-1-0.dll
    api-ms-win-core-sysinfo-l1-1-0.dll
    ncrypt.dll
    api-ms-win-core-synch-l1-2-0.dll
    api-ms-win-core-file-l2-1-2.dll
    api-ms-win-eventing-classicprovider-l1-1-0.dll
    api-ms-win-core-rtlsupport-l1-1-0.dll
    api-ms-win-core-processthreads-l1-1-1.dll
    api-ms-win-core-profile-l1-1-0.dll
    api-ms-win-core-interlocked-l1-1-0.dll
    api-ms-win-core-string-l1-1-0.dll
    api-ms-win-security-credentials-l1-1-0.dll
    ntdll.dll
    api-ms-win-stateseparation-helpers-l1-1-0.dll
    api-ms-win-security-credentials-l2-1-1.dll
    LSASRV.dll
    api-ms-win-core-memory-l1-1-0.dll
    api-ms-win-core-string-obsolete-l1-1-0.dll
    api-ms-win-core-delayload-l1-1-1.dll
    api-ms-win-core-delayload-l1-1-0.dll
    api-ms-win-core-apiquery-l1-1-0.dll
    api-ms-win-security-lsalookup-l1-1-2.dll
    cryptdll.dll
    MSASN1.dll
    api-ms-win-eventlog-legacy-l1-1-0.dll

  Image has the following delay load dependencies:

    api-ms-win-security-capability-l1-1-0.dll
    ext-ms-win-cloudap-tbal-l1-1-0.dll
    cryptngc.dll
    ext-ms-win-devmgmt-policy-l1-1-0.dll
    ext-ms-win-security-ngc-local-l1-1-0.dll
    Wldp.dll

  Summary

        2000 .data
        1000 .didat
        4000 .pdata
       13000 .rdata
        1000 .reloc
        1000 .rsrc
       71000 .text

Funciones que tiene la dll cloudAP.dll


1    0 00007ED0 SpLsaModeInitialize
2    1 0003BB40 SpUserModeInitialize

Información avanzada sobre funciones que tiene la dll cloudAP.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\cloudAP.dll

File Type: DLL

  Section contains the following exports for CLOUDAP.dll

    00000000 characteristics
    D1C5927F time date stamp
        0.00 version
           1 ordinal base
           2 number of functions
           2 number of names

    ordinal hint RVA      name

          1    0 00007ED0 SpLsaModeInitialize
          2    1 0003BB40 SpUserModeInitialize

  Summary

        2000 .data
        1000 .didat
        4000 .pdata
       13000 .rdata
        1000 .reloc
        1000 .rsrc
       71000 .text

Integridad de la dll cloudAP.dll



Algorithm       Hash                                                                   Path                                         
---------       ----                                                                   ----                                         
SHA256          60F42088F5BCB96B36D7A8B4EC5D9165883C2BEBB24E5E3BB45844EA12258A3A       C:\Windows\System32\cloudAP.dll              


Detalles sobre el fichero dll cloudAP.dll




PSPath            : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32\cloudAP.dll
PSParentPath      : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32
PSChildName       : cloudAP.dll
PSDrive           : C
PSProvider        : Microsoft.PowerShell.Core\FileSystem
PSIsContainer     : False
Mode              : -a----
VersionInfo       : File:             C:\Windows\System32\cloudAP.dll
                    InternalName:     cloudAP.dll
                    OriginalFilename: cloudAP.dll
                    FileVersion:      10.0.19041.488 (WinBuild.160101.0800)
                    FileDescription:  Cloud AP Security Package
                    Product:          Microsoft® Windows® Operating System
                    ProductVersion:   10.0.19041.488
                    Debug:            False
                    Patched:          False
                    PreRelease:       False
                    PrivateBuild:     False
                    SpecialBuild:     False
                    Language:         Inglés (Estados Unidos)
                    
BaseName          : cloudAP
Target            : {C:\Windows\WinSxS\amd64_microsoft-windows-security-cloudap_31bf3856ad364e35_10.0.19041.488_none_8d15ca278186e52
                    d\cloudAP.dll}
LinkType          : HardLink
Name              : cloudAP.dll
Length            : 559616
DirectoryName     : C:\Windows\System32
Directory         : C:\Windows\System32
IsReadOnly        : False
Exists            : True
FullName          : C:\Windows\System32\cloudAP.dll
Extension         : .dll
CreationTime      : 20/09/2020 15:02:04
CreationTimeUtc   : 20/09/2020 13:02:04
LastAccessTime    : 03/12/2020 9:11:27
LastAccessTimeUtc : 03/12/2020 8:11:27
LastWriteTime     : 20/09/2020 15:02:04
LastWriteTimeUtc  : 20/09/2020 13:02:04
Attributes        : Archive



Procesos que utilizan la dll cloudAP.dll