Windows 7 DLL File Information - QAGENTRT.DLL |
The following DLL report was generated by automatic DLL script that scanned and loaded all DLL files in the system32 directory of Windows 7, extracted the information from them, and then saved it into HTML reports. If you want to view a report of another DLL, go to the main page of this Web site.
General Information
File Description: | Quarantine Agent Service Run-Time |
File Version: | 6.1.7100.0 (winmain_win7rc.090421-1700) |
Company: | Microsoft Corporation |
Product Name: | Microsoft Windows Operating System |
DLL popularity | Very Low - There is no any other DLL in system32 directory that is statically linked to this file. |
File Size: | 322 KB |
Total Number of Exported Functions: | 5 |
Total Number of Exported Functions With Names: | 5 |
Section Headers
Name | Virtual Address | Raw Data Size | % of File | Characteristics | Section Contains... |
---|---|---|---|---|---|
.text | 0x00001000 | 283,648 Bytes | 85.9% | Read, Execute | Code |
.data | 0x00047000 | 9,216 Bytes | 2.8% | Write, Read | Initialized Data |
.rsrc | 0x0004a000 | 19,968 Bytes | 6.0% | Read | Initialized Data |
.reloc | 0x0004f000 | 15,872 Bytes | 4.8% | Read, Discardable | Initialized Data |
Static Linking
QAGENTRT.DLL is statically linked to the following files:msvcrt.dll
ntdll.dll
API-MS-Win-Core-Debug-L1-1-0.dll
API-MS-Win-Core-ErrorHandling-L1-1-0.dll
API-MS-Win-Core-File-L1-1-0.dll
API-MS-Win-Core-Handle-L1-1-0.dll
API-MS-Win-Core-Interlocked-L1-1-0.dll
API-MS-Win-Core-LibraryLoader-L1-1-0.dll
API-MS-Win-Core-LocalRegistry-L1-1-0.dll
API-MS-Win-Core-Misc-L1-1-0.dll
API-MS-Win-Core-ProcessThreads-L1-1-0.dll
API-MS-Win-Core-Profile-L1-1-0.dll
API-MS-Win-Core-String-L1-1-0.dll
API-MS-Win-Core-Synch-L1-1-0.dll
API-MS-Win-Core-SysInfo-L1-1-0.dll
KERNEL32.dll
QUtil.dll
USERENV.dll
DNSAPI.dll
This means that when QAGENTRT.DLL is loaded, the above files are automatically loaded too. If one of these files is corrupted or missing, QAGENTRT.DLL won't be loaded.
General Resources Information
Resource Type | Number of Items | Total Size | % of File |
---|---|---|---|
Icons | 0 | 0 Bytes | 0.0% |
Animated Icons | 0 | 0 Bytes | 0.0% |
Cursors | 0 | 0 Bytes | 0.0% |
Animated Cursors | 0 | 0 Bytes | 0.0% |
Bitmaps | 0 | 0 Bytes | 0.0% |
AVI Files | 0 | 0 Bytes | 0.0% |
Dialog-Boxes | 0 | 0 Bytes | 0.0% |
HTML Related Files | 0 | 0 Bytes | 0.0% |
Menus | 0 | 0 Bytes | 0.0% |
Strings | 34 | 2,504 Bytes | 0.8% |
Type Libraries | 0 | 0 Bytes | 0.0% |
Manifest | 0 | 0 Bytes | 0.0% |
All Others | 5 | 36,519 Bytes | 11.1% |
Total | 39 | 39,023 Bytes | 11.8% |
Icons in this file
No icons found in this file
Cursors in this file
No cursors found in this file
Dialog-boxes list (up to 200 dialogs)
No dialog resources in this file.
String resources in this dll (up to 200 strings)
String ID | String Text |
---|---|
1 | Quarantine Agent Service Run-Time |
6 | Network Access Protection Agent |
7 | The Network Access Protection (NAP) agent service collects and manages health information for client computers on a network. Information collected by NAP agent is used to make sure that the client computer has the required software and settings. If a client computer is not compliant with health policy, it can be provided with restricted network access until its configuration is updated. Depending on the configuration of health policy, client computers might be automatically updated so that users quickly regain full network access without having to manually update their computer. |
8 | Microsoft Corporation |
9 | Launches the Network Access Protection Status UI |
10 | System Health Authentication |
1001 | Enabled |
1002 | Disabled |
1005 | Restricted Access |
1006 | Full Access |
1007 | In Probation |
1008 | None |
1009 | Other Failure |
1010 | Client Component Failure |
1011 | Client Communication Failure |
1012 | Server Component Failure |
1013 | Server Communication Failure |
1014 | Unknown |
1015 | Not Supported |
1016 | Success |
1017 | In Progress |
1018 | Could Not Update |
1019 | Invalid packet |
1020 | SHV did not return an SOH response |
1021 | SHV timed out on request |
1022 | NAPAgent has stopped |
1023 | NapAgent is Active |
1032 | Transition |
1033 | Infected |
1034 | Unknown |
1035 | No Data |
1064 | SHV could not find the setting used in the policy |
COM Classes/Interfaces
There is no type library in this file with COM classes/interfaces information
Exported Functions List
The following functions are exported by this dll:DllCanUnloadNow | DllGetClassObject | DllRegisterServer | DllUnregisterServer |
ServiceMain |
Imported Functions List
The following functions are imported by this dll:- msvcrt.dll:
_CxxThrowException _XcptFilter __CxxFrameHandler __RTtypeid __dllonexit _amsg_exit _errno _except_handler4_common _initterm _lock _onexit _purecall _unlock _vsnwprintf free malloc memcpy memcpy_s memmove memmove_s memset public: __thiscall exception::exception(char const * const &) public: __thiscall exception::exception(class exception const &) public: __thiscall exception::exception(void) public: char const * __thiscall type_info::name(void)const public: virtual __thiscall exception::~exception(void) public: virtual __thiscall type_info::~type_info(void) public: virtual char const * __thiscall exception::what(void)const realloc towlower void __cdecl terminate(void) wcsncpy_s wcsrchr - ntdll.dll:
DbgPrint EtwEventEnabled EtwEventRegister EtwEventUnregister EtwEventWrite EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwRegisterTraceGuidsW EtwTraceMessage EtwUnregisterTraceGuids RtlIpv4AddressToStringW RtlIpv6AddressToStringW RtlNtStatusToDosError - API-MS-Win-Core-Debug-L1-1-0.dll:
KernelBase!OutputDebugStringA - API-MS-Win-Core-ErrorHandling-L1-1-0.dll:
kernel32!GetLastError kernel32!RaiseException kernel32!SetUnhandledExceptionFilter kernel32!UnhandledExceptionFilter - API-MS-Win-Core-File-L1-1-0.dll:
kernel32!FileTimeToSystemTime - API-MS-Win-Core-Handle-L1-1-0.dll:
kernel32!CloseHandle - API-MS-Win-Core-Interlocked-L1-1-0.dll:
KernelBase!InterlockedCompareExchange KernelBase!InterlockedDecrement KernelBase!InterlockedExchange KernelBase!InterlockedIncrement - API-MS-Win-Core-LibraryLoader-L1-1-0.dll:
KernelBase!DisableThreadLibraryCalls KernelBase!FreeLibrary KernelBase!GetModuleFileNameW KernelBase!GetModuleHandleW KernelBase!GetProcAddress KernelBase!LoadLibraryExA KernelBase!LoadLibraryExW KernelBase!LoadResource KernelBase!SizeofResource - API-MS-Win-Core-LocalRegistry-L1-1-0.dll:
kernel32!RegCloseKey kernel32!RegCreateKeyExW kernel32!RegDeleteValueW kernel32!RegEnumKeyExW kernel32!RegOpenKeyExW kernel32!RegQueryInfoKeyW kernel32!RegSetValueExW - API-MS-Win-Core-Misc-L1-1-0.dll:
KernelBase!Sleep KernelBase!lstrcmpiW KernelBase!lstrlenW - API-MS-Win-Core-ProcessThreads-L1-1-0.dll:
KernelBase!OpenThreadToken kernel32!CreateThread kernel32!GetCurrentProcess kernel32!GetCurrentProcessId kernel32!GetCurrentThread kernel32!GetCurrentThreadId kernel32!ResumeThread kernel32!TerminateProcess - API-MS-Win-Core-Profile-L1-1-0.dll:
ntdll!RtlQueryPerformanceCounter - API-MS-Win-Core-String-L1-1-0.dll:
KernelBase!CompareStringW KernelBase!MultiByteToWideChar KernelBase!WideCharToMultiByte - API-MS-Win-Core-Synch-L1-1-0.dll:
kernel32!WaitForSingleObject ntdll!RtlDeleteCriticalSection ntdll!RtlEnterCriticalSection ntdll!RtlInitializeCriticalSection ntdll!RtlLeaveCriticalSection - API-MS-Win-Core-SysInfo-L1-1-0.dll:
KernelBase!GetSystemInfo KernelBase!GetSystemTimeAsFileTime KernelBase!GetTickCount KernelBase!GetVersionExA - KERNEL32.dll:
CreateEventW CreateSemaphoreW CreateTimerQueue CreateTimerQueueTimer CreateWaitableTimerW DebugBreak DelayLoadFailureHook DeleteTimerQueueEx DeleteTimerQueueTimer ExpandEnvironmentStringsW FindResourceW GetComputerNameExW GetExitCodeThread GetModuleHandleExW GetProcessHeap GetTickCount64 GetVersionExW HeapCreate HeapDestroy HeapFree InitializeCriticalSectionAndSpinCount InterlockedExchangeAdd IsDebuggerPresent LoadLibraryW LocalFree LockResource MoveFileExW QueueUserWorkItem RegDeleteKeyExW RegLoadMUIStringW RegNotifyChangeKeyValue RegQueryValueExW RegisterWaitForSingleObject ReleaseSemaphore ResetEvent SetEvent SetLastError SetWaitableTimer UnregisterWaitEx WaitForMultipleObjects ntdll!RtlAllocateHeap ntdll!RtlReAllocateHeap ntdll!RtlSizeHeap - QUtil.dll:
FreeNetworkSoH - USERENV.dll:
EnterCriticalPolicySection LeaveCriticalPolicySection RegisterGPNotification UnregisterGPNotification - DNSAPI.dll:
DnsFree DnsQueryConfig DnsQuery_W