LicensingWinRT.dll

Description: LicensingWinRuntime

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6456

Architecture: 32-bit

Operating System: Windows NT

SHA256: 7c9f40e0d12f372d7976d252862a0591

File Size: 655.9 KB

Uploaded At: Dec. 1, 2025, 7:59 a.m.

Views: 29

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x71930)
  • DllGetActivationFactory (Ordinal: 2, Address: 0x718c0)
  • DllGetClassObject (Ordinal: 3, Address: 0x718e0)

Imported DLLs & Functions

api-ms-win-core-com-midlproxystub-l1-1-0.dll
  • CStdStubBuffer2_Connect (Address: 0x1009a0e0)
  • CStdStubBuffer2_CountRefs (Address: 0x1009a124)
  • CStdStubBuffer2_Disconnect (Address: 0x1009a120)
  • CStdStubBuffer2_QueryInterface (Address: 0x1009a104)
  • NdrProxyForwardingFunction3 (Address: 0x1009a128)
  • NdrProxyForwardingFunction4 (Address: 0x1009a100)
  • NdrProxyForwardingFunction5 (Address: 0x1009a0f8)
  • ObjectStublessClient10 (Address: 0x1009a0e4)
  • ObjectStublessClient11 (Address: 0x1009a110)
  • ObjectStublessClient12 (Address: 0x1009a10c)
  • ObjectStublessClient13 (Address: 0x1009a118)
  • ObjectStublessClient14 (Address: 0x1009a0dc)
  • ObjectStublessClient15 (Address: 0x1009a12c)
  • ObjectStublessClient16 (Address: 0x1009a0e8)
  • ObjectStublessClient17 (Address: 0x1009a114)
  • ObjectStublessClient18 (Address: 0x1009a0fc)
  • ObjectStublessClient3 (Address: 0x1009a108)
  • ObjectStublessClient6 (Address: 0x1009a0f4)
  • ObjectStublessClient7 (Address: 0x1009a11c)
  • ObjectStublessClient8 (Address: 0x1009a0f0)
  • ObjectStublessClient9 (Address: 0x1009a0ec)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1009a138)
  • IsDebuggerPresent (Address: 0x1009a134)
  • OutputDebugStringW (Address: 0x1009a13c)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1009a144)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1009a14c)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1009a15c)
  • RaiseException (Address: 0x1009a154)
  • SetLastError (Address: 0x1009a158)
  • SetUnhandledExceptionFilter (Address: 0x1009a160)
  • UnhandledExceptionFilter (Address: 0x1009a164)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x1009a16c)
  • CreateFileW (Address: 0x1009a18c)
  • FindClose (Address: 0x1009a190)
  • FindFirstFileW (Address: 0x1009a188)
  • FindNextFileW (Address: 0x1009a17c)
  • GetFileAttributesW (Address: 0x1009a170)
  • GetFileSize (Address: 0x1009a178)
  • ReadFile (Address: 0x1009a174)
  • SetFilePointer (Address: 0x1009a180)
  • WriteFile (Address: 0x1009a184)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1009a198)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1009a1a4)
  • HeapAlloc (Address: 0x1009a1a0)
  • HeapFree (Address: 0x1009a1a8)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x1009a1b0)
  • LocalFree (Address: 0x1009a1b4)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x1009a1bc)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x1009a1c4)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1009a1e4)
  • FreeLibrary (Address: 0x1009a1dc)
  • GetModuleFileNameA (Address: 0x1009a1cc)
  • GetModuleHandleExW (Address: 0x1009a1e0)
  • GetModuleHandleW (Address: 0x1009a1d4)
  • GetProcAddress (Address: 0x1009a1d8)
  • LoadLibraryExW (Address: 0x1009a1d0)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1009a1ec)
  • LCMapStringEx (Address: 0x1009a1f0)
api-ms-win-core-localization-l1-2-3.dll
  • GetUserDefaultGeoName (Address: 0x1009a1f8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x1009a200)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessW (Address: 0x1009a220)
  • GetCurrentProcess (Address: 0x1009a210)
  • GetCurrentProcessId (Address: 0x1009a208)
  • GetCurrentThreadId (Address: 0x1009a218)
  • GetExitCodeProcess (Address: 0x1009a21c)
  • OpenProcessToken (Address: 0x1009a20c)
  • TerminateProcess (Address: 0x1009a214)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x1009a228)
  • OpenProcess (Address: 0x1009a22c)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1009a234)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1009a24c)
  • RegCreateKeyExW (Address: 0x1009a244)
  • RegOpenKeyExW (Address: 0x1009a250)
  • RegQueryValueExW (Address: 0x1009a248)
  • RegSetKeySecurity (Address: 0x1009a240)
  • RegSetValueExW (Address: 0x1009a23c)
api-ms-win-core-string-l1-1-0.dll
  • WideCharToMultiByte (Address: 0x1009a258)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1009a270)
  • AcquireSRWLockShared (Address: 0x1009a274)
  • CreateEventExW (Address: 0x1009a29c)
  • CreateEventW (Address: 0x1009a27c)
  • CreateMutexExW (Address: 0x1009a264)
  • CreateMutexW (Address: 0x1009a2a4)
  • CreateSemaphoreExW (Address: 0x1009a2a0)
  • DeleteCriticalSection (Address: 0x1009a2b0)
  • EnterCriticalSection (Address: 0x1009a284)
  • InitializeCriticalSection (Address: 0x1009a2ac)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1009a28c)
  • InitializeCriticalSectionEx (Address: 0x1009a2a8)
  • LeaveCriticalSection (Address: 0x1009a280)
  • OpenSemaphoreW (Address: 0x1009a268)
  • ReleaseMutex (Address: 0x1009a288)
  • ReleaseSemaphore (Address: 0x1009a298)
  • ReleaseSRWLockExclusive (Address: 0x1009a278)
  • ReleaseSRWLockShared (Address: 0x1009a260)
  • SetEvent (Address: 0x1009a294)
  • WaitForSingleObject (Address: 0x1009a290)
  • WaitForSingleObjectEx (Address: 0x1009a26c)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1009a2c0)
  • InitOnceComplete (Address: 0x1009a2bc)
  • InitOnceExecuteOnce (Address: 0x1009a2b8)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetLocalTime (Address: 0x1009a2dc)
  • GetSystemDirectoryW (Address: 0x1009a2c8)
  • GetSystemTimeAsFileTime (Address: 0x1009a2d4)
  • GetTickCount64 (Address: 0x1009a2cc)
  • GetVersionExW (Address: 0x1009a2d0)
  • GlobalMemoryStatusEx (Address: 0x1009a2d8)
api-ms-win-core-sysinfo-l1-2-0.dll
  • GetProductInfo (Address: 0x1009a2e4)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1009a2f4)
  • CreateThreadpoolTimer (Address: 0x1009a2ec)
  • SetThreadpoolTimer (Address: 0x1009a2f0)
  • WaitForThreadpoolTimerCallbacks (Address: 0x1009a2f8)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1009a300)
  • EncodePointer (Address: 0x1009a304)
api-ms-win-core-winrt-l1-1-0.dll
  • RoGetActivationFactory (Address: 0x1009a30c)
api-ms-win-core-wow64-l1-1-0.dll
  • IsWow64Process (Address: 0x1009a314)
api-ms-win-crt-private-l1-1-0.dll
  • __CxxFrameHandler3 (Address: 0x1009a388)
  • __std_terminate (Address: 0x1009a384)
  • _CxxThrowException (Address: 0x1009a380)
  • _except_handler4_common (Address: 0x1009a348)
  • _o___std_exception_copy (Address: 0x1009a374)
  • _o___std_exception_destroy (Address: 0x1009a370)
  • _o___std_type_info_destroy_list (Address: 0x1009a36c)
  • _o___stdio_common_vsnprintf_s (Address: 0x1009a368)
  • _o___stdio_common_vswprintf (Address: 0x1009a364)
  • _o__callnewh (Address: 0x1009a360)
  • _o__cexit (Address: 0x1009a35c)
  • _o__configure_narrow_argv (Address: 0x1009a358)
  • _o__crt_atexit (Address: 0x1009a354)
  • _o__errno (Address: 0x1009a350)
  • _o__execute_onexit_table (Address: 0x1009a34c)
  • _o__initialize_narrow_environment (Address: 0x1009a31c)
  • _o__initialize_onexit_table (Address: 0x1009a320)
  • _o__invalid_parameter_noinfo (Address: 0x1009a324)
  • _o__purecall (Address: 0x1009a328)
  • _o__register_onexit_function (Address: 0x1009a32c)
  • _o__seh_filter_dll (Address: 0x1009a330)
  • _o__wcsicmp (Address: 0x1009a334)
  • _o_free (Address: 0x1009a33c)
  • _o_malloc (Address: 0x1009a340)
  • _o_terminate (Address: 0x1009a344)
  • memchr (Address: 0x1009a38c)
  • memcmp (Address: 0x1009a390)
  • memcpy (Address: 0x1009a394)
  • memmove (Address: 0x1009a338)
  • wcschr (Address: 0x1009a37c)
  • wcsstr (Address: 0x1009a378)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x1009a3a0)
  • _initterm_e (Address: 0x1009a39c)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x1009a3a8)
api-ms-win-devices-config-l1-1-1.dll
  • CM_Get_Device_IDW (Address: 0x1009a3b0)
  • CM_Get_DevNode_Registry_PropertyW (Address: 0x1009a3bc)
  • CM_Get_DevNode_Status (Address: 0x1009a3b8)
  • CM_Get_Parent (Address: 0x1009a3b4)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • GetTraceEnableFlags (Address: 0x1009a3c8)
  • GetTraceEnableLevel (Address: 0x1009a3cc)
  • GetTraceLoggerHandle (Address: 0x1009a3c4)
  • RegisterTraceGuidsW (Address: 0x1009a3d4)
  • UnregisterTraceGuids (Address: 0x1009a3d0)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x1009a3e0)
  • EventRegister (Address: 0x1009a3ec)
  • EventSetInformation (Address: 0x1009a3e8)
  • EventUnregister (Address: 0x1009a3e4)
  • EventWriteTransfer (Address: 0x1009a3dc)
api-ms-win-rtcore-ntuser-synch-l1-1-0.dll
  • MsgWaitForMultipleObjects (Address: 0x1009a3f4)
api-ms-win-security-base-l1-1-0.dll
  • CreateWellKnownSid (Address: 0x1009a40c)
  • GetTokenInformation (Address: 0x1009a404)
  • InitializeSecurityDescriptor (Address: 0x1009a410)
  • SetSecurityDescriptorDacl (Address: 0x1009a400)
  • SetSecurityDescriptorGroup (Address: 0x1009a3fc)
  • SetSecurityDescriptorOwner (Address: 0x1009a408)
api-ms-win-security-cryptoapi-l1-1-0.dll
  • CryptAcquireContextW (Address: 0x1009a428)
  • CryptCreateHash (Address: 0x1009a424)
  • CryptDestroyHash (Address: 0x1009a420)
  • CryptGetHashParam (Address: 0x1009a41c)
  • CryptHashData (Address: 0x1009a418)
  • CryptReleaseContext (Address: 0x1009a42c)
api-ms-win-security-lsalookup-l1-1-2.dll
  • LsaLookupUserAccountType (Address: 0x1009a434)
api-ms-win-security-provider-l1-1-0.dll
  • SetEntriesInAclW (Address: 0x1009a43c)
api-ms-win-shcore-taskpool-l1-1-0.dll
  • SHTaskPoolAllowThreadReuse (Address: 0x1009a448)
  • SHTaskPoolQueueTask (Address: 0x1009a444)
CLIPC.dll
  • ClipCallServer (Address: 0x1009a004)
  • ClipClose (Address: 0x1009a000)
  • ClipGetSubscriptionStatus (Address: 0x1009a008)
  • ClipOpen (Address: 0x1009a00c)
DismApi.DLL
  • _DismGetTargetEditions (Address: 0x1009a014)
  • _DismSetEdition (Address: 0x1009a01c)
  • DismCloseSession (Address: 0x1009a028)
  • DismDelete (Address: 0x1009a018)
  • DismInitialize (Address: 0x1009a020)
  • DismOpenSession (Address: 0x1009a024)
  • DismShutdown (Address: 0x1009a02c)
ntdll.dll
  • NtQueryWnfStateData (Address: 0x1009a450)
ole32.dll
  • CoGetObject (Address: 0x1009a458)
OLEAUT32.dll
  • SafeArrayAccessData (Address: 0x1009a044)
  • SafeArrayCreateVector (Address: 0x1009a054)
  • SafeArrayDestroy (Address: 0x1009a048)
  • SafeArrayGetLBound (Address: 0x1009a03c)
  • SafeArrayGetUBound (Address: 0x1009a040)
  • SafeArrayUnaccessData (Address: 0x1009a058)
  • SysAllocString (Address: 0x1009a038)
  • SysAllocStringLen (Address: 0x1009a034)
  • SysFreeString (Address: 0x1009a04c)
  • VariantClear (Address: 0x1009a050)
  • VariantInit (Address: 0x1009a05c)
pkeyhelper.dll
  • GetEditionIdFromName (Address: 0x1009a464)
  • SkuGetUpgradeProductKeyFromDownlevelEdition (Address: 0x1009a460)
RPCRT4.dll
  • CStdStubBuffer_AddRef (Address: 0x1009a08c)
  • CStdStubBuffer_Connect (Address: 0x1009a068)
  • CStdStubBuffer_CountRefs (Address: 0x1009a064)
  • CStdStubBuffer_DebugServerQueryInterface (Address: 0x1009a09c)
  • CStdStubBuffer_DebugServerRelease (Address: 0x1009a090)
  • CStdStubBuffer_Disconnect (Address: 0x1009a098)
  • CStdStubBuffer_Invoke (Address: 0x1009a06c)
  • CStdStubBuffer_IsIIDSupported (Address: 0x1009a0a0)
  • CStdStubBuffer_QueryInterface (Address: 0x1009a074)
  • I_RpcMapWin32Status (Address: 0x1009a080)
  • IUnknown_AddRef_Proxy (Address: 0x1009a0b8)
  • IUnknown_QueryInterface_Proxy (Address: 0x1009a0a4)
  • IUnknown_Release_Proxy (Address: 0x1009a088)
  • NdrCStdStubBuffer_Release (Address: 0x1009a070)
  • NdrCStdStubBuffer2_Release (Address: 0x1009a094)
  • NdrDllCanUnloadNow (Address: 0x1009a0ac)
  • NdrDllGetClassObject (Address: 0x1009a0b0)
  • NdrOleAllocate (Address: 0x1009a07c)
  • NdrOleFree (Address: 0x1009a0a8)
  • NdrStubCall2 (Address: 0x1009a0b4)
  • NdrStubForwardingFunction (Address: 0x1009a084)
  • UuidFromStringW (Address: 0x1009a078)
SLC.dll
  • SLConsumeWindowsRight (Address: 0x1009a0c8)
  • SLGetWindowsInformation (Address: 0x1009a0c4)
  • SLGetWindowsInformationDWORD (Address: 0x1009a0c0)
  • SLIsWindowsGenuineLocal (Address: 0x1009a0cc)
sppc.dll
  • SLClose (Address: 0x1009a470)
  • SLGetPKeyId (Address: 0x1009a478)
  • SLGetPKeyInformation (Address: 0x1009a480)
  • SLGetProductSkuInformation (Address: 0x1009a488)
  • SLInstallLicense (Address: 0x1009a46c)
  • SLInstallProofOfPurchaseEx (Address: 0x1009a484)
  • SLOpen (Address: 0x1009a474)
  • SLpTriggerServiceWorker (Address: 0x1009a47c)
sppcext.dll
  • SLActivateProduct (Address: 0x1009a490)
WINSKU.dll
  • SkuGetEditionEulaFilePath (Address: 0x1009a0d4)