MicrosoftAccountWAMExtension.dll
Description: Microsoft Account WAM Extension DLL
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.6033
Architecture: 32-bit
Operating System: Windows NT
SHA256: 24bd1727bde0bc71f6e8a872ce6f7d97
File Size: 392.0 KB
Uploaded At: Dec. 1, 2025, 8 a.m.
Views: 16
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x17ff0)
- DllGetActivationFactory (Ordinal: 2, Address: 0x17f80)
- DllGetClassObject (Ordinal: 3, Address: 0x17fa0)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x1005d000)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1005d010)
- IsDebuggerPresent (Address: 0x1005d00c)
- OutputDebugStringW (Address: 0x1005d008)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1005d018)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1005d020)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1005d028)
- RaiseException (Address: 0x1005d038)
- SetLastError (Address: 0x1005d030)
- SetUnhandledExceptionFilter (Address: 0x1005d02c)
- UnhandledExceptionFilter (Address: 0x1005d034)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1005d040)
- DuplicateHandle (Address: 0x1005d044)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1005d060)
- HeapAlloc (Address: 0x1005d05c)
- HeapDestroy (Address: 0x1005d050)
- HeapFree (Address: 0x1005d054)
- HeapReAlloc (Address: 0x1005d04c)
- HeapSize (Address: 0x1005d058)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1005d06c)
- LocalFree (Address: 0x1005d068)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1005d08c)
- FindResourceExW (Address: 0x1005d088)
- GetModuleFileNameA (Address: 0x1005d074)
- GetModuleHandleExW (Address: 0x1005d094)
- GetModuleHandleW (Address: 0x1005d07c)
- GetProcAddress (Address: 0x1005d078)
- LoadResource (Address: 0x1005d090)
- LockResource (Address: 0x1005d080)
- SizeofResource (Address: 0x1005d084)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1005d09c)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1005d0a8)
- GetCurrentProcessId (Address: 0x1005d0c0)
- GetCurrentThread (Address: 0x1005d0ac)
- GetCurrentThreadId (Address: 0x1005d0b8)
- OpenProcessToken (Address: 0x1005d0bc)
- OpenThreadToken (Address: 0x1005d0b4)
- SetThreadToken (Address: 0x1005d0a4)
- TerminateProcess (Address: 0x1005d0b0)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x1005d0c8)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1005d0d0)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1005d0d8)
- RegCreateKeyExW (Address: 0x1005d0f8)
- RegDeleteKeyExW (Address: 0x1005d104)
- RegDeleteTreeW (Address: 0x1005d0ec)
- RegDeleteValueW (Address: 0x1005d0e8)
- RegEnumKeyExW (Address: 0x1005d0f4)
- RegEnumValueW (Address: 0x1005d0fc)
- RegGetValueW (Address: 0x1005d0dc)
- RegOpenCurrentUser (Address: 0x1005d0e4)
- RegOpenKeyExW (Address: 0x1005d100)
- RegQueryInfoKeyW (Address: 0x1005d0f0)
- RegQueryValueExW (Address: 0x1005d108)
- RegSetValueExW (Address: 0x1005d0e0)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x1005d114)
- MultiByteToWideChar (Address: 0x1005d110)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1005d144)
- AcquireSRWLockShared (Address: 0x1005d140)
- CreateEventExW (Address: 0x1005d138)
- CreateEventW (Address: 0x1005d15c)
- CreateMutexExW (Address: 0x1005d158)
- CreateSemaphoreExW (Address: 0x1005d13c)
- DeleteCriticalSection (Address: 0x1005d124)
- EnterCriticalSection (Address: 0x1005d148)
- InitializeCriticalSection (Address: 0x1005d120)
- InitializeCriticalSectionEx (Address: 0x1005d130)
- InitializeSRWLock (Address: 0x1005d150)
- LeaveCriticalSection (Address: 0x1005d11c)
- OpenSemaphoreW (Address: 0x1005d160)
- ReleaseMutex (Address: 0x1005d168)
- ReleaseSemaphore (Address: 0x1005d154)
- ReleaseSRWLockExclusive (Address: 0x1005d12c)
- ReleaseSRWLockShared (Address: 0x1005d134)
- SetEvent (Address: 0x1005d128)
- WaitForMultipleObjectsEx (Address: 0x1005d14c)
- WaitForSingleObject (Address: 0x1005d16c)
- WaitForSingleObjectEx (Address: 0x1005d164)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x1005d174)
- InitOnceComplete (Address: 0x1005d17c)
- InitOnceExecuteOnce (Address: 0x1005d178)
- Sleep (Address: 0x1005d180)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x1005d18c)
- GetTickCount (Address: 0x1005d188)
- GetTickCount64 (Address: 0x1005d190)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1005d1a4)
- CreateThreadpoolTimer (Address: 0x1005d1a0)
- SetThreadpoolTimer (Address: 0x1005d198)
- WaitForThreadpoolTimerCallbacks (Address: 0x1005d19c)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x1005d1ac)
- EncodePointer (Address: 0x1005d1b0)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x1005d1b8)
- EventRegister (Address: 0x1005d1c0)
- EventSetInformation (Address: 0x1005d1c4)
- EventUnregister (Address: 0x1005d1c8)
- EventWriteTransfer (Address: 0x1005d1bc)
api-ms-win-service-winsvc-l1-1-0.dll
- QueryServiceStatus (Address: 0x1005d1d0)
api-ms-win-shcore-stream-winrt-l1-1-0.dll
- CreateRandomAccessStreamOnFile (Address: 0x1005d1d8)
api-ms-win-shcore-taskpool-l1-1-0.dll
- SHTaskPoolAllowThreadReuse (Address: 0x1005d1e0)
- SHTaskPoolQueueTask (Address: 0x1005d1e4)
combase.dll
- (Address: 0x1005d1ec)
- (Address: 0x1005d1f0)
- (Address: 0x1005d1f4)
- (Address: 0x1005d1fc)
- (Address: 0x1005d200)
- (Address: 0x1005d204)
- (Address: 0x1005d20c)
- (Address: 0x1005d210)
- (Address: 0x1005d214)
- (Address: 0x1005d218)
- (Address: 0x1005d220)
- (Address: 0x1005d224)
- (Address: 0x1005d228)
- (Address: 0x1005d22c)
- (Address: 0x1005d230)
- (Address: 0x1005d234)
- (Address: 0x1005d238)
- (Address: 0x1005d240)
- CStdStubBuffer2_Connect (Address: 0x1005d208)
- CStdStubBuffer2_CountRefs (Address: 0x1005d21c)
- CStdStubBuffer2_Disconnect (Address: 0x1005d23c)
- CStdStubBuffer2_QueryInterface (Address: 0x1005d1f8)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x1005d2cc)
- __dllonexit (Address: 0x1005d280)
- _amsg_exit (Address: 0x1005d248)
- _callnewh (Address: 0x1005d2b8)
- _CxxThrowException (Address: 0x1005d2b4)
- _except_handler4_common (Address: 0x1005d288)
- _ftol2 (Address: 0x1005d258)
- _ftol2_sse (Address: 0x1005d260)
- _initterm (Address: 0x1005d250)
- _lock (Address: 0x1005d274)
- _onexit (Address: 0x1005d284)
- _purecall (Address: 0x1005d2c0)
- _unlock (Address: 0x1005d27c)
- _vsnprintf_s (Address: 0x1005d2c4)
- _vsnwprintf (Address: 0x1005d2e0)
- _vsnwprintf_s (Address: 0x1005d294)
- _wcsicmp (Address: 0x1005d29c)
- _wcsnicmp (Address: 0x1005d2a4)
- _XcptFilter (Address: 0x1005d278)
- ??_V@YAXPAX@Z (Address: 0x1005d298)
- ??0exception@@QAE@ABQBD@Z (Address: 0x1005d268)
- ??0exception@@QAE@ABQBDH@Z (Address: 0x1005d264)
- ??0exception@@QAE@ABV0@@Z (Address: 0x1005d2c8)
- ??0exception@@QAE@XZ (Address: 0x1005d2d0)
- ??1exception@@UAE@XZ (Address: 0x1005d2d4)
- ??1type_info@@UAE@XZ (Address: 0x1005d2e4)
- ??3@YAXPAX@Z (Address: 0x1005d2d8)
- ?terminate@@YAXXZ (Address: 0x1005d254)
- ?what@exception@@UBEPBDXZ (Address: 0x1005d25c)
- free (Address: 0x1005d24c)
- malloc (Address: 0x1005d2bc)
- memcmp (Address: 0x1005d28c)
- memcpy (Address: 0x1005d270)
- memcpy_s (Address: 0x1005d2dc)
- memmove (Address: 0x1005d26c)
- memmove_s (Address: 0x1005d290)
- memset (Address: 0x1005d2e8)
- realloc (Address: 0x1005d2a0)
- swprintf_s (Address: 0x1005d2a8)
- wcsrchr (Address: 0x1005d2b0)
- wcsstr (Address: 0x1005d2ac)
ntdll.dll
- NtQuerySecurityObject (Address: 0x1005d2f8)
- NtSetSecurityObject (Address: 0x1005d2f4)
- RtlAddAccessAllowedAce (Address: 0x1005d300)
- RtlAddAce (Address: 0x1005d304)
- RtlCreateAcl (Address: 0x1005d30c)
- RtlCreateSecurityDescriptor (Address: 0x1005d31c)
- RtlGetAce (Address: 0x1005d308)
- RtlGetDaclSecurityDescriptor (Address: 0x1005d318)
- RtlLengthSid (Address: 0x1005d310)
- RtlNtStatusToDosError (Address: 0x1005d2f0)
- RtlQueryInformationAcl (Address: 0x1005d314)
- RtlSetDaclSecurityDescriptor (Address: 0x1005d2fc)