tsmf.dll
Description: RDP MF Plugin
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5965
Architecture: 32-bit
Operating System: Windows NT
SHA256: 2be62ff27fb2ebadf995d5ce039acbbe
File Size: 346.6 KB
Uploaded At: Dec. 1, 2025, 8:05 a.m.
Views: 15
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0xe190)
- DllGetClassObject (Ordinal: 2, Address: 0xe1c0)
- DllRegisterServer (Ordinal: 3, Address: 0xe1f0)
- DllUnregisterServer (Ordinal: 4, Address: 0xe260)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x1004c0c8)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1004c0dc)
- IsDebuggerPresent (Address: 0x1004c0d8)
- OutputDebugStringA (Address: 0x1004c0d4)
- OutputDebugStringW (Address: 0x1004c0d0)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1004c0e4)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1004c0ec)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1004c104)
- RaiseException (Address: 0x1004c0f8)
- SetLastError (Address: 0x1004c0f4)
- SetUnhandledExceptionFilter (Address: 0x1004c100)
- UnhandledExceptionFilter (Address: 0x1004c0fc)
api-ms-win-core-featurestaging-l1-1-0.dll
- RecordFeatureUsage (Address: 0x1004c110)
- SubscribeFeatureStateChangeNotification (Address: 0x1004c10c)
- UnsubscribeFeatureStateChangeNotification (Address: 0x1004c114)
api-ms-win-core-file-l1-1-0.dll
- ReadFileEx (Address: 0x1004c11c)
- WriteFile (Address: 0x1004c120)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1004c128)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1004c130)
- HeapAlloc (Address: 0x1004c138)
- HeapFree (Address: 0x1004c134)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1004c140)
- LocalFree (Address: 0x1004c144)
api-ms-win-core-io-l1-1-0.dll
- GetOverlappedResult (Address: 0x1004c14c)
api-ms-win-core-io-l1-1-1.dll
- CancelIo (Address: 0x1004c154)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1004c16c)
- FindResourceExW (Address: 0x1004c174)
- FreeLibrary (Address: 0x1004c188)
- FreeLibraryAndExitThread (Address: 0x1004c170)
- GetModuleFileNameA (Address: 0x1004c160)
- GetModuleFileNameW (Address: 0x1004c15c)
- GetModuleHandleExA (Address: 0x1004c168)
- GetModuleHandleExW (Address: 0x1004c178)
- GetModuleHandleW (Address: 0x1004c184)
- GetProcAddress (Address: 0x1004c180)
- LoadLibraryExW (Address: 0x1004c18c)
- LoadResource (Address: 0x1004c17c)
- SizeofResource (Address: 0x1004c164)
api-ms-win-core-libraryloader-l1-2-1.dll
- LoadLibraryW (Address: 0x1004c194)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1004c1a0)
- GetThreadLocale (Address: 0x1004c1a4)
- SetThreadLocale (Address: 0x1004c19c)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateThread (Address: 0x1004c1d0)
- GetCurrentProcess (Address: 0x1004c1bc)
- GetCurrentProcessId (Address: 0x1004c1cc)
- GetCurrentThreadId (Address: 0x1004c1dc)
- OpenThread (Address: 0x1004c1b4)
- ProcessIdToSessionId (Address: 0x1004c1c0)
- QueueUserAPC (Address: 0x1004c1c4)
- SwitchToThread (Address: 0x1004c1d4)
- TerminateProcess (Address: 0x1004c1d8)
- TlsAlloc (Address: 0x1004c1b8)
- TlsFree (Address: 0x1004c1ac)
- TlsGetValue (Address: 0x1004c1b0)
- TlsSetValue (Address: 0x1004c1c8)
api-ms-win-core-processthreads-l1-1-1.dll
- GetProcessMitigationPolicy (Address: 0x1004c1e8)
- OpenProcess (Address: 0x1004c1e4)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1004c1f0)
api-ms-win-core-psapi-l1-1-0.dll
- K32GetModuleBaseNameW (Address: 0x1004c1f8)
api-ms-win-core-string-l1-1-0.dll
- CompareStringW (Address: 0x1004c204)
- MultiByteToWideChar (Address: 0x1004c200)
api-ms-win-core-string-l2-1-0.dll
- CharNextW (Address: 0x1004c20c)
api-ms-win-core-string-obsolete-l1-1-0.dll
- lstrcmpiW (Address: 0x1004c214)
api-ms-win-core-synch-l1-1-0.dll
- CreateEventW (Address: 0x1004c248)
- CreateMutexExW (Address: 0x1004c234)
- CreateSemaphoreExW (Address: 0x1004c220)
- DeleteCriticalSection (Address: 0x1004c250)
- EnterCriticalSection (Address: 0x1004c24c)
- InitializeCriticalSection (Address: 0x1004c240)
- LeaveCriticalSection (Address: 0x1004c238)
- OpenSemaphoreW (Address: 0x1004c23c)
- ReleaseMutex (Address: 0x1004c21c)
- ReleaseSemaphore (Address: 0x1004c224)
- ResetEvent (Address: 0x1004c228)
- SetEvent (Address: 0x1004c244)
- WaitForSingleObject (Address: 0x1004c22c)
- WaitForSingleObjectEx (Address: 0x1004c230)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceExecuteOnce (Address: 0x1004c25c)
- Sleep (Address: 0x1004c258)
api-ms-win-core-synch-l1-2-1.dll
- CreateSemaphoreW (Address: 0x1004c268)
- WaitForMultipleObjects (Address: 0x1004c264)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x1004c278)
- GetSystemInfo (Address: 0x1004c27c)
- GetSystemTimeAsFileTime (Address: 0x1004c274)
- GetTickCount (Address: 0x1004c280)
- GetTickCount64 (Address: 0x1004c270)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x1004c288)
- __dllonexit (Address: 0x1004c2a0)
- _amsg_exit (Address: 0x1004c2bc)
- _callnewh (Address: 0x1004c2c4)
- _CIlog10 (Address: 0x1004c2f8)
- _CIpow (Address: 0x1004c2f4)
- _errno (Address: 0x1004c2b0)
- _except_handler4_common (Address: 0x1004c2b4)
- _ftol2 (Address: 0x1004c2e8)
- _ftol2_sse (Address: 0x1004c2e4)
- _initterm (Address: 0x1004c2b8)
- _lock (Address: 0x1004c2a8)
- _onexit (Address: 0x1004c29c)
- _purecall (Address: 0x1004c2d4)
- _unlock (Address: 0x1004c2a4)
- _vsnwprintf (Address: 0x1004c294)
- _XcptFilter (Address: 0x1004c2c0)
- free (Address: 0x1004c2d0)
- malloc (Address: 0x1004c2cc)
- memcmp (Address: 0x1004c2e0)
- memcpy (Address: 0x1004c2dc)
- memcpy_s (Address: 0x1004c2f0)
- memmove (Address: 0x1004c298)
- memset (Address: 0x1004c2fc)
- realloc (Address: 0x1004c2ac)
- wcscat_s (Address: 0x1004c2d8)
- wcscpy_s (Address: 0x1004c2ec)
- wcsncpy_s (Address: 0x1004c2c8)
- wcsnlen (Address: 0x1004c28c)
- wcsrchr (Address: 0x1004c290)
ntdll.dll
- RtlAreBitsSet (Address: 0x1004c304)
- RtlClearBits (Address: 0x1004c308)
- RtlFindClearBitsAndSet (Address: 0x1004c31c)
- RtlGetActiveConsoleId (Address: 0x1004c310)
- RtlGetCurrentServiceSessionId (Address: 0x1004c314)
- RtlInitializeBitMap (Address: 0x1004c30c)
- RtlMultiByteToUnicodeN (Address: 0x1004c318)
RPCRT4.dll
- I_RpcExceptionFilter (Address: 0x1004c008)
- NdrClientCall2 (Address: 0x1004c000)
- RpcBindingFree (Address: 0x1004c004)
- RpcBindingFromStringBindingW (Address: 0x1004c010)
- RpcBindingSetAuthInfoExW (Address: 0x1004c00c)
- RpcStringBindingComposeW (Address: 0x1004c014)
- RpcStringFreeW (Address: 0x1004c018)
USER32.dll
- ClientToScreen (Address: 0x1004c020)
- CloseDesktop (Address: 0x1004c034)
- CreateWindowExW (Address: 0x1004c0b8)
- DefWindowProcW (Address: 0x1004c058)
- DestroyWindow (Address: 0x1004c0b0)
- DispatchMessageW (Address: 0x1004c0bc)
- EnumChildWindows (Address: 0x1004c05c)
- EnumDisplayMonitors (Address: 0x1004c084)
- EnumWindows (Address: 0x1004c060)
- FillRect (Address: 0x1004c08c)
- GetAncestor (Address: 0x1004c074)
- GetClassInfoExW (Address: 0x1004c048)
- GetClassNameW (Address: 0x1004c054)
- GetClientRect (Address: 0x1004c088)
- GetDC (Address: 0x1004c090)
- GetDesktopWindow (Address: 0x1004c0ac)
- GetMonitorInfoW (Address: 0x1004c028)
- GetSystemMetrics (Address: 0x1004c0a0)
- GetUserObjectInformationW (Address: 0x1004c038)
- GetWindowInfo (Address: 0x1004c080)
- GetWindowLongW (Address: 0x1004c068)
- GetWindowRect (Address: 0x1004c024)
- GetWindowRgn (Address: 0x1004c07c)
- IsWindow (Address: 0x1004c030)
- IsWindowVisible (Address: 0x1004c02c)
- KillTimer (Address: 0x1004c098)
- LoadCursorW (Address: 0x1004c070)
- MapWindowPoints (Address: 0x1004c064)
- MsgWaitForMultipleObjectsEx (Address: 0x1004c0a4)
- OffsetRect (Address: 0x1004c078)
- OpenInputDesktop (Address: 0x1004c03c)
- PeekMessageW (Address: 0x1004c0a8)
- PostMessageW (Address: 0x1004c0c0)
- PostThreadMessageW (Address: 0x1004c09c)
- RegisterClassExW (Address: 0x1004c04c)
- SetTimer (Address: 0x1004c0b4)
- SetWindowLongW (Address: 0x1004c06c)
- SetWinEventHook (Address: 0x1004c044)
- UnhookWinEvent (Address: 0x1004c040)
- UnregisterClassA (Address: 0x1004c094)
- UnregisterClassW (Address: 0x1004c050)