ttdplm.dll

Description: Time Travel Debugger PLM APIs

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 32-bit

Operating System: Windows NT

SHA256: ef309be1210c5ae5c84b917c389131c9

File Size: 52.8 KB

Uploaded At: Dec. 1, 2025, 8:05 a.m.

Views: 16

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • CreateModernAppToDelete (Ordinal: 1, Address: 0x3b40)
  • CreateModernAppToTrace (Ordinal: 2, Address: 0x3ac0)
  • GetMaxPackageNameLength (Ordinal: 3, Address: 0x3b70)
  • GetPackageFromPid (Ordinal: 4, Address: 0x3b80)
  • SetPermisionsForFolder (Ordinal: 5, Address: 0x3bf0)

Imported DLLs & Functions

api-ms-win-appmodel-runtime-l1-1-0.dll
  • GetPackageFullName (Address: 0x1000b000)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x1000b008)
  • CoInitializeEx (Address: 0x1000b00c)
  • CoUninitialize (Address: 0x1000b010)
api-ms-win-core-debug-l1-1-0.dll
  • IsDebuggerPresent (Address: 0x1000b018)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1000b028)
  • RaiseException (Address: 0x1000b02c)
  • SetLastError (Address: 0x1000b030)
  • SetUnhandledExceptionFilter (Address: 0x1000b020)
  • UnhandledExceptionFilter (Address: 0x1000b024)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x1000b03c)
  • GetFileAttributesW (Address: 0x1000b038)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1000b044)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1000b054)
  • HeapAlloc (Address: 0x1000b04c)
  • HeapFree (Address: 0x1000b050)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x1000b05c)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x1000b064)
  • FreeLibrary (Address: 0x1000b070)
  • GetProcAddress (Address: 0x1000b068)
  • LoadLibraryExA (Address: 0x1000b06c)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1000b078)
api-ms-win-core-memory-l1-1-0.dll
  • VirtualProtect (Address: 0x1000b080)
  • VirtualQuery (Address: 0x1000b084)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1000b090)
  • GetCurrentProcessId (Address: 0x1000b09c)
  • GetCurrentThreadId (Address: 0x1000b098)
  • OpenProcessToken (Address: 0x1000b08c)
  • TerminateProcess (Address: 0x1000b094)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x1000b0a4)
  • OpenProcess (Address: 0x1000b0a8)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1000b0b0)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1000b0c8)
  • RegEnumKeyExW (Address: 0x1000b0cc)
  • RegGetKeySecurity (Address: 0x1000b0d0)
  • RegGetValueW (Address: 0x1000b0bc)
  • RegOpenKeyExW (Address: 0x1000b0b8)
  • RegQueryInfoKeyW (Address: 0x1000b0c4)
  • RegSetKeySecurity (Address: 0x1000b0c0)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1000b0e8)
  • DeleteCriticalSection (Address: 0x1000b0e0)
  • InitializeCriticalSectionEx (Address: 0x1000b0d8)
  • LeaveCriticalSection (Address: 0x1000b0dc)
  • ReleaseSRWLockExclusive (Address: 0x1000b0e4)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemInfo (Address: 0x1000b0f0)
  • GetSystemTimeAsFileTime (Address: 0x1000b0f4)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1000b100)
  • EncodePointer (Address: 0x1000b0fc)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x1000b10c)
  • RoInitialize (Address: 0x1000b110)
  • RoUninitialize (Address: 0x1000b108)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateString (Address: 0x1000b124)
  • WindowsDeleteString (Address: 0x1000b120)
  • WindowsGetStringLen (Address: 0x1000b11c)
  • WindowsGetStringRawBuffer (Address: 0x1000b118)
api-ms-win-crt-locale-l1-1-0.dll
  • _lock_locales (Address: 0x1000b12c)
  • _unlock_locales (Address: 0x1000b130)
api-ms-win-crt-private-l1-1-0.dll
  • __CxxFrameHandler3 (Address: 0x1000b198)
  • _CxxThrowException (Address: 0x1000b17c)
  • _except_handler4_common (Address: 0x1000b178)
  • _o___acrt_iob_func (Address: 0x1000b194)
  • _o___std_exception_copy (Address: 0x1000b190)
  • _o___std_exception_destroy (Address: 0x1000b18c)
  • _o___std_type_info_destroy_list (Address: 0x1000b188)
  • _o___stdio_common_vfprintf (Address: 0x1000b184)
  • _o___stdio_common_vswprintf (Address: 0x1000b180)
  • _o__callnewh (Address: 0x1000b138)
  • _o__cexit (Address: 0x1000b13c)
  • _o__configure_narrow_argv (Address: 0x1000b140)
  • _o__crt_atexit (Address: 0x1000b144)
  • _o__execute_onexit_table (Address: 0x1000b148)
  • _o__initialize_narrow_environment (Address: 0x1000b14c)
  • _o__initialize_onexit_table (Address: 0x1000b150)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x1000b154)
  • _o__purecall (Address: 0x1000b158)
  • _o__register_onexit_function (Address: 0x1000b15c)
  • _o__seh_filter_dll (Address: 0x1000b160)
  • _o_abort (Address: 0x1000b164)
  • _o_free (Address: 0x1000b168)
  • _o_malloc (Address: 0x1000b16c)
  • _o_terminate (Address: 0x1000b170)
  • _o_toupper (Address: 0x1000b174)
  • memcpy (Address: 0x1000b19c)
  • memmove (Address: 0x1000b1a0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x1000b1ac)
  • _initterm_e (Address: 0x1000b1a8)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x1000b1b4)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAceEx (Address: 0x1000b1cc)
  • AddAce (Address: 0x1000b1fc)
  • AdjustTokenPrivileges (Address: 0x1000b1e8)
  • EqualSid (Address: 0x1000b1d0)
  • GetAce (Address: 0x1000b1d4)
  • GetAclInformation (Address: 0x1000b1e0)
  • GetLengthSid (Address: 0x1000b1e4)
  • GetSecurityDescriptorDacl (Address: 0x1000b1f4)
  • GetSecurityDescriptorGroup (Address: 0x1000b1f8)
  • GetSecurityDescriptorOwner (Address: 0x1000b1c4)
  • GetSecurityDescriptorSacl (Address: 0x1000b1dc)
  • GetTokenInformation (Address: 0x1000b1f0)
  • InitializeAcl (Address: 0x1000b1bc)
  • InitializeSecurityDescriptor (Address: 0x1000b1c0)
  • SetFileSecurityW (Address: 0x1000b1c8)
  • SetSecurityDescriptorDacl (Address: 0x1000b1ec)
  • SetSecurityDescriptorOwner (Address: 0x1000b1d8)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupAccountSidW (Address: 0x1000b204)
  • LookupPrivilegeValueW (Address: 0x1000b208)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x1000b210)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1000b214)