unenrollhook.dll

Description: unenrollhook DLL

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5794

Architecture: 32-bit

Operating System: Windows NT

SHA256: b48c106f59424a2346f8249f6ec31ff7

File Size: 77.5 KB

Uploaded At: Dec. 1, 2025, 8:05 a.m.

Views: 14

Exported Functions

  • EnterpriseResourceManager_MoveAllResources (Ordinal: 1, Address: 0x6b40)
  • EnterpriseResourceManager_UnenrollHook (Ordinal: 2, Address: 0xaa60)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x10013020)
  • CoInitializeEx (Address: 0x10013024)
  • CoUninitialize (Address: 0x10013028)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x10013038)
  • IsDebuggerPresent (Address: 0x10013030)
  • OutputDebugStringW (Address: 0x10013034)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x10013040)
  • SetLastError (Address: 0x1001304c)
  • SetUnhandledExceptionFilter (Address: 0x10013048)
  • UnhandledExceptionFilter (Address: 0x10013044)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x10013054)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1001305c)
  • HeapAlloc (Address: 0x10013060)
  • HeapFree (Address: 0x10013064)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x10013078)
  • FreeLibrary (Address: 0x10013080)
  • GetModuleFileNameA (Address: 0x1001306c)
  • GetModuleHandleExW (Address: 0x10013070)
  • GetModuleHandleW (Address: 0x1001307c)
  • GetProcAddress (Address: 0x10013074)
  • LoadLibraryExW (Address: 0x10013084)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1001308c)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x100130a0)
  • GetCurrentProcessId (Address: 0x10013094)
  • GetCurrentThreadId (Address: 0x10013098)
  • TerminateProcess (Address: 0x1001309c)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x100130a8)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x100130b8)
  • RegCreateKeyExW (Address: 0x100130c4)
  • RegEnumKeyExW (Address: 0x100130bc)
  • RegEnumValueW (Address: 0x100130c8)
  • RegOpenKeyExW (Address: 0x100130b4)
  • RegQueryInfoKeyW (Address: 0x100130b0)
  • RegQueryValueExW (Address: 0x100130c0)
  • RegSetValueExW (Address: 0x100130cc)
api-ms-win-core-string-l1-1-0.dll
  • GetStringTypeW (Address: 0x100130d4)
  • MultiByteToWideChar (Address: 0x100130d8)
  • WideCharToMultiByte (Address: 0x100130dc)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x100130ec)
  • AcquireSRWLockShared (Address: 0x100130e4)
  • CreateMutexExW (Address: 0x100130e8)
  • CreateSemaphoreExW (Address: 0x100130f8)
  • DeleteCriticalSection (Address: 0x1001310c)
  • EnterCriticalSection (Address: 0x10013114)
  • InitializeCriticalSectionEx (Address: 0x100130fc)
  • LeaveCriticalSection (Address: 0x10013110)
  • OpenSemaphoreW (Address: 0x10013118)
  • ReleaseMutex (Address: 0x1001311c)
  • ReleaseSemaphore (Address: 0x10013100)
  • ReleaseSRWLockExclusive (Address: 0x10013108)
  • ReleaseSRWLockShared (Address: 0x10013104)
  • WaitForSingleObject (Address: 0x100130f4)
  • WaitForSingleObjectEx (Address: 0x100130f0)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1001312c)
  • SleepConditionVariableSRW (Address: 0x10013124)
  • WakeAllConditionVariable (Address: 0x10013128)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTime (Address: 0x10013138)
  • GetSystemTimeAsFileTime (Address: 0x1001313c)
  • GetTickCount (Address: 0x10013134)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1001314c)
  • CreateThreadpoolTimer (Address: 0x10013148)
  • SetThreadpoolTimer (Address: 0x10013144)
  • WaitForThreadpoolTimerCallbacks (Address: 0x10013150)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x10013158)
  • EncodePointer (Address: 0x1001315c)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventRegister (Address: 0x1001316c)
  • EventSetInformation (Address: 0x10013170)
  • EventUnregister (Address: 0x10013168)
  • EventWriteTransfer (Address: 0x10013164)
DMCmnUtils.dll
  • UnicodeToMB (Address: 0x10013000)
enterpriseresourcemanager.dll
  • EnterpriseResourceManagerStore_DeleteResource (Address: 0x10013178)
msvcrt.dll
  • ___lc_codepage_func (Address: 0x1001322c)
  • ___lc_handle_func (Address: 0x10013234)
  • ___mb_cur_max_func (Address: 0x10013224)
  • __crtLCMapStringW (Address: 0x10013200)
  • __CxxFrameHandler3 (Address: 0x100131b4)
  • __dllonexit (Address: 0x100131d4)
  • __pctype_func (Address: 0x10013238)
  • __uncaught_exception (Address: 0x1001323c)
  • _amsg_exit (Address: 0x100131dc)
  • _callnewh (Address: 0x10013180)
  • _CxxThrowException (Address: 0x10013190)
  • _errno (Address: 0x100131a4)
  • _except_handler4_common (Address: 0x100131c4)
  • _initterm (Address: 0x100131d8)
  • _ismbblead (Address: 0x10013220)
  • _lock (Address: 0x100131a8)
  • _onexit (Address: 0x100131d0)
  • _purecall (Address: 0x100131f8)
  • _unlock (Address: 0x10013248)
  • _vsnprintf_s (Address: 0x100131e8)
  • _vsnwprintf (Address: 0x10013240)
  • _wcsdup (Address: 0x1001320c)
  • _wcsicmp (Address: 0x10013218)
  • _wsetlocale (Address: 0x100131fc)
  • _XcptFilter (Address: 0x100131e0)
  • ??_V@YAXPAX@Z (Address: 0x10013244)
  • ??0bad_cast@@QAE@ABV0@@Z (Address: 0x100131ac)
  • ??0bad_cast@@QAE@PBD@Z (Address: 0x100131b8)
  • ??0exception@@QAE@ABQBD@Z (Address: 0x10013194)
  • ??0exception@@QAE@ABQBDH@Z (Address: 0x10013184)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x100131ec)
  • ??0exception@@QAE@XZ (Address: 0x100131f0)
  • ??1bad_cast@@UAE@XZ (Address: 0x100131bc)
  • ??1exception@@UAE@XZ (Address: 0x100131f4)
  • ??1type_info@@UAE@XZ (Address: 0x100131c8)
  • ??3@YAXPAX@Z (Address: 0x10013208)
  • ?terminate@@YAXXZ (Address: 0x100131cc)
  • ?what@exception@@UBEPBDXZ (Address: 0x1001319c)
  • abort (Address: 0x10013214)
  • calloc (Address: 0x10013228)
  • free (Address: 0x10013188)
  • malloc (Address: 0x100131b0)
  • memcmp (Address: 0x100131e4)
  • memcpy (Address: 0x10013198)
  • memcpy_s (Address: 0x10013230)
  • memmove (Address: 0x100131a0)
  • memmove_s (Address: 0x10013204)
  • memset (Address: 0x1001321c)
  • setlocale (Address: 0x100131c0)
  • sprintf_s (Address: 0x10013210)
  • wcschr (Address: 0x1001318c)
ntdll.dll
  • RtlIsStateSeparationEnabled (Address: 0x10013250)
OLEAUT32.dll
  • SysAllocString (Address: 0x10013008)
  • VariantClear (Address: 0x10013010)
  • VariantInit (Address: 0x1001300c)
RPCRT4.dll
  • UuidCreate (Address: 0x10013018)