Windows.AccountsControl.dll

Description: Windows Accounts Control

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5794

Architecture: 32-bit

Operating System: Windows NT

SHA256: 1d0d9f8fb25163ff7aeab1e5e8833862

File Size: 707.0 KB

Uploaded At: Dec. 1, 2025, 8:06 a.m.

Views: 10

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x2b2d0)
  • DllGetActivationFactory (Ordinal: 2, Address: 0x2b260)
  • DllGetClassObject (Ordinal: 3, Address: 0x2b280)
  • GetProxyDllInfo (Ordinal: 4, Address: 0x29660)

Imported DLLs & Functions

api-ms-win-appmodel-runtime-l1-1-0.dll
  • GetPackageFamilyName (Address: 0x100a2090)
  • GetPackageFullName (Address: 0x100a2094)
  • GetPackagesByPackageFamily (Address: 0x100a2098)
api-ms-win-appmodel-runtime-l1-1-1.dll
  • GetPackageFullNameFromToken (Address: 0x100a20a0)
api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x100a20a8)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateFreeThreadedMarshaler (Address: 0x100a20e4)
  • CoCreateInstance (Address: 0x100a20c0)
  • CoGetApartmentType (Address: 0x100a20cc)
  • CoGetCallContext (Address: 0x100a20b4)
  • CoGetCallerTID (Address: 0x100a20e8)
  • CoGetInterfaceAndReleaseStream (Address: 0x100a20dc)
  • CoGetMalloc (Address: 0x100a20bc)
  • CoMarshalInterface (Address: 0x100a20d0)
  • CoReleaseMarshalData (Address: 0x100a20d8)
  • CoSwitchCallContext (Address: 0x100a20c4)
  • CoTaskMemAlloc (Address: 0x100a20b0)
  • CoTaskMemFree (Address: 0x100a20c8)
  • CoTaskMemRealloc (Address: 0x100a20b8)
  • CoWaitForMultipleHandles (Address: 0x100a20d4)
  • CreateStreamOnHGlobal (Address: 0x100a20e0)
api-ms-win-core-com-l1-1-1.dll
  • RoGetAgileReference (Address: 0x100a20f0)
api-ms-win-core-com-midlproxystub-l1-1-0.dll
  • CStdStubBuffer2_Connect (Address: 0x100a2160)
  • CStdStubBuffer2_CountRefs (Address: 0x100a2164)
  • CStdStubBuffer2_Disconnect (Address: 0x100a2178)
  • CStdStubBuffer2_QueryInterface (Address: 0x100a2128)
  • NdrProxyForwardingFunction3 (Address: 0x100a215c)
  • NdrProxyForwardingFunction4 (Address: 0x100a2138)
  • NdrProxyForwardingFunction5 (Address: 0x100a2148)
  • ObjectStublessClient10 (Address: 0x100a20f8)
  • ObjectStublessClient11 (Address: 0x100a213c)
  • ObjectStublessClient12 (Address: 0x100a2144)
  • ObjectStublessClient13 (Address: 0x100a2124)
  • ObjectStublessClient14 (Address: 0x100a2140)
  • ObjectStublessClient15 (Address: 0x100a2118)
  • ObjectStublessClient16 (Address: 0x100a2154)
  • ObjectStublessClient17 (Address: 0x100a2150)
  • ObjectStublessClient18 (Address: 0x100a210c)
  • ObjectStublessClient19 (Address: 0x100a2134)
  • ObjectStublessClient20 (Address: 0x100a2114)
  • ObjectStublessClient21 (Address: 0x100a2158)
  • ObjectStublessClient22 (Address: 0x100a2130)
  • ObjectStublessClient23 (Address: 0x100a211c)
  • ObjectStublessClient24 (Address: 0x100a2168)
  • ObjectStublessClient25 (Address: 0x100a216c)
  • ObjectStublessClient26 (Address: 0x100a214c)
  • ObjectStublessClient27 (Address: 0x100a20fc)
  • ObjectStublessClient28 (Address: 0x100a2110)
  • ObjectStublessClient3 (Address: 0x100a2170)
  • ObjectStublessClient4 (Address: 0x100a2174)
  • ObjectStublessClient5 (Address: 0x100a2120)
  • ObjectStublessClient6 (Address: 0x100a2108)
  • ObjectStublessClient7 (Address: 0x100a212c)
  • ObjectStublessClient8 (Address: 0x100a2104)
  • ObjectStublessClient9 (Address: 0x100a2100)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x100a2180)
  • IsDebuggerPresent (Address: 0x100a2188)
  • OutputDebugStringW (Address: 0x100a2184)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x100a2190)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x100a2198)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x100a21a8)
  • RaiseException (Address: 0x100a21a4)
  • SetLastError (Address: 0x100a21ac)
  • SetUnhandledExceptionFilter (Address: 0x100a21b0)
  • UnhandledExceptionFilter (Address: 0x100a21a0)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x100a21b8)
  • DuplicateHandle (Address: 0x100a21bc)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x100a21c8)
  • HeapAlloc (Address: 0x100a21cc)
  • HeapFree (Address: 0x100a21c4)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x100a21d4)
  • LocalFree (Address: 0x100a21d8)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x100a2208)
  • FindResourceExW (Address: 0x100a21e8)
  • FreeLibrary (Address: 0x100a21e0)
  • GetModuleFileNameA (Address: 0x100a21f4)
  • GetModuleHandleExW (Address: 0x100a2204)
  • GetModuleHandleW (Address: 0x100a21ec)
  • GetProcAddress (Address: 0x100a21fc)
  • LoadLibraryExW (Address: 0x100a21e4)
  • LoadResource (Address: 0x100a21f0)
  • LoadStringW (Address: 0x100a21f8)
  • LockResource (Address: 0x100a2200)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x100a2210)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x100a2234)
  • GetCurrentProcessId (Address: 0x100a2230)
  • GetCurrentThread (Address: 0x100a221c)
  • GetCurrentThreadId (Address: 0x100a222c)
  • GetProcessId (Address: 0x100a2228)
  • OpenProcessToken (Address: 0x100a2218)
  • OpenThreadToken (Address: 0x100a2220)
  • TerminateProcess (Address: 0x100a2224)
api-ms-win-core-processthreads-l1-1-1.dll
  • OpenProcess (Address: 0x100a223c)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x100a2244)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x100a225c)
  • RegEnumKeyExW (Address: 0x100a2254)
  • RegGetValueW (Address: 0x100a2260)
  • RegOpenKeyExW (Address: 0x100a224c)
  • RegQueryInfoKeyW (Address: 0x100a2250)
  • RegQueryValueExW (Address: 0x100a2258)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFileExistsW (Address: 0x100a2268)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x100a2270)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x100a22a8)
  • AcquireSRWLockShared (Address: 0x100a2284)
  • CreateEventExW (Address: 0x100a2298)
  • CreateEventW (Address: 0x100a22c0)
  • CreateMutexExW (Address: 0x100a22b8)
  • CreateSemaphoreExW (Address: 0x100a2288)
  • DeleteCriticalSection (Address: 0x100a2294)
  • EnterCriticalSection (Address: 0x100a22b4)
  • InitializeCriticalSectionEx (Address: 0x100a227c)
  • InitializeSRWLock (Address: 0x100a22b0)
  • LeaveCriticalSection (Address: 0x100a2280)
  • OpenSemaphoreW (Address: 0x100a22a0)
  • ReleaseMutex (Address: 0x100a22ac)
  • ReleaseSemaphore (Address: 0x100a2278)
  • ReleaseSRWLockExclusive (Address: 0x100a22bc)
  • ReleaseSRWLockShared (Address: 0x100a2290)
  • SetEvent (Address: 0x100a229c)
  • WaitForSingleObject (Address: 0x100a228c)
  • WaitForSingleObjectEx (Address: 0x100a22a4)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x100a22c8)
  • InitOnceComplete (Address: 0x100a22d0)
  • InitOnceExecuteOnce (Address: 0x100a22d4)
  • Sleep (Address: 0x100a22cc)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x100a22e0)
  • GetTickCount (Address: 0x100a22dc)
api-ms-win-core-sysinfo-l1-2-0.dll
  • GetProductInfo (Address: 0x100a22e8)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x100a22f8)
  • CreateThreadpoolTimer (Address: 0x100a22f4)
  • SetThreadpoolTimer (Address: 0x100a22fc)
  • WaitForThreadpoolTimerCallbacks (Address: 0x100a22f0)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x100a2304)
  • EncodePointer (Address: 0x100a2308)
api-ms-win-core-winrt-error-l1-1-0.dll
  • GetRestrictedErrorInfo (Address: 0x100a231c)
  • RoOriginateError (Address: 0x100a2314)
  • RoOriginateErrorW (Address: 0x100a2320)
  • RoTransformError (Address: 0x100a2310)
  • SetRestrictedErrorInfo (Address: 0x100a2318)
api-ms-win-core-winrt-error-l1-1-1.dll
  • IsErrorPropagationEnabled (Address: 0x100a2328)
  • RoGetMatchingRestrictedErrorInfo (Address: 0x100a2330)
  • RoReportFailedDelegate (Address: 0x100a232c)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x100a2338)
  • RoGetActivationFactory (Address: 0x100a233c)
api-ms-win-core-winrt-robuffer-l1-1-0.dll
  • RoGetBufferMarshaler (Address: 0x100a2344)
api-ms-win-core-winrt-string-l1-1-0.dll
  • HSTRING_UserFree (Address: 0x100a237c)
  • HSTRING_UserMarshal (Address: 0x100a2368)
  • HSTRING_UserSize (Address: 0x100a2360)
  • HSTRING_UserUnmarshal (Address: 0x100a2380)
  • WindowsCompareStringOrdinal (Address: 0x100a2358)
  • WindowsCreateString (Address: 0x100a2374)
  • WindowsCreateStringReference (Address: 0x100a2354)
  • WindowsDeleteString (Address: 0x100a2364)
  • WindowsDuplicateString (Address: 0x100a235c)
  • WindowsGetStringLen (Address: 0x100a234c)
  • WindowsGetStringRawBuffer (Address: 0x100a236c)
  • WindowsIsStringEmpty (Address: 0x100a2350)
  • WindowsStringHasEmbeddedNull (Address: 0x100a2378)
  • WindowsSubstringWithSpecifiedLength (Address: 0x100a2370)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x100a2388)
  • EventProviderEnabled (Address: 0x100a2394)
  • EventRegister (Address: 0x100a2390)
  • EventSetInformation (Address: 0x100a238c)
  • EventUnregister (Address: 0x100a239c)
  • EventWriteTransfer (Address: 0x100a2398)
api-ms-win-rtcore-ntuser-window-l1-1-0.dll
  • AllowSetForegroundWindow (Address: 0x100a23a4)
api-ms-win-security-base-l1-1-0.dll
  • CopySid (Address: 0x100a23b0)
  • CreateWellKnownSid (Address: 0x100a23bc)
  • DuplicateTokenEx (Address: 0x100a23c8)
  • EqualSid (Address: 0x100a23b8)
  • GetAce (Address: 0x100a23ac)
  • GetLengthSid (Address: 0x100a23c4)
  • GetTokenInformation (Address: 0x100a23b4)
  • RevertToSelf (Address: 0x100a23c0)
api-ms-win-security-base-l1-2-0.dll
  • CheckTokenMembershipEx (Address: 0x100a23d0)
api-ms-win-security-capability-l1-1-0.dll
  • CapabilityCheck (Address: 0x100a23d8)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x100a23e0)
api-ms-win-shcore-stream-l1-1-0.dll
  • SHCreateStreamOnFileEx (Address: 0x100a23f0)
api-ms-win-shcore-taskpool-l1-1-0.dll
  • SHTaskPoolAllowThreadReuse (Address: 0x100a23f8)
  • SHTaskPoolQueueTask (Address: 0x100a23fc)
api-ms-win-storage-exports-external-l1-1-0.dll
  • STORAGE_CStorageItem_GetValidatedStorageItem (Address: 0x100a2404)
combase.dll
  • (Address: 0x100a2414)
  • (Address: 0x100a2410)
  • (Address: 0x100a240c)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x100a200c)
  • CertAddSerializedElementToStore (Address: 0x100a201c)
  • CertCloseStore (Address: 0x100a2004)
  • CertCompareIntegerBlob (Address: 0x100a2020)
  • CertCreateCertificateContext (Address: 0x100a2000)
  • CertFindCertificateInStore (Address: 0x100a2018)
  • CertFreeCertificateContext (Address: 0x100a2014)
  • CertOpenStore (Address: 0x100a2010)
  • CertSaveStore (Address: 0x100a2008)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x100a2480)
  • __dllonexit (Address: 0x100a24a8)
  • _amsg_exit (Address: 0x100a2420)
  • _callnewh (Address: 0x100a2440)
  • _CxxThrowException (Address: 0x100a243c)
  • _except_handler4_common (Address: 0x100a2484)
  • _ftol2 (Address: 0x100a24a0)
  • _initterm (Address: 0x100a241c)
  • _lock (Address: 0x100a2490)
  • _onexit (Address: 0x100a24a4)
  • _purecall (Address: 0x100a2494)
  • _unlock (Address: 0x100a24ac)
  • _vsnprintf_s (Address: 0x100a2460)
  • _vsnwprintf (Address: 0x100a24b8)
  • _wcsicmp (Address: 0x100a24b0)
  • _wtoi (Address: 0x100a2454)
  • _XcptFilter (Address: 0x100a2424)
  • ??_V@YAXPAX@Z (Address: 0x100a24b4)
  • ??0exception@@QAE@ABQBD@Z (Address: 0x100a2430)
  • ??0exception@@QAE@ABQBDH@Z (Address: 0x100a242c)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x100a2464)
  • ??0exception@@QAE@XZ (Address: 0x100a2468)
  • ??1exception@@UAE@XZ (Address: 0x100a246c)
  • ??1type_info@@UAE@XZ (Address: 0x100a2488)
  • ??3@YAXPAX@Z (Address: 0x100a2498)
  • ?terminate@@YAXXZ (Address: 0x100a248c)
  • ?what@exception@@UBEPBDXZ (Address: 0x100a2428)
  • free (Address: 0x100a247c)
  • malloc (Address: 0x100a2474)
  • memcmp (Address: 0x100a2458)
  • memcpy (Address: 0x100a2438)
  • memcpy_s (Address: 0x100a249c)
  • memmove (Address: 0x100a2434)
  • memmove_s (Address: 0x100a2478)
  • memset (Address: 0x100a24bc)
  • realloc (Address: 0x100a2470)
  • swprintf_s (Address: 0x100a245c)
  • toupper (Address: 0x100a2444)
  • towupper (Address: 0x100a2450)
  • wcscspn (Address: 0x100a2448)
  • wcstok_s (Address: 0x100a244c)
ntdll.dll
  • NtQuerySecurityObject (Address: 0x100a24d0)
  • NtSetSecurityObject (Address: 0x100a24c8)
  • RtlAddAccessAllowedAce (Address: 0x100a24d8)
  • RtlAddAce (Address: 0x100a24dc)
  • RtlCreateAcl (Address: 0x100a24e4)
  • RtlCreateSecurityDescriptor (Address: 0x100a24cc)
  • RtlGetAce (Address: 0x100a24e0)
  • RtlGetDaclSecurityDescriptor (Address: 0x100a24f4)
  • RtlGetDeviceFamilyInfoEnum (Address: 0x100a24c4)
  • RtlIsMultiSessionSku (Address: 0x100a24ec)
  • RtlIsMultiUsersInSessionSku (Address: 0x100a24f8)
  • RtlLengthSid (Address: 0x100a24e8)
  • RtlQueryInformationAcl (Address: 0x100a24f0)
  • RtlSetDaclSecurityDescriptor (Address: 0x100a24d4)
RPCRT4.dll
  • CStdStubBuffer_AddRef (Address: 0x100a2060)
  • CStdStubBuffer_Connect (Address: 0x100a206c)
  • CStdStubBuffer_CountRefs (Address: 0x100a204c)
  • CStdStubBuffer_DebugServerQueryInterface (Address: 0x100a202c)
  • CStdStubBuffer_DebugServerRelease (Address: 0x100a2064)
  • CStdStubBuffer_Disconnect (Address: 0x100a2068)
  • CStdStubBuffer_Invoke (Address: 0x100a2034)
  • CStdStubBuffer_IsIIDSupported (Address: 0x100a2070)
  • CStdStubBuffer_QueryInterface (Address: 0x100a2050)
  • I_RpcBindingInqLocalClientPID (Address: 0x100a2078)
  • IUnknown_AddRef_Proxy (Address: 0x100a2030)
  • IUnknown_QueryInterface_Proxy (Address: 0x100a2074)
  • IUnknown_Release_Proxy (Address: 0x100a2038)
  • NdrCStdStubBuffer_Release (Address: 0x100a2048)
  • NdrCStdStubBuffer2_Release (Address: 0x100a203c)
  • NdrDllCanUnloadNow (Address: 0x100a2044)
  • NdrDllGetClassObject (Address: 0x100a2040)
  • NdrOleAllocate (Address: 0x100a2054)
  • NdrOleFree (Address: 0x100a2028)
  • NdrStubCall2 (Address: 0x100a2058)
  • NdrStubForwardingFunction (Address: 0x100a205c)
UserDataTypeHelperUtil.dll
  • FormatPoomIdToString (Address: 0x100a2080)
XmlLite.dll
  • CreateXmlReader (Address: 0x100a2088)