Windows.AccountsControl.dll
Description: Windows Accounts Control
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 32-bit
Operating System: Windows NT
SHA256: 1d0d9f8fb25163ff7aeab1e5e8833862
File Size: 707.0 KB
Uploaded At: Dec. 1, 2025, 8:06 a.m.
Views: 10
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x2b2d0)
- DllGetActivationFactory (Ordinal: 2, Address: 0x2b260)
- DllGetClassObject (Ordinal: 3, Address: 0x2b280)
- GetProxyDllInfo (Ordinal: 4, Address: 0x29660)
Imported DLLs & Functions
api-ms-win-appmodel-runtime-l1-1-0.dll
- GetPackageFamilyName (Address: 0x100a2090)
- GetPackageFullName (Address: 0x100a2094)
- GetPackagesByPackageFamily (Address: 0x100a2098)
api-ms-win-appmodel-runtime-l1-1-1.dll
- GetPackageFullNameFromToken (Address: 0x100a20a0)
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x100a20a8)
api-ms-win-core-com-l1-1-0.dll
- CoCreateFreeThreadedMarshaler (Address: 0x100a20e4)
- CoCreateInstance (Address: 0x100a20c0)
- CoGetApartmentType (Address: 0x100a20cc)
- CoGetCallContext (Address: 0x100a20b4)
- CoGetCallerTID (Address: 0x100a20e8)
- CoGetInterfaceAndReleaseStream (Address: 0x100a20dc)
- CoGetMalloc (Address: 0x100a20bc)
- CoMarshalInterface (Address: 0x100a20d0)
- CoReleaseMarshalData (Address: 0x100a20d8)
- CoSwitchCallContext (Address: 0x100a20c4)
- CoTaskMemAlloc (Address: 0x100a20b0)
- CoTaskMemFree (Address: 0x100a20c8)
- CoTaskMemRealloc (Address: 0x100a20b8)
- CoWaitForMultipleHandles (Address: 0x100a20d4)
- CreateStreamOnHGlobal (Address: 0x100a20e0)
api-ms-win-core-com-l1-1-1.dll
- RoGetAgileReference (Address: 0x100a20f0)
api-ms-win-core-com-midlproxystub-l1-1-0.dll
- CStdStubBuffer2_Connect (Address: 0x100a2160)
- CStdStubBuffer2_CountRefs (Address: 0x100a2164)
- CStdStubBuffer2_Disconnect (Address: 0x100a2178)
- CStdStubBuffer2_QueryInterface (Address: 0x100a2128)
- NdrProxyForwardingFunction3 (Address: 0x100a215c)
- NdrProxyForwardingFunction4 (Address: 0x100a2138)
- NdrProxyForwardingFunction5 (Address: 0x100a2148)
- ObjectStublessClient10 (Address: 0x100a20f8)
- ObjectStublessClient11 (Address: 0x100a213c)
- ObjectStublessClient12 (Address: 0x100a2144)
- ObjectStublessClient13 (Address: 0x100a2124)
- ObjectStublessClient14 (Address: 0x100a2140)
- ObjectStublessClient15 (Address: 0x100a2118)
- ObjectStublessClient16 (Address: 0x100a2154)
- ObjectStublessClient17 (Address: 0x100a2150)
- ObjectStublessClient18 (Address: 0x100a210c)
- ObjectStublessClient19 (Address: 0x100a2134)
- ObjectStublessClient20 (Address: 0x100a2114)
- ObjectStublessClient21 (Address: 0x100a2158)
- ObjectStublessClient22 (Address: 0x100a2130)
- ObjectStublessClient23 (Address: 0x100a211c)
- ObjectStublessClient24 (Address: 0x100a2168)
- ObjectStublessClient25 (Address: 0x100a216c)
- ObjectStublessClient26 (Address: 0x100a214c)
- ObjectStublessClient27 (Address: 0x100a20fc)
- ObjectStublessClient28 (Address: 0x100a2110)
- ObjectStublessClient3 (Address: 0x100a2170)
- ObjectStublessClient4 (Address: 0x100a2174)
- ObjectStublessClient5 (Address: 0x100a2120)
- ObjectStublessClient6 (Address: 0x100a2108)
- ObjectStublessClient7 (Address: 0x100a212c)
- ObjectStublessClient8 (Address: 0x100a2104)
- ObjectStublessClient9 (Address: 0x100a2100)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x100a2180)
- IsDebuggerPresent (Address: 0x100a2188)
- OutputDebugStringW (Address: 0x100a2184)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x100a2190)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x100a2198)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x100a21a8)
- RaiseException (Address: 0x100a21a4)
- SetLastError (Address: 0x100a21ac)
- SetUnhandledExceptionFilter (Address: 0x100a21b0)
- UnhandledExceptionFilter (Address: 0x100a21a0)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x100a21b8)
- DuplicateHandle (Address: 0x100a21bc)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x100a21c8)
- HeapAlloc (Address: 0x100a21cc)
- HeapFree (Address: 0x100a21c4)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x100a21d4)
- LocalFree (Address: 0x100a21d8)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x100a2208)
- FindResourceExW (Address: 0x100a21e8)
- FreeLibrary (Address: 0x100a21e0)
- GetModuleFileNameA (Address: 0x100a21f4)
- GetModuleHandleExW (Address: 0x100a2204)
- GetModuleHandleW (Address: 0x100a21ec)
- GetProcAddress (Address: 0x100a21fc)
- LoadLibraryExW (Address: 0x100a21e4)
- LoadResource (Address: 0x100a21f0)
- LoadStringW (Address: 0x100a21f8)
- LockResource (Address: 0x100a2200)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x100a2210)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x100a2234)
- GetCurrentProcessId (Address: 0x100a2230)
- GetCurrentThread (Address: 0x100a221c)
- GetCurrentThreadId (Address: 0x100a222c)
- GetProcessId (Address: 0x100a2228)
- OpenProcessToken (Address: 0x100a2218)
- OpenThreadToken (Address: 0x100a2220)
- TerminateProcess (Address: 0x100a2224)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x100a223c)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x100a2244)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x100a225c)
- RegEnumKeyExW (Address: 0x100a2254)
- RegGetValueW (Address: 0x100a2260)
- RegOpenKeyExW (Address: 0x100a224c)
- RegQueryInfoKeyW (Address: 0x100a2250)
- RegQueryValueExW (Address: 0x100a2258)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathFileExistsW (Address: 0x100a2268)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x100a2270)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x100a22a8)
- AcquireSRWLockShared (Address: 0x100a2284)
- CreateEventExW (Address: 0x100a2298)
- CreateEventW (Address: 0x100a22c0)
- CreateMutexExW (Address: 0x100a22b8)
- CreateSemaphoreExW (Address: 0x100a2288)
- DeleteCriticalSection (Address: 0x100a2294)
- EnterCriticalSection (Address: 0x100a22b4)
- InitializeCriticalSectionEx (Address: 0x100a227c)
- InitializeSRWLock (Address: 0x100a22b0)
- LeaveCriticalSection (Address: 0x100a2280)
- OpenSemaphoreW (Address: 0x100a22a0)
- ReleaseMutex (Address: 0x100a22ac)
- ReleaseSemaphore (Address: 0x100a2278)
- ReleaseSRWLockExclusive (Address: 0x100a22bc)
- ReleaseSRWLockShared (Address: 0x100a2290)
- SetEvent (Address: 0x100a229c)
- WaitForSingleObject (Address: 0x100a228c)
- WaitForSingleObjectEx (Address: 0x100a22a4)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x100a22c8)
- InitOnceComplete (Address: 0x100a22d0)
- InitOnceExecuteOnce (Address: 0x100a22d4)
- Sleep (Address: 0x100a22cc)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x100a22e0)
- GetTickCount (Address: 0x100a22dc)
api-ms-win-core-sysinfo-l1-2-0.dll
- GetProductInfo (Address: 0x100a22e8)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x100a22f8)
- CreateThreadpoolTimer (Address: 0x100a22f4)
- SetThreadpoolTimer (Address: 0x100a22fc)
- WaitForThreadpoolTimerCallbacks (Address: 0x100a22f0)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x100a2304)
- EncodePointer (Address: 0x100a2308)
api-ms-win-core-winrt-error-l1-1-0.dll
- GetRestrictedErrorInfo (Address: 0x100a231c)
- RoOriginateError (Address: 0x100a2314)
- RoOriginateErrorW (Address: 0x100a2320)
- RoTransformError (Address: 0x100a2310)
- SetRestrictedErrorInfo (Address: 0x100a2318)
api-ms-win-core-winrt-error-l1-1-1.dll
- IsErrorPropagationEnabled (Address: 0x100a2328)
- RoGetMatchingRestrictedErrorInfo (Address: 0x100a2330)
- RoReportFailedDelegate (Address: 0x100a232c)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x100a2338)
- RoGetActivationFactory (Address: 0x100a233c)
api-ms-win-core-winrt-robuffer-l1-1-0.dll
- RoGetBufferMarshaler (Address: 0x100a2344)
api-ms-win-core-winrt-string-l1-1-0.dll
- HSTRING_UserFree (Address: 0x100a237c)
- HSTRING_UserMarshal (Address: 0x100a2368)
- HSTRING_UserSize (Address: 0x100a2360)
- HSTRING_UserUnmarshal (Address: 0x100a2380)
- WindowsCompareStringOrdinal (Address: 0x100a2358)
- WindowsCreateString (Address: 0x100a2374)
- WindowsCreateStringReference (Address: 0x100a2354)
- WindowsDeleteString (Address: 0x100a2364)
- WindowsDuplicateString (Address: 0x100a235c)
- WindowsGetStringLen (Address: 0x100a234c)
- WindowsGetStringRawBuffer (Address: 0x100a236c)
- WindowsIsStringEmpty (Address: 0x100a2350)
- WindowsStringHasEmbeddedNull (Address: 0x100a2378)
- WindowsSubstringWithSpecifiedLength (Address: 0x100a2370)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x100a2388)
- EventProviderEnabled (Address: 0x100a2394)
- EventRegister (Address: 0x100a2390)
- EventSetInformation (Address: 0x100a238c)
- EventUnregister (Address: 0x100a239c)
- EventWriteTransfer (Address: 0x100a2398)
api-ms-win-rtcore-ntuser-window-l1-1-0.dll
- AllowSetForegroundWindow (Address: 0x100a23a4)
api-ms-win-security-base-l1-1-0.dll
- CopySid (Address: 0x100a23b0)
- CreateWellKnownSid (Address: 0x100a23bc)
- DuplicateTokenEx (Address: 0x100a23c8)
- EqualSid (Address: 0x100a23b8)
- GetAce (Address: 0x100a23ac)
- GetLengthSid (Address: 0x100a23c4)
- GetTokenInformation (Address: 0x100a23b4)
- RevertToSelf (Address: 0x100a23c0)
api-ms-win-security-base-l1-2-0.dll
- CheckTokenMembershipEx (Address: 0x100a23d0)
api-ms-win-security-capability-l1-1-0.dll
- CapabilityCheck (Address: 0x100a23d8)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x100a23e0)
api-ms-win-shcore-scaling-l1-1-1.dll
- (Address: 0x100a23e8)
api-ms-win-shcore-stream-l1-1-0.dll
- SHCreateStreamOnFileEx (Address: 0x100a23f0)
api-ms-win-shcore-taskpool-l1-1-0.dll
- SHTaskPoolAllowThreadReuse (Address: 0x100a23f8)
- SHTaskPoolQueueTask (Address: 0x100a23fc)
api-ms-win-storage-exports-external-l1-1-0.dll
- STORAGE_CStorageItem_GetValidatedStorageItem (Address: 0x100a2404)
combase.dll
- (Address: 0x100a2414)
- (Address: 0x100a2410)
- (Address: 0x100a240c)
CRYPT32.dll
- CertAddCertificateContextToStore (Address: 0x100a200c)
- CertAddSerializedElementToStore (Address: 0x100a201c)
- CertCloseStore (Address: 0x100a2004)
- CertCompareIntegerBlob (Address: 0x100a2020)
- CertCreateCertificateContext (Address: 0x100a2000)
- CertFindCertificateInStore (Address: 0x100a2018)
- CertFreeCertificateContext (Address: 0x100a2014)
- CertOpenStore (Address: 0x100a2010)
- CertSaveStore (Address: 0x100a2008)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x100a2480)
- __dllonexit (Address: 0x100a24a8)
- _amsg_exit (Address: 0x100a2420)
- _callnewh (Address: 0x100a2440)
- _CxxThrowException (Address: 0x100a243c)
- _except_handler4_common (Address: 0x100a2484)
- _ftol2 (Address: 0x100a24a0)
- _initterm (Address: 0x100a241c)
- _lock (Address: 0x100a2490)
- _onexit (Address: 0x100a24a4)
- _purecall (Address: 0x100a2494)
- _unlock (Address: 0x100a24ac)
- _vsnprintf_s (Address: 0x100a2460)
- _vsnwprintf (Address: 0x100a24b8)
- _wcsicmp (Address: 0x100a24b0)
- _wtoi (Address: 0x100a2454)
- _XcptFilter (Address: 0x100a2424)
- ??_V@YAXPAX@Z (Address: 0x100a24b4)
- ??0exception@@QAE@ABQBD@Z (Address: 0x100a2430)
- ??0exception@@QAE@ABQBDH@Z (Address: 0x100a242c)
- ??0exception@@QAE@ABV0@@Z (Address: 0x100a2464)
- ??0exception@@QAE@XZ (Address: 0x100a2468)
- ??1exception@@UAE@XZ (Address: 0x100a246c)
- ??1type_info@@UAE@XZ (Address: 0x100a2488)
- ??3@YAXPAX@Z (Address: 0x100a2498)
- ?terminate@@YAXXZ (Address: 0x100a248c)
- ?what@exception@@UBEPBDXZ (Address: 0x100a2428)
- free (Address: 0x100a247c)
- malloc (Address: 0x100a2474)
- memcmp (Address: 0x100a2458)
- memcpy (Address: 0x100a2438)
- memcpy_s (Address: 0x100a249c)
- memmove (Address: 0x100a2434)
- memmove_s (Address: 0x100a2478)
- memset (Address: 0x100a24bc)
- realloc (Address: 0x100a2470)
- swprintf_s (Address: 0x100a245c)
- toupper (Address: 0x100a2444)
- towupper (Address: 0x100a2450)
- wcscspn (Address: 0x100a2448)
- wcstok_s (Address: 0x100a244c)
ntdll.dll
- NtQuerySecurityObject (Address: 0x100a24d0)
- NtSetSecurityObject (Address: 0x100a24c8)
- RtlAddAccessAllowedAce (Address: 0x100a24d8)
- RtlAddAce (Address: 0x100a24dc)
- RtlCreateAcl (Address: 0x100a24e4)
- RtlCreateSecurityDescriptor (Address: 0x100a24cc)
- RtlGetAce (Address: 0x100a24e0)
- RtlGetDaclSecurityDescriptor (Address: 0x100a24f4)
- RtlGetDeviceFamilyInfoEnum (Address: 0x100a24c4)
- RtlIsMultiSessionSku (Address: 0x100a24ec)
- RtlIsMultiUsersInSessionSku (Address: 0x100a24f8)
- RtlLengthSid (Address: 0x100a24e8)
- RtlQueryInformationAcl (Address: 0x100a24f0)
- RtlSetDaclSecurityDescriptor (Address: 0x100a24d4)
RPCRT4.dll
- CStdStubBuffer_AddRef (Address: 0x100a2060)
- CStdStubBuffer_Connect (Address: 0x100a206c)
- CStdStubBuffer_CountRefs (Address: 0x100a204c)
- CStdStubBuffer_DebugServerQueryInterface (Address: 0x100a202c)
- CStdStubBuffer_DebugServerRelease (Address: 0x100a2064)
- CStdStubBuffer_Disconnect (Address: 0x100a2068)
- CStdStubBuffer_Invoke (Address: 0x100a2034)
- CStdStubBuffer_IsIIDSupported (Address: 0x100a2070)
- CStdStubBuffer_QueryInterface (Address: 0x100a2050)
- I_RpcBindingInqLocalClientPID (Address: 0x100a2078)
- IUnknown_AddRef_Proxy (Address: 0x100a2030)
- IUnknown_QueryInterface_Proxy (Address: 0x100a2074)
- IUnknown_Release_Proxy (Address: 0x100a2038)
- NdrCStdStubBuffer_Release (Address: 0x100a2048)
- NdrCStdStubBuffer2_Release (Address: 0x100a203c)
- NdrDllCanUnloadNow (Address: 0x100a2044)
- NdrDllGetClassObject (Address: 0x100a2040)
- NdrOleAllocate (Address: 0x100a2054)
- NdrOleFree (Address: 0x100a2028)
- NdrStubCall2 (Address: 0x100a2058)
- NdrStubForwardingFunction (Address: 0x100a205c)
UserDataTypeHelperUtil.dll
- FormatPoomIdToString (Address: 0x100a2080)
XmlLite.dll
- CreateXmlReader (Address: 0x100a2088)