Windows.System.Launcher.dll

Description: Windows.System.Launcher

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5848

Architecture: 32-bit

Operating System: Windows NT

SHA256: 8a12bd0a7d8445648ac9207a36f0c3ce

File Size: 509.0 KB

Uploaded At: Dec. 1, 2025, 8:07 a.m.

Views: 12

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x14950)
  • DllGetActivationFactory (Ordinal: 2, Address: 0x14910)
  • DllGetClassObject (Ordinal: 3, Address: 0x14930)

Imported DLLs & Functions

api-ms-win-appmodel-runtime-internal-l1-1-1.dll
  • GetPackageFullNameFromToken (Address: 0x10076024)
api-ms-win-appmodel-runtime-internal-l1-1-2.dll
  • GetEffectivePackageStatusForUser (Address: 0x1007602c)
api-ms-win-appmodel-runtime-internal-l1-1-4.dll
  • GetExtensionProperty (Address: 0x10076034)
  • GetExtensionProperty2 (Address: 0x1007603c)
  • IsOnDemandRegistrationSupportedForExtensionCategory (Address: 0x10076038)
api-ms-win-appmodel-state-l1-2-0.dll
  • CloseState (Address: 0x10076044)
  • GetSystemAppDataKey (Address: 0x10076048)
  • OpenStateExplicit (Address: 0x1007604c)
api-ms-win-appmodel-unlock-l1-1-0.dll
  • IsDeveloperModeEnabled (Address: 0x10076054)
api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x1007605c)
api-ms-win-core-com-l1-1-0.dll
  • CLSIDFromString (Address: 0x10076074)
  • CoCreateFreeThreadedMarshaler (Address: 0x1007606c)
  • CoCreateGuid (Address: 0x10076094)
  • CoCreateInstance (Address: 0x10076084)
  • CoGetCallContext (Address: 0x1007607c)
  • CoGetInterfaceAndReleaseStream (Address: 0x10076064)
  • CoGetMalloc (Address: 0x10076090)
  • CoMarshalInterface (Address: 0x10076070)
  • CoReleaseMarshalData (Address: 0x10076078)
  • CoTaskMemAlloc (Address: 0x10076068)
  • CoTaskMemFree (Address: 0x1007608c)
  • CoWaitForMultipleHandles (Address: 0x10076088)
  • CreateStreamOnHGlobal (Address: 0x10076080)
api-ms-win-core-com-l1-1-1.dll
  • RoGetAgileReference (Address: 0x1007609c)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x100760a8)
  • IsDebuggerPresent (Address: 0x100760a4)
  • OutputDebugStringW (Address: 0x100760ac)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x100760b4)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x100760bc)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x100760d0)
  • RaiseException (Address: 0x100760c8)
  • SetLastError (Address: 0x100760d4)
  • SetUnhandledExceptionFilter (Address: 0x100760c4)
  • UnhandledExceptionFilter (Address: 0x100760cc)
api-ms-win-core-file-l1-1-0.dll
  • GetFileAttributesW (Address: 0x100760dc)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x100760e4)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x100760f4)
  • HeapAlloc (Address: 0x100760ec)
  • HeapFree (Address: 0x100760f0)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x10076100)
  • LocalFree (Address: 0x100760fc)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x10076110)
  • GetModuleFileNameA (Address: 0x10076108)
  • GetModuleHandleExW (Address: 0x10076114)
  • GetModuleHandleW (Address: 0x1007611c)
  • GetProcAddress (Address: 0x10076118)
  • LoadStringW (Address: 0x1007610c)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x10076124)
api-ms-win-core-path-l1-1-0.dll
  • PathCchAppend (Address: 0x1007612c)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x10076134)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1007613c)
  • GetCurrentProcessId (Address: 0x1007614c)
  • GetCurrentThread (Address: 0x10076150)
  • GetCurrentThreadId (Address: 0x10076154)
  • GetProcessId (Address: 0x10076158)
  • OpenProcessToken (Address: 0x10076144)
  • OpenThreadToken (Address: 0x10076148)
  • TerminateProcess (Address: 0x10076140)
api-ms-win-core-processthreads-l1-1-1.dll
  • OpenProcess (Address: 0x10076160)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x10076168)
api-ms-win-core-psapi-l1-1-0.dll
  • QueryFullProcessImageNameW (Address: 0x10076170)
api-ms-win-core-quirks-l1-1-0.dll
  • QuirkIsEnabled (Address: 0x10076178)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x10076188)
  • RegCreateKeyExW (Address: 0x10076184)
  • RegGetValueW (Address: 0x1007618c)
  • RegOpenKeyExW (Address: 0x10076180)
  • RegQueryValueExW (Address: 0x10076190)
api-ms-win-core-registry-l2-1-0.dll
  • RegCreateKeyW (Address: 0x10076198)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFindExtensionW (Address: 0x100761a0)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
  • StrStrIW (Address: 0x100761a8)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x100761b0)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x100761f8)
  • AcquireSRWLockShared (Address: 0x100761ec)
  • CreateEventExW (Address: 0x100761b8)
  • CreateMutexExW (Address: 0x100761dc)
  • CreateSemaphoreExW (Address: 0x100761c4)
  • DeleteCriticalSection (Address: 0x100761e8)
  • EnterCriticalSection (Address: 0x100761f4)
  • InitializeCriticalSectionEx (Address: 0x100761c8)
  • InitializeSRWLock (Address: 0x100761f0)
  • LeaveCriticalSection (Address: 0x100761e0)
  • OpenSemaphoreW (Address: 0x100761d0)
  • ReleaseMutex (Address: 0x100761d4)
  • ReleaseSemaphore (Address: 0x100761cc)
  • ReleaseSRWLockExclusive (Address: 0x100761c0)
  • ReleaseSRWLockShared (Address: 0x100761e4)
  • SetEvent (Address: 0x100761bc)
  • WaitForSingleObject (Address: 0x100761fc)
  • WaitForSingleObjectEx (Address: 0x100761d8)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1007620c)
  • InitOnceComplete (Address: 0x10076218)
  • InitOnceExecuteOnce (Address: 0x10076214)
  • Sleep (Address: 0x10076210)
  • SleepConditionVariableSRW (Address: 0x10076208)
  • WakeAllConditionVariable (Address: 0x10076204)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTime (Address: 0x10076228)
  • GetSystemTimeAsFileTime (Address: 0x10076220)
  • GetTickCount (Address: 0x10076224)
api-ms-win-core-sysinfo-l1-2-0.dll
  • GetProductInfo (Address: 0x10076230)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1007623c)
  • CreateThreadpoolTimer (Address: 0x10076238)
  • SetThreadpoolTimer (Address: 0x10076244)
  • WaitForThreadpoolTimerCallbacks (Address: 0x10076240)
api-ms-win-core-timezone-l1-1-0.dll
  • SystemTimeToFileTime (Address: 0x1007624c)
api-ms-win-core-url-l1-1-0.dll
  • UrlEscapeW (Address: 0x10076254)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1007625c)
  • EncodePointer (Address: 0x10076260)
api-ms-win-core-winrt-error-l1-1-0.dll
  • GetRestrictedErrorInfo (Address: 0x10076278)
  • RoOriginateError (Address: 0x1007626c)
  • RoOriginateErrorW (Address: 0x10076268)
  • RoTransformError (Address: 0x10076270)
  • SetRestrictedErrorInfo (Address: 0x10076274)
api-ms-win-core-winrt-error-l1-1-1.dll
  • IsErrorPropagationEnabled (Address: 0x10076284)
  • RoGetMatchingRestrictedErrorInfo (Address: 0x10076280)
  • RoReportFailedDelegate (Address: 0x10076288)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x10076290)
  • RoGetActivationFactory (Address: 0x10076294)
api-ms-win-core-winrt-propertysetprivate-l1-1-1.dll
  • RoCreatePropertySetSerializer (Address: 0x1007629c)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCompareStringOrdinal (Address: 0x100762b4)
  • WindowsConcatString (Address: 0x100762c0)
  • WindowsCreateString (Address: 0x100762a4)
  • WindowsCreateStringReference (Address: 0x100762c8)
  • WindowsDeleteString (Address: 0x100762a8)
  • WindowsDuplicateString (Address: 0x100762c4)
  • WindowsGetStringLen (Address: 0x100762b8)
  • WindowsGetStringRawBuffer (Address: 0x100762bc)
  • WindowsIsStringEmpty (Address: 0x100762ac)
  • WindowsStringHasEmbeddedNull (Address: 0x100762b0)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x100762d8)
  • EventRegister (Address: 0x100762d4)
  • EventSetInformation (Address: 0x100762dc)
  • EventUnregister (Address: 0x100762d0)
  • EventWriteTransfer (Address: 0x100762e0)
api-ms-win-security-base-l1-1-0.dll
  • DuplicateTokenEx (Address: 0x100762f0)
  • GetSidSubAuthority (Address: 0x100762ec)
  • GetTokenInformation (Address: 0x100762e8)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x100762f8)
api-ms-win-shcore-obsolete-l1-1-0.dll
  • SHStrDupW (Address: 0x10076300)
api-ms-win-shcore-taskpool-l1-1-0.dll
  • SHTaskPoolAllowThreadReuse (Address: 0x10076308)
  • SHTaskPoolQueueTask (Address: 0x1007630c)
api-ms-win-shlwapi-winrt-storage-l1-1-1.dll
  • AssocCreate (Address: 0x10076314)
combase.dll
  • (Address: 0x1007631c)
  • (Address: 0x10076320)
  • (Address: 0x10076324)
  • (Address: 0x10076328)
msvcp110_win.dll
  • _Wcscoll (Address: 0x1007639c)
  • _Wcsxfrm (Address: 0x1007633c)
  • ?_Decref@facet@locale@std@@UAEPAV_Facet_base@3@XZ (Address: 0x1007637c)
  • ?_Getcat@?$ctype@G@std@@SAIPAPBVfacet@locale@2@PBV42@@Z (Address: 0x10076364)
  • ?_Getcoll@_Locinfo@std@@QBE?AU_Collvec@@XZ (Address: 0x10076388)
  • ?_Getgloballocale@locale@std@@CAPAV_Locimp@12@XZ (Address: 0x1007634c)
  • ?_Incref@facet@locale@std@@UAEXXZ (Address: 0x10076380)
  • ?_Init@locale@std@@CAPAV_Locimp@12@_N@Z (Address: 0x10076348)
  • ?_Syserror_map@std@@YAPBDH@Z (Address: 0x10076350)
  • ?_Winerror_map@std@@YAPBDH@Z (Address: 0x10076354)
  • ?_Xbad_alloc@std@@YAXXZ (Address: 0x10076338)
  • ?_Xlength_error@std@@YAXPBD@Z (Address: 0x10076394)
  • ?_Xout_of_range@std@@YAXPBD@Z (Address: 0x10076360)
  • ?_Xregex_error@std@@YAXW4error_type@regex_constants@1@@Z (Address: 0x10076358)
  • ??_7_Facet_base@std@@6B@ (Address: 0x10076340)
  • ??_7facet@locale@std@@6B@ (Address: 0x10076344)
  • ??0_Locinfo@std@@QAE@PBD@Z (Address: 0x10076390)
  • ??0_Lockit@std@@QAE@H@Z (Address: 0x10076330)
  • ??0facet@locale@std@@IAE@I@Z (Address: 0x10076378)
  • ??1_Locinfo@std@@QAE@XZ (Address: 0x1007638c)
  • ??1_Lockit@std@@QAE@XZ (Address: 0x10076334)
  • ??1facet@locale@std@@MAE@XZ (Address: 0x10076374)
  • ??Bid@locale@std@@QAEIXZ (Address: 0x10076384)
  • ?id@?$collate@G@std@@2V0locale@2@A (Address: 0x10076398)
  • ?id@?$ctype@G@std@@2V0locale@2@A (Address: 0x1007635c)
  • ?is@?$ctype@G@std@@QBE_NFG@Z (Address: 0x10076370)
  • ?tolower@?$ctype@G@std@@QBEGG@Z (Address: 0x1007636c)
  • ?tolower@?$ctype@G@std@@QBEPBGPAGPBG@Z (Address: 0x10076368)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x10076444)
  • __dllonexit (Address: 0x10076448)
  • _amsg_exit (Address: 0x10076420)
  • _callnewh (Address: 0x100763f0)
  • _CxxThrowException (Address: 0x10076440)
  • _except_handler4_common (Address: 0x10076400)
  • _initterm (Address: 0x10076414)
  • _lock (Address: 0x10076410)
  • _onexit (Address: 0x1007642c)
  • _purecall (Address: 0x100763f8)
  • _ui64tow_s (Address: 0x100763d4)
  • _unlock (Address: 0x10076404)
  • _vsnprintf_s (Address: 0x100763c0)
  • _vsnwprintf (Address: 0x100763fc)
  • _wcsicmp (Address: 0x100763b8)
  • _wtoi (Address: 0x100763d0)
  • _XcptFilter (Address: 0x10076424)
  • ??_V@YAXPAX@Z (Address: 0x10076430)
  • ??0bad_cast@@QAE@ABV0@@Z (Address: 0x100763e0)
  • ??0bad_cast@@QAE@PBD@Z (Address: 0x100763dc)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x100763cc)
  • ??0exception@@QAE@XZ (Address: 0x100763c8)
  • ??1bad_cast@@UAE@XZ (Address: 0x100763e4)
  • ??1exception@@UAE@XZ (Address: 0x100763c4)
  • ??1type_info@@UAE@XZ (Address: 0x100763f4)
  • ??3@YAXPAX@Z (Address: 0x10076434)
  • ?terminate@@YAXXZ (Address: 0x10076428)
  • free (Address: 0x1007641c)
  • malloc (Address: 0x10076418)
  • mbstowcs (Address: 0x100763bc)
  • memcmp (Address: 0x1007643c)
  • memcpy (Address: 0x10076438)
  • memcpy_s (Address: 0x100763a8)
  • memmove (Address: 0x10076408)
  • memmove_s (Address: 0x1007640c)
  • memset (Address: 0x1007644c)
  • realloc (Address: 0x100763a4)
  • sprintf_s (Address: 0x100763ac)
  • strchr (Address: 0x100763e8)
  • wcscat_s (Address: 0x100763b4)
  • wcschr (Address: 0x100763ec)
  • wcscpy_s (Address: 0x100763b0)
  • wcsnlen (Address: 0x100763d8)
ntdll.dll
  • NtQueryInformationToken (Address: 0x10076458)
  • NtQueryWnfStateData (Address: 0x1007646c)
  • RtlAllocateHeap (Address: 0x1007645c)
  • RtlCompareUnicodeString (Address: 0x10076464)
  • RtlFreeHeap (Address: 0x10076454)
  • RtlGetDeviceFamilyInfoEnum (Address: 0x10076478)
  • RtlInitUnicodeString (Address: 0x10076468)
  • RtlIsMultiSessionSku (Address: 0x10076474)
  • RtlNtStatusToDosErrorNoTeb (Address: 0x10076460)
  • RtlPublishWnfStateData (Address: 0x10076470)
  • RtlQueryPackageClaims (Address: 0x1007647c)
OLEAUT32.dll
  • SysAllocString (Address: 0x10076000)
  • VariantInit (Address: 0x10076004)
RPCRT4.dll
  • I_RpcBindingInqLocalClientPID (Address: 0x1007600c)
Windows.Storage.dll
  • (Address: 0x1007601c)
  • SHCreateItemFromParsingName (Address: 0x10076014)
  • STORAGE_CStorageItem_GetValidatedStorageItem (Address: 0x10076018)