w3wphost.dll
Description: WAS App Hosting library
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 64-bit
Operating System: Windows NT
SHA256: daf844d520a5f81df5a52300e2b46c47
File Size: 80.0 KB
Uploaded At: Dec. 1, 2025, 8:13 a.m.
Views: 12
Exported Functions
- ??0IPM_MESSAGE_PIPE@@QEAA@AEBV0@@Z (Ordinal: 1, Address: 0x33c0)
- ??4IPM_MESSAGE_PIPE@@QEAAAEAV0@AEBV0@@Z (Ordinal: 2, Address: 0x3440)
- ??_7IPM_MESSAGE_PIPE@@6B@ (Ordinal: 3, Address: 0xe168)
- AppHostInitialize (Ordinal: 4, Address: 0x3ed0)
- HostedSetMetadata (Ordinal: 5, Address: 0x5680)
- HostedW3SVCStart (Ordinal: 6, Address: 0x56d0)
- HostedW3SVCStop (Ordinal: 7, Address: 0x5a10)
- IncrementMessageCount (Ordinal: 8, Address: 0x5a80)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CoInitializeEx (Address: 0x18000e388)
- CoUninitialize (Address: 0x18000e390)
api-ms-win-core-debug-l1-1-0.dll
- IsDebuggerPresent (Address: 0x18000e3a8)
- OutputDebugStringA (Address: 0x18000e3b0)
- OutputDebugStringW (Address: 0x18000e3a0)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x18000e3c0)
- RaiseException (Address: 0x18000e3d0)
- SetUnhandledExceptionFilter (Address: 0x18000e3c8)
- UnhandledExceptionFilter (Address: 0x18000e3d8)
api-ms-win-core-file-l1-1-0.dll
- FindClose (Address: 0x18000e3e8)
- FindFirstFileW (Address: 0x18000e3f0)
- GetFileAttributesW (Address: 0x18000e3f8)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x18000e408)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x18000e420)
- HeapAlloc (Address: 0x18000e418)
- HeapFree (Address: 0x18000e430)
- HeapReAlloc (Address: 0x18000e428)
api-ms-win-core-libraryloader-l1-2-0.dll
- FreeLibrary (Address: 0x18000e460)
- GetModuleFileNameW (Address: 0x18000e440)
- GetModuleHandleW (Address: 0x18000e458)
- GetProcAddress (Address: 0x18000e450)
- LoadLibraryExW (Address: 0x18000e448)
api-ms-win-core-perfcounters-l1-1-0.dll
- PerfCreateInstance (Address: 0x18000e480)
- PerfDeleteInstance (Address: 0x18000e488)
- PerfSetCounterRefValue (Address: 0x18000e470)
- PerfSetULongLongCounterValue (Address: 0x18000e478)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsW (Address: 0x18000e498)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x18000e4c0)
- GetCurrentProcessId (Address: 0x18000e4b8)
- GetCurrentThreadId (Address: 0x18000e4a8)
- TerminateProcess (Address: 0x18000e4b0)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x18000e4d0)
api-ms-win-core-psapi-l1-1-0.dll
- K32EmptyWorkingSet (Address: 0x18000e4e0)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x18000e4f0)
- RegOpenKeyExW (Address: 0x18000e4f8)
- RegQueryValueExW (Address: 0x18000e500)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x18000e520)
- RtlLookupFunctionEntry (Address: 0x18000e510)
- RtlVirtualUnwind (Address: 0x18000e518)
api-ms-win-core-synch-l1-1-0.dll
- CreateEventA (Address: 0x18000e560)
- DeleteCriticalSection (Address: 0x18000e538)
- EnterCriticalSection (Address: 0x18000e558)
- InitializeCriticalSectionAndSpinCount (Address: 0x18000e530)
- LeaveCriticalSection (Address: 0x18000e540)
- SetEvent (Address: 0x18000e548)
- WaitForSingleObject (Address: 0x18000e550)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x18000e570)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetLocalTime (Address: 0x18000e590)
- GetSystemTimeAsFileTime (Address: 0x18000e588)
- GetTickCount (Address: 0x18000e580)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
- CreateTimerQueue (Address: 0x18000e5b8)
- CreateTimerQueueTimer (Address: 0x18000e5b0)
- DeleteTimerQueueEx (Address: 0x18000e5a8)
- DeleteTimerQueueTimer (Address: 0x18000e5a0)
- QueueUserWorkItem (Address: 0x18000e5c0)
api-ms-win-core-timezone-l1-1-0.dll
- SystemTimeToFileTime (Address: 0x18000e5d0)
iisutil.dll
- ??0BUFFER@@QEAA@PEAEK@Z (Address: 0x18000e720)
- ??0BUFFER@@QEAA@XZ (Address: 0x18000e648)
- ??0CLKRHashTable@@QEAA@PEBDP6A?B_KPEBX@ZP6AK_K@ZP6A_N33@ZP6AX1H@ZNKK_N@Z (Address: 0x18000e5f8)
- ??0CReaderWriterLock3@@QEAA@AEBV0@@Z (Address: 0x18000e688)
- ??0CReaderWriterLock3@@QEAA@XZ (Address: 0x18000e710)
- ??0EVENT_LOG@@QEAA@PEBG@Z (Address: 0x18000e6f8)
- ??0STRA@@QEAA@PEADK@Z (Address: 0x18000e670)
- ??0STRU_PATH@@QEAA@G@Z (Address: 0x18000e738)
- ??0STRU@@QEAA@PEAGK@Z (Address: 0x18000e718)
- ??0STRU@@QEAA@XZ (Address: 0x18000e700)
- ??1BUFFER@@QEAA@XZ (Address: 0x18000e708)
- ??1CLKRHashTable@@QEAA@XZ (Address: 0x18000e600)
- ??1CReaderWriterLock3@@QEAA@XZ (Address: 0x18000e690)
- ??1IPM_MESSAGE_PIPE@@EEAA@XZ (Address: 0x18000e678)
- ??1STRA@@QEAA@XZ (Address: 0x18000e608)
- ??1STRU_PATH@@QEAA@XZ (Address: 0x18000e740)
- ??1STRU@@QEAA@XZ (Address: 0x18000e790)
- ??4CReaderWriterLock3@@QEAAAEAV0@AEBV0@@Z (Address: 0x18000e680)
- ?Append@STRU@@QEAAJG@Z (Address: 0x18000e760)
- ?Append@STRU@@QEAAJPEBG@Z (Address: 0x18000e6c8)
- ?Clear@CLKRHashTable@@QEAAXXZ (Address: 0x18000e5f0)
- ?Copy@STRU@@QEAAJPEBG@Z (Address: 0x18000e758)
- ?Copy@STRU@@QEAAJPEBGK@Z (Address: 0x18000e788)
- ?CopyW@STRA@@QEAAJPEBG@Z (Address: 0x18000e618)
- ?CreateIpmMessagePipe@IPM_MESSAGE_PIPE@@SAJPEAVIPM_MESSAGE_ACCEPTOR@@PEBGHPEAU_SECURITY_ATTRIBUTES@@PEAPEAV1@@Z (Address: 0x18000e668)
- ?DestroyIpmMessagePipe@IPM_MESSAGE_PIPE@@QEAAXXZ (Address: 0x18000e660)
- ?ExpandEnvironmentVariables@STRU_PATH@@QEAAJPEAG@Z (Address: 0x18000e748)
- ?FindKey@CLKRHashTable@@QEBA?AW4LK_RETCODE@@_KPEAPEBX@Z (Address: 0x18000e5e8)
- ?GetStringizedIpmOpcode@IPM_MESSAGE_PIPE@@SAPEBGW4IPM_OPCODE@@@Z (Address: 0x18000e658)
- ?InsertRecord@CLKRHashTable@@QEAA?AW4LK_RETCODE@@PEBX_N@Z (Address: 0x18000e5e0)
- ?IsEmpty@STRU@@QEBA_NXZ (Address: 0x18000e778)
- ?LogEvent@EVENT_LOG@@QEAAXKGQEAPEBGK@Z (Address: 0x18000e6f0)
- ?QueryBuffer@STRU@@QEAAPEAVBUFFER@@XZ (Address: 0x18000e730)
- ?QueryCCH@STRU@@QEBAKXZ (Address: 0x18000e770)
- ?QueryPtr@BUFFER@@QEBAPEAXXZ (Address: 0x18000e6b8)
- ?QuerySize@BUFFER@@QEBAKXZ (Address: 0x18000e6a8)
- ?QuerySizeCCH@STRU@@QEBAKXZ (Address: 0x18000e6a0)
- ?QueryStr@STRA@@QEAAPEADXZ (Address: 0x18000e610)
- ?QueryStr@STRU@@QEAAPEAGXZ (Address: 0x18000e6b0)
- ?ReadLock@CReaderWriterLock3@@QEAAXXZ (Address: 0x18000e628)
- ?ReadUnlock@CReaderWriterLock3@@QEAAXXZ (Address: 0x18000e620)
- ?Reset@STRU@@QEAAXXZ (Address: 0x18000e750)
- ?Resize@BUFFER@@QEAA_NK@Z (Address: 0x18000e640)
- ?Resize@STRU@@QEAAJK@Z (Address: 0x18000e698)
- ?SetLen@STRU@@QEAA_NK@Z (Address: 0x18000e768)
- ?SyncWithBuffer@STRU@@QEAAXXZ (Address: 0x18000e6c0)
- ?WriteLock@CReaderWriterLock3@@QEAAXXZ (Address: 0x18000e638)
- ?WriteMessage@IPM_MESSAGE_PIPE@@QEAAJW4IPM_OPCODE@@KPEAX@Z (Address: 0x18000e650)
- ?WriteUnlock@CReaderWriterLock3@@QEAAXXZ (Address: 0x18000e630)
- IISGetPlatformType (Address: 0x18000e6e0)
- PuCreateDebugPrintsObject (Address: 0x18000e6d0)
- PuDbgPrint (Address: 0x18000e6e8)
- PuDbgPrintError (Address: 0x18000e728)
- PuLoadDebugFlagsFromRegStr (Address: 0x18000e6d8)
- SkipTo (Address: 0x18000e780)
msvcrt.dll
- __C_specific_handler (Address: 0x18000e850)
- _amsg_exit (Address: 0x18000e840)
- _callnewh (Address: 0x18000e830)
- _initterm (Address: 0x18000e848)
- _purecall (Address: 0x18000e7b0)
- _ultow (Address: 0x18000e7c0)
- _vsnwprintf (Address: 0x18000e818)
- _wcsicmp (Address: 0x18000e7b8)
- _wcsupr (Address: 0x18000e7d8)
- _wtoi (Address: 0x18000e7f0)
- _XcptFilter (Address: 0x18000e838)
- free (Address: 0x18000e820)
- iswdigit (Address: 0x18000e810)
- iswspace (Address: 0x18000e808)
- malloc (Address: 0x18000e828)
- memcpy (Address: 0x18000e860)
- memcpy_s (Address: 0x18000e800)
- memmove (Address: 0x18000e7a0)
- memset (Address: 0x18000e858)
- swprintf_s (Address: 0x18000e7c8)
- wcschr (Address: 0x18000e7a8)
- wcscmp (Address: 0x18000e868)
- wcscpy_s (Address: 0x18000e7e8)
- wcsncpy_s (Address: 0x18000e7f8)
- wcsrchr (Address: 0x18000e7d0)
- wcsstr (Address: 0x18000e7e0)
nativerd.dll
- GetDefaultNativeConfigurationSystem (Address: 0x18000e878)
- InitializeNativeConfiguration (Address: 0x18000e880)
- TerminateNativeConfiguration (Address: 0x18000e888)
ntdll.dll
- NtQuerySystemInformation (Address: 0x18000e898)
OLEAUT32.dll
- SysAllocString (Address: 0x18000e378)
- VariantClear (Address: 0x18000e368)
- VariantInit (Address: 0x18000e370)