EventsInstaller.dll

Description: Events Offline Installer

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3684

Architecture: 64-bit

Operating System: Windows NT

SHA256: 40227b2595eceeb2628fd2e7b72291da

File Size: 241.0 KB

Uploaded At: Dec. 1, 2025, 8:15 a.m.

Views: 12

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x1f30)
  • DllCsiGetHandler (Ordinal: 2, Address: 0x1f70)

Imported DLLs & Functions

api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180023ee8)
  • SetLastError (Address: 0x180023f00)
  • SetUnhandledExceptionFilter (Address: 0x180023ef8)
  • UnhandledExceptionFilter (Address: 0x180023ef0)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x180023f10)
  • GetFileAttributesW (Address: 0x180023f18)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180023f28)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180023f40)
  • HeapAlloc (Address: 0x180023f38)
  • HeapFree (Address: 0x180023f48)
api-ms-win-core-heap-obsolete-l1-1-0.dll
  • LocalAlloc (Address: 0x180023f60)
  • LocalFree (Address: 0x180023f58)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x180023f88)
  • FindResourceExW (Address: 0x180023f98)
  • FreeLibrary (Address: 0x180023fb8)
  • FreeResource (Address: 0x180023fa8)
  • GetModuleHandleW (Address: 0x180023fa0)
  • GetProcAddress (Address: 0x180023f80)
  • LoadLibraryExW (Address: 0x180023f90)
  • LoadResource (Address: 0x180023f78)
  • LockResource (Address: 0x180023f70)
  • SizeofResource (Address: 0x180023fb0)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x180023fc8)
api-ms-win-core-memory-l1-1-0.dll
  • UnmapViewOfFile (Address: 0x180023fd8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x180023fe8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180024008)
  • GetCurrentProcessId (Address: 0x180023ff8)
  • GetCurrentThreadId (Address: 0x180024000)
  • TerminateProcess (Address: 0x180024010)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180024020)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180024068)
  • RegCreateKeyExW (Address: 0x180024070)
  • RegDeleteKeyExW (Address: 0x180024080)
  • RegDeleteValueW (Address: 0x180024050)
  • RegEnumKeyExW (Address: 0x180024060)
  • RegGetKeySecurity (Address: 0x180024040)
  • RegGetValueW (Address: 0x180024038)
  • RegOpenKeyExW (Address: 0x180024030)
  • RegQueryInfoKeyW (Address: 0x180024048)
  • RegQueryValueExW (Address: 0x180024058)
  • RegSetValueExW (Address: 0x180024078)
api-ms-win-core-registry-l2-1-0.dll
  • RegCreateKeyTransactedW (Address: 0x180024090)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x1800240b0)
  • RtlLookupFunctionEntry (Address: 0x1800240a0)
  • RtlVirtualUnwind (Address: 0x1800240a8)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x1800240c0)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockShared (Address: 0x1800240f0)
  • DeleteCriticalSection (Address: 0x1800240e8)
  • EnterCriticalSection (Address: 0x1800240d8)
  • InitializeCriticalSection (Address: 0x1800240f8)
  • LeaveCriticalSection (Address: 0x1800240e0)
  • ReleaseSRWLockShared (Address: 0x1800240d0)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x180024118)
  • InitOnceComplete (Address: 0x180024108)
  • Sleep (Address: 0x180024110)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x180024128)
  • GetTickCount (Address: 0x180024130)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x180024140)
  • EncodePointer (Address: 0x180024148)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • GetTraceEnableFlags (Address: 0x180024158)
  • GetTraceEnableLevel (Address: 0x180024160)
  • GetTraceLoggerHandle (Address: 0x180024168)
  • RegisterTraceGuidsW (Address: 0x180024178)
  • TraceMessage (Address: 0x180024170)
  • UnregisterTraceGuids (Address: 0x180024180)
api-ms-win-security-base-l1-1-0.dll
  • AddAce (Address: 0x1800241f0)
  • GetAce (Address: 0x1800241f8)
  • GetAclInformation (Address: 0x1800241a0)
  • GetSecurityDescriptorControl (Address: 0x1800241d8)
  • GetSecurityDescriptorDacl (Address: 0x1800241e0)
  • GetSecurityDescriptorGroup (Address: 0x1800241b0)
  • GetSecurityDescriptorLength (Address: 0x1800241b8)
  • GetSecurityDescriptorOwner (Address: 0x180024190)
  • InitializeAcl (Address: 0x180024198)
  • InitializeSecurityDescriptor (Address: 0x1800241c0)
  • IsValidSecurityDescriptor (Address: 0x180024200)
  • MakeSelfRelativeSD (Address: 0x1800241e8)
  • MapGenericMask (Address: 0x1800241a8)
  • SetSecurityDescriptorDacl (Address: 0x1800241c8)
  • SetSecurityDescriptorGroup (Address: 0x180024208)
  • SetSecurityDescriptorOwner (Address: 0x1800241d0)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSecurityDescriptorToStringSecurityDescriptorW (Address: 0x180024218)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180024220)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x180024248)
  • BCryptCreateHash (Address: 0x180024240)
  • BCryptDestroyHash (Address: 0x180024230)
  • BCryptFinishHash (Address: 0x180024258)
  • BCryptGetProperty (Address: 0x180024238)
  • BCryptHashData (Address: 0x180024250)
  • BCryptOpenAlgorithmProvider (Address: 0x180024260)
msvcrt.dll
  • __C_specific_handler (Address: 0x180024368)
  • __CxxFrameHandler3 (Address: 0x1800242e0)
  • __dllonexit (Address: 0x1800242e8)
  • _amsg_exit (Address: 0x180024270)
  • _CxxThrowException (Address: 0x180024290)
  • _errno (Address: 0x180024300)
  • _initterm (Address: 0x180024280)
  • _itow_s (Address: 0x180024348)
  • _lock (Address: 0x1800242c8)
  • _onexit (Address: 0x1800242f0)
  • _purecall (Address: 0x180024380)
  • _ultow_s (Address: 0x180024340)
  • _unlock (Address: 0x1800242d0)
  • _wcsicmp (Address: 0x180024318)
  • _wcsnicmp (Address: 0x180024350)
  • _wcstoui64 (Address: 0x180024320)
  • _wtoi (Address: 0x180024330)
  • _XcptFilter (Address: 0x180024278)
  • ??0exception@@QEAA@AEBQEBD@Z (Address: 0x1800242c0)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x1800242b0)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180024310)
  • ??1exception@@UEAA@XZ (Address: 0x1800242a0)
  • ??1type_info@@UEAA@XZ (Address: 0x1800242f8)
  • ?terminate@@YAXXZ (Address: 0x1800242a8)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180024298)
  • free (Address: 0x180024378)
  • malloc (Address: 0x180024370)
  • memcmp (Address: 0x1800242b8)
  • memcpy (Address: 0x180024288)
  • memmove (Address: 0x180024388)
  • memset (Address: 0x180024308)
  • towupper (Address: 0x180024358)
  • wcschr (Address: 0x180024338)
  • wcscmp (Address: 0x180024390)
  • wcscpy_s (Address: 0x1800242d8)
  • wcsncmp (Address: 0x180024360)
  • wcstoul (Address: 0x180024328)
ntdll.dll
  • NtCommitTransaction (Address: 0x1800243a0)
  • NtCreateTransaction (Address: 0x1800243a8)
  • RtlGetVersion (Address: 0x1800243c0)
  • RtlInitUnicodeStringEx (Address: 0x1800243b0)
  • RtlNtStatusToDosError (Address: 0x1800243b8)
RPCRT4.dll
  • UuidCreate (Address: 0x180023e68)
WCP.dll
  • ?RtlGetFacilityTracingFlags@Rtl@WCP@Windows@@YAKPEAU_RTL_TRACING_FACILITY@123@@Z (Address: 0x180023e98)
  • ?RtlTraceFormat_PCbool@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023ec8)
  • ?RtlTraceFormat_PCHRESULT@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023ed0)
  • ?RtlTraceFormat_PCLONG@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023ed8)
  • ?RtlTraceFormat_PCSTR_AsLiteralString@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023e88)
  • ?RtlTraceFormat_PCULONG_AsWin32Error@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023eb0)
  • ?RtlTraceFormat_PCULONG@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023e78)
  • ?RtlTraceFormat_PCWSTR_AsLiteralString@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x180023ea0)
  • ?RtlTraceVa@Rtl@WCP@Windows@@YAXKKPEAU_RTL_TRACING_FACILITY@123@QEBD_KPEAD@Z (Address: 0x180023ea8)
  • RtlCalculateUtf16StringLengthFromLUtf8String (Address: 0x180023ec0)
  • RtlCopyLUtf8StringToLUnicodeString (Address: 0x180023eb8)
  • RtlCreateMicrodom (Address: 0x180023e90)
  • RtlFreeLUtf8String (Address: 0x180023e80)