edgeIso.dll

Description: Isolation Library for edgehtml hosts

Authors: © Microsoft Corporation. All rights reserved.

Version: 11.0.19041.6456

Architecture: 64-bit

Operating System: Windows NT

SHA256: 67de131b1d218c1c10bccc81d01a59cb

File Size: 437.5 KB

Uploaded At: Dec. 1, 2025, 7:27 a.m.

Views: 9

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • (Ordinal: 1, Address: 0x390a0)
  • (Ordinal: 2, Address: 0x39310)
  • (Ordinal: 3, Address: 0x10900)
  • (Ordinal: 4, Address: 0xa430)
  • (Ordinal: 5, Address: 0x49d20)
  • (Ordinal: 6, Address: 0x49c20)
  • (Ordinal: 7, Address: 0x49b40)
  • (Ordinal: 8, Address: 0x1ba30)
  • (Ordinal: 9, Address: 0x49a50)
  • (Ordinal: 10, Address: 0x6401b)
  • (Ordinal: 11, Address: 0xa060)
  • (Ordinal: 12, Address: 0x282f0)
  • (Ordinal: 13, Address: 0x4ae0)
  • (Ordinal: 14, Address: 0x49110)
  • (Ordinal: 15, Address: 0x5330)
  • (Ordinal: 16, Address: 0x5530)
  • (Ordinal: 17, Address: 0x4a790)
  • (Ordinal: 18, Address: 0x4a830)
  • (Ordinal: 19, Address: 0x6400e)
  • (Ordinal: 20, Address: 0x4eb0)
  • (Ordinal: 21, Address: 0x56b0)
  • (Ordinal: 22, Address: 0x1af90)
  • (Ordinal: 23, Address: 0x49f60)
  • (Ordinal: 24, Address: 0x49f00)
  • (Ordinal: 25, Address: 0x49fc0)
  • (Ordinal: 26, Address: 0x12600)
  • (Ordinal: 27, Address: 0xfe70)
  • (Ordinal: 28, Address: 0x4a130)
  • (Ordinal: 29, Address: 0x4a0c0)
  • (Ordinal: 30, Address: 0x4a160)
  • (Ordinal: 31, Address: 0x109a0)
  • (Ordinal: 32, Address: 0x7160)
  • (Ordinal: 33, Address: 0x22b20)
  • (Ordinal: 34, Address: 0x23a00)
  • (Ordinal: 35, Address: 0x4530)
  • (Ordinal: 36, Address: 0x45c0)
  • (Ordinal: 37, Address: 0x4330)
  • (Ordinal: 38, Address: 0x3fa0)
  • (Ordinal: 39, Address: 0x40f0)
  • (Ordinal: 40, Address: 0x4a930)
  • (Ordinal: 41, Address: 0x46c0)
  • (Ordinal: 42, Address: 0x49b0)
  • (Ordinal: 43, Address: 0x4a8d0)
  • (Ordinal: 44, Address: 0x1f0f0)
  • (Ordinal: 45, Address: 0x49a30)
  • (Ordinal: 46, Address: 0x23e40)
  • (Ordinal: 47, Address: 0x9e40)
  • (Ordinal: 48, Address: 0x497b0)
  • (Ordinal: 49, Address: 0x14060)
  • (Ordinal: 50, Address: 0xa190)
  • (Ordinal: 51, Address: 0xa6f0)
  • (Ordinal: 52, Address: 0x4cf0)
  • (Ordinal: 53, Address: 0x497d0)
  • (Ordinal: 54, Address: 0x49810)
  • (Ordinal: 55, Address: 0x50d0)
  • (Ordinal: 56, Address: 0x4de0)
  • (Ordinal: 57, Address: 0x53a0)
  • (Ordinal: 58, Address: 0x1bae0)
  • (Ordinal: 59, Address: 0x57d0)
  • (Ordinal: 60, Address: 0x499a0)
  • (Ordinal: 61, Address: 0x4a010)
  • (Ordinal: 62, Address: 0x4b60)
  • (Ordinal: 63, Address: 0x4bd0)
  • (Ordinal: 64, Address: 0x4d70)
  • (Ordinal: 65, Address: 0x165e0)
  • (Ordinal: 66, Address: 0x3aad0)
  • (Ordinal: 67, Address: 0x140a0)
  • (Ordinal: 68, Address: 0x3b200)
  • (Ordinal: 69, Address: 0x1bbe0)
  • (Ordinal: 70, Address: 0x1bbb0)
  • (Ordinal: 71, Address: 0xa720)
  • (Ordinal: 72, Address: 0x23b50)
  • (Ordinal: 73, Address: 0x3b860)
  • (Ordinal: 74, Address: 0x3b890)
  • (Ordinal: 75, Address: 0x3ac70)
  • (Ordinal: 76, Address: 0x23f30)
  • (Ordinal: 77, Address: 0x3b2b0)
  • (Ordinal: 78, Address: 0x3ab90)
  • (Ordinal: 79, Address: 0x3ab20)
  • (Ordinal: 80, Address: 0xa100)
  • (Ordinal: 81, Address: 0x3b610)
  • (Ordinal: 82, Address: 0x286a0)
  • (Ordinal: 83, Address: 0x26ec0)
  • (Ordinal: 84, Address: 0xaea0)
  • (Ordinal: 85, Address: 0x26f80)
  • (Ordinal: 86, Address: 0xaf40)
  • (Ordinal: 87, Address: 0x17650)
  • (Ordinal: 88, Address: 0x3b650)
  • (Ordinal: 89, Address: 0x3ae80)
  • (Ordinal: 90, Address: 0xa630)
  • (Ordinal: 91, Address: 0xa5f0)
  • (Ordinal: 92, Address: 0x28b20)
  • (Ordinal: 93, Address: 0x3b840)
  • (Ordinal: 94, Address: 0x1ae80)
  • (Ordinal: 95, Address: 0x8a60)
  • (Ordinal: 96, Address: 0x244f0)
  • (Ordinal: 97, Address: 0x28290)
  • (Ordinal: 98, Address: 0x5680)
  • (Ordinal: 99, Address: 0x244b0)
  • (Ordinal: 100, Address: 0x9f00)
  • (Ordinal: 101, Address: 0x9260)
  • (Ordinal: 102, Address: 0x23c00)
  • (Ordinal: 103, Address: 0x14a40)
  • (Ordinal: 104, Address: 0x3c1e0)
  • (Ordinal: 105, Address: 0x23b00)
  • (Ordinal: 106, Address: 0x3abf0)
  • (Ordinal: 107, Address: 0x23910)
  • (Ordinal: 108, Address: 0x3ac40)
  • (Ordinal: 109, Address: 0x23c50)
  • (Ordinal: 110, Address: 0x22b70)
  • (Ordinal: 111, Address: 0x9290)
  • (Ordinal: 112, Address: 0x23a50)
  • (Ordinal: 113, Address: 0x140f0)
  • (Ordinal: 114, Address: 0x7080)
  • (Ordinal: 115, Address: 0x63ff4)
  • (Ordinal: 116, Address: 0x64001)
  • (Ordinal: 117, Address: 0x17000)
  • (Ordinal: 118, Address: 0xd890)
  • (Ordinal: 119, Address: 0x22840)
  • (Ordinal: 120, Address: 0x17ea0)
  • (Ordinal: 121, Address: 0x3bf90)
  • (Ordinal: 122, Address: 0x1bc30)
  • (Ordinal: 123, Address: 0x3c370)
  • (Ordinal: 124, Address: 0x3bf10)
  • (Ordinal: 125, Address: 0x1b420)
  • (Ordinal: 126, Address: 0x3c3b0)
  • (Ordinal: 127, Address: 0x3bf50)
  • (Ordinal: 128, Address: 0x3c110)
  • (Ordinal: 129, Address: 0x200b0)
  • (Ordinal: 130, Address: 0x278f0)
  • (Ordinal: 131, Address: 0x19100)
  • (Ordinal: 132, Address: 0x28360)
  • (Ordinal: 133, Address: 0x8b90)
  • (Ordinal: 134, Address: 0x280b0)
  • (Ordinal: 135, Address: 0x9ec0)
  • (Ordinal: 136, Address: 0x28a30)
  • (Ordinal: 137, Address: 0x3b6b0)
  • (Ordinal: 138, Address: 0x3b5d0)
  • (Ordinal: 139, Address: 0x3b560)
  • (Ordinal: 140, Address: 0x25f90)
  • (Ordinal: 141, Address: 0x3b270)
  • (Ordinal: 142, Address: 0x3b1c0)
  • (Ordinal: 143, Address: 0x1bb50)
  • (Ordinal: 144, Address: 0x28ae0)
  • (Ordinal: 145, Address: 0x5b90)
  • (Ordinal: 146, Address: 0x1d230)
  • (Ordinal: 147, Address: 0x24a40)
  • (Ordinal: 148, Address: 0x44f0)
  • (Ordinal: 149, Address: 0x24480)
  • (Ordinal: 150, Address: 0x24310)
  • (Ordinal: 151, Address: 0x284b0)
  • (Ordinal: 152, Address: 0x3bfa0)
  • (Ordinal: 153, Address: 0xcef0)
  • (Ordinal: 154, Address: 0x27ed0)
  • (Ordinal: 155, Address: 0x1b1c0)
  • (Ordinal: 156, Address: 0x1b250)
  • (Ordinal: 157, Address: 0x17b0)
  • (Ordinal: 158, Address: 0xd130)
  • (Ordinal: 159, Address: 0x288f0)
  • (Ordinal: 160, Address: 0xa290)
  • (Ordinal: 161, Address: 0x27680)
  • (Ordinal: 162, Address: 0x3c150)
  • (Ordinal: 163, Address: 0xb210)
  • (Ordinal: 164, Address: 0x1d100)
  • (Ordinal: 165, Address: 0x1b2e0)
  • (Ordinal: 166, Address: 0x27420)
  • (Ordinal: 167, Address: 0xedd0)
  • (Ordinal: 168, Address: 0x28e20)
  • (Ordinal: 169, Address: 0x28e20)
  • (Ordinal: 170, Address: 0x28e10)
  • (Ordinal: 171, Address: 0x28e10)
  • (Ordinal: 172, Address: 0x28e10)
  • (Ordinal: 173, Address: 0x4a2d0)
  • (Ordinal: 174, Address: 0x4a080)
  • (Ordinal: 175, Address: 0x1fb50)
  • (Ordinal: 176, Address: 0x3aca0)
  • (Ordinal: 177, Address: 0x72c0)
  • (Ordinal: 178, Address: 0x3b000)
  • (Ordinal: 179, Address: 0x3af00)
  • (Ordinal: 180, Address: 0x1f8c0)
  • (Ordinal: 185, Address: 0x28ba0)
  • (Ordinal: 186, Address: 0x1b120)
  • (Ordinal: 187, Address: 0x5620)
  • (Ordinal: 188, Address: 0x3aa80)
  • (Ordinal: 189, Address: 0x3b6f0)
  • (Ordinal: 190, Address: 0x3ba30)
  • (Ordinal: 191, Address: 0xad70)
  • (Ordinal: 192, Address: 0x3b9c0)
  • (Ordinal: 193, Address: 0x3b990)
  • (Ordinal: 194, Address: 0x3b8c0)
  • (Ordinal: 195, Address: 0x28850)
  • (Ordinal: 196, Address: 0xa750)
  • (Ordinal: 197, Address: 0xa230)
  • (Ordinal: 198, Address: 0x498a0)
  • (Ordinal: 199, Address: 0x49930)
  • (Ordinal: 200, Address: 0x3b110)
  • (Ordinal: 201, Address: 0x3a820)
  • (Ordinal: 202, Address: 0x27450)
  • (Ordinal: 203, Address: 0x28a70)
  • (Ordinal: 204, Address: 0x26e70)
  • (Ordinal: 205, Address: 0xa8a0)
  • (Ordinal: 206, Address: 0x26e20)
  • (Ordinal: 207, Address: 0x22000)
  • (Ordinal: 208, Address: 0x3b190)
  • (Ordinal: 209, Address: 0x25270)
  • (Ordinal: 210, Address: 0x1f670)
  • (Ordinal: 211, Address: 0x1f780)
  • (Ordinal: 212, Address: 0x3bc30)
  • (Ordinal: 213, Address: 0x3b150)
  • (Ordinal: 214, Address: 0x3b960)
  • (Ordinal: 215, Address: 0x3b2e0)
  • (Ordinal: 216, Address: 0xa1e0)
  • (Ordinal: 217, Address: 0x3a320)
  • (Ordinal: 218, Address: 0xa5a0)
  • (Ordinal: 219, Address: 0x24250)
  • (Ordinal: 220, Address: 0x3b5a0)
  • (Ordinal: 221, Address: 0x3b930)
  • (Ordinal: 222, Address: 0x3aa50)
  • (Ordinal: 223, Address: 0x25a70)
  • (Ordinal: 224, Address: 0x25a20)
  • (Ordinal: 225, Address: 0x166d0)
  • (Ordinal: 226, Address: 0x3aa70)
  • (Ordinal: 227, Address: 0x49dd0)
  • (Ordinal: 228, Address: 0x49e80)
  • (Ordinal: 229, Address: 0x49ec0)
  • (Ordinal: 230, Address: 0x49e10)
  • (Ordinal: 231, Address: 0x4a1c0)
  • (Ordinal: 232, Address: 0x4a2e0)
  • (Ordinal: 233, Address: 0x3bff0)
  • (Ordinal: 234, Address: 0x3b520)
  • (Ordinal: 235, Address: 0x4e550)
  • (Ordinal: 236, Address: 0x4edb0)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x180053398)
api-ms-win-core-atoms-l1-1-0.dll
  • AddAtomW (Address: 0x1800533b8)
  • DeleteAtom (Address: 0x1800533b0)
  • FindAtomW (Address: 0x1800533a8)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateFreeThreadedMarshaler (Address: 0x180053420)
  • CoCreateInstance (Address: 0x1800533f0)
  • CoGetApartmentType (Address: 0x180053430)
  • CoGetInterfaceAndReleaseStream (Address: 0x180053418)
  • CoGetMarshalSizeMax (Address: 0x1800533d8)
  • CoImpersonateClient (Address: 0x1800533f8)
  • CoInitializeEx (Address: 0x1800533c8)
  • CoInitializeSecurity (Address: 0x180053410)
  • CoMarshalInterface (Address: 0x1800533e0)
  • CoReleaseMarshalData (Address: 0x180053400)
  • CoRevertToSelf (Address: 0x1800533d0)
  • CoTaskMemAlloc (Address: 0x180053428)
  • CoTaskMemFree (Address: 0x180053450)
  • CoUninitialize (Address: 0x180053408)
  • CoUnmarshalInterface (Address: 0x180053438)
  • CoWaitForMultipleHandles (Address: 0x180053440)
  • CreateStreamOnHGlobal (Address: 0x180053448)
  • StringFromGUID2 (Address: 0x1800533e8)
api-ms-win-core-com-l1-1-1.dll
  • RoGetAgileReference (Address: 0x180053460)
api-ms-win-core-com-private-l1-1-0.dll
  • CoGetErrorInfo (Address: 0x180053478)
  • CoSetErrorInfo (Address: 0x180053470)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x180053490)
  • IsDebuggerPresent (Address: 0x180053498)
  • OutputDebugStringW (Address: 0x180053488)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1800534a8)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1800534b8)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800534e8)
  • RaiseException (Address: 0x1800534c8)
  • SetLastError (Address: 0x1800534e0)
  • SetUnhandledExceptionFilter (Address: 0x1800534d8)
  • UnhandledExceptionFilter (Address: 0x1800534d0)
api-ms-win-core-errorhandling-l1-1-2.dll
  • RaiseFailFastException (Address: 0x1800534f8)
api-ms-win-core-file-l1-1-0.dll
  • FindClose (Address: 0x180053518)
  • FindFirstFileExW (Address: 0x180053520)
  • FindNextFileW (Address: 0x180053508)
  • GetShortPathNameW (Address: 0x180053510)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180053530)
  • DuplicateHandle (Address: 0x180053538)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180053560)
  • HeapAlloc (Address: 0x180053548)
  • HeapFree (Address: 0x180053550)
  • HeapReAlloc (Address: 0x180053558)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180053578)
  • LocalFree (Address: 0x180053570)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x180053588)
api-ms-win-core-job-l1-1-0.dll
  • IsProcessInJob (Address: 0x180053598)
api-ms-win-core-job-l2-1-0.dll
  • AssignProcessToJobObject (Address: 0x1800535b0)
  • CreateJobObjectW (Address: 0x1800535b8)
  • SetInformationJobObject (Address: 0x1800535a8)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • RegisterWaitForSingleObject (Address: 0x1800535c8)
  • UnregisterWait (Address: 0x1800535d0)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180053600)
  • FreeLibrary (Address: 0x1800535e0)
  • GetModuleFileNameA (Address: 0x180053608)
  • GetModuleFileNameW (Address: 0x180053618)
  • GetModuleHandleExW (Address: 0x1800535f8)
  • GetModuleHandleW (Address: 0x180053610)
  • GetProcAddress (Address: 0x1800535e8)
  • LoadLibraryExW (Address: 0x1800535f0)
api-ms-win-core-libraryloader-l1-2-1.dll
  • LoadLibraryW (Address: 0x180053628)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x180053638)
api-ms-win-core-memory-l1-1-0.dll
  • CreateFileMappingW (Address: 0x180053648)
  • MapViewOfFile (Address: 0x180053660)
  • MapViewOfFileEx (Address: 0x180053668)
  • OpenFileMappingW (Address: 0x180053670)
  • UnmapViewOfFile (Address: 0x180053658)
  • VirtualQuery (Address: 0x180053650)
api-ms-win-core-namespace-l1-1-0.dll
  • AddSIDToBoundaryDescriptor (Address: 0x1800536a0)
  • ClosePrivateNamespace (Address: 0x180053688)
  • CreateBoundaryDescriptorW (Address: 0x180053680)
  • CreatePrivateNamespaceW (Address: 0x180053698)
  • DeleteBoundaryDescriptor (Address: 0x180053690)
  • OpenPrivateNamespaceW (Address: 0x1800536a8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • GetEnvironmentVariableW (Address: 0x1800536b8)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessAsUserW (Address: 0x180053758)
  • CreateProcessW (Address: 0x180053760)
  • CreateThread (Address: 0x180053700)
  • DeleteProcThreadAttributeList (Address: 0x180053750)
  • GetCurrentProcess (Address: 0x1800536f0)
  • GetCurrentProcessId (Address: 0x180053710)
  • GetCurrentThread (Address: 0x180053730)
  • GetCurrentThreadId (Address: 0x1800536d8)
  • GetExitCodeProcess (Address: 0x180053778)
  • GetThreadId (Address: 0x180053738)
  • InitializeProcThreadAttributeList (Address: 0x180053770)
  • OpenProcessToken (Address: 0x180053720)
  • OpenThread (Address: 0x1800536f8)
  • OpenThreadToken (Address: 0x180053728)
  • ResumeThread (Address: 0x1800536c8)
  • SuspendThread (Address: 0x180053740)
  • TerminateProcess (Address: 0x1800536e8)
  • TerminateThread (Address: 0x180053708)
  • TlsAlloc (Address: 0x1800536e0)
  • TlsFree (Address: 0x1800536d0)
  • TlsGetValue (Address: 0x180053748)
  • TlsSetValue (Address: 0x180053718)
  • UpdateProcThreadAttribute (Address: 0x180053768)
api-ms-win-core-processthreads-l1-1-1.dll
  • GetThreadContext (Address: 0x180053798)
  • IsProcessorFeaturePresent (Address: 0x180053790)
  • OpenProcess (Address: 0x180053788)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1800537a8)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1800537d0)
  • RegCreateKeyExW (Address: 0x1800537c8)
  • RegEnumKeyExW (Address: 0x1800537d8)
  • RegGetValueW (Address: 0x1800537e8)
  • RegOpenKeyExW (Address: 0x1800537b8)
  • RegQueryValueExW (Address: 0x1800537c0)
  • RegSetValueExW (Address: 0x1800537e0)
api-ms-win-core-registry-l2-1-0.dll
  • RegDeleteKeyW (Address: 0x1800537f8)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180053808)
  • RtlLookupFunctionEntry (Address: 0x180053810)
  • RtlVirtualUnwind (Address: 0x180053818)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFindFileNameW (Address: 0x180053828)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
  • QISearch (Address: 0x180053840)
  • StrCmpICW (Address: 0x180053848)
  • StrStrIW (Address: 0x180053838)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1800538e0)
  • AcquireSRWLockShared (Address: 0x180053918)
  • CreateEventExW (Address: 0x180053900)
  • CreateEventW (Address: 0x180053890)
  • CreateMutexExW (Address: 0x1800538a8)
  • CreateSemaphoreExW (Address: 0x1800538b0)
  • DeleteCriticalSection (Address: 0x180053868)
  • EnterCriticalSection (Address: 0x1800538e8)
  • InitializeCriticalSection (Address: 0x180053898)
  • InitializeCriticalSectionAndSpinCount (Address: 0x180053878)
  • InitializeCriticalSectionEx (Address: 0x180053870)
  • InitializeSRWLock (Address: 0x180053908)
  • LeaveCriticalSection (Address: 0x1800538f8)
  • OpenEventW (Address: 0x1800538b8)
  • OpenSemaphoreW (Address: 0x180053910)
  • ReleaseMutex (Address: 0x180053858)
  • ReleaseSemaphore (Address: 0x1800538c8)
  • ReleaseSRWLockExclusive (Address: 0x1800538d8)
  • ReleaseSRWLockShared (Address: 0x180053888)
  • ResetEvent (Address: 0x1800538a0)
  • SetEvent (Address: 0x1800538c0)
  • TryAcquireSRWLockExclusive (Address: 0x1800538f0)
  • TryEnterCriticalSection (Address: 0x1800538d0)
  • WaitForSingleObject (Address: 0x180053880)
  • WaitForSingleObjectEx (Address: 0x180053860)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x180053928)
  • InitOnceComplete (Address: 0x180053940)
  • InitOnceExecuteOnce (Address: 0x180053938)
  • Sleep (Address: 0x180053930)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemDirectoryW (Address: 0x180053968)
  • GetSystemInfo (Address: 0x180053978)
  • GetSystemTimeAsFileTime (Address: 0x180053958)
  • GetTickCount (Address: 0x180053960)
  • GetTickCount64 (Address: 0x180053950)
  • GetVersionExA (Address: 0x180053970)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1800539a0)
  • CreateThreadpoolTimer (Address: 0x180053990)
  • SetThreadpoolTimer (Address: 0x180053998)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180053988)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
  • QueueUserWorkItem (Address: 0x1800539b8)
  • UnregisterWaitEx (Address: 0x1800539b0)
api-ms-win-core-toolhelp-l1-1-0.dll
  • CreateToolhelp32Snapshot (Address: 0x1800539d8)
  • Process32FirstW (Address: 0x1800539d0)
  • Process32NextW (Address: 0x1800539c8)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1800539e8)
  • EncodePointer (Address: 0x1800539f0)
api-ms-win-core-windowserrorreporting-l1-1-0.dll
  • WerRegisterMemoryBlock (Address: 0x180053a08)
  • WerUnregisterMemoryBlock (Address: 0x180053a00)
api-ms-win-core-winrt-error-l1-1-0.dll
  • GetRestrictedErrorInfo (Address: 0x180053a18)
  • RoOriginateError (Address: 0x180053a30)
  • RoOriginateErrorW (Address: 0x180053a20)
  • RoTransformError (Address: 0x180053a38)
  • SetRestrictedErrorInfo (Address: 0x180053a28)
api-ms-win-core-winrt-error-l1-1-1.dll
  • IsErrorPropagationEnabled (Address: 0x180053a50)
  • RoGetMatchingRestrictedErrorInfo (Address: 0x180053a48)
  • RoReportFailedDelegate (Address: 0x180053a58)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x180053a68)
  • RoGetActivationFactory (Address: 0x180053a70)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateString (Address: 0x180053a88)
  • WindowsCreateStringReference (Address: 0x180053a98)
  • WindowsDeleteString (Address: 0x180053a90)
  • WindowsDuplicateString (Address: 0x180053a80)
  • WindowsGetStringRawBuffer (Address: 0x180053aa0)
api-ms-win-crt-math-l1-1-0.dll
  • ceilf (Address: 0x180053ab0)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x180053b48)
  • __CxxFrameHandler3 (Address: 0x180053bd0)
  • __CxxFrameHandler4 (Address: 0x180053bd8)
  • __std_terminate (Address: 0x180053bc8)
  • _CxxThrowException (Address: 0x180053be0)
  • _o___std_exception_copy (Address: 0x180053bc0)
  • _o___std_exception_destroy (Address: 0x180053bb8)
  • _o___std_type_info_destroy_list (Address: 0x180053bb0)
  • _o___stdio_common_vsnprintf_s (Address: 0x180053ba8)
  • _o___stdio_common_vsprintf (Address: 0x180053ba0)
  • _o___stdio_common_vswprintf (Address: 0x180053b98)
  • _o___stdio_common_vswprintf_s (Address: 0x180053b90)
  • _o__cexit (Address: 0x180053b78)
  • _o__configure_narrow_argv (Address: 0x180053b70)
  • _o__crt_atexit (Address: 0x180053b68)
  • _o__errno (Address: 0x180053b58)
  • _o__execute_onexit_table (Address: 0x180053b50)
  • _o__initialize_narrow_environment (Address: 0x180053b80)
  • _o__initialize_onexit_table (Address: 0x180053b60)
  • _o__invalid_parameter_noinfo (Address: 0x180053af8)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x180053b88)
  • _o__register_onexit_function (Address: 0x180053ac0)
  • _o__seh_filter_dll (Address: 0x180053ac8)
  • _o__wcsicmp (Address: 0x180053ad0)
  • _o__wcsnicmp (Address: 0x180053ad8)
  • _o__wtoi (Address: 0x180053ae8)
  • _o__wtoi64 (Address: 0x180053af0)
  • _o_free (Address: 0x180053b00)
  • _o_iswspace (Address: 0x180053b08)
  • _o_malloc (Address: 0x180053b10)
  • _o_memcpy_s (Address: 0x180053b18)
  • _o_realloc (Address: 0x180053b20)
  • _o_terminate (Address: 0x180053b28)
  • _o_toupper (Address: 0x180053b30)
  • _o_wcscpy_s (Address: 0x180053b38)
  • _o_wmemcpy_s (Address: 0x180053b40)
  • memcmp (Address: 0x180053bf0)
  • memcpy (Address: 0x180053bf8)
  • memmove (Address: 0x180053ae0)
  • wcschr (Address: 0x180053be8)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x180053c10)
  • _initterm_e (Address: 0x180053c08)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x180053c28)
  • wcsncmp (Address: 0x180053c20)
  • wcsnlen (Address: 0x180053c30)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventProviderEnabled (Address: 0x180053c48)
  • EventRegister (Address: 0x180053c58)
  • EventSetInformation (Address: 0x180053c40)
  • EventUnregister (Address: 0x180053c50)
  • EventWriteTransfer (Address: 0x180053c60)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAceEx (Address: 0x180053ce0)
  • AddAce (Address: 0x180053cd8)
  • AddMandatoryAce (Address: 0x180053d10)
  • AllocateAndInitializeSid (Address: 0x180053cc8)
  • CopySid (Address: 0x180053cc0)
  • DeleteAce (Address: 0x180053cd0)
  • DuplicateTokenEx (Address: 0x180053c90)
  • EqualSid (Address: 0x180053d08)
  • FreeSid (Address: 0x180053c70)
  • GetAce (Address: 0x180053d00)
  • GetKernelObjectSecurity (Address: 0x180053d20)
  • GetLengthSid (Address: 0x180053ce8)
  • GetSecurityDescriptorDacl (Address: 0x180053c80)
  • GetSecurityDescriptorSacl (Address: 0x180053cf8)
  • GetSidIdentifierAuthority (Address: 0x180053cf0)
  • GetSidLengthRequired (Address: 0x180053cb8)
  • GetSidSubAuthority (Address: 0x180053ca0)
  • GetSidSubAuthorityCount (Address: 0x180053c88)
  • GetTokenInformation (Address: 0x180053ca8)
  • InitializeAcl (Address: 0x180053d28)
  • InitializeSecurityDescriptor (Address: 0x180053d30)
  • InitializeSid (Address: 0x180053cb0)
  • IsValidSid (Address: 0x180053d38)
  • SetKernelObjectSecurity (Address: 0x180053d18)
  • SetSecurityDescriptorDacl (Address: 0x180053c78)
  • SetSecurityDescriptorSacl (Address: 0x180053d40)
  • SetTokenInformation (Address: 0x180053c98)
api-ms-win-security-base-l1-2-0.dll
  • CheckTokenCapability (Address: 0x180053d50)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x180053d68)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180053d60)
  • ConvertStringSidToSidW (Address: 0x180053d70)
api-ms-win-shcore-taskpool-l1-1-0.dll
  • SHTaskPoolAllowThreadReuse (Address: 0x180053d80)
  • SHTaskPoolQueueTask (Address: 0x180053d88)
ntdll.dll
  • NtQuerySystemInformation (Address: 0x180053d98)
  • NtQueryVirtualMemory (Address: 0x180053da0)
  • RtlGetSuiteMask (Address: 0x180053da8)
  • RtlImageDirectoryEntryToData (Address: 0x180053db0)
  • RtlQueryPackageClaims (Address: 0x180053dc0)
  • RtlQueryTokenHostIdAsUlong64 (Address: 0x180053db8)
  • RtlReportExceptionEx (Address: 0x180053dc8)
OLEAUT32.dll
  • SafeArrayAccessData (Address: 0x180053340)
  • SafeArrayCreate (Address: 0x180053330)
  • SafeArrayGetDim (Address: 0x180053358)
  • SafeArrayGetLBound (Address: 0x180053350)
  • SafeArrayGetUBound (Address: 0x180053348)
  • SafeArrayUnlock (Address: 0x180053310)
  • SysAllocString (Address: 0x180053338)
  • SysAllocStringByteLen (Address: 0x180053328)
  • VariantClear (Address: 0x180053320)
  • VariantCopyInd (Address: 0x180053318)
USERENV.dll
  • CreateAppContainerProfile (Address: 0x180053370)
  • DeriveAppContainerSidFromAppContainerName (Address: 0x180053368)
  • GetAppContainerRegistryLocation (Address: 0x180053378)
WINTRUST.dll
  • WTGetSignatureInfo (Address: 0x180053388)