edgeIso.dll
Description: Isolation Library for edgehtml hosts
Authors: © Microsoft Corporation. All rights reserved.
Version: 11.0.19041.6456
Architecture: 64-bit
Operating System: Windows NT
SHA256: 67de131b1d218c1c10bccc81d01a59cb
File Size: 437.5 KB
Uploaded At: Dec. 1, 2025, 7:27 a.m.
Views: 9
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- (Ordinal: 1, Address: 0x390a0)
- (Ordinal: 2, Address: 0x39310)
- (Ordinal: 3, Address: 0x10900)
- (Ordinal: 4, Address: 0xa430)
- (Ordinal: 5, Address: 0x49d20)
- (Ordinal: 6, Address: 0x49c20)
- (Ordinal: 7, Address: 0x49b40)
- (Ordinal: 8, Address: 0x1ba30)
- (Ordinal: 9, Address: 0x49a50)
- (Ordinal: 10, Address: 0x6401b)
- (Ordinal: 11, Address: 0xa060)
- (Ordinal: 12, Address: 0x282f0)
- (Ordinal: 13, Address: 0x4ae0)
- (Ordinal: 14, Address: 0x49110)
- (Ordinal: 15, Address: 0x5330)
- (Ordinal: 16, Address: 0x5530)
- (Ordinal: 17, Address: 0x4a790)
- (Ordinal: 18, Address: 0x4a830)
- (Ordinal: 19, Address: 0x6400e)
- (Ordinal: 20, Address: 0x4eb0)
- (Ordinal: 21, Address: 0x56b0)
- (Ordinal: 22, Address: 0x1af90)
- (Ordinal: 23, Address: 0x49f60)
- (Ordinal: 24, Address: 0x49f00)
- (Ordinal: 25, Address: 0x49fc0)
- (Ordinal: 26, Address: 0x12600)
- (Ordinal: 27, Address: 0xfe70)
- (Ordinal: 28, Address: 0x4a130)
- (Ordinal: 29, Address: 0x4a0c0)
- (Ordinal: 30, Address: 0x4a160)
- (Ordinal: 31, Address: 0x109a0)
- (Ordinal: 32, Address: 0x7160)
- (Ordinal: 33, Address: 0x22b20)
- (Ordinal: 34, Address: 0x23a00)
- (Ordinal: 35, Address: 0x4530)
- (Ordinal: 36, Address: 0x45c0)
- (Ordinal: 37, Address: 0x4330)
- (Ordinal: 38, Address: 0x3fa0)
- (Ordinal: 39, Address: 0x40f0)
- (Ordinal: 40, Address: 0x4a930)
- (Ordinal: 41, Address: 0x46c0)
- (Ordinal: 42, Address: 0x49b0)
- (Ordinal: 43, Address: 0x4a8d0)
- (Ordinal: 44, Address: 0x1f0f0)
- (Ordinal: 45, Address: 0x49a30)
- (Ordinal: 46, Address: 0x23e40)
- (Ordinal: 47, Address: 0x9e40)
- (Ordinal: 48, Address: 0x497b0)
- (Ordinal: 49, Address: 0x14060)
- (Ordinal: 50, Address: 0xa190)
- (Ordinal: 51, Address: 0xa6f0)
- (Ordinal: 52, Address: 0x4cf0)
- (Ordinal: 53, Address: 0x497d0)
- (Ordinal: 54, Address: 0x49810)
- (Ordinal: 55, Address: 0x50d0)
- (Ordinal: 56, Address: 0x4de0)
- (Ordinal: 57, Address: 0x53a0)
- (Ordinal: 58, Address: 0x1bae0)
- (Ordinal: 59, Address: 0x57d0)
- (Ordinal: 60, Address: 0x499a0)
- (Ordinal: 61, Address: 0x4a010)
- (Ordinal: 62, Address: 0x4b60)
- (Ordinal: 63, Address: 0x4bd0)
- (Ordinal: 64, Address: 0x4d70)
- (Ordinal: 65, Address: 0x165e0)
- (Ordinal: 66, Address: 0x3aad0)
- (Ordinal: 67, Address: 0x140a0)
- (Ordinal: 68, Address: 0x3b200)
- (Ordinal: 69, Address: 0x1bbe0)
- (Ordinal: 70, Address: 0x1bbb0)
- (Ordinal: 71, Address: 0xa720)
- (Ordinal: 72, Address: 0x23b50)
- (Ordinal: 73, Address: 0x3b860)
- (Ordinal: 74, Address: 0x3b890)
- (Ordinal: 75, Address: 0x3ac70)
- (Ordinal: 76, Address: 0x23f30)
- (Ordinal: 77, Address: 0x3b2b0)
- (Ordinal: 78, Address: 0x3ab90)
- (Ordinal: 79, Address: 0x3ab20)
- (Ordinal: 80, Address: 0xa100)
- (Ordinal: 81, Address: 0x3b610)
- (Ordinal: 82, Address: 0x286a0)
- (Ordinal: 83, Address: 0x26ec0)
- (Ordinal: 84, Address: 0xaea0)
- (Ordinal: 85, Address: 0x26f80)
- (Ordinal: 86, Address: 0xaf40)
- (Ordinal: 87, Address: 0x17650)
- (Ordinal: 88, Address: 0x3b650)
- (Ordinal: 89, Address: 0x3ae80)
- (Ordinal: 90, Address: 0xa630)
- (Ordinal: 91, Address: 0xa5f0)
- (Ordinal: 92, Address: 0x28b20)
- (Ordinal: 93, Address: 0x3b840)
- (Ordinal: 94, Address: 0x1ae80)
- (Ordinal: 95, Address: 0x8a60)
- (Ordinal: 96, Address: 0x244f0)
- (Ordinal: 97, Address: 0x28290)
- (Ordinal: 98, Address: 0x5680)
- (Ordinal: 99, Address: 0x244b0)
- (Ordinal: 100, Address: 0x9f00)
- (Ordinal: 101, Address: 0x9260)
- (Ordinal: 102, Address: 0x23c00)
- (Ordinal: 103, Address: 0x14a40)
- (Ordinal: 104, Address: 0x3c1e0)
- (Ordinal: 105, Address: 0x23b00)
- (Ordinal: 106, Address: 0x3abf0)
- (Ordinal: 107, Address: 0x23910)
- (Ordinal: 108, Address: 0x3ac40)
- (Ordinal: 109, Address: 0x23c50)
- (Ordinal: 110, Address: 0x22b70)
- (Ordinal: 111, Address: 0x9290)
- (Ordinal: 112, Address: 0x23a50)
- (Ordinal: 113, Address: 0x140f0)
- (Ordinal: 114, Address: 0x7080)
- (Ordinal: 115, Address: 0x63ff4)
- (Ordinal: 116, Address: 0x64001)
- (Ordinal: 117, Address: 0x17000)
- (Ordinal: 118, Address: 0xd890)
- (Ordinal: 119, Address: 0x22840)
- (Ordinal: 120, Address: 0x17ea0)
- (Ordinal: 121, Address: 0x3bf90)
- (Ordinal: 122, Address: 0x1bc30)
- (Ordinal: 123, Address: 0x3c370)
- (Ordinal: 124, Address: 0x3bf10)
- (Ordinal: 125, Address: 0x1b420)
- (Ordinal: 126, Address: 0x3c3b0)
- (Ordinal: 127, Address: 0x3bf50)
- (Ordinal: 128, Address: 0x3c110)
- (Ordinal: 129, Address: 0x200b0)
- (Ordinal: 130, Address: 0x278f0)
- (Ordinal: 131, Address: 0x19100)
- (Ordinal: 132, Address: 0x28360)
- (Ordinal: 133, Address: 0x8b90)
- (Ordinal: 134, Address: 0x280b0)
- (Ordinal: 135, Address: 0x9ec0)
- (Ordinal: 136, Address: 0x28a30)
- (Ordinal: 137, Address: 0x3b6b0)
- (Ordinal: 138, Address: 0x3b5d0)
- (Ordinal: 139, Address: 0x3b560)
- (Ordinal: 140, Address: 0x25f90)
- (Ordinal: 141, Address: 0x3b270)
- (Ordinal: 142, Address: 0x3b1c0)
- (Ordinal: 143, Address: 0x1bb50)
- (Ordinal: 144, Address: 0x28ae0)
- (Ordinal: 145, Address: 0x5b90)
- (Ordinal: 146, Address: 0x1d230)
- (Ordinal: 147, Address: 0x24a40)
- (Ordinal: 148, Address: 0x44f0)
- (Ordinal: 149, Address: 0x24480)
- (Ordinal: 150, Address: 0x24310)
- (Ordinal: 151, Address: 0x284b0)
- (Ordinal: 152, Address: 0x3bfa0)
- (Ordinal: 153, Address: 0xcef0)
- (Ordinal: 154, Address: 0x27ed0)
- (Ordinal: 155, Address: 0x1b1c0)
- (Ordinal: 156, Address: 0x1b250)
- (Ordinal: 157, Address: 0x17b0)
- (Ordinal: 158, Address: 0xd130)
- (Ordinal: 159, Address: 0x288f0)
- (Ordinal: 160, Address: 0xa290)
- (Ordinal: 161, Address: 0x27680)
- (Ordinal: 162, Address: 0x3c150)
- (Ordinal: 163, Address: 0xb210)
- (Ordinal: 164, Address: 0x1d100)
- (Ordinal: 165, Address: 0x1b2e0)
- (Ordinal: 166, Address: 0x27420)
- (Ordinal: 167, Address: 0xedd0)
- (Ordinal: 168, Address: 0x28e20)
- (Ordinal: 169, Address: 0x28e20)
- (Ordinal: 170, Address: 0x28e10)
- (Ordinal: 171, Address: 0x28e10)
- (Ordinal: 172, Address: 0x28e10)
- (Ordinal: 173, Address: 0x4a2d0)
- (Ordinal: 174, Address: 0x4a080)
- (Ordinal: 175, Address: 0x1fb50)
- (Ordinal: 176, Address: 0x3aca0)
- (Ordinal: 177, Address: 0x72c0)
- (Ordinal: 178, Address: 0x3b000)
- (Ordinal: 179, Address: 0x3af00)
- (Ordinal: 180, Address: 0x1f8c0)
- (Ordinal: 185, Address: 0x28ba0)
- (Ordinal: 186, Address: 0x1b120)
- (Ordinal: 187, Address: 0x5620)
- (Ordinal: 188, Address: 0x3aa80)
- (Ordinal: 189, Address: 0x3b6f0)
- (Ordinal: 190, Address: 0x3ba30)
- (Ordinal: 191, Address: 0xad70)
- (Ordinal: 192, Address: 0x3b9c0)
- (Ordinal: 193, Address: 0x3b990)
- (Ordinal: 194, Address: 0x3b8c0)
- (Ordinal: 195, Address: 0x28850)
- (Ordinal: 196, Address: 0xa750)
- (Ordinal: 197, Address: 0xa230)
- (Ordinal: 198, Address: 0x498a0)
- (Ordinal: 199, Address: 0x49930)
- (Ordinal: 200, Address: 0x3b110)
- (Ordinal: 201, Address: 0x3a820)
- (Ordinal: 202, Address: 0x27450)
- (Ordinal: 203, Address: 0x28a70)
- (Ordinal: 204, Address: 0x26e70)
- (Ordinal: 205, Address: 0xa8a0)
- (Ordinal: 206, Address: 0x26e20)
- (Ordinal: 207, Address: 0x22000)
- (Ordinal: 208, Address: 0x3b190)
- (Ordinal: 209, Address: 0x25270)
- (Ordinal: 210, Address: 0x1f670)
- (Ordinal: 211, Address: 0x1f780)
- (Ordinal: 212, Address: 0x3bc30)
- (Ordinal: 213, Address: 0x3b150)
- (Ordinal: 214, Address: 0x3b960)
- (Ordinal: 215, Address: 0x3b2e0)
- (Ordinal: 216, Address: 0xa1e0)
- (Ordinal: 217, Address: 0x3a320)
- (Ordinal: 218, Address: 0xa5a0)
- (Ordinal: 219, Address: 0x24250)
- (Ordinal: 220, Address: 0x3b5a0)
- (Ordinal: 221, Address: 0x3b930)
- (Ordinal: 222, Address: 0x3aa50)
- (Ordinal: 223, Address: 0x25a70)
- (Ordinal: 224, Address: 0x25a20)
- (Ordinal: 225, Address: 0x166d0)
- (Ordinal: 226, Address: 0x3aa70)
- (Ordinal: 227, Address: 0x49dd0)
- (Ordinal: 228, Address: 0x49e80)
- (Ordinal: 229, Address: 0x49ec0)
- (Ordinal: 230, Address: 0x49e10)
- (Ordinal: 231, Address: 0x4a1c0)
- (Ordinal: 232, Address: 0x4a2e0)
- (Ordinal: 233, Address: 0x3bff0)
- (Ordinal: 234, Address: 0x3b520)
- (Ordinal: 235, Address: 0x4e550)
- (Ordinal: 236, Address: 0x4edb0)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x180053398)
api-ms-win-core-atoms-l1-1-0.dll
- AddAtomW (Address: 0x1800533b8)
- DeleteAtom (Address: 0x1800533b0)
- FindAtomW (Address: 0x1800533a8)
api-ms-win-core-com-l1-1-0.dll
- CoCreateFreeThreadedMarshaler (Address: 0x180053420)
- CoCreateInstance (Address: 0x1800533f0)
- CoGetApartmentType (Address: 0x180053430)
- CoGetInterfaceAndReleaseStream (Address: 0x180053418)
- CoGetMarshalSizeMax (Address: 0x1800533d8)
- CoImpersonateClient (Address: 0x1800533f8)
- CoInitializeEx (Address: 0x1800533c8)
- CoInitializeSecurity (Address: 0x180053410)
- CoMarshalInterface (Address: 0x1800533e0)
- CoReleaseMarshalData (Address: 0x180053400)
- CoRevertToSelf (Address: 0x1800533d0)
- CoTaskMemAlloc (Address: 0x180053428)
- CoTaskMemFree (Address: 0x180053450)
- CoUninitialize (Address: 0x180053408)
- CoUnmarshalInterface (Address: 0x180053438)
- CoWaitForMultipleHandles (Address: 0x180053440)
- CreateStreamOnHGlobal (Address: 0x180053448)
- StringFromGUID2 (Address: 0x1800533e8)
api-ms-win-core-com-l1-1-1.dll
- RoGetAgileReference (Address: 0x180053460)
api-ms-win-core-com-private-l1-1-0.dll
- CoGetErrorInfo (Address: 0x180053478)
- CoSetErrorInfo (Address: 0x180053470)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x180053490)
- IsDebuggerPresent (Address: 0x180053498)
- OutputDebugStringW (Address: 0x180053488)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1800534a8)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1800534b8)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1800534e8)
- RaiseException (Address: 0x1800534c8)
- SetLastError (Address: 0x1800534e0)
- SetUnhandledExceptionFilter (Address: 0x1800534d8)
- UnhandledExceptionFilter (Address: 0x1800534d0)
api-ms-win-core-errorhandling-l1-1-2.dll
- RaiseFailFastException (Address: 0x1800534f8)
api-ms-win-core-file-l1-1-0.dll
- FindClose (Address: 0x180053518)
- FindFirstFileExW (Address: 0x180053520)
- FindNextFileW (Address: 0x180053508)
- GetShortPathNameW (Address: 0x180053510)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180053530)
- DuplicateHandle (Address: 0x180053538)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x180053560)
- HeapAlloc (Address: 0x180053548)
- HeapFree (Address: 0x180053550)
- HeapReAlloc (Address: 0x180053558)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180053578)
- LocalFree (Address: 0x180053570)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x180053588)
api-ms-win-core-job-l1-1-0.dll
- IsProcessInJob (Address: 0x180053598)
api-ms-win-core-job-l2-1-0.dll
- AssignProcessToJobObject (Address: 0x1800535b0)
- CreateJobObjectW (Address: 0x1800535b8)
- SetInformationJobObject (Address: 0x1800535a8)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- RegisterWaitForSingleObject (Address: 0x1800535c8)
- UnregisterWait (Address: 0x1800535d0)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x180053600)
- FreeLibrary (Address: 0x1800535e0)
- GetModuleFileNameA (Address: 0x180053608)
- GetModuleFileNameW (Address: 0x180053618)
- GetModuleHandleExW (Address: 0x1800535f8)
- GetModuleHandleW (Address: 0x180053610)
- GetProcAddress (Address: 0x1800535e8)
- LoadLibraryExW (Address: 0x1800535f0)
api-ms-win-core-libraryloader-l1-2-1.dll
- LoadLibraryW (Address: 0x180053628)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x180053638)
api-ms-win-core-memory-l1-1-0.dll
- CreateFileMappingW (Address: 0x180053648)
- MapViewOfFile (Address: 0x180053660)
- MapViewOfFileEx (Address: 0x180053668)
- OpenFileMappingW (Address: 0x180053670)
- UnmapViewOfFile (Address: 0x180053658)
- VirtualQuery (Address: 0x180053650)
api-ms-win-core-namespace-l1-1-0.dll
- AddSIDToBoundaryDescriptor (Address: 0x1800536a0)
- ClosePrivateNamespace (Address: 0x180053688)
- CreateBoundaryDescriptorW (Address: 0x180053680)
- CreatePrivateNamespaceW (Address: 0x180053698)
- DeleteBoundaryDescriptor (Address: 0x180053690)
- OpenPrivateNamespaceW (Address: 0x1800536a8)
api-ms-win-core-processenvironment-l1-1-0.dll
- GetEnvironmentVariableW (Address: 0x1800536b8)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateProcessAsUserW (Address: 0x180053758)
- CreateProcessW (Address: 0x180053760)
- CreateThread (Address: 0x180053700)
- DeleteProcThreadAttributeList (Address: 0x180053750)
- GetCurrentProcess (Address: 0x1800536f0)
- GetCurrentProcessId (Address: 0x180053710)
- GetCurrentThread (Address: 0x180053730)
- GetCurrentThreadId (Address: 0x1800536d8)
- GetExitCodeProcess (Address: 0x180053778)
- GetThreadId (Address: 0x180053738)
- InitializeProcThreadAttributeList (Address: 0x180053770)
- OpenProcessToken (Address: 0x180053720)
- OpenThread (Address: 0x1800536f8)
- OpenThreadToken (Address: 0x180053728)
- ResumeThread (Address: 0x1800536c8)
- SuspendThread (Address: 0x180053740)
- TerminateProcess (Address: 0x1800536e8)
- TerminateThread (Address: 0x180053708)
- TlsAlloc (Address: 0x1800536e0)
- TlsFree (Address: 0x1800536d0)
- TlsGetValue (Address: 0x180053748)
- TlsSetValue (Address: 0x180053718)
- UpdateProcThreadAttribute (Address: 0x180053768)
api-ms-win-core-processthreads-l1-1-1.dll
- GetThreadContext (Address: 0x180053798)
- IsProcessorFeaturePresent (Address: 0x180053790)
- OpenProcess (Address: 0x180053788)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1800537a8)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1800537d0)
- RegCreateKeyExW (Address: 0x1800537c8)
- RegEnumKeyExW (Address: 0x1800537d8)
- RegGetValueW (Address: 0x1800537e8)
- RegOpenKeyExW (Address: 0x1800537b8)
- RegQueryValueExW (Address: 0x1800537c0)
- RegSetValueExW (Address: 0x1800537e0)
api-ms-win-core-registry-l2-1-0.dll
- RegDeleteKeyW (Address: 0x1800537f8)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x180053808)
- RtlLookupFunctionEntry (Address: 0x180053810)
- RtlVirtualUnwind (Address: 0x180053818)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathFindFileNameW (Address: 0x180053828)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
- QISearch (Address: 0x180053840)
- StrCmpICW (Address: 0x180053848)
- StrStrIW (Address: 0x180053838)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1800538e0)
- AcquireSRWLockShared (Address: 0x180053918)
- CreateEventExW (Address: 0x180053900)
- CreateEventW (Address: 0x180053890)
- CreateMutexExW (Address: 0x1800538a8)
- CreateSemaphoreExW (Address: 0x1800538b0)
- DeleteCriticalSection (Address: 0x180053868)
- EnterCriticalSection (Address: 0x1800538e8)
- InitializeCriticalSection (Address: 0x180053898)
- InitializeCriticalSectionAndSpinCount (Address: 0x180053878)
- InitializeCriticalSectionEx (Address: 0x180053870)
- InitializeSRWLock (Address: 0x180053908)
- LeaveCriticalSection (Address: 0x1800538f8)
- OpenEventW (Address: 0x1800538b8)
- OpenSemaphoreW (Address: 0x180053910)
- ReleaseMutex (Address: 0x180053858)
- ReleaseSemaphore (Address: 0x1800538c8)
- ReleaseSRWLockExclusive (Address: 0x1800538d8)
- ReleaseSRWLockShared (Address: 0x180053888)
- ResetEvent (Address: 0x1800538a0)
- SetEvent (Address: 0x1800538c0)
- TryAcquireSRWLockExclusive (Address: 0x1800538f0)
- TryEnterCriticalSection (Address: 0x1800538d0)
- WaitForSingleObject (Address: 0x180053880)
- WaitForSingleObjectEx (Address: 0x180053860)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x180053928)
- InitOnceComplete (Address: 0x180053940)
- InitOnceExecuteOnce (Address: 0x180053938)
- Sleep (Address: 0x180053930)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x180053968)
- GetSystemInfo (Address: 0x180053978)
- GetSystemTimeAsFileTime (Address: 0x180053958)
- GetTickCount (Address: 0x180053960)
- GetTickCount64 (Address: 0x180053950)
- GetVersionExA (Address: 0x180053970)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1800539a0)
- CreateThreadpoolTimer (Address: 0x180053990)
- SetThreadpoolTimer (Address: 0x180053998)
- WaitForThreadpoolTimerCallbacks (Address: 0x180053988)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
- QueueUserWorkItem (Address: 0x1800539b8)
- UnregisterWaitEx (Address: 0x1800539b0)
api-ms-win-core-toolhelp-l1-1-0.dll
- CreateToolhelp32Snapshot (Address: 0x1800539d8)
- Process32FirstW (Address: 0x1800539d0)
- Process32NextW (Address: 0x1800539c8)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x1800539e8)
- EncodePointer (Address: 0x1800539f0)
api-ms-win-core-windowserrorreporting-l1-1-0.dll
- WerRegisterMemoryBlock (Address: 0x180053a08)
- WerUnregisterMemoryBlock (Address: 0x180053a00)
api-ms-win-core-winrt-error-l1-1-0.dll
- GetRestrictedErrorInfo (Address: 0x180053a18)
- RoOriginateError (Address: 0x180053a30)
- RoOriginateErrorW (Address: 0x180053a20)
- RoTransformError (Address: 0x180053a38)
- SetRestrictedErrorInfo (Address: 0x180053a28)
api-ms-win-core-winrt-error-l1-1-1.dll
- IsErrorPropagationEnabled (Address: 0x180053a50)
- RoGetMatchingRestrictedErrorInfo (Address: 0x180053a48)
- RoReportFailedDelegate (Address: 0x180053a58)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x180053a68)
- RoGetActivationFactory (Address: 0x180053a70)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCreateString (Address: 0x180053a88)
- WindowsCreateStringReference (Address: 0x180053a98)
- WindowsDeleteString (Address: 0x180053a90)
- WindowsDuplicateString (Address: 0x180053a80)
- WindowsGetStringRawBuffer (Address: 0x180053aa0)
api-ms-win-crt-math-l1-1-0.dll
- ceilf (Address: 0x180053ab0)
api-ms-win-crt-private-l1-1-0.dll
- __C_specific_handler (Address: 0x180053b48)
- __CxxFrameHandler3 (Address: 0x180053bd0)
- __CxxFrameHandler4 (Address: 0x180053bd8)
- __std_terminate (Address: 0x180053bc8)
- _CxxThrowException (Address: 0x180053be0)
- _o___std_exception_copy (Address: 0x180053bc0)
- _o___std_exception_destroy (Address: 0x180053bb8)
- _o___std_type_info_destroy_list (Address: 0x180053bb0)
- _o___stdio_common_vsnprintf_s (Address: 0x180053ba8)
- _o___stdio_common_vsprintf (Address: 0x180053ba0)
- _o___stdio_common_vswprintf (Address: 0x180053b98)
- _o___stdio_common_vswprintf_s (Address: 0x180053b90)
- _o__cexit (Address: 0x180053b78)
- _o__configure_narrow_argv (Address: 0x180053b70)
- _o__crt_atexit (Address: 0x180053b68)
- _o__errno (Address: 0x180053b58)
- _o__execute_onexit_table (Address: 0x180053b50)
- _o__initialize_narrow_environment (Address: 0x180053b80)
- _o__initialize_onexit_table (Address: 0x180053b60)
- _o__invalid_parameter_noinfo (Address: 0x180053af8)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x180053b88)
- _o__register_onexit_function (Address: 0x180053ac0)
- _o__seh_filter_dll (Address: 0x180053ac8)
- _o__wcsicmp (Address: 0x180053ad0)
- _o__wcsnicmp (Address: 0x180053ad8)
- _o__wtoi (Address: 0x180053ae8)
- _o__wtoi64 (Address: 0x180053af0)
- _o_free (Address: 0x180053b00)
- _o_iswspace (Address: 0x180053b08)
- _o_malloc (Address: 0x180053b10)
- _o_memcpy_s (Address: 0x180053b18)
- _o_realloc (Address: 0x180053b20)
- _o_terminate (Address: 0x180053b28)
- _o_toupper (Address: 0x180053b30)
- _o_wcscpy_s (Address: 0x180053b38)
- _o_wmemcpy_s (Address: 0x180053b40)
- memcmp (Address: 0x180053bf0)
- memcpy (Address: 0x180053bf8)
- memmove (Address: 0x180053ae0)
- wcschr (Address: 0x180053be8)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x180053c10)
- _initterm_e (Address: 0x180053c08)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x180053c28)
- wcsncmp (Address: 0x180053c20)
- wcsnlen (Address: 0x180053c30)
api-ms-win-eventing-provider-l1-1-0.dll
- EventProviderEnabled (Address: 0x180053c48)
- EventRegister (Address: 0x180053c58)
- EventSetInformation (Address: 0x180053c40)
- EventUnregister (Address: 0x180053c50)
- EventWriteTransfer (Address: 0x180053c60)
api-ms-win-security-base-l1-1-0.dll
- AddAccessAllowedAceEx (Address: 0x180053ce0)
- AddAce (Address: 0x180053cd8)
- AddMandatoryAce (Address: 0x180053d10)
- AllocateAndInitializeSid (Address: 0x180053cc8)
- CopySid (Address: 0x180053cc0)
- DeleteAce (Address: 0x180053cd0)
- DuplicateTokenEx (Address: 0x180053c90)
- EqualSid (Address: 0x180053d08)
- FreeSid (Address: 0x180053c70)
- GetAce (Address: 0x180053d00)
- GetKernelObjectSecurity (Address: 0x180053d20)
- GetLengthSid (Address: 0x180053ce8)
- GetSecurityDescriptorDacl (Address: 0x180053c80)
- GetSecurityDescriptorSacl (Address: 0x180053cf8)
- GetSidIdentifierAuthority (Address: 0x180053cf0)
- GetSidLengthRequired (Address: 0x180053cb8)
- GetSidSubAuthority (Address: 0x180053ca0)
- GetSidSubAuthorityCount (Address: 0x180053c88)
- GetTokenInformation (Address: 0x180053ca8)
- InitializeAcl (Address: 0x180053d28)
- InitializeSecurityDescriptor (Address: 0x180053d30)
- InitializeSid (Address: 0x180053cb0)
- IsValidSid (Address: 0x180053d38)
- SetKernelObjectSecurity (Address: 0x180053d18)
- SetSecurityDescriptorDacl (Address: 0x180053c78)
- SetSecurityDescriptorSacl (Address: 0x180053d40)
- SetTokenInformation (Address: 0x180053c98)
api-ms-win-security-base-l1-2-0.dll
- CheckTokenCapability (Address: 0x180053d50)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x180053d68)
- ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180053d60)
- ConvertStringSidToSidW (Address: 0x180053d70)
api-ms-win-shcore-taskpool-l1-1-0.dll
- SHTaskPoolAllowThreadReuse (Address: 0x180053d80)
- SHTaskPoolQueueTask (Address: 0x180053d88)
ntdll.dll
- NtQuerySystemInformation (Address: 0x180053d98)
- NtQueryVirtualMemory (Address: 0x180053da0)
- RtlGetSuiteMask (Address: 0x180053da8)
- RtlImageDirectoryEntryToData (Address: 0x180053db0)
- RtlQueryPackageClaims (Address: 0x180053dc0)
- RtlQueryTokenHostIdAsUlong64 (Address: 0x180053db8)
- RtlReportExceptionEx (Address: 0x180053dc8)
OLEAUT32.dll
- SafeArrayAccessData (Address: 0x180053340)
- SafeArrayCreate (Address: 0x180053330)
- SafeArrayGetDim (Address: 0x180053358)
- SafeArrayGetLBound (Address: 0x180053350)
- SafeArrayGetUBound (Address: 0x180053348)
- SafeArrayUnlock (Address: 0x180053310)
- SysAllocString (Address: 0x180053338)
- SysAllocStringByteLen (Address: 0x180053328)
- VariantClear (Address: 0x180053320)
- VariantCopyInd (Address: 0x180053318)
USERENV.dll
- CreateAppContainerProfile (Address: 0x180053370)
- DeriveAppContainerSidFromAppContainerName (Address: 0x180053368)
- GetAppContainerRegistryLocation (Address: 0x180053378)
WINTRUST.dll
- WTGetSignatureInfo (Address: 0x180053388)