fhengine.dll

Description: File History Engine

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: b6d26f5571d7d02f20705e5f0d4e5381

File Size: 242.5 KB

Uploaded At: Dec. 1, 2025, 7:28 a.m.

Views: 9

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x6420)
  • DllGetClassObject (Ordinal: 2, Address: 0x6470)
  • DllInstall (Ordinal: 3, Address: 0x67e0)
  • DllRegisterServer (Ordinal: 4, Address: 0x64f0)
  • DllUnregisterServer (Ordinal: 5, Address: 0x6650)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x1800314f0)
  • ConvertSidToStringSidW (Address: 0x180031520)
  • DuplicateTokenEx (Address: 0x180031500)
  • EventRegister (Address: 0x180031548)
  • EventSetInformation (Address: 0x1800314d8)
  • EventUnregister (Address: 0x180031540)
  • EventWriteTransfer (Address: 0x180031510)
  • GetTokenInformation (Address: 0x180031528)
  • GetTraceEnableFlags (Address: 0x180031560)
  • GetTraceEnableLevel (Address: 0x180031568)
  • GetTraceLoggerHandle (Address: 0x180031570)
  • LookupPrivilegeValueW (Address: 0x1800314f8)
  • OpenProcessToken (Address: 0x180031530)
  • OpenThreadToken (Address: 0x180031538)
  • RegCloseKey (Address: 0x180031580)
  • RegCreateKeyExW (Address: 0x180031590)
  • RegDeleteValueW (Address: 0x1800315b0)
  • RegEnumKeyExW (Address: 0x180031598)
  • RegGetValueW (Address: 0x1800314e8)
  • RegisterTraceGuidsW (Address: 0x180031558)
  • RegOpenKeyExW (Address: 0x1800315a8)
  • RegQueryInfoKeyW (Address: 0x180031588)
  • RegSetKeyValueW (Address: 0x180031508)
  • RegSetValueExW (Address: 0x1800315a0)
  • SetThreadToken (Address: 0x180031518)
  • SystemFunction036 (Address: 0x1800314e0)
  • TraceMessage (Address: 0x180031578)
  • UnregisterTraceGuids (Address: 0x180031550)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateGuid (Address: 0x180031990)
  • CoCreateInstance (Address: 0x180031978)
  • CoGetCallContext (Address: 0x180031998)
  • CoTaskMemAlloc (Address: 0x180031988)
  • CoTaskMemFree (Address: 0x180031980)
  • CoTaskMemRealloc (Address: 0x180031968)
  • StringFromGUID2 (Address: 0x180031970)
api-ms-win-core-com-midlproxystub-l1-1-0.dll
  • ObjectStublessClient10 (Address: 0x1800319f0)
  • ObjectStublessClient11 (Address: 0x1800319a8)
  • ObjectStublessClient12 (Address: 0x1800319b0)
  • ObjectStublessClient13 (Address: 0x1800319c0)
  • ObjectStublessClient3 (Address: 0x1800319f8)
  • ObjectStublessClient4 (Address: 0x1800319c8)
  • ObjectStublessClient5 (Address: 0x1800319d0)
  • ObjectStublessClient6 (Address: 0x1800319d8)
  • ObjectStublessClient7 (Address: 0x1800319b8)
  • ObjectStublessClient8 (Address: 0x1800319e0)
  • ObjectStublessClient9 (Address: 0x1800319e8)
KERNEL32.dll
  • CloseHandle (Address: 0x180031778)
  • CompareStringOrdinal (Address: 0x180031818)
  • CreateDirectoryW (Address: 0x180031690)
  • CreateEventW (Address: 0x180031788)
  • CreateFileW (Address: 0x1800317e8)
  • DelayLoadFailureHook (Address: 0x180031668)
  • DeleteCriticalSection (Address: 0x180031738)
  • DeleteFileW (Address: 0x180031800)
  • DeviceIoControl (Address: 0x180031600)
  • EnterCriticalSection (Address: 0x1800316e8)
  • FileTimeToSystemTime (Address: 0x180031770)
  • FindClose (Address: 0x1800316a8)
  • FindFirstFileExW (Address: 0x180031698)
  • FindFirstFileW (Address: 0x180031820)
  • FindNextFileW (Address: 0x1800316a0)
  • FindResourceExW (Address: 0x180031720)
  • FlushFileBuffers (Address: 0x1800317f0)
  • FreeLibrary (Address: 0x180031748)
  • GetCurrentProcess (Address: 0x1800317d8)
  • GetCurrentProcessId (Address: 0x180031648)
  • GetCurrentThread (Address: 0x1800317d0)
  • GetCurrentThreadId (Address: 0x180031650)
  • GetDiskFreeSpaceExW (Address: 0x1800317c8)
  • GetFileAttributesExW (Address: 0x1800317b8)
  • GetFileAttributesW (Address: 0x1800317c0)
  • GetFileInformationByHandle (Address: 0x1800315e8)
  • GetFileInformationByHandleEx (Address: 0x1800316d0)
  • GetLastError (Address: 0x180031710)
  • GetModuleFileNameW (Address: 0x1800316f0)
  • GetModuleHandleW (Address: 0x180031740)
  • GetProcAddress (Address: 0x180031730)
  • GetProcessHeap (Address: 0x1800316d8)
  • GetSystemTime (Address: 0x1800317a8)
  • GetSystemTimeAsFileTime (Address: 0x1800317a0)
  • GetThreadLocale (Address: 0x180031760)
  • GetTickCount (Address: 0x180031658)
  • GetVolumeInformationW (Address: 0x1800317f8)
  • HeapAlloc (Address: 0x1800315c8)
  • HeapDestroy (Address: 0x1800315c0)
  • HeapFree (Address: 0x1800315d0)
  • HeapReAlloc (Address: 0x1800315d8)
  • HeapSize (Address: 0x1800315e0)
  • InitializeCriticalSection (Address: 0x180031700)
  • IsNLSDefinedString (Address: 0x180031678)
  • LeaveCriticalSection (Address: 0x1800316f8)
  • LoadLibraryExW (Address: 0x180031758)
  • LoadResource (Address: 0x180031728)
  • LocalFree (Address: 0x1800317e0)
  • LockResource (Address: 0x1800315f0)
  • lstrcmpiW (Address: 0x180031750)
  • MultiByteToWideChar (Address: 0x180031708)
  • OutputDebugStringA (Address: 0x180031660)
  • PowerClearRequest (Address: 0x1800316c8)
  • PowerCreateRequest (Address: 0x180031780)
  • PowerSetRequest (Address: 0x1800316b8)
  • PrivCopyFileExW (Address: 0x1800316c0)
  • QueryPerformanceCounter (Address: 0x180031640)
  • RaiseException (Address: 0x180031718)
  • ReadFile (Address: 0x1800315f8)
  • RemoveDirectoryW (Address: 0x180031680)
  • ResetEvent (Address: 0x180031790)
  • ResolveDelayLoadedAPI (Address: 0x180031670)
  • RtlCaptureContext (Address: 0x180031610)
  • RtlLookupFunctionEntry (Address: 0x180031618)
  • RtlVirtualUnwind (Address: 0x180031620)
  • SetEvent (Address: 0x180031798)
  • SetFileAttributesW (Address: 0x1800316b0)
  • SetFileInformationByHandle (Address: 0x180031688)
  • SetThreadLocale (Address: 0x180031768)
  • SetThreadPriority (Address: 0x180031810)
  • SetUnhandledExceptionFilter (Address: 0x180031630)
  • SizeofResource (Address: 0x1800316e0)
  • Sleep (Address: 0x180031608)
  • SystemTimeToFileTime (Address: 0x1800317b0)
  • TerminateProcess (Address: 0x180031638)
  • UnhandledExceptionFilter (Address: 0x180031628)
  • WaitForSingleObject (Address: 0x180031808)
msvcrt.dll
  • __C_specific_handler (Address: 0x180031ad8)
  • __CxxFrameHandler3 (Address: 0x180031ae0)
  • __dllonexit (Address: 0x180031b68)
  • _amsg_exit (Address: 0x180031b30)
  • _callnewh (Address: 0x180031b10)
  • _CxxThrowException (Address: 0x180031b18)
  • _errno (Address: 0x180031a18)
  • _initterm (Address: 0x180031b38)
  • _lock (Address: 0x180031b58)
  • _onexit (Address: 0x180031b70)
  • _purecall (Address: 0x180031ac0)
  • _unlock (Address: 0x180031b60)
  • _vscwprintf (Address: 0x180031a60)
  • _wcsicmp (Address: 0x180031ae8)
  • _wcsnicmp (Address: 0x180031a08)
  • _wfopen (Address: 0x180031a10)
  • _XcptFilter (Address: 0x180031b20)
  • ??_V@YAXPEAX@Z (Address: 0x180031ad0)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180031af0)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180031af8)
  • ??1exception@@UEAA@XZ (Address: 0x180031b00)
  • ??1type_info@@UEAA@XZ (Address: 0x180031b50)
  • ??3@YAXPEAX@Z (Address: 0x180031b28)
  • ?terminate@@YAXXZ (Address: 0x180031b48)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180031b08)
  • calloc (Address: 0x180031a80)
  • fclose (Address: 0x180031a40)
  • feof (Address: 0x180031a20)
  • fgetws (Address: 0x180031a28)
  • free (Address: 0x180031ab8)
  • iswalpha (Address: 0x180031a50)
  • malloc (Address: 0x180031ab0)
  • memcmp (Address: 0x180031a48)
  • memcpy_s (Address: 0x180031ac8)
  • memmove_s (Address: 0x180031a88)
  • memset (Address: 0x180031b78)
  • realloc (Address: 0x180031b40)
  • swscanf_s (Address: 0x180031a38)
  • towupper (Address: 0x180031a78)
  • vswprintf_s (Address: 0x180031a58)
  • wcscat_s (Address: 0x180031a98)
  • wcschr (Address: 0x180031a30)
  • wcscmp (Address: 0x180031b80)
  • wcscpy_s (Address: 0x180031aa0)
  • wcsncmp (Address: 0x180031a68)
  • wcsncpy_s (Address: 0x180031aa8)
  • wcsrchr (Address: 0x180031a90)
  • wcsstr (Address: 0x180031a70)
ntdll.dll
  • NtCreateFile (Address: 0x180031bc0)
  • NtWriteFile (Address: 0x180031bd8)
  • RtlDosPathNameToNtPathName_U (Address: 0x180031bc8)
  • RtlFreeUnicodeString (Address: 0x180031be8)
  • RtlIsPartialPlaceholder (Address: 0x180031be0)
  • RtlNtStatusToDosError (Address: 0x180031bd0)
  • WinSqmEndSession (Address: 0x180031bb8)
  • WinSqmIsOptedIn (Address: 0x180031bb0)
  • WinSqmSetDWORD (Address: 0x180031ba8)
  • WinSqmSetDWORD64 (Address: 0x180031b98)
  • WinSqmSetString (Address: 0x180031b90)
  • WinSqmStartSession (Address: 0x180031ba0)
OLEAUT32.dll
  • BSTR_UserFree (Address: 0x180031838)
  • BSTR_UserFree64 (Address: 0x180031868)
  • BSTR_UserMarshal (Address: 0x180031860)
  • BSTR_UserMarshal64 (Address: 0x180031850)
  • BSTR_UserSize (Address: 0x180031830)
  • BSTR_UserSize64 (Address: 0x180031870)
  • BSTR_UserUnmarshal (Address: 0x180031858)
  • BSTR_UserUnmarshal64 (Address: 0x180031840)
  • SysAllocString (Address: 0x180031890)
  • SysAllocStringLen (Address: 0x180031880)
  • SysFreeString (Address: 0x180031848)
  • SysStringLen (Address: 0x180031888)
  • VarUI4FromStr (Address: 0x180031878)
RPCRT4.dll
  • CStdStubBuffer_AddRef (Address: 0x180031930)
  • CStdStubBuffer_Connect (Address: 0x1800318d0)
  • CStdStubBuffer_CountRefs (Address: 0x180031908)
  • CStdStubBuffer_DebugServerQueryInterface (Address: 0x1800318b0)
  • CStdStubBuffer_DebugServerRelease (Address: 0x180031928)
  • CStdStubBuffer_Disconnect (Address: 0x1800318f0)
  • CStdStubBuffer_Invoke (Address: 0x1800318a0)
  • CStdStubBuffer_IsIIDSupported (Address: 0x1800318e0)
  • CStdStubBuffer_QueryInterface (Address: 0x180031910)
  • IUnknown_AddRef_Proxy (Address: 0x1800318a8)
  • IUnknown_QueryInterface_Proxy (Address: 0x1800318e8)
  • IUnknown_Release_Proxy (Address: 0x1800318c0)
  • NdrCStdStubBuffer_Release (Address: 0x1800318c8)
  • NdrDllCanUnloadNow (Address: 0x1800318d8)
  • NdrDllGetClassObject (Address: 0x1800318f8)
  • NdrDllRegisterProxy (Address: 0x180031920)
  • NdrDllUnregisterProxy (Address: 0x180031900)
  • NdrOleAllocate (Address: 0x180031918)
  • NdrOleFree (Address: 0x1800318b8)
SHELL32.dll
  • SHGetKnownFolderPath (Address: 0x180031940)
USER32.dll
  • CharNextW (Address: 0x180031958)
  • UnregisterClassW (Address: 0x180031950)