icsvc.dll

Description: Virtual Machine Integration Component Service

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6456

Architecture: 64-bit

Operating System: Windows NT

SHA256: af109968c563d447461d7a9fef113f20

File Size: 317.4 KB

Uploaded At: Dec. 1, 2025, 7:29 a.m.

Views: 8

Exported Functions

  • DllRegisterServer (Ordinal: 1, Address: 0x3bf0)
  • DllUnregisterServer (Ordinal: 2, Address: 0x3bf0)
  • GuestInterfaceServiceMain (Ordinal: 3, Address: 0x3a40)
  • HeartbeatServiceMain (Ordinal: 4, Address: 0x3a60)
  • KvpexchangeServiceMain (Ordinal: 5, Address: 0x3a70)
  • ShutdownServiceMain (Ordinal: 6, Address: 0x3a90)
  • TimesyncServiceMain (Ordinal: 7, Address: 0x3ab0)
  • VMSessionServiceMain (Ordinal: 8, Address: 0x3ad0)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x180037300)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x180037320)
  • CoImpersonateClient (Address: 0x180037348)
  • CoInitializeEx (Address: 0x180037340)
  • CoRegisterClassObject (Address: 0x180037310)
  • CoRevertToSelf (Address: 0x180037328)
  • CoRevokeClassObject (Address: 0x180037318)
  • CoSetProxyBlanket (Address: 0x180037338)
  • CoUninitialize (Address: 0x180037330)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x180037360)
  • IsDebuggerPresent (Address: 0x180037368)
  • OutputDebugStringW (Address: 0x180037358)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180037378)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180037388)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800373a0)
  • RaiseException (Address: 0x180037398)
  • SetLastError (Address: 0x1800373b8)
  • SetUnhandledExceptionFilter (Address: 0x1800373b0)
  • UnhandledExceptionFilter (Address: 0x1800373a8)
api-ms-win-core-file-l1-1-0.dll
  • CompareFileTime (Address: 0x180037400)
  • CreateDirectoryW (Address: 0x180037410)
  • CreateFileW (Address: 0x1800373f8)
  • DeleteFileW (Address: 0x1800373f0)
  • GetFileAttributesW (Address: 0x1800373e0)
  • GetVolumePathNameW (Address: 0x1800373e8)
  • ReadFile (Address: 0x1800373d8)
  • SetEndOfFile (Address: 0x1800373c8)
  • SetFilePointerEx (Address: 0x1800373d0)
  • WriteFile (Address: 0x180037408)
api-ms-win-core-file-l1-2-0.dll
  • GetVolumeNameForVolumeMountPointW (Address: 0x180037420)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180037430)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180037450)
  • HeapAlloc (Address: 0x180037458)
  • HeapDestroy (Address: 0x180037440)
  • HeapFree (Address: 0x180037448)
  • HeapReAlloc (Address: 0x180037468)
  • HeapSize (Address: 0x180037460)
api-ms-win-core-heap-l2-1-0.dll
  • LocalFree (Address: 0x180037478)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x180037488)
api-ms-win-core-io-l1-1-0.dll
  • CancelIoEx (Address: 0x1800374a0)
  • DeviceIoControl (Address: 0x180037498)
  • GetOverlappedResult (Address: 0x1800374a8)
api-ms-win-core-io-l1-1-1.dll
  • CancelIo (Address: 0x1800374b8)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • WTSGetActiveConsoleSessionId (Address: 0x1800374c8)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1800374d8)
  • GetModuleFileNameA (Address: 0x1800374f8)
  • GetModuleFileNameW (Address: 0x1800374f0)
  • GetModuleHandleExW (Address: 0x1800374e8)
  • GetModuleHandleW (Address: 0x180037500)
  • GetProcAddress (Address: 0x1800374e0)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x180037510)
  • LCMapStringEx (Address: 0x180037518)
api-ms-win-core-memory-l1-1-0.dll
  • CreateFileMappingW (Address: 0x180037540)
  • MapViewOfFile (Address: 0x180037528)
  • OpenFileMappingW (Address: 0x180037530)
  • UnmapViewOfFile (Address: 0x180037538)
api-ms-win-core-path-l1-1-0.dll
  • PathCchAddBackslash (Address: 0x180037558)
  • PathCchAppend (Address: 0x180037560)
  • PathCchCombine (Address: 0x180037568)
  • PathIsUNCEx (Address: 0x180037550)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x180037578)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessAsUserW (Address: 0x1800375b0)
  • CreateProcessW (Address: 0x1800375a8)
  • GetCurrentProcess (Address: 0x1800375a0)
  • GetCurrentProcessId (Address: 0x180037590)
  • GetCurrentThread (Address: 0x1800375b8)
  • GetCurrentThreadId (Address: 0x1800375c8)
  • GetExitCodeProcess (Address: 0x1800375d0)
  • OpenThreadToken (Address: 0x1800375c0)
  • ResumeThread (Address: 0x180037588)
  • SetThreadToken (Address: 0x1800375d8)
  • TerminateProcess (Address: 0x180037598)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x1800375e8)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1800375f8)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180037610)
  • RegCreateKeyExW (Address: 0x180037630)
  • RegDeleteValueW (Address: 0x180037608)
  • RegEnumValueW (Address: 0x180037640)
  • RegGetValueW (Address: 0x180037620)
  • RegOpenKeyExW (Address: 0x180037618)
  • RegQueryValueExW (Address: 0x180037638)
  • RegSetValueExW (Address: 0x180037628)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathIsFileSpecW (Address: 0x180037660)
  • PathIsRootW (Address: 0x180037668)
  • PathRemoveFileSpecW (Address: 0x180037650)
  • PathSkipRootW (Address: 0x180037670)
  • PathStripToRootW (Address: 0x180037658)
api-ms-win-core-shutdown-l1-1-0.dll
  • InitiateSystemShutdownExW (Address: 0x180037680)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringEx (Address: 0x180037698)
  • GetStringTypeW (Address: 0x180037690)
  • MultiByteToWideChar (Address: 0x1800376a0)
  • WideCharToMultiByte (Address: 0x1800376a8)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x180037708)
  • AcquireSRWLockShared (Address: 0x1800376e0)
  • CreateEventW (Address: 0x180037748)
  • CreateMutexExW (Address: 0x1800376f0)
  • CreateMutexW (Address: 0x1800376d8)
  • CreateSemaphoreExW (Address: 0x180037738)
  • DeleteCriticalSection (Address: 0x180037758)
  • EnterCriticalSection (Address: 0x180037730)
  • InitializeCriticalSection (Address: 0x180037760)
  • InitializeCriticalSectionEx (Address: 0x1800376c0)
  • LeaveCriticalSection (Address: 0x180037720)
  • OpenEventW (Address: 0x1800376d0)
  • OpenMutexW (Address: 0x1800376c8)
  • OpenSemaphoreW (Address: 0x1800376f8)
  • ReleaseMutex (Address: 0x180037718)
  • ReleaseSemaphore (Address: 0x180037728)
  • ReleaseSRWLockExclusive (Address: 0x180037710)
  • ReleaseSRWLockShared (Address: 0x1800376e8)
  • ResetEvent (Address: 0x1800376b8)
  • SetEvent (Address: 0x180037740)
  • WaitForSingleObject (Address: 0x180037750)
  • WaitForSingleObjectEx (Address: 0x180037700)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x180037778)
  • InitOnceComplete (Address: 0x180037770)
api-ms-win-core-synch-l1-2-1.dll
  • WaitForMultipleObjects (Address: 0x180037788)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetComputerNameExW (Address: 0x180037798)
  • GetSystemDirectoryW (Address: 0x1800377b8)
  • GetSystemInfo (Address: 0x1800377b0)
  • GetSystemTime (Address: 0x1800377a8)
  • GetSystemTimeAsFileTime (Address: 0x1800377c0)
  • GetVersionExW (Address: 0x1800377a0)
api-ms-win-core-sysinfo-l1-2-0.dll
  • GetProductInfo (Address: 0x1800377e0)
  • GetSystemTimePreciseAsFileTime (Address: 0x1800377d8)
  • SetSystemTime (Address: 0x1800377d0)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x180037810)
  • CloseThreadpoolWait (Address: 0x180037818)
  • CreateThreadpoolTimer (Address: 0x180037820)
  • CreateThreadpoolWait (Address: 0x1800377f0)
  • SetThreadpoolTimer (Address: 0x1800377f8)
  • SetThreadpoolWait (Address: 0x180037808)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180037800)
api-ms-win-core-timezone-l1-1-0.dll
  • FileTimeToSystemTime (Address: 0x180037830)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x180037848)
  • EncodePointer (Address: 0x180037840)
api-ms-win-crt-locale-l1-1-0.dll
  • _lock_locales (Address: 0x180037860)
  • _unlock_locales (Address: 0x180037858)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x1800379d8)
  • __CxxFrameHandler3 (Address: 0x180037928)
  • __CxxFrameHandler4 (Address: 0x1800379e0)
  • __std_terminate (Address: 0x1800379d0)
  • _CxxThrowException (Address: 0x180037920)
  • _o____lc_codepage_func (Address: 0x1800379c8)
  • _o____lc_collate_cp_func (Address: 0x1800379c0)
  • _o____lc_locale_name_func (Address: 0x1800379b8)
  • _o____mb_cur_max_func (Address: 0x1800379b0)
  • _o___pctype_func (Address: 0x1800379a8)
  • _o___std_exception_copy (Address: 0x1800379a0)
  • _o___std_exception_destroy (Address: 0x180037998)
  • _o___std_type_info_destroy_list (Address: 0x180037990)
  • _o___stdio_common_vsnprintf_s (Address: 0x180037988)
  • _o___stdio_common_vsnwprintf_s (Address: 0x180037980)
  • _o___stdio_common_vswprintf (Address: 0x180037978)
  • _o__beginthreadex (Address: 0x180037970)
  • _o__callnewh (Address: 0x180037968)
  • _o__calloc_base (Address: 0x180037960)
  • _o__cexit (Address: 0x180037958)
  • _o__configure_narrow_argv (Address: 0x180037950)
  • _o__crt_atexit (Address: 0x180037948)
  • _o__endthreadex (Address: 0x180037940)
  • _o__errno (Address: 0x180037938)
  • _o__execute_onexit_table (Address: 0x180037930)
  • _o__free_base (Address: 0x180037918)
  • _o__initialize_narrow_environment (Address: 0x180037870)
  • _o__initialize_onexit_table (Address: 0x180037878)
  • _o__invalid_parameter_noinfo (Address: 0x180037880)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x180037888)
  • _o__malloc_base (Address: 0x180037890)
  • _o__purecall (Address: 0x180037898)
  • _o__register_onexit_function (Address: 0x1800378a0)
  • _o__seh_filter_dll (Address: 0x1800378a8)
  • _o__wcsdup (Address: 0x1800378b0)
  • _o__wcsicmp (Address: 0x1800378b8)
  • _o__wtoi (Address: 0x1800378c8)
  • _o_abort (Address: 0x1800378d0)
  • _o_free (Address: 0x1800378d8)
  • _o_malloc (Address: 0x1800378e0)
  • _o_realloc (Address: 0x1800378e8)
  • _o_setlocale (Address: 0x1800378f0)
  • _o_terminate (Address: 0x1800378f8)
  • _o_wcscat_s (Address: 0x180037900)
  • _o_wcscpy_s (Address: 0x180037908)
  • _o_wcstok_s (Address: 0x180037910)
  • memcmp (Address: 0x1800379e8)
  • memcpy (Address: 0x1800379f0)
  • memmove (Address: 0x1800378c0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x180037a08)
  • _initterm_e (Address: 0x180037a00)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x180037a18)
  • strcmp (Address: 0x180037a20)
  • wcscmp (Address: 0x180037a28)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x180037a50)
  • EventRegister (Address: 0x180037a40)
  • EventSetInformation (Address: 0x180037a58)
  • EventUnregister (Address: 0x180037a48)
  • EventWriteTransfer (Address: 0x180037a38)
api-ms-win-eventlog-legacy-l1-1-0.dll
  • DeregisterEventSource (Address: 0x180037a70)
  • RegisterEventSourceW (Address: 0x180037a68)
  • ReportEventW (Address: 0x180037a78)
api-ms-win-power-base-l1-1-0.dll
  • GetPwrCapabilities (Address: 0x180037a88)
api-ms-win-security-base-l1-1-0.dll
  • AdjustTokenPrivileges (Address: 0x180037af8)
  • CheckTokenMembership (Address: 0x180037ab8)
  • CopySid (Address: 0x180037ad8)
  • CreateWellKnownSid (Address: 0x180037ad0)
  • GetLengthSid (Address: 0x180037ae0)
  • GetSecurityDescriptorDacl (Address: 0x180037ab0)
  • GetSidLengthRequired (Address: 0x180037ac0)
  • GetSidSubAuthority (Address: 0x180037aa8)
  • ImpersonateLoggedOnUser (Address: 0x180037ae8)
  • ImpersonateSelf (Address: 0x180037af0)
  • InitializeSid (Address: 0x180037a98)
  • IsValidSid (Address: 0x180037aa0)
  • RevertToSelf (Address: 0x180037b00)
  • SetTokenInformation (Address: 0x180037ac8)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupPrivilegeValueW (Address: 0x180037b10)
api-ms-win-security-provider-l1-1-0.dll
  • GetNamedSecurityInfoW (Address: 0x180037b20)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180037b30)
api-ms-win-security-trustee-l1-1-0.dll
  • BuildTrusteeWithSidW (Address: 0x180037b40)
api-ms-win-security-trustee-l1-1-1.dll
  • GetEffectiveRightsFromAclW (Address: 0x180037b50)
api-ms-win-service-core-l1-1-0.dll
  • RegisterServiceCtrlHandlerExW (Address: 0x180037b68)
  • SetServiceStatus (Address: 0x180037b60)
bcrypt.dll
  • BCryptGenRandom (Address: 0x180037b78)
CRYPT32.dll
  • CryptBinaryToStringA (Address: 0x1800371a8)
IPHLPAPI.DLL
  • ConvertLengthToIpv4Mask (Address: 0x1800371c8)
  • GetAdaptersAddresses (Address: 0x1800371b8)
  • GetIpForwardTable2 (Address: 0x1800371c0)
ntdll.dll
  • NtDuplicateToken (Address: 0x180037bc0)
  • NtQueryInformationToken (Address: 0x180037bc8)
  • RtlCaptureContext (Address: 0x180037ba0)
  • RtlIpv4StringToAddressW (Address: 0x180037bb8)
  • RtlIpv6StringToAddressW (Address: 0x180037b88)
  • RtlLoadString (Address: 0x180037bd8)
  • RtlLookupFunctionEntry (Address: 0x180037b98)
  • RtlVirtualUnwind (Address: 0x180037b90)
  • strchr (Address: 0x180037bb0)
  • wcschr (Address: 0x180037bd0)
  • wcsnlen (Address: 0x180037ba8)
OLEAUT32.dll
  • LoadRegTypeLib (Address: 0x180037238)
  • LoadTypeLib (Address: 0x180037230)
  • SafeArrayAccessData (Address: 0x180037220)
  • SafeArrayCreateVectorEx (Address: 0x180037208)
  • SafeArrayDestroy (Address: 0x1800371e8)
  • SafeArrayGetElemsize (Address: 0x180037240)
  • SafeArrayGetLBound (Address: 0x180037218)
  • SafeArrayGetUBound (Address: 0x1800371d8)
  • SafeArrayPutElement (Address: 0x1800371f0)
  • SafeArrayUnaccessData (Address: 0x180037228)
  • SysAllocString (Address: 0x180037200)
  • SysFreeString (Address: 0x1800371e0)
  • SysStringLen (Address: 0x180037248)
  • VariantClear (Address: 0x1800371f8)
  • VariantInit (Address: 0x180037210)
POWRPROF.dll
  • SetSuspendState (Address: 0x180037258)
RPCRT4.dll
  • RpcStringFreeW (Address: 0x180037280)
  • UuidCreate (Address: 0x180037268)
  • UuidFromStringW (Address: 0x180037278)
  • UuidToStringW (Address: 0x180037270)
vmbuspipe.dll
  • VmbusPipeClientEnumeratePipes (Address: 0x180037be8)
  • VmbusPipeClientOpenChannel (Address: 0x180037bf0)
WS2_32.dll
  • accept (Address: 0x1800372e8)
  • bind (Address: 0x1800372e0)
  • closesocket (Address: 0x1800372c0)
  • InetNtopW (Address: 0x180037290)
  • listen (Address: 0x1800372b0)
  • ntohl (Address: 0x1800372f0)
  • recv (Address: 0x1800372d8)
  • send (Address: 0x1800372a8)
  • socket (Address: 0x180037298)
  • WSAAddressToStringW (Address: 0x1800372b8)
  • WSACleanup (Address: 0x1800372c8)
  • WSAGetLastError (Address: 0x1800372a0)
  • WSAStartup (Address: 0x1800372d0)