L2SecHC.dll
Description: Layer 2 Security Diagnostics Helper Classes
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 64-bit
Operating System: Windows NT
SHA256: 17b54fc6d0c777394f0f1d8d03249c37
File Size: 198.5 KB
Uploaded At: Dec. 1, 2025, 7:31 a.m.
Views: 7
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x1790)
- DllGetClassObject (Ordinal: 2, Address: 0x17d0)
- DllRegisterServer (Ordinal: 3, Address: 0x1910)
- DllUnregisterServer (Ordinal: 4, Address: 0x1a40)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CoCreateInstance (Address: 0x1800261e8)
- CoTaskMemAlloc (Address: 0x1800261f0)
- CoTaskMemFree (Address: 0x1800261e0)
- CoTaskMemRealloc (Address: 0x1800261d0)
- StringFromGUID2 (Address: 0x1800261d8)
api-ms-win-core-debug-l1-1-0.dll
- OutputDebugStringA (Address: 0x180026200)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180026228)
- RaiseException (Address: 0x180026218)
- SetLastError (Address: 0x180026220)
- SetUnhandledExceptionFilter (Address: 0x180026210)
- UnhandledExceptionFilter (Address: 0x180026230)
api-ms-win-core-file-l1-1-0.dll
- FileTimeToLocalFileTime (Address: 0x180026240)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180026250)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x180026278)
- HeapAlloc (Address: 0x180026260)
- HeapDestroy (Address: 0x180026288)
- HeapFree (Address: 0x180026268)
- HeapReAlloc (Address: 0x180026270)
- HeapSize (Address: 0x180026280)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180026298)
- LocalFree (Address: 0x1800262a0)
api-ms-win-core-io-l1-1-0.dll
- DeviceIoControl (Address: 0x1800262b0)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1800262f8)
- FindResourceExW (Address: 0x180026310)
- FreeLibrary (Address: 0x1800262f0)
- GetModuleFileNameA (Address: 0x180026320)
- GetModuleFileNameW (Address: 0x1800262e0)
- GetModuleHandleW (Address: 0x180026318)
- GetProcAddress (Address: 0x180026308)
- LoadLibraryExA (Address: 0x180026300)
- LoadLibraryExW (Address: 0x1800262d8)
- LoadResource (Address: 0x1800262d0)
- LoadStringW (Address: 0x1800262e8)
- LockResource (Address: 0x1800262c0)
- SizeofResource (Address: 0x1800262c8)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x180026338)
- GetThreadLocale (Address: 0x180026330)
- SetThreadLocale (Address: 0x180026340)
api-ms-win-core-memory-l1-1-0.dll
- VirtualProtect (Address: 0x180026358)
- VirtualQuery (Address: 0x180026350)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x180026368)
- GetCurrentProcessId (Address: 0x180026378)
- GetCurrentThreadId (Address: 0x180026370)
- TerminateProcess (Address: 0x180026380)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x180026390)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1800263a0)
api-ms-win-core-psapi-l1-1-0.dll
- K32EnumProcessModules (Address: 0x1800263b0)
- K32GetModuleBaseNameW (Address: 0x1800263b8)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1800263f8)
- RegCreateKeyExW (Address: 0x1800263d0)
- RegDeleteValueW (Address: 0x1800263d8)
- RegEnumKeyExW (Address: 0x1800263e8)
- RegOpenKeyExW (Address: 0x1800263e0)
- RegQueryInfoKeyW (Address: 0x1800263f0)
- RegQueryValueExW (Address: 0x180026400)
- RegSetValueExW (Address: 0x1800263c8)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x180026410)
api-ms-win-core-string-l2-1-0.dll
- CharNextW (Address: 0x180026420)
api-ms-win-core-string-obsolete-l1-1-0.dll
- lstrcmpiW (Address: 0x180026430)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x180026458)
- CreateEventW (Address: 0x180026478)
- DeleteCriticalSection (Address: 0x180026440)
- EnterCriticalSection (Address: 0x180026468)
- InitializeCriticalSection (Address: 0x180026450)
- LeaveCriticalSection (Address: 0x180026480)
- ReleaseSRWLockExclusive (Address: 0x180026460)
- SetEvent (Address: 0x180026448)
- WaitForSingleObject (Address: 0x180026470)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x180026490)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemInfo (Address: 0x1800264a0)
- GetSystemTime (Address: 0x1800264b0)
- GetSystemTimeAsFileTime (Address: 0x1800264b8)
- GetTickCount (Address: 0x1800264a8)
api-ms-win-core-timezone-l1-1-0.dll
- FileTimeToSystemTime (Address: 0x1800264c8)
- SystemTimeToFileTime (Address: 0x1800264d0)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- GetTraceEnableFlags (Address: 0x1800264e0)
- GetTraceEnableLevel (Address: 0x1800264e8)
- GetTraceLoggerHandle (Address: 0x1800264f0)
- RegisterTraceGuidsW (Address: 0x180026508)
- TraceMessage (Address: 0x1800264f8)
- UnregisterTraceGuids (Address: 0x180026500)
api-ms-win-eventing-provider-l1-1-0.dll
- EventProviderEnabled (Address: 0x180026528)
- EventRegister (Address: 0x180026518)
- EventSetInformation (Address: 0x180026538)
- EventUnregister (Address: 0x180026520)
- EventWriteTransfer (Address: 0x180026530)
api-ms-win-security-base-l1-1-0.dll
- CreateWellKnownSid (Address: 0x180026548)
msvcrt.dll
- __C_specific_handler (Address: 0x180026678)
- __CxxFrameHandler3 (Address: 0x180026688)
- __dllonexit (Address: 0x180026650)
- _amsg_exit (Address: 0x1800265f0)
- _callnewh (Address: 0x180026580)
- _CxxThrowException (Address: 0x1800265a8)
- _errno (Address: 0x180026610)
- _initterm (Address: 0x1800265f8)
- _lock (Address: 0x180026628)
- _onexit (Address: 0x180026658)
- _purecall (Address: 0x1800265c8)
- _unlock (Address: 0x180026630)
- _vscwprintf (Address: 0x180026698)
- _vsnwprintf (Address: 0x180026578)
- _wcsupr (Address: 0x1800265d8)
- _XcptFilter (Address: 0x1800265e8)
- ??_V@YAXPEAX@Z (Address: 0x180026680)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180026588)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180026590)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x180026598)
- ??1exception@@UEAA@XZ (Address: 0x1800266a0)
- ??1type_info@@UEAA@XZ (Address: 0x180026608)
- ??3@YAXPEAX@Z (Address: 0x180026568)
- ?terminate@@YAXXZ (Address: 0x180026600)
- ?what@exception@@UEBAPEBDXZ (Address: 0x1800265a0)
- free (Address: 0x180026648)
- malloc (Address: 0x180026668)
- memcmp (Address: 0x180026690)
- memcpy (Address: 0x1800265b0)
- memcpy_s (Address: 0x180026640)
- memmove (Address: 0x1800265e0)
- memmove_s (Address: 0x180026560)
- memset (Address: 0x180026660)
- realloc (Address: 0x180026618)
- toupper (Address: 0x1800265b8)
- vswprintf_s (Address: 0x180026558)
- wcscat_s (Address: 0x180026620)
- wcscmp (Address: 0x1800266a8)
- wcscpy_s (Address: 0x180026638)
- wcsncmp (Address: 0x1800265c0)
- wcsncpy_s (Address: 0x180026670)
- wcsnlen (Address: 0x1800265d0)
- wcsstr (Address: 0x180026570)
ntdll.dll
- EtwEventWriteTransfer (Address: 0x1800266d0)
- EtwTraceMessage (Address: 0x1800266b8)
- NtOpenFile (Address: 0x1800266c0)
- RtlCaptureContext (Address: 0x1800266e8)
- RtlInitUnicodeString (Address: 0x1800266f0)
- RtlLookupFunctionEntry (Address: 0x1800266e0)
- RtlNtStatusToDosError (Address: 0x1800266c8)
- RtlVirtualUnwind (Address: 0x1800266d8)
OLEAUT32.dll
- LoadTypeLib (Address: 0x1800260e8)
- RegisterTypeLib (Address: 0x1800260d8)
- SysAllocString (Address: 0x1800260e0)
- SysFreeString (Address: 0x1800260d0)
- SysStringLen (Address: 0x1800260f8)
- UnRegisterTypeLib (Address: 0x1800260c8)
- VarUI4FromStr (Address: 0x1800260f0)
RPCRT4.dll
- NdrClientCall3 (Address: 0x180026128)
- RpcBindingFree (Address: 0x180026140)
- RpcBindingFromStringBindingW (Address: 0x180026150)
- RpcBindingSetAuthInfoExW (Address: 0x180026130)
- RpcBindingSetOption (Address: 0x180026118)
- RpcEpResolveBinding (Address: 0x180026138)
- RpcExceptionFilter (Address: 0x180026120)
- RpcMgmtInqServerPrincNameW (Address: 0x180026110)
- RpcStringBindingComposeW (Address: 0x180026108)
- RpcStringFreeW (Address: 0x180026160)
- UuidFromStringW (Address: 0x180026148)
- UuidToStringW (Address: 0x180026158)
SETUPAPI.dll
- SetupDiCallClassInstaller (Address: 0x1800261c0)
- SetupDiCreateDeviceInfoListExW (Address: 0x180026188)
- SetupDiDestroyDeviceInfoList (Address: 0x180026190)
- SetupDiEnumDeviceInfo (Address: 0x1800261b0)
- SetupDiGetClassDevsW (Address: 0x1800261b8)
- SetupDiGetDeviceInstallParamsW (Address: 0x180026170)
- SetupDiGetDeviceInstanceIdW (Address: 0x1800261a0)
- SetupDiGetDeviceRegistryPropertyW (Address: 0x1800261a8)
- SetupDiOpenDeviceInfoW (Address: 0x180026180)
- SetupDiOpenDevRegKey (Address: 0x180026198)
- SetupDiSetClassInstallParamsW (Address: 0x180026178)