aeinv.dll
Description: Application Inventory Component
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.26100.4654
Architecture: 64-bit
Operating System: Windows NT
SHA256: ead141c91efccace88b803022397a696
File Size: 1.2 MB
Uploaded At: Dec. 3, 2025, 2:36 a.m.
Views: 6
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- CreateAppxPackageInventory (Ordinal: 1, Address: 0x59b60)
- CreateAppxPackageInventoryExtracted (Ordinal: 2, Address: 0x59cc0)
- CreateSoftwareInventory (Ordinal: 3, Address: 0x5a110)
- GetAppInfo2 (Ordinal: 4, Address: 0x44a90)
- GetAppInfo (Ordinal: 5, Address: 0x5ae90)
- GetAppInventory (Ordinal: 6, Address: 0x5aed0)
- GetApplicationKBsTC2 (Ordinal: 7, Address: 0x5d220)
- GetCachedAppInventory (Ordinal: 8, Address: 0x5d230)
- GetDetailedAppInventory (Ordinal: 9, Address: 0x651f0)
- GetDetailedAppInventoryFile (Ordinal: 10, Address: 0x662b0)
- GetDetailedAppInventoryOrphanFile (Ordinal: 11, Address: 0x667b0)
- UpdateSoftwareInventoryW (Ordinal: 12, Address: 0x6cbe0)
- UpdateSoftwareInventoryWTCEx (Ordinal: 13, Address: 0x6d0c0)
Imported DLLs & Functions
ADVAPI32.dll
- ConvertSidToStringSidW (Address: 0x1800cdb60)
- CryptAcquireContextW (Address: 0x1800cdab0)
- CryptCreateHash (Address: 0x1800cdae0)
- CryptDestroyHash (Address: 0x1800cdac0)
- CryptGetHashParam (Address: 0x1800cdac8)
- CryptHashData (Address: 0x1800cdab8)
- CryptReleaseContext (Address: 0x1800cdad0)
- EventRegister (Address: 0x1800cdb18)
- EventUnregister (Address: 0x1800cdae8)
- EventWriteTransfer (Address: 0x1800cdb08)
- GetTokenInformation (Address: 0x1800cdb50)
- InitializeSecurityDescriptor (Address: 0x1800cdaf8)
- OpenProcessToken (Address: 0x1800cdb70)
- OpenThreadToken (Address: 0x1800cdb68)
- RegCloseKey (Address: 0x1800cdb58)
- RegDeleteKeyValueW (Address: 0x1800cdb48)
- RegEnumKeyExW (Address: 0x1800cdb30)
- RegGetValueW (Address: 0x1800cdb10)
- RegLoadAppKeyW (Address: 0x1800cdb20)
- RegOpenKeyExW (Address: 0x1800cdb28)
- RegQueryInfoKeyW (Address: 0x1800cdb38)
- RegSetKeyValueW (Address: 0x1800cdb40)
- SetEntriesInAclW (Address: 0x1800cdaf0)
- SetSecurityDescriptorDacl (Address: 0x1800cdb00)
- TraceEvent (Address: 0x1800cdad8)
KERNEL32.dll
- AcquireSRWLockExclusive (Address: 0x1800cdc70)
- AcquireSRWLockShared (Address: 0x1800cdc98)
- CloseHandle (Address: 0x1800cdcf8)
- CloseThreadpoolTimer (Address: 0x1800cdc68)
- CreateActCtxW (Address: 0x1800cdf10)
- CreateEventExW (Address: 0x1800cde70)
- CreateEventW (Address: 0x1800cdd58)
- CreateFileMappingW (Address: 0x1800cddd0)
- CreateFileW (Address: 0x1800cdbe0)
- CreateMutexExW (Address: 0x1800cdde8)
- CreateMutexW (Address: 0x1800cddf0)
- CreateSemaphoreExW (Address: 0x1800cde90)
- CreateSemaphoreW (Address: 0x1800cdd50)
- CreateThread (Address: 0x1800cde68)
- CreateThreadpoolTimer (Address: 0x1800cde48)
- CreateWaitableTimerW (Address: 0x1800cdd40)
- DebugBreak (Address: 0x1800cdc00)
- DecodePointer (Address: 0x1800cdee8)
- DelayLoadFailureHook (Address: 0x1800cdec8)
- DeleteCriticalSection (Address: 0x1800cde78)
- DeviceIoControl (Address: 0x1800cdbb0)
- EncodePointer (Address: 0x1800cdee0)
- EnterCriticalSection (Address: 0x1800cdd68)
- ExpandEnvironmentStringsW (Address: 0x1800cdb88)
- FileTimeToSystemTime (Address: 0x1800cdd80)
- FindClose (Address: 0x1800cdf00)
- FindFirstFileW (Address: 0x1800cdc10)
- FindNextFileW (Address: 0x1800cdc18)
- FormatMessageW (Address: 0x1800cdc50)
- FreeEnvironmentStringsW (Address: 0x1800cdf40)
- FreeLibrary (Address: 0x1800cdf08)
- GetCommandLineW (Address: 0x1800cdba8)
- GetCurrentDirectoryW (Address: 0x1800cddf8)
- GetCurrentProcess (Address: 0x1800cde50)
- GetCurrentProcessId (Address: 0x1800cdde0)
- GetCurrentThread (Address: 0x1800cdcd0)
- GetCurrentThreadId (Address: 0x1800cdc48)
- GetEnvironmentStringsW (Address: 0x1800cdf38)
- GetFileAttributesW (Address: 0x1800cdd98)
- GetFileTime (Address: 0x1800cde08)
- GetFullPathNameW (Address: 0x1800cdbc8)
- GetLastError (Address: 0x1800cdc58)
- GetLocalTime (Address: 0x1800cdbf8)
- GetLogicalDriveStringsW (Address: 0x1800cdf28)
- GetLongPathNameW (Address: 0x1800cdcb0)
- GetModuleFileNameA (Address: 0x1800cde88)
- GetModuleFileNameW (Address: 0x1800cdbd8)
- GetModuleHandleExA (Address: 0x1800cdbf0)
- GetModuleHandleExW (Address: 0x1800cdc38)
- GetModuleHandleW (Address: 0x1800cdca8)
- GetProcAddress (Address: 0x1800cdc90)
- GetProcessHeap (Address: 0x1800cdca0)
- GetProcessTimes (Address: 0x1800cde58)
- GetStringTypeW (Address: 0x1800cded8)
- GetSystemDirectoryW (Address: 0x1800cdd90)
- GetSystemInfo (Address: 0x1800cdbe8)
- GetSystemPowerStatus (Address: 0x1800cde40)
- GetSystemTimeAsFileTime (Address: 0x1800cdd70)
- GetTickCount (Address: 0x1800cdcc0)
- GetVolumeInformationByHandleW (Address: 0x1800cdbb8)
- HeapAlloc (Address: 0x1800cdc88)
- HeapFree (Address: 0x1800cdc28)
- HeapReAlloc (Address: 0x1800cdda8)
- InitializeCriticalSection (Address: 0x1800cde00)
- InitializeCriticalSectionEx (Address: 0x1800cde80)
- InitializeSRWLock (Address: 0x1800cdb90)
- InitOnceExecuteOnce (Address: 0x1800cdbc0)
- IsDebuggerPresent (Address: 0x1800cddb8)
- K32EnumProcesses (Address: 0x1800cde10)
- K32GetProcessMemoryInfo (Address: 0x1800cde60)
- LeaveCriticalSection (Address: 0x1800cdd60)
- LoadLibraryExA (Address: 0x1800cdec0)
- LoadLibraryExW (Address: 0x1800cdcf0)
- LoadLibraryW (Address: 0x1800cdce8)
- LocalAlloc (Address: 0x1800cdd88)
- LocaleNameToLCID (Address: 0x1800cdd78)
- LocalFree (Address: 0x1800cdd38)
- MapViewOfFile (Address: 0x1800cddc8)
- MultiByteToWideChar (Address: 0x1800cded0)
- OpenFileMappingW (Address: 0x1800cddd8)
- OpenProcess (Address: 0x1800cde18)
- OpenSemaphoreW (Address: 0x1800cde98)
- OpenWaitableTimerW (Address: 0x1800cdd48)
- OutputDebugStringA (Address: 0x1800cdbd0)
- OutputDebugStringW (Address: 0x1800cddb0)
- QueryActCtxW (Address: 0x1800cdf18)
- QueryDosDeviceW (Address: 0x1800cdf30)
- QueryFullProcessImageNameW (Address: 0x1800cde20)
- QueryPerformanceCounter (Address: 0x1800cdeb8)
- QueryThreadCycleTime (Address: 0x1800cdcc8)
- QueryUnbiasedInterruptTime (Address: 0x1800cde38)
- RaiseException (Address: 0x1800cdba0)
- RegisterWaitForSingleObject (Address: 0x1800cde28)
- ReleaseActCtx (Address: 0x1800cdf20)
- ReleaseMutex (Address: 0x1800cdd08)
- ReleaseSemaphore (Address: 0x1800cdd28)
- ReleaseSRWLockExclusive (Address: 0x1800cdc60)
- ReleaseSRWLockShared (Address: 0x1800cdc80)
- SetEvent (Address: 0x1800cdd10)
- SetLastError (Address: 0x1800cdc30)
- SetNamedPipeHandleState (Address: 0x1800cdc20)
- SetThreadpoolTimer (Address: 0x1800cdc78)
- SetUnhandledExceptionFilter (Address: 0x1800cdea8)
- SetWaitableTimer (Address: 0x1800cdd20)
- SignalObjectAndWait (Address: 0x1800cdda0)
- Sleep (Address: 0x1800cdcd8)
- SleepConditionVariableSRW (Address: 0x1800cdef8)
- TerminateProcess (Address: 0x1800cdeb0)
- TryAcquireSRWLockExclusive (Address: 0x1800cdb98)
- UnhandledExceptionFilter (Address: 0x1800cdea0)
- UnmapViewOfFile (Address: 0x1800cdd00)
- UnregisterWait (Address: 0x1800cde30)
- VerifyVersionInfoW (Address: 0x1800cdce0)
- WaitForMultipleObjects (Address: 0x1800cdd30)
- WaitForSingleObject (Address: 0x1800cdd18)
- WaitForSingleObjectEx (Address: 0x1800cddc0)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800cdc40)
- WaitNamedPipeW (Address: 0x1800cdc08)
- WakeAllConditionVariable (Address: 0x1800cdef0)
- WideCharToMultiByte (Address: 0x1800cdcb8)
- WriteFile (Address: 0x1800cdb80)
msi.dll
- (Address: 0x1800ce000)
- (Address: 0x1800ce008)
- (Address: 0x1800ce010)
- (Address: 0x1800ce018)
- (Address: 0x1800ce020)
- (Address: 0x1800ce028)
- (Address: 0x1800ce030)
- (Address: 0x1800ce038)
- (Address: 0x1800ce040)
- (Address: 0x1800ce048)
- (Address: 0x1800ce050)
- (Address: 0x1800ce058)
msvcrt.dll
- ___lc_codepage_func (Address: 0x1800ce198)
- ___lc_collate_cp_func (Address: 0x1800ce130)
- ___lc_handle_func (Address: 0x1800ce1a0)
- ___mb_cur_max_func (Address: 0x1800ce1a8)
- __C_specific_handler (Address: 0x1800ce240)
- __crtCompareStringW (Address: 0x1800ce078)
- __crtLCMapStringA (Address: 0x1800ce088)
- __crtLCMapStringW (Address: 0x1800ce080)
- __CxxFrameHandler3 (Address: 0x1800ce390)
- __dllonexit (Address: 0x1800ce220)
- __mb_cur_max (Address: 0x1800ce290)
- __pctype_func (Address: 0x1800ce170)
- __uncaught_exception (Address: 0x1800ce158)
- _amsg_exit (Address: 0x1800ce260)
- _CxxThrowException (Address: 0x1800ce280)
- _errno (Address: 0x1800ce340)
- _fseeki64 (Address: 0x1800ce2a0)
- _initterm (Address: 0x1800ce248)
- _ismbblead (Address: 0x1800ce190)
- _lock (Address: 0x1800ce230)
- _onexit (Address: 0x1800ce218)
- _purecall (Address: 0x1800ce370)
- _set_errno (Address: 0x1800ce330)
- _unlock (Address: 0x1800ce228)
- _vscwprintf (Address: 0x1800ce2c8)
- _vsnprintf (Address: 0x1800ce300)
- _vsnwprintf (Address: 0x1800ce380)
- _vsnwprintf_s (Address: 0x1800ce2c0)
- _wcsdup (Address: 0x1800ce070)
- _wcsicmp (Address: 0x1800ce318)
- _wcslwr (Address: 0x1800ce140)
- _wcsnicmp (Address: 0x1800ce2f8)
- _wfsopen (Address: 0x1800ce180)
- _wsetlocale (Address: 0x1800ce090)
- _wsplitpath_s (Address: 0x1800ce120)
- _wtoi (Address: 0x1800ce0e0)
- _wtoi64 (Address: 0x1800ce0d0)
- _XcptFilter (Address: 0x1800ce268)
- ??0bad_cast@@QEAA@AEBV0@@Z (Address: 0x1800ce1f8)
- ??0bad_cast@@QEAA@PEBD@Z (Address: 0x1800ce1e8)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x1800ce2f0)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x1800ce288)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x1800ce358)
- ??0exception@@QEAA@XZ (Address: 0x1800ce360)
- ??1bad_cast@@UEAA@XZ (Address: 0x1800ce1f0)
- ??1exception@@UEAA@XZ (Address: 0x1800ce368)
- ??1type_info@@UEAA@XZ (Address: 0x1800ce210)
- ?terminate@@YAXXZ (Address: 0x1800ce238)
- ?what@exception@@UEBAPEBDXZ (Address: 0x1800ce310)
- abort (Address: 0x1800ce098)
- calloc (Address: 0x1800ce160)
- fclose (Address: 0x1800ce200)
- fflush (Address: 0x1800ce2b8)
- fgetc (Address: 0x1800ce0c8)
- fgetpos (Address: 0x1800ce298)
- fgetwc (Address: 0x1800ce388)
- fputc (Address: 0x1800ce1c0)
- fputwc (Address: 0x1800ce0c0)
- free (Address: 0x1800ce258)
- fseek (Address: 0x1800ce188)
- fsetpos (Address: 0x1800ce2a8)
- fwrite (Address: 0x1800ce208)
- isdigit (Address: 0x1800ce1c8)
- islower (Address: 0x1800ce068)
- isupper (Address: 0x1800ce168)
- iswalpha (Address: 0x1800ce2d0)
- iswcntrl (Address: 0x1800ce2e8)
- iswdigit (Address: 0x1800ce0e8)
- iswprint (Address: 0x1800ce1b8)
- iswspace (Address: 0x1800ce150)
- malloc (Address: 0x1800ce250)
- memcmp (Address: 0x1800ce0d8)
- memcpy (Address: 0x1800ce278)
- memcpy_s (Address: 0x1800ce378)
- memmove (Address: 0x1800ce270)
- memmove_s (Address: 0x1800ce1b0)
- memset (Address: 0x1800ce0a0)
- realloc (Address: 0x1800ce1e0)
- setlocale (Address: 0x1800ce178)
- setvbuf (Address: 0x1800ce2b0)
- sprintf_s (Address: 0x1800ce350)
- strchr (Address: 0x1800ce328)
- strcpy_s (Address: 0x1800ce138)
- strncmp (Address: 0x1800ce0f8)
- strncpy_s (Address: 0x1800ce348)
- strtol (Address: 0x1800ce338)
- tolower (Address: 0x1800ce2d8)
- toupper (Address: 0x1800ce100)
- towlower (Address: 0x1800ce2e0)
- towupper (Address: 0x1800ce1d0)
- ungetc (Address: 0x1800ce0b8)
- ungetwc (Address: 0x1800ce0b0)
- wcscat_s (Address: 0x1800ce148)
- wcschr (Address: 0x1800ce110)
- wcscmp (Address: 0x1800ce398)
- wcscpy_s (Address: 0x1800ce320)
- wcsncmp (Address: 0x1800ce0f0)
- wcspbrk (Address: 0x1800ce128)
- wcsrchr (Address: 0x1800ce108)
- wcsspn (Address: 0x1800ce0a8)
- wcsstr (Address: 0x1800ce308)
- wcstok_s (Address: 0x1800ce1d8)
- wcstoul (Address: 0x1800ce118)
ntdll.dll
- EtwEventRegister (Address: 0x1800ce4b0)
- EtwEventUnregister (Address: 0x1800ce4c0)
- EtwEventWrite (Address: 0x1800ce4b8)
- EtwEventWriteNoRegistration (Address: 0x1800ce558)
- EtwTraceMessage (Address: 0x1800ce480)
- LdrGetDllHandle (Address: 0x1800ce590)
- LdrGetProcedureAddress (Address: 0x1800ce5a0)
- LdrResSearchResource (Address: 0x1800ce3b0)
- NtClose (Address: 0x1800ce5c0)
- NtCreateFile (Address: 0x1800ce5b0)
- NtQueryInformationFile (Address: 0x1800ce5b8)
- RtlAllocateAndInitializeSid (Address: 0x1800ce560)
- RtlAllocateHeap (Address: 0x1800ce510)
- RtlAnsiStringToUnicodeString (Address: 0x1800ce4a0)
- RtlAppendUnicodeStringToString (Address: 0x1800ce470)
- RtlAppendUnicodeToString (Address: 0x1800ce460)
- RtlCaptureContext (Address: 0x1800ce550)
- RtlCompareMemory (Address: 0x1800ce490)
- RtlComputeCrc32 (Address: 0x1800ce488)
- RtlCopyUnicodeString (Address: 0x1800ce538)
- RtlDeleteCriticalSection (Address: 0x1800ce518)
- RtlDosPathNameToNtPathName_U_WithStatus (Address: 0x1800ce520)
- RtlDosPathNameToRelativeNtPathName_U_WithStatus (Address: 0x1800ce5a8)
- RtlEnterCriticalSection (Address: 0x1800ce4f8)
- RtlEqualString (Address: 0x1800ce508)
- RtlFormatCurrentUserKeyPath (Address: 0x1800ce3d0)
- RtlFreeHeap (Address: 0x1800ce4d0)
- RtlFreeSid (Address: 0x1800ce570)
- RtlFreeUnicodeString (Address: 0x1800ce430)
- RtlGetFullPathName_UEx (Address: 0x1800ce400)
- RtlGetNativeSystemInformation (Address: 0x1800ce410)
- RtlGetVersion (Address: 0x1800ce5c8)
- RtlInitAnsiString (Address: 0x1800ce4f0)
- RtlInitializeCriticalSection (Address: 0x1800ce4d8)
- RtlInitString (Address: 0x1800ce598)
- RtlInitUnicodeString (Address: 0x1800ce588)
- RtlInitUnicodeStringEx (Address: 0x1800ce3e0)
- RtlLeaveCriticalSection (Address: 0x1800ce4c8)
- RtlLookupFunctionEntry (Address: 0x1800ce548)
- RtlMultiByteToUnicodeN (Address: 0x1800ce4e8)
- RtlNtPathNameToDosPathName (Address: 0x1800ce468)
- RtlNtStatusToDosError (Address: 0x1800ce568)
- RtlpEnsureBufferSize (Address: 0x1800ce418)
- RtlReAllocateHeap (Address: 0x1800ce500)
- RtlRunOnceExecuteOnce (Address: 0x1800ce530)
- RtlSecondsSince1970ToTime (Address: 0x1800ce408)
- RtlTimeToTimeFields (Address: 0x1800ce450)
- RtlUpcaseUnicodeChar (Address: 0x1800ce448)
- RtlUpcaseUnicodeString (Address: 0x1800ce440)
- RtlVerifyVersionInfo (Address: 0x1800ce3f8)
- RtlVirtualUnwind (Address: 0x1800ce540)
- RtlxAnsiStringToUnicodeSize (Address: 0x1800ce428)
- VerSetConditionMask (Address: 0x1800ce580)
- WinSqmIsOptedInEx (Address: 0x1800ce578)
- ZwClose (Address: 0x1800ce4a8)
- ZwCreateFile (Address: 0x1800ce458)
- ZwCreateSection (Address: 0x1800ce438)
- ZwEnumerateKey (Address: 0x1800ce4e0)
- ZwEnumerateValueKey (Address: 0x1800ce528)
- ZwMapViewOfSection (Address: 0x1800ce3d8)
- ZwOpenFile (Address: 0x1800ce3c0)
- ZwOpenKey (Address: 0x1800ce3a8)
- ZwQueryDirectoryFile (Address: 0x1800ce3f0)
- ZwQueryInformationFile (Address: 0x1800ce3b8)
- ZwQueryInformationProcess (Address: 0x1800ce420)
- ZwQuerySystemInformation (Address: 0x1800ce498)
- ZwQueryValueKey (Address: 0x1800ce3c8)
- ZwSetInformationProcess (Address: 0x1800ce3e8)
- ZwUnmapViewOfSection (Address: 0x1800ce478)
OLEAUT32.dll
- SysAllocString (Address: 0x1800cdf78)
- SysFreeString (Address: 0x1800cdf58)
- SysStringLen (Address: 0x1800cdf60)
- VariantChangeType (Address: 0x1800cdf70)
- VariantClear (Address: 0x1800cdf68)
- VariantCopy (Address: 0x1800cdf50)
- VariantInit (Address: 0x1800cdf80)
RPCRT4.dll
- UuidCreate (Address: 0x1800cdf90)
SHLWAPI.dll
- (Address: 0x1800cdfa0)
- PathCommonPrefixW (Address: 0x1800cdfb0)
- PathFileExistsW (Address: 0x1800cdfc0)
- PathFindFileNameW (Address: 0x1800cdfb8)
- PathIsNetworkPathW (Address: 0x1800cdfd0)
- PathUnExpandEnvStringsW (Address: 0x1800cdfc8)
- SHCreateStreamOnFileEx (Address: 0x1800cdfa8)
VERSION.dll
- GetFileVersionInfoSizeW (Address: 0x1800cdff0)
- GetFileVersionInfoW (Address: 0x1800cdfe0)
- VerQueryValueW (Address: 0x1800cdfe8)