axeonoffhelper.dll
Description: Microsoft Assessment Execution Engine On/Off Helper Library
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.26100.4654
Architecture: 64-bit
Operating System: Windows NT
SHA256: 0abc3c86e06c15d13275f9667568c774
File Size: 94.3 KB
Uploaded At: Dec. 3, 2025, 2:41 a.m.
Views: 6
Exported Functions
- AxeInitOnOffHelper (Ordinal: 1, Address: 0x9110)
- AxeInitOnOffHelper2 (Ordinal: 2, Address: 0x9110)
Imported DLLs & Functions
ADVAPI32.dll
- AdjustTokenPrivileges (Address: 0x18000c368)
- CloseServiceHandle (Address: 0x18000c378)
- InitiateShutdownW (Address: 0x18000c3a8)
- InitiateSystemShutdownExW (Address: 0x18000c3a0)
- LookupPrivilegeValueW (Address: 0x18000c3c0)
- OpenProcessToken (Address: 0x18000c3b8)
- OpenSCManagerW (Address: 0x18000c390)
- OpenServiceW (Address: 0x18000c388)
- QueryServiceStatusEx (Address: 0x18000c380)
- RegCloseKey (Address: 0x18000c3e0)
- RegCreateKeyExW (Address: 0x18000c3d0)
- RegDeleteValueW (Address: 0x18000c398)
- RegFlushKey (Address: 0x18000c3c8)
- RegOpenKeyExW (Address: 0x18000c3d8)
- RegQueryValueExW (Address: 0x18000c3b0)
- RegSetValueExW (Address: 0x18000c370)
KERNEL32.dll
- CancelWaitableTimer (Address: 0x18000c500)
- CloseHandle (Address: 0x18000c4b8)
- CreateThread (Address: 0x18000c4c8)
- CreateWaitableTimerW (Address: 0x18000c4e8)
- DeleteCriticalSection (Address: 0x18000c568)
- DeleteFileW (Address: 0x18000c510)
- EnterCriticalSection (Address: 0x18000c3f0)
- FindClose (Address: 0x18000c520)
- FindFirstFileW (Address: 0x18000c508)
- FindNextFileW (Address: 0x18000c518)
- FindResourceExW (Address: 0x18000c498)
- GetCurrentDirectoryW (Address: 0x18000c470)
- GetCurrentProcess (Address: 0x18000c4b0)
- GetCurrentProcessId (Address: 0x18000c410)
- GetCurrentThreadId (Address: 0x18000c408)
- GetEnvironmentVariableW (Address: 0x18000c4a0)
- GetExitCodeThread (Address: 0x18000c4d8)
- GetLastError (Address: 0x18000c468)
- GetModuleHandleW (Address: 0x18000c460)
- GetNativeSystemInfo (Address: 0x18000c4a8)
- GetProcAddress (Address: 0x18000c458)
- GetProcessHeap (Address: 0x18000c550)
- GetSystemTimeAsFileTime (Address: 0x18000c400)
- GetTickCount (Address: 0x18000c3f8)
- GetVersionExW (Address: 0x18000c4c0)
- GetWindowsDirectoryW (Address: 0x18000c528)
- HeapAlloc (Address: 0x18000c548)
- HeapDestroy (Address: 0x18000c558)
- HeapFree (Address: 0x18000c540)
- HeapReAlloc (Address: 0x18000c538)
- HeapSize (Address: 0x18000c530)
- InitializeCriticalSection (Address: 0x18000c560)
- LeaveCriticalSection (Address: 0x18000c578)
- LoadLibraryExW (Address: 0x18000c478)
- LoadResource (Address: 0x18000c490)
- LocalFree (Address: 0x18000c450)
- LockResource (Address: 0x18000c488)
- QueryPerformanceCounter (Address: 0x18000c418)
- RaiseException (Address: 0x18000c570)
- RtlCaptureContext (Address: 0x18000c448)
- RtlLookupFunctionEntry (Address: 0x18000c440)
- RtlVirtualUnwind (Address: 0x18000c438)
- SetThreadExecutionState (Address: 0x18000c4f8)
- SetUnhandledExceptionFilter (Address: 0x18000c428)
- SetWaitableTimer (Address: 0x18000c4f0)
- SizeofResource (Address: 0x18000c480)
- Sleep (Address: 0x18000c4e0)
- TerminateProcess (Address: 0x18000c420)
- UnhandledExceptionFilter (Address: 0x18000c430)
- WaitForSingleObject (Address: 0x18000c4d0)
msvcrt.dll
- __C_specific_handler (Address: 0x18000c648)
- __CxxFrameHandler3 (Address: 0x18000c6d0)
- __dllonexit (Address: 0x18000c630)
- _amsg_exit (Address: 0x18000c640)
- _callnewh (Address: 0x18000c678)
- _CxxThrowException (Address: 0x18000c650)
- _initterm (Address: 0x18000c608)
- _lock (Address: 0x18000c620)
- _onexit (Address: 0x18000c638)
- _purecall (Address: 0x18000c680)
- _unlock (Address: 0x18000c628)
- _vsnwprintf (Address: 0x18000c690)
- _wcsicmp (Address: 0x18000c6a0)
- _wgetenv (Address: 0x18000c688)
- _XcptFilter (Address: 0x18000c6c8)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x18000c670)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x18000c668)
- ??1exception@@UEAA@XZ (Address: 0x18000c660)
- ??1type_info@@UEAA@XZ (Address: 0x18000c618)
- ?terminate@@YAXXZ (Address: 0x18000c610)
- ?what@exception@@UEBAPEBDXZ (Address: 0x18000c658)
- free (Address: 0x18000c6b8)
- malloc (Address: 0x18000c6c0)
- memcpy_s (Address: 0x18000c6b0)
- memmove_s (Address: 0x18000c6a8)
- memset (Address: 0x18000c6d8)
- wcsrchr (Address: 0x18000c698)
ole32.dll
- CoCreateInstance (Address: 0x18000c6e8)
OLEAUT32.dll
- SysAllocString (Address: 0x18000c590)
- SysAllocStringLen (Address: 0x18000c588)
- SysFreeString (Address: 0x18000c598)
- VariantClear (Address: 0x18000c5a8)
- VariantInit (Address: 0x18000c5a0)
POWRPROF.dll
- CallNtPowerInformation (Address: 0x18000c5b8)
- SetSuspendState (Address: 0x18000c5c0)
SHELL32.dll
- ShellExecuteExW (Address: 0x18000c5d0)
- ShellExecuteW (Address: 0x18000c5d8)
USER32.dll
- UnregisterClassA (Address: 0x18000c5e8)
WindowsPerformanceRecorderControl.dll
- WPRCCreateInstanceUnderInstanceName (Address: 0x18000c5f8)