axeonoffhelper.dll

Description: Microsoft Assessment Execution Engine On/Off Helper Library

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.26100.4654

Architecture: 64-bit

Operating System: Windows NT

SHA256: 0abc3c86e06c15d13275f9667568c774

File Size: 94.3 KB

Uploaded At: Dec. 3, 2025, 2:41 a.m.

Views: 6

Exported Functions

  • AxeInitOnOffHelper (Ordinal: 1, Address: 0x9110)
  • AxeInitOnOffHelper2 (Ordinal: 2, Address: 0x9110)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x18000c368)
  • CloseServiceHandle (Address: 0x18000c378)
  • InitiateShutdownW (Address: 0x18000c3a8)
  • InitiateSystemShutdownExW (Address: 0x18000c3a0)
  • LookupPrivilegeValueW (Address: 0x18000c3c0)
  • OpenProcessToken (Address: 0x18000c3b8)
  • OpenSCManagerW (Address: 0x18000c390)
  • OpenServiceW (Address: 0x18000c388)
  • QueryServiceStatusEx (Address: 0x18000c380)
  • RegCloseKey (Address: 0x18000c3e0)
  • RegCreateKeyExW (Address: 0x18000c3d0)
  • RegDeleteValueW (Address: 0x18000c398)
  • RegFlushKey (Address: 0x18000c3c8)
  • RegOpenKeyExW (Address: 0x18000c3d8)
  • RegQueryValueExW (Address: 0x18000c3b0)
  • RegSetValueExW (Address: 0x18000c370)
KERNEL32.dll
  • CancelWaitableTimer (Address: 0x18000c500)
  • CloseHandle (Address: 0x18000c4b8)
  • CreateThread (Address: 0x18000c4c8)
  • CreateWaitableTimerW (Address: 0x18000c4e8)
  • DeleteCriticalSection (Address: 0x18000c568)
  • DeleteFileW (Address: 0x18000c510)
  • EnterCriticalSection (Address: 0x18000c3f0)
  • FindClose (Address: 0x18000c520)
  • FindFirstFileW (Address: 0x18000c508)
  • FindNextFileW (Address: 0x18000c518)
  • FindResourceExW (Address: 0x18000c498)
  • GetCurrentDirectoryW (Address: 0x18000c470)
  • GetCurrentProcess (Address: 0x18000c4b0)
  • GetCurrentProcessId (Address: 0x18000c410)
  • GetCurrentThreadId (Address: 0x18000c408)
  • GetEnvironmentVariableW (Address: 0x18000c4a0)
  • GetExitCodeThread (Address: 0x18000c4d8)
  • GetLastError (Address: 0x18000c468)
  • GetModuleHandleW (Address: 0x18000c460)
  • GetNativeSystemInfo (Address: 0x18000c4a8)
  • GetProcAddress (Address: 0x18000c458)
  • GetProcessHeap (Address: 0x18000c550)
  • GetSystemTimeAsFileTime (Address: 0x18000c400)
  • GetTickCount (Address: 0x18000c3f8)
  • GetVersionExW (Address: 0x18000c4c0)
  • GetWindowsDirectoryW (Address: 0x18000c528)
  • HeapAlloc (Address: 0x18000c548)
  • HeapDestroy (Address: 0x18000c558)
  • HeapFree (Address: 0x18000c540)
  • HeapReAlloc (Address: 0x18000c538)
  • HeapSize (Address: 0x18000c530)
  • InitializeCriticalSection (Address: 0x18000c560)
  • LeaveCriticalSection (Address: 0x18000c578)
  • LoadLibraryExW (Address: 0x18000c478)
  • LoadResource (Address: 0x18000c490)
  • LocalFree (Address: 0x18000c450)
  • LockResource (Address: 0x18000c488)
  • QueryPerformanceCounter (Address: 0x18000c418)
  • RaiseException (Address: 0x18000c570)
  • RtlCaptureContext (Address: 0x18000c448)
  • RtlLookupFunctionEntry (Address: 0x18000c440)
  • RtlVirtualUnwind (Address: 0x18000c438)
  • SetThreadExecutionState (Address: 0x18000c4f8)
  • SetUnhandledExceptionFilter (Address: 0x18000c428)
  • SetWaitableTimer (Address: 0x18000c4f0)
  • SizeofResource (Address: 0x18000c480)
  • Sleep (Address: 0x18000c4e0)
  • TerminateProcess (Address: 0x18000c420)
  • UnhandledExceptionFilter (Address: 0x18000c430)
  • WaitForSingleObject (Address: 0x18000c4d0)
msvcrt.dll
  • __C_specific_handler (Address: 0x18000c648)
  • __CxxFrameHandler3 (Address: 0x18000c6d0)
  • __dllonexit (Address: 0x18000c630)
  • _amsg_exit (Address: 0x18000c640)
  • _callnewh (Address: 0x18000c678)
  • _CxxThrowException (Address: 0x18000c650)
  • _initterm (Address: 0x18000c608)
  • _lock (Address: 0x18000c620)
  • _onexit (Address: 0x18000c638)
  • _purecall (Address: 0x18000c680)
  • _unlock (Address: 0x18000c628)
  • _vsnwprintf (Address: 0x18000c690)
  • _wcsicmp (Address: 0x18000c6a0)
  • _wgetenv (Address: 0x18000c688)
  • _XcptFilter (Address: 0x18000c6c8)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x18000c670)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x18000c668)
  • ??1exception@@UEAA@XZ (Address: 0x18000c660)
  • ??1type_info@@UEAA@XZ (Address: 0x18000c618)
  • ?terminate@@YAXXZ (Address: 0x18000c610)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x18000c658)
  • free (Address: 0x18000c6b8)
  • malloc (Address: 0x18000c6c0)
  • memcpy_s (Address: 0x18000c6b0)
  • memmove_s (Address: 0x18000c6a8)
  • memset (Address: 0x18000c6d8)
  • wcsrchr (Address: 0x18000c698)
ole32.dll
  • CoCreateInstance (Address: 0x18000c6e8)
OLEAUT32.dll
  • SysAllocString (Address: 0x18000c590)
  • SysAllocStringLen (Address: 0x18000c588)
  • SysFreeString (Address: 0x18000c598)
  • VariantClear (Address: 0x18000c5a8)
  • VariantInit (Address: 0x18000c5a0)
POWRPROF.dll
  • CallNtPowerInformation (Address: 0x18000c5b8)
  • SetSuspendState (Address: 0x18000c5c0)
SHELL32.dll
  • ShellExecuteExW (Address: 0x18000c5d0)
  • ShellExecuteW (Address: 0x18000c5d8)
USER32.dll
  • UnregisterClassA (Address: 0x18000c5e8)
WindowsPerformanceRecorderControl.dll
  • WPRCCreateInstanceUnderInstanceName (Address: 0x18000c5f8)