windowsperformancerecordercontrol.dll
Description: Microsoft Windows Performance Recorder Control Library
Authors: © 2024 Microsoft Corporation. All rights reserved.
Version: 10.0.26100.4654
Architecture: 64-bit
Operating System: Windows NT
SHA256: 490dbae33df931d61fa76b88c5b5ff9d
File Size: 1.2 MB
Uploaded At: Dec. 3, 2025, 2:42 a.m.
Views: 6
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0xf2f0)
- DllGetClassObject (Ordinal: 2, Address: 0xf320)
- DllRegisterServer (Ordinal: 3, Address: 0x7f70)
- DllUnregisterServer (Ordinal: 4, Address: 0x7f70)
- WPRCControlLogging (Ordinal: 5, Address: 0x71540)
- WPRCCreateInstance (Ordinal: 6, Address: 0x71700)
- WPRCCreateInstanceUnderInstanceName (Ordinal: 7, Address: 0x71730)
- WPRCDisableBuiltinProfiles (Ordinal: 8, Address: 0x71ab0)
- WPRCFormatError (Ordinal: 9, Address: 0x71ad0)
- WPRCQueryBuiltInProfiles (Ordinal: 10, Address: 0x71cc0)
- WPRCReleaseInstanceByName (Ordinal: 11, Address: 0x71de0)
- WPRCRemoveLogging (Ordinal: 12, Address: 0x71ec0)
Imported DLLs & Functions
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1800a1fd8)
- IsDebuggerPresent (Address: 0x1800a1fe0)
- OutputDebugStringW (Address: 0x1800a1fe8)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1800a1ff8)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1800a2008)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1800a2020)
- RaiseException (Address: 0x1800a2018)
- SetLastError (Address: 0x1800a2028)
- SetUnhandledExceptionFilter (Address: 0x1800a2038)
- UnhandledExceptionFilter (Address: 0x1800a2030)
api-ms-win-core-file-l1-1-0.dll
- CreateDirectoryW (Address: 0x1800a20a8)
- CreateFileW (Address: 0x1800a20b0)
- DeleteFileW (Address: 0x1800a20e8)
- FindClose (Address: 0x1800a2078)
- FindFirstFileExW (Address: 0x1800a20c0)
- FindFirstFileW (Address: 0x1800a20d0)
- FindFirstVolumeW (Address: 0x1800a2090)
- FindNextFileW (Address: 0x1800a2098)
- FindNextVolumeW (Address: 0x1800a2088)
- FindVolumeClose (Address: 0x1800a2080)
- GetFileAttributesW (Address: 0x1800a20b8)
- GetFileSize (Address: 0x1800a2068)
- GetFileTime (Address: 0x1800a2058)
- GetFinalPathNameByHandleW (Address: 0x1800a2048)
- GetFullPathNameW (Address: 0x1800a20f0)
- GetTempFileNameW (Address: 0x1800a20d8)
- QueryDosDeviceW (Address: 0x1800a20a0)
- ReadFile (Address: 0x1800a2070)
- RemoveDirectoryW (Address: 0x1800a20e0)
- SetFilePointer (Address: 0x1800a2060)
- SetFilePointerEx (Address: 0x1800a20c8)
- WriteFile (Address: 0x1800a2050)
api-ms-win-core-file-l1-2-0.dll
- GetTempPathW (Address: 0x1800a2100)
- GetVolumePathNamesForVolumeNameW (Address: 0x1800a2108)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1800a2118)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1800a2150)
- HeapAlloc (Address: 0x1800a2130)
- HeapDestroy (Address: 0x1800a2128)
- HeapFree (Address: 0x1800a2148)
- HeapReAlloc (Address: 0x1800a2138)
- HeapSize (Address: 0x1800a2140)
api-ms-win-core-heap-obsolete-l1-1-0.dll
- LocalFree (Address: 0x1800a2160)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x1800a2170)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- CopyFileW (Address: 0x1800a2180)
- FindResourceW (Address: 0x1800a2188)
api-ms-win-core-libraryloader-l1-1-0.dll
- DisableThreadLibraryCalls (Address: 0x1800a21c8)
- FindResourceExW (Address: 0x1800a21d0)
- FreeLibrary (Address: 0x1800a21a0)
- GetModuleFileNameA (Address: 0x1800a21e8)
- GetModuleFileNameW (Address: 0x1800a21b8)
- GetModuleHandleExW (Address: 0x1800a21c0)
- GetModuleHandleW (Address: 0x1800a21f0)
- GetProcAddress (Address: 0x1800a21e0)
- LoadLibraryExW (Address: 0x1800a2198)
- LoadResource (Address: 0x1800a21a8)
- LockResource (Address: 0x1800a21b0)
- SizeofResource (Address: 0x1800a21d8)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1800a2208)
- LCMapStringEx (Address: 0x1800a2200)
api-ms-win-core-memory-l1-1-0.dll
- CreateFileMappingW (Address: 0x1800a2218)
- MapViewOfFileEx (Address: 0x1800a2228)
- UnmapViewOfFile (Address: 0x1800a2220)
api-ms-win-core-processenvironment-l1-1-0.dll
- GetEnvironmentVariableW (Address: 0x1800a2238)
- SetEnvironmentVariableW (Address: 0x1800a2240)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateProcessW (Address: 0x1800a2280)
- GetCurrentProcess (Address: 0x1800a2268)
- GetCurrentProcessId (Address: 0x1800a2258)
- GetCurrentThread (Address: 0x1800a2270)
- GetCurrentThreadId (Address: 0x1800a2260)
- GetExitCodeProcess (Address: 0x1800a2278)
- TerminateProcess (Address: 0x1800a2250)
api-ms-win-core-processthreads-l1-1-1.dll
- IsProcessorFeaturePresent (Address: 0x1800a2298)
- OpenProcess (Address: 0x1800a2290)
api-ms-win-core-processtopology-obsolete-l1-1-0.dll
- GetActiveProcessorCount (Address: 0x1800a22a8)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1800a22b8)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1800a22c8)
- RegCreateKeyExW (Address: 0x1800a22f0)
- RegDeleteValueW (Address: 0x1800a22d8)
- RegEnumKeyExW (Address: 0x1800a2300)
- RegEnumValueW (Address: 0x1800a22e0)
- RegOpenKeyExW (Address: 0x1800a2308)
- RegQueryInfoKeyW (Address: 0x1800a22f8)
- RegQueryValueExW (Address: 0x1800a22d0)
- RegSetValueExW (Address: 0x1800a22e8)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x1800a2320)
- RtlLookupFunctionEntry (Address: 0x1800a2318)
- RtlVirtualUnwind (Address: 0x1800a2328)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathAddBackslashW (Address: 0x1800a2340)
- PathAddExtensionW (Address: 0x1800a2348)
- PathAppendW (Address: 0x1800a2350)
- PathRemoveBackslashW (Address: 0x1800a2338)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x1800a2368)
- WideCharToMultiByte (Address: 0x1800a2360)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1800a23b8)
- AcquireSRWLockShared (Address: 0x1800a2390)
- CreateEventW (Address: 0x1800a2380)
- CreateMutexExW (Address: 0x1800a23f8)
- CreateSemaphoreExW (Address: 0x1800a23e8)
- DeleteCriticalSection (Address: 0x1800a2378)
- EnterCriticalSection (Address: 0x1800a23d0)
- InitializeCriticalSection (Address: 0x1800a23a8)
- InitializeCriticalSectionEx (Address: 0x1800a23a0)
- LeaveCriticalSection (Address: 0x1800a23b0)
- OpenSemaphoreW (Address: 0x1800a23f0)
- ReleaseMutex (Address: 0x1800a2388)
- ReleaseSemaphore (Address: 0x1800a23c8)
- ReleaseSRWLockExclusive (Address: 0x1800a23d8)
- ReleaseSRWLockShared (Address: 0x1800a23e0)
- SetEvent (Address: 0x1800a2398)
- WaitForSingleObject (Address: 0x1800a2400)
- WaitForSingleObjectEx (Address: 0x1800a23c0)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x1800a2410)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x1800a2420)
- GetSystemInfo (Address: 0x1800a2440)
- GetSystemTimeAsFileTime (Address: 0x1800a2448)
- GetSystemWindowsDirectoryW (Address: 0x1800a2428)
- GetVersionExW (Address: 0x1800a2430)
- GetWindowsDirectoryW (Address: 0x1800a2438)
- GlobalMemoryStatusEx (Address: 0x1800a2450)
api-ms-win-core-sysinfo-l1-2-0.dll
- GetNativeSystemInfo (Address: 0x1800a2460)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1800a2480)
- CreateThreadpoolTimer (Address: 0x1800a2470)
- SetThreadpoolTimer (Address: 0x1800a2478)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800a2488)
api-ms-win-core-timezone-l1-1-0.dll
- SystemTimeToFileTime (Address: 0x1800a2498)
api-ms-win-core-version-l1-1-0.dll
- GetFileVersionInfoExW (Address: 0x1800a24a8)
- GetFileVersionInfoSizeExW (Address: 0x1800a24b0)
- VerQueryValueW (Address: 0x1800a24b8)
api-ms-win-core-wow64-l1-1-0.dll
- IsWow64Process (Address: 0x1800a24c8)
- Wow64DisableWow64FsRedirection (Address: 0x1800a24d8)
- Wow64RevertWow64FsRedirection (Address: 0x1800a24d0)
api-ms-win-crt-private-l1-1-0.dll
- __C_specific_handler (Address: 0x1800a26a0)
- __C_specific_handler_noexcept (Address: 0x1800a26b0)
- __current_exception (Address: 0x1800a2608)
- __current_exception_context (Address: 0x1800a2610)
- __CxxFrameHandler3 (Address: 0x1800a26a8)
- _CxxThrowException (Address: 0x1800a2618)
- _o___std_exception_copy (Address: 0x1800a2680)
- _o___std_exception_destroy (Address: 0x1800a2678)
- _o___std_type_info_destroy_list (Address: 0x1800a2670)
- _o___stdio_common_vsnprintf_s (Address: 0x1800a2668)
- _o___stdio_common_vswprintf (Address: 0x1800a2660)
- _o___stdio_common_vswprintf_s (Address: 0x1800a2658)
- _o___stdio_common_vswscanf (Address: 0x1800a2650)
- _o__callnewh (Address: 0x1800a2648)
- _o__cexit (Address: 0x1800a2640)
- _o__configure_narrow_argv (Address: 0x1800a2638)
- _o__crt_atexit (Address: 0x1800a2630)
- _o__errno (Address: 0x1800a2628)
- _o__execute_onexit_table (Address: 0x1800a2620)
- _o__gmtime64 (Address: 0x1800a24e8)
- _o__initialize_narrow_environment (Address: 0x1800a24f0)
- _o__initialize_onexit_table (Address: 0x1800a24f8)
- _o__invalid_parameter_noinfo (Address: 0x1800a2500)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x1800a2508)
- _o__memicmp (Address: 0x1800a2510)
- _o__purecall (Address: 0x1800a2518)
- _o__recalloc (Address: 0x1800a2520)
- _o__register_onexit_function (Address: 0x1800a2528)
- _o__seh_filter_dll (Address: 0x1800a2530)
- _o__stricmp (Address: 0x1800a2538)
- _o__ultow_s (Address: 0x1800a2540)
- _o__wcsicmp (Address: 0x1800a2550)
- _o__wcslwr_s (Address: 0x1800a2558)
- _o__wcsnicmp (Address: 0x1800a2560)
- _o__wcstoui64 (Address: 0x1800a2568)
- _o__wfullpath (Address: 0x1800a2570)
- _o__wtof (Address: 0x1800a2578)
- _o__wtoi (Address: 0x1800a2580)
- _o_calloc (Address: 0x1800a2588)
- _o_ceil (Address: 0x1800a2590)
- _o_ceilf (Address: 0x1800a2598)
- _o_free (Address: 0x1800a25a0)
- _o_iswdigit (Address: 0x1800a25a8)
- _o_iswspace (Address: 0x1800a25b0)
- _o_malloc (Address: 0x1800a25b8)
- _o_realloc (Address: 0x1800a25c0)
- _o_terminate (Address: 0x1800a25c8)
- _o_towlower (Address: 0x1800a25d0)
- _o_wcscpy_s (Address: 0x1800a25d8)
- _o_wcsncpy_s (Address: 0x1800a25e0)
- _o_wcstod (Address: 0x1800a25e8)
- _o_wcstol (Address: 0x1800a25f0)
- _o_wcstoul (Address: 0x1800a25f8)
- _o_wmemcpy_s (Address: 0x1800a2600)
- memchr (Address: 0x1800a26b8)
- memcmp (Address: 0x1800a26c0)
- memcpy (Address: 0x1800a26c8)
- memmove (Address: 0x1800a2548)
- strrchr (Address: 0x1800a26d0)
- wcschr (Address: 0x1800a2698)
- wcsrchr (Address: 0x1800a2690)
- wcsstr (Address: 0x1800a2688)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x1800a26e8)
- _initterm_e (Address: 0x1800a26e0)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x1800a2720)
- strncmp (Address: 0x1800a2730)
- wcscmp (Address: 0x1800a2718)
- wcscspn (Address: 0x1800a2710)
- wcsncmp (Address: 0x1800a2728)
- wcsnlen (Address: 0x1800a26f8)
- wcspbrk (Address: 0x1800a2700)
- wcsspn (Address: 0x1800a2708)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- RegisterTraceGuidsW (Address: 0x1800a2750)
- TraceEvent (Address: 0x1800a2748)
- UnregisterTraceGuids (Address: 0x1800a2740)
api-ms-win-eventing-controller-l1-1-0.dll
- ControlTraceW (Address: 0x1800a2768)
- EnumerateTraceGuidsEx (Address: 0x1800a2770)
- QueryAllTracesW (Address: 0x1800a2788)
- StartTraceW (Address: 0x1800a2760)
- TraceQueryInformation (Address: 0x1800a2780)
- TraceSetInformation (Address: 0x1800a2778)
api-ms-win-eventing-provider-l1-1-0.dll
- EventRegister (Address: 0x1800a27a0)
- EventSetInformation (Address: 0x1800a2798)
- EventUnregister (Address: 0x1800a27a8)
- EventWriteTransfer (Address: 0x1800a27b0)
ntdll.dll
- NtQuerySystemInformation (Address: 0x1800a27c8)
- NtSetIntervalProfile (Address: 0x1800a27e8)
- NtSetSystemInformation (Address: 0x1800a27e0)
- RtlAcquireSRWLockExclusive (Address: 0x1800a27d0)
- RtlAdjustPrivilege (Address: 0x1800a27c0)
- RtlGetVersion (Address: 0x1800a2828)
- RtlGUIDFromString (Address: 0x1800a2820)
- RtlImageDirectoryEntryToData (Address: 0x1800a2808)
- RtlImageRvaToVa (Address: 0x1800a2810)
- RtlInitUnicodeString (Address: 0x1800a2818)
- RtlNtStatusToDosError (Address: 0x1800a27f0)
- RtlQueryHeapInformation (Address: 0x1800a27f8)
- RtlReleaseSRWLockExclusive (Address: 0x1800a27d8)
- RtlSetHeapInformation (Address: 0x1800a2800)