msfeeds.dll

Description: Microsoft Feeds Manager

Authors: © Microsoft Corporation. All rights reserved.

Version: 11.0.19041.4355

Architecture: 64-bit

Operating System: Windows NT

SHA256: e08045227855ebfcfee12ff3a165db07

File Size: 773.0 KB

Uploaded At: Dec. 1, 2025, 7:34 a.m.

Views: 5

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x26dd0)
  • DllGetClassObject (Ordinal: 2, Address: 0x26e30)
  • MsfeedsCreateInstance (Ordinal: 3, Address: 0x27170)

Imported DLLs & Functions

ADVAPI32.dll
  • CloseServiceHandle (Address: 0x18007cc70)
  • ConvertSidToStringSidW (Address: 0x18007cba0)
  • CredDeleteW (Address: 0x18007cc30)
  • CredEnumerateW (Address: 0x18007cc20)
  • CredFree (Address: 0x18007cc28)
  • CredReadW (Address: 0x18007cc18)
  • CredWriteW (Address: 0x18007cc10)
  • CryptAcquireContextW (Address: 0x18007cb78)
  • CryptCreateHash (Address: 0x18007cb50)
  • CryptDeriveKey (Address: 0x18007cb40)
  • CryptDestroyHash (Address: 0x18007cb38)
  • CryptDestroyKey (Address: 0x18007cb30)
  • CryptEncrypt (Address: 0x18007cb60)
  • CryptGenRandom (Address: 0x18007cb70)
  • CryptGetHashParam (Address: 0x18007cb20)
  • CryptGetKeyParam (Address: 0x18007cb58)
  • CryptHashData (Address: 0x18007cb48)
  • CryptReleaseContext (Address: 0x18007cb68)
  • CryptSetHashParam (Address: 0x18007cb28)
  • CryptSetKeyParam (Address: 0x18007cb08)
  • CryptVerifySignatureW (Address: 0x18007cc48)
  • EventRegister (Address: 0x18007cbd0)
  • EventSetInformation (Address: 0x18007cbd8)
  • EventUnregister (Address: 0x18007cc08)
  • EventWriteEx (Address: 0x18007cb80)
  • EventWriteTransfer (Address: 0x18007cb88)
  • GetTokenInformation (Address: 0x18007cb90)
  • GetTraceEnableFlags (Address: 0x18007cbe8)
  • GetTraceEnableLevel (Address: 0x18007cbf0)
  • GetTraceLoggerHandle (Address: 0x18007cbe0)
  • OpenProcessToken (Address: 0x18007cb98)
  • OpenSCManagerW (Address: 0x18007cc60)
  • OpenServiceW (Address: 0x18007cc68)
  • QueryServiceConfigW (Address: 0x18007cc78)
  • RegCloseKey (Address: 0x18007cbb8)
  • RegCreateKeyExW (Address: 0x18007cbc0)
  • RegEnumKeyExW (Address: 0x18007cc58)
  • RegGetValueW (Address: 0x18007cbb0)
  • RegisterTraceGuidsW (Address: 0x18007cbf8)
  • RegOpenKeyExA (Address: 0x18007cb18)
  • RegOpenKeyExW (Address: 0x18007cba8)
  • RegQueryInfoKeyW (Address: 0x18007cc50)
  • RegQueryValueExA (Address: 0x18007cb10)
  • RegSetValueExW (Address: 0x18007cbc8)
  • TraceEvent (Address: 0x18007cc40)
  • TraceMessage (Address: 0x18007cc38)
  • UnregisterTraceGuids (Address: 0x18007cc00)
api-ms-win-core-com-l1-1-0.dll
  • CoSetProxyBlanket (Address: 0x18007d270)
  • CoWaitForMultipleHandles (Address: 0x18007d280)
  • PropVariantCopy (Address: 0x18007d278)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFindExtensionW (Address: 0x18007d290)
  • PathIsPrefixW (Address: 0x18007d298)
  • PathRemoveExtensionW (Address: 0x18007d2a0)
api-ms-win-downlevel-version-l1-1-0.dll
  • GetFileVersionInfoExW (Address: 0x18007d2b0)
  • GetFileVersionInfoSizeExW (Address: 0x18007d2c0)
  • VerQueryValueW (Address: 0x18007d2b8)
iertutil.dll
  • (Address: 0x18007d398)
  • (Address: 0x18007d3a0)
  • (Address: 0x18007d3a8)
  • (Address: 0x18007d3b0)
  • (Address: 0x18007d3b8)
  • (Address: 0x18007d3c0)
  • (Address: 0x18007d3c8)
  • (Address: 0x18007d3d0)
  • (Address: 0x18007d3d8)
  • (Address: 0x18007d3e0)
  • (Address: 0x18007d3e8)
  • (Address: 0x18007d3f0)
  • (Address: 0x18007d3f8)
  • (Address: 0x18007d400)
  • (Address: 0x18007d408)
  • (Address: 0x18007d410)
  • (Address: 0x18007d418)
  • (Address: 0x18007d420)
  • (Address: 0x18007d428)
  • (Address: 0x18007d430)
  • (Address: 0x18007d438)
  • (Address: 0x18007d440)
  • (Address: 0x18007d448)
  • (Address: 0x18007d450)
  • (Address: 0x18007d458)
  • (Address: 0x18007d460)
  • (Address: 0x18007d468)
  • (Address: 0x18007d470)
  • (Address: 0x18007d478)
  • (Address: 0x18007d480)
  • (Address: 0x18007d488)
  • (Address: 0x18007d490)
  • (Address: 0x18007d498)
  • (Address: 0x18007d4a0)
  • (Address: 0x18007d4a8)
  • (Address: 0x18007d4b0)
  • (Address: 0x18007d4b8)
  • (Address: 0x18007d4c0)
  • (Address: 0x18007d4c8)
  • (Address: 0x18007d4d0)
  • (Address: 0x18007d4d8)
  • (Address: 0x18007d2d0)
  • (Address: 0x18007d2d8)
  • (Address: 0x18007d2e0)
  • (Address: 0x18007d2e8)
  • (Address: 0x18007d2f0)
  • (Address: 0x18007d2f8)
  • (Address: 0x18007d300)
  • (Address: 0x18007d308)
  • (Address: 0x18007d310)
  • (Address: 0x18007d318)
  • (Address: 0x18007d328)
  • (Address: 0x18007d330)
  • (Address: 0x18007d340)
  • (Address: 0x18007d348)
  • (Address: 0x18007d350)
  • (Address: 0x18007d358)
  • (Address: 0x18007d368)
  • (Address: 0x18007d370)
  • (Address: 0x18007d378)
  • (Address: 0x18007d380)
  • (Address: 0x18007d388)
  • (Address: 0x18007d390)
  • CreateIUriBuilder (Address: 0x18007d320)
  • CreateUri (Address: 0x18007d360)
  • CreateUriWithFragment (Address: 0x18007d338)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x18007ce28)
  • CloseHandle (Address: 0x18007cfd0)
  • CompareFileTime (Address: 0x18007cf00)
  • CompareStringW (Address: 0x18007ced0)
  • CreateDirectoryW (Address: 0x18007cf18)
  • CreateEventExW (Address: 0x18007d050)
  • CreateEventW (Address: 0x18007cfe8)
  • CreateFileMappingW (Address: 0x18007cf48)
  • CreateFileW (Address: 0x18007d010)
  • CreateMutexExW (Address: 0x18007cfc8)
  • CreateMutexW (Address: 0x18007cd58)
  • CreateSemaphoreExW (Address: 0x18007cda0)
  • CreateThread (Address: 0x18007cd68)
  • DebugBreak (Address: 0x18007cdf8)
  • DelayLoadFailureHook (Address: 0x18007cf80)
  • DeleteCriticalSection (Address: 0x18007cf58)
  • DeleteFileW (Address: 0x18007cca0)
  • DisableThreadLibraryCalls (Address: 0x18007cce8)
  • DuplicateHandle (Address: 0x18007cff0)
  • EnterCriticalSection (Address: 0x18007d048)
  • FileTimeToLocalFileTime (Address: 0x18007cd70)
  • FileTimeToSystemTime (Address: 0x18007ccc8)
  • FindClose (Address: 0x18007cc88)
  • FindFirstFileW (Address: 0x18007d070)
  • FindNextFileW (Address: 0x18007cf88)
  • FindResourceExW (Address: 0x18007d080)
  • FlushFileBuffers (Address: 0x18007cea0)
  • FlushViewOfFile (Address: 0x18007d068)
  • FormatMessageW (Address: 0x18007cdc8)
  • FreeLibrary (Address: 0x18007cf08)
  • GetCurrentDirectoryW (Address: 0x18007cf90)
  • GetCurrentProcess (Address: 0x18007d040)
  • GetCurrentProcessId (Address: 0x18007cf50)
  • GetCurrentThreadId (Address: 0x18007cdc0)
  • GetDiskFreeSpaceExW (Address: 0x18007ce80)
  • GetFileAttributesW (Address: 0x18007cc90)
  • GetFileSize (Address: 0x18007cd80)
  • GetFileSizeEx (Address: 0x18007cec0)
  • GetFileTime (Address: 0x18007ce98)
  • GetFullPathNameW (Address: 0x18007ceb8)
  • GetLastError (Address: 0x18007cfe0)
  • GetLocalTime (Address: 0x18007ced8)
  • GetModuleFileNameA (Address: 0x18007cd98)
  • GetModuleFileNameW (Address: 0x18007cd10)
  • GetModuleHandleExW (Address: 0x18007cdb8)
  • GetModuleHandleW (Address: 0x18007cdf0)
  • GetProcAddress (Address: 0x18007cde8)
  • GetProcessHeap (Address: 0x18007ccf8)
  • GetProductInfo (Address: 0x18007cee0)
  • GetStringTypeExA (Address: 0x18007ce60)
  • GetSystemDefaultLCID (Address: 0x18007cf60)
  • GetSystemInfo (Address: 0x18007cef0)
  • GetSystemTime (Address: 0x18007ccc0)
  • GetSystemTimeAsFileTime (Address: 0x18007ccb8)
  • GetTempPathW (Address: 0x18007cfb0)
  • GetTickCount (Address: 0x18007ce40)
  • GetTimeZoneInformation (Address: 0x18007ce88)
  • GetUserDefaultLCID (Address: 0x18007cf68)
  • GetUserPreferredUILanguages (Address: 0x18007cee8)
  • GetVersionExA (Address: 0x18007cfa0)
  • GetVersionExW (Address: 0x18007cd40)
  • GlobalAlloc (Address: 0x18007cd18)
  • GlobalFree (Address: 0x18007cd20)
  • GlobalLock (Address: 0x18007cd28)
  • GlobalUnlock (Address: 0x18007cd38)
  • HeapAlloc (Address: 0x18007ccf0)
  • HeapFree (Address: 0x18007cce0)
  • InitializeCriticalSection (Address: 0x18007ce78)
  • InitializeCriticalSectionAndSpinCount (Address: 0x18007d030)
  • InitOnceExecuteOnce (Address: 0x18007cf98)
  • IsDBCSLeadByte (Address: 0x18007ce58)
  • IsDBCSLeadByteEx (Address: 0x18007ce68)
  • IsDebuggerPresent (Address: 0x18007ce00)
  • LCMapStringW (Address: 0x18007ceb0)
  • LeaveCriticalSection (Address: 0x18007d028)
  • LoadLibraryExW (Address: 0x18007cf70)
  • LoadLibraryW (Address: 0x18007cef8)
  • LoadResource (Address: 0x18007d060)
  • LocalAlloc (Address: 0x18007ccd0)
  • LocaleNameToLCID (Address: 0x18007cf10)
  • LocalFree (Address: 0x18007ccd8)
  • LocalReAlloc (Address: 0x18007cd30)
  • LockResource (Address: 0x18007cfb8)
  • MapViewOfFile (Address: 0x18007cf40)
  • MoveFileExW (Address: 0x18007cca8)
  • MultiByteToWideChar (Address: 0x18007cf28)
  • OpenEventW (Address: 0x18007d008)
  • OpenFileMappingW (Address: 0x18007cd00)
  • OpenMutexW (Address: 0x18007cf38)
  • OpenProcess (Address: 0x18007cf30)
  • OpenSemaphoreW (Address: 0x18007cde0)
  • OutputDebugStringW (Address: 0x18007cdd0)
  • QueryPerformanceCounter (Address: 0x18007cd90)
  • QueryPerformanceFrequency (Address: 0x18007cd78)
  • QueueUserWorkItem (Address: 0x18007ce70)
  • RaiseException (Address: 0x18007ce50)
  • RaiseFailFastException (Address: 0x18007ce48)
  • ReadFile (Address: 0x18007d058)
  • RegisterWaitForSingleObject (Address: 0x18007d038)
  • ReleaseMutex (Address: 0x18007d000)
  • ReleaseSemaphore (Address: 0x18007cdb0)
  • ReleaseSRWLockExclusive (Address: 0x18007ce20)
  • RemoveDirectoryW (Address: 0x18007ce90)
  • ResetEvent (Address: 0x18007cd08)
  • ResolveDelayLoadedAPI (Address: 0x18007cf78)
  • SetEndOfFile (Address: 0x18007cea8)
  • SetEvent (Address: 0x18007cfd8)
  • SetFileAttributesW (Address: 0x18007cc98)
  • SetFilePointer (Address: 0x18007d020)
  • SetFileTime (Address: 0x18007cec8)
  • SetLastError (Address: 0x18007cda8)
  • SetUnhandledExceptionFilter (Address: 0x18007ce10)
  • SizeofResource (Address: 0x18007d078)
  • Sleep (Address: 0x18007cd60)
  • SleepConditionVariableSRW (Address: 0x18007ce38)
  • SystemTimeToFileTime (Address: 0x18007ccb0)
  • SystemTimeToTzSpecificLocalTime (Address: 0x18007cf20)
  • TerminateProcess (Address: 0x18007ce18)
  • UnhandledExceptionFilter (Address: 0x18007ce08)
  • UnmapViewOfFile (Address: 0x18007cff8)
  • UnregisterWaitEx (Address: 0x18007cfc0)
  • VerifyVersionInfoW (Address: 0x18007cfa8)
  • WaitForMultipleObjects (Address: 0x18007cd50)
  • WaitForSingleObject (Address: 0x18007d018)
  • WaitForSingleObjectEx (Address: 0x18007cdd8)
  • WakeAllConditionVariable (Address: 0x18007ce30)
  • WideCharToMultiByte (Address: 0x18007cd88)
  • WriteFile (Address: 0x18007cd48)
KERNELBASE.dll
  • GetSystemDefaultLocaleName (Address: 0x18007d098)
  • GetUserDefaultLocaleName (Address: 0x18007d0a0)
  • lstrcmpiA (Address: 0x18007d0a8)
  • lstrlenA (Address: 0x18007d0b8)
  • lstrlenW (Address: 0x18007d0c0)
  • OpenGlobalizationUserSettingsKey (Address: 0x18007d090)
  • StrToIntA (Address: 0x18007d0b0)
MLANG.dll
  • (Address: 0x18007d0d0)
msvcrt.dll
  • __C_specific_handler (Address: 0x18007d5f8)
  • __dllonexit (Address: 0x18007d578)
  • _amsg_exit (Address: 0x18007d5a8)
  • _initterm (Address: 0x18007d590)
  • _itow_s (Address: 0x18007d5d8)
  • _lock (Address: 0x18007d588)
  • _onexit (Address: 0x18007d570)
  • _ultow_s (Address: 0x18007d5d0)
  • _unlock (Address: 0x18007d580)
  • _vsnprintf (Address: 0x18007d4f8)
  • _vsnwprintf (Address: 0x18007d4e8)
  • _vsnwprintf_s (Address: 0x18007d518)
  • _wcsicmp (Address: 0x18007d4f0)
  • _wcsnicmp (Address: 0x18007d510)
  • _wtoi (Address: 0x18007d508)
  • _XcptFilter (Address: 0x18007d5b0)
  • free (Address: 0x18007d5a0)
  • isalnum (Address: 0x18007d548)
  • iswalpha (Address: 0x18007d5c8)
  • malloc (Address: 0x18007d598)
  • memcmp (Address: 0x18007d520)
  • memcpy (Address: 0x18007d528)
  • memcpy_s (Address: 0x18007d600)
  • memmove (Address: 0x18007d550)
  • memset (Address: 0x18007d558)
  • rand (Address: 0x18007d5e8)
  • rand_s (Address: 0x18007d560)
  • sprintf_s (Address: 0x18007d568)
  • srand (Address: 0x18007d5f0)
  • strnlen (Address: 0x18007d540)
  • time (Address: 0x18007d5e0)
  • wcschr (Address: 0x18007d5c0)
  • wcscmp (Address: 0x18007d608)
  • wcsncmp (Address: 0x18007d5b8)
  • wcsncpy_s (Address: 0x18007d530)
  • wcsnlen (Address: 0x18007d538)
  • wcstok_s (Address: 0x18007d500)
netutils.dll
  • NetApiBufferFree (Address: 0x18007d618)
ntdll.dll
  • NtClose (Address: 0x18007d630)
  • NtQueryLicenseValue (Address: 0x18007d628)
  • RtlCaptureContext (Address: 0x18007d640)
  • RtlLookupFunctionEntry (Address: 0x18007d650)
  • RtlVirtualUnwind (Address: 0x18007d648)
  • VerSetConditionMask (Address: 0x18007d638)
RPCRT4.dll
  • RpcServerInqCallAttributesW (Address: 0x18007d0f0)
  • UuidCreateSequential (Address: 0x18007d0e0)
  • UuidEqual (Address: 0x18007d0e8)
SHLWAPI.dll
  • (Address: 0x18007d100)
  • (Address: 0x18007d118)
  • (Address: 0x18007d120)
  • (Address: 0x18007d128)
  • (Address: 0x18007d130)
  • (Address: 0x18007d150)
  • (Address: 0x18007d160)
  • (Address: 0x18007d1c0)
  • (Address: 0x18007d1d0)
  • (Address: 0x18007d1d8)
  • (Address: 0x18007d1f8)
  • (Address: 0x18007d210)
  • (Address: 0x18007d220)
  • (Address: 0x18007d250)
  • (Address: 0x18007d260)
  • ChrCmpIW (Address: 0x18007d228)
  • HashData (Address: 0x18007d1b0)
  • PathFileExistsW (Address: 0x18007d230)
  • PathFindFileNameW (Address: 0x18007d240)
  • PathIsNetworkPathW (Address: 0x18007d108)
  • PathIsURLW (Address: 0x18007d1a8)
  • SHCreateStreamOnFileEx (Address: 0x18007d138)
  • SHCreateStreamOnFileW (Address: 0x18007d1c8)
  • SHGetValueW (Address: 0x18007d140)
  • SHRegGetValueW (Address: 0x18007d1f0)
  • SHStrDupW (Address: 0x18007d238)
  • StrChrW (Address: 0x18007d200)
  • StrCmpIW (Address: 0x18007d258)
  • StrCmpNA (Address: 0x18007d148)
  • StrCmpNIA (Address: 0x18007d178)
  • StrCmpNIW (Address: 0x18007d208)
  • StrCmpNW (Address: 0x18007d180)
  • StrCmpW (Address: 0x18007d248)
  • StrRChrW (Address: 0x18007d1e0)
  • StrStrIW (Address: 0x18007d218)
  • StrStrNIW (Address: 0x18007d170)
  • StrStrW (Address: 0x18007d110)
  • StrToInt64ExW (Address: 0x18007d1e8)
  • StrToIntExW (Address: 0x18007d188)
  • StrTrimW (Address: 0x18007d1b8)
  • UrlApplySchemeW (Address: 0x18007d198)
  • UrlCanonicalizeW (Address: 0x18007d1a0)
  • UrlCreateFromPathW (Address: 0x18007d190)
  • UrlEscapeW (Address: 0x18007d168)
  • UrlUnescapeW (Address: 0x18007d158)
wkscli.dll
  • NetGetJoinInformation (Address: 0x18007d660)