TokenTester.dll

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: 475860544fe8eec8f09a3b396c86ac5a

File Size: 137.3 KB

Uploaded At: Feb. 13, 2026, 10:48 a.m.

Views: 11

Exported Functions

  • CloseDesktopForLogonSid (Ordinal: 1, Address: 0x1bc0)
  • CreateProcessAsUserFullMate (Ordinal: 2, Address: 0x1bf0)
  • CreateUnrestrictedSecurityAttributes (Ordinal: 3, Address: 0x2900)
  • DllMain (Ordinal: 4, Address: 0x29d0)
  • IsTokenAdminGroup (Ordinal: 5, Address: 0x1be0)

Imported DLLs & Functions

ADVAPI32.dll
  • AllocateAndInitializeSid (Address: 0x180014078)
  • ConvertSidToStringSidW (Address: 0x180014060)
  • CopySid (Address: 0x180014018)
  • CreateProcessAsUserW (Address: 0x180014030)
  • DuplicateTokenEx (Address: 0x180014040)
  • EqualSid (Address: 0x180014048)
  • FreeSid (Address: 0x180014068)
  • GetLengthSid (Address: 0x180014038)
  • GetTokenInformation (Address: 0x180014050)
  • InitializeSecurityDescriptor (Address: 0x180014028)
  • IsValidSid (Address: 0x180014020)
  • LogonUserW (Address: 0x180014070)
  • LookupAccountSidW (Address: 0x180014058)
  • OpenProcessToken (Address: 0x180014000)
  • SetSecurityDescriptorDacl (Address: 0x180014008)
  • SetTokenInformation (Address: 0x180014010)
KERNEL32.dll
  • CloseHandle (Address: 0x180014100)
  • CreateFileW (Address: 0x180014088)
  • DeleteCriticalSection (Address: 0x180014200)
  • DeleteProcThreadAttributeList (Address: 0x1800140a8)
  • DisableThreadLibraryCalls (Address: 0x1800140b0)
  • EnterCriticalSection (Address: 0x1800141f0)
  • ExitProcess (Address: 0x180014240)
  • FindClose (Address: 0x180014280)
  • FindFirstFileExW (Address: 0x180014288)
  • FindNextFileW (Address: 0x180014290)
  • FlushFileBuffers (Address: 0x180014150)
  • FreeEnvironmentStringsW (Address: 0x1800142d8)
  • FreeLibrary (Address: 0x180014230)
  • GetACP (Address: 0x1800142a0)
  • GetCommandLineA (Address: 0x1800142b8)
  • GetCommandLineW (Address: 0x180014120)
  • GetConsoleMode (Address: 0x180014138)
  • GetConsoleOutputCP (Address: 0x180014140)
  • GetCPInfo (Address: 0x1800142b0)
  • GetCurrentProcess (Address: 0x180014110)
  • GetCurrentProcessId (Address: 0x1800140f0)
  • GetCurrentThreadId (Address: 0x1800140c8)
  • GetEnvironmentStringsW (Address: 0x1800142d0)
  • GetExitCodeProcess (Address: 0x180014090)
  • GetFileType (Address: 0x180014270)
  • GetLastError (Address: 0x180014108)
  • GetModuleFileNameW (Address: 0x180014250)
  • GetModuleHandleExW (Address: 0x180014248)
  • GetModuleHandleW (Address: 0x1800141c8)
  • GetOEMCP (Address: 0x1800142a8)
  • GetProcAddress (Address: 0x1800140f8)
  • GetProcessHeap (Address: 0x1800142e0)
  • GetStartupInfoW (Address: 0x1800141b8)
  • GetStdHandle (Address: 0x180014268)
  • GetStringTypeW (Address: 0x180014160)
  • GetSystemTimeAsFileTime (Address: 0x180014180)
  • HeapAlloc (Address: 0x180014260)
  • HeapFree (Address: 0x180014258)
  • HeapReAlloc (Address: 0x180014128)
  • HeapSize (Address: 0x180014130)
  • InitializeCriticalSectionAndSpinCount (Address: 0x180014208)
  • InitializeProcThreadAttributeList (Address: 0x1800140d8)
  • InitializeSListHead (Address: 0x180014188)
  • InterlockedFlushSList (Address: 0x1800141e8)
  • IsDebuggerPresent (Address: 0x180014098)
  • IsProcessorFeaturePresent (Address: 0x1800141c0)
  • IsValidCodePage (Address: 0x180014298)
  • LCMapStringW (Address: 0x180014278)
  • LeaveCriticalSection (Address: 0x1800141f8)
  • LoadLibraryExW (Address: 0x180014238)
  • LocalFree (Address: 0x180014118)
  • MultiByteToWideChar (Address: 0x1800142c0)
  • QueryPerformanceCounter (Address: 0x180014178)
  • RaiseException (Address: 0x1800141e0)
  • RtlCaptureContext (Address: 0x180014190)
  • RtlLookupFunctionEntry (Address: 0x180014198)
  • RtlPcToFileHeader (Address: 0x1800141d8)
  • RtlUnwindEx (Address: 0x1800141d0)
  • RtlVirtualUnwind (Address: 0x1800141a0)
  • SetFilePointerEx (Address: 0x180014168)
  • SetLastError (Address: 0x1800140e8)
  • SetStdHandle (Address: 0x180014158)
  • SetThreadErrorMode (Address: 0x1800140a0)
  • SetUnhandledExceptionFilter (Address: 0x1800141b0)
  • Sleep (Address: 0x1800140c0)
  • TerminateProcess (Address: 0x1800140e0)
  • TlsAlloc (Address: 0x180014210)
  • TlsFree (Address: 0x180014228)
  • TlsGetValue (Address: 0x180014218)
  • TlsSetValue (Address: 0x180014220)
  • UnhandledExceptionFilter (Address: 0x1800141a8)
  • UpdateProcThreadAttribute (Address: 0x1800140b8)
  • WaitForSingleObject (Address: 0x1800140d0)
  • WideCharToMultiByte (Address: 0x1800142c8)
  • WriteConsoleW (Address: 0x180014170)
  • WriteFile (Address: 0x180014148)
USERENV.dll
  • CreateEnvironmentBlock (Address: 0x180014308)
  • DestroyEnvironmentBlock (Address: 0x1800142f0)
  • LoadUserProfileW (Address: 0x180014300)
  • UnloadUserProfile (Address: 0x1800142f8)