file.dll
Description: Microsoft Store Runtime DLL
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.18362.1110
Architecture: 64-bit
Operating System: Windows NT
SHA256: c1469dea551c95d2c68eb42ceb37f020
File Size: 2.2 MB
Uploaded At: April 6, 2026, 1:08 p.m.
Views: 10
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x5b60)
- DllGetActivationFactory (Ordinal: 2, Address: 0x57f0)
- DllGetClassObject (Ordinal: 3, Address: 0x5960)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x180170630)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x180170650)
- IsDebuggerPresent (Address: 0x180170648)
- OutputDebugStringW (Address: 0x180170640)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x180170660)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x180170670)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180170690)
- RaiseException (Address: 0x180170680)
- SetLastError (Address: 0x180170688)
- SetUnhandledExceptionFilter (Address: 0x1801706a0)
- UnhandledExceptionFilter (Address: 0x180170698)
api-ms-win-core-file-l1-1-0.dll
- CompareFileTime (Address: 0x1801706c0)
- CreateDirectoryW (Address: 0x1801706f0)
- CreateFileA (Address: 0x1801706d0)
- CreateFileW (Address: 0x180170708)
- DeleteFileA (Address: 0x1801706c8)
- DeleteFileW (Address: 0x180170700)
- FileTimeToLocalFileTime (Address: 0x1801706d8)
- FindClose (Address: 0x180170710)
- FindFirstFileA (Address: 0x180170718)
- FindFirstFileExA (Address: 0x1801706e0)
- FindNextFileA (Address: 0x1801706e8)
- GetFileInformationByHandle (Address: 0x180170720)
- GetFileSize (Address: 0x1801706b0)
- ReadFile (Address: 0x1801706f8)
- SetFilePointer (Address: 0x180170728)
- WriteFile (Address: 0x1801706b8)
api-ms-win-core-file-l1-2-2.dll
- GetTempFileNameA (Address: 0x180170738)
- GetTempPathA (Address: 0x180170740)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180170750)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x180170768)
- HeapAlloc (Address: 0x180170778)
- HeapFree (Address: 0x180170770)
- HeapReAlloc (Address: 0x180170760)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180170788)
- LocalFree (Address: 0x180170790)
api-ms-win-core-heap-obsolete-l1-1-0.dll
- GlobalFree (Address: 0x1801707a0)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- FileTimeToDosDateTime (Address: 0x1801707b0)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1801707d0)
- FindResourceExW (Address: 0x180170800)
- FreeLibrary (Address: 0x1801707c0)
- FreeResource (Address: 0x1801707d8)
- GetModuleFileNameA (Address: 0x180170808)
- GetModuleHandleExW (Address: 0x180170810)
- GetModuleHandleW (Address: 0x1801707e8)
- GetProcAddress (Address: 0x1801707c8)
- LoadResource (Address: 0x1801707f8)
- LoadStringW (Address: 0x180170818)
- LockResource (Address: 0x1801707e0)
- SizeofResource (Address: 0x1801707f0)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x180170848)
- GetGeoInfoW (Address: 0x180170828)
- GetLocaleInfoEx (Address: 0x180170850)
- GetUserDefaultLocaleName (Address: 0x180170830)
- GetUserGeoID (Address: 0x180170838)
- LCMapStringEx (Address: 0x180170840)
api-ms-win-core-localization-l2-1-0.dll
- GetCurrencyFormatEx (Address: 0x180170860)
api-ms-win-core-path-l1-1-0.dll
- PathCchAddExtension (Address: 0x180170878)
- PathCchAppendEx (Address: 0x180170870)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsA (Address: 0x180170888)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1801708b0)
- GetCurrentProcessId (Address: 0x1801708d0)
- GetCurrentThread (Address: 0x1801708b8)
- GetCurrentThreadId (Address: 0x1801708e0)
- GetProcessId (Address: 0x180170898)
- GetProcessIdOfThread (Address: 0x1801708d8)
- OpenProcessToken (Address: 0x1801708c8)
- OpenThread (Address: 0x1801708a8)
- OpenThreadToken (Address: 0x1801708c0)
- TerminateProcess (Address: 0x1801708a0)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x1801708f0)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180170900)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x180170920)
- RegGetValueW (Address: 0x180170928)
- RegOpenCurrentUser (Address: 0x180170910)
- RegOpenKeyExW (Address: 0x180170918)
api-ms-win-core-registry-l1-1-1.dll
- RegDeleteKeyValueW (Address: 0x180170940)
- RegSetKeyValueW (Address: 0x180170938)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathAppendA (Address: 0x180170958)
- PathCombineA (Address: 0x180170950)
- PathRemoveFileSpecA (Address: 0x180170960)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x180170970)
- CompareStringW (Address: 0x180170978)
- MultiByteToWideChar (Address: 0x180170980)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1801709c0)
- AcquireSRWLockShared (Address: 0x1801709b8)
- CreateEventExW (Address: 0x180170a08)
- CreateEventW (Address: 0x1801709d8)
- CreateMutexExW (Address: 0x180170998)
- CreateSemaphoreExW (Address: 0x180170a38)
- DeleteCriticalSection (Address: 0x180170a20)
- EnterCriticalSection (Address: 0x180170a30)
- InitializeCriticalSection (Address: 0x1801709f8)
- InitializeCriticalSectionEx (Address: 0x180170a18)
- InitializeSRWLock (Address: 0x1801709a0)
- LeaveCriticalSection (Address: 0x180170a28)
- OpenSemaphoreW (Address: 0x1801709d0)
- ReleaseMutex (Address: 0x1801709e0)
- ReleaseSemaphore (Address: 0x1801709e8)
- ReleaseSRWLockExclusive (Address: 0x180170990)
- ReleaseSRWLockShared (Address: 0x1801709f0)
- ResetEvent (Address: 0x1801709a8)
- SetEvent (Address: 0x180170a10)
- WaitForMultipleObjectsEx (Address: 0x180170a00)
- WaitForSingleObject (Address: 0x1801709b0)
- WaitForSingleObjectEx (Address: 0x1801709c8)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceExecuteOnce (Address: 0x180170a50)
- Sleep (Address: 0x180170a48)
- SleepConditionVariableSRW (Address: 0x180170a60)
- WakeAllConditionVariable (Address: 0x180170a58)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetLocalTime (Address: 0x180170a98)
- GetSystemTime (Address: 0x180170a80)
- GetSystemTimeAsFileTime (Address: 0x180170a90)
- GetTickCount (Address: 0x180170a78)
- GetTickCount64 (Address: 0x180170a88)
- GetVersionExA (Address: 0x180170a70)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x180170ab0)
- CreateThreadpoolTimer (Address: 0x180170ac0)
- SetThreadpoolTimer (Address: 0x180170ab8)
- WaitForThreadpoolTimerCallbacks (Address: 0x180170aa8)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
- QueueUserWorkItem (Address: 0x180170ad0)
api-ms-win-core-timezone-l1-1-0.dll
- FileTimeToSystemTime (Address: 0x180170ae0)
- SystemTimeToFileTime (Address: 0x180170ae8)
api-ms-win-core-url-l1-1-0.dll
- UrlEscapeW (Address: 0x180170af8)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x180170b08)
- EncodePointer (Address: 0x180170b10)
api-ms-win-eventing-legacy-l1-1-0.dll
- FlushTraceW (Address: 0x180170b28)
- QueryTraceW (Address: 0x180170b20)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x180170b38)
- EventProviderEnabled (Address: 0x180170b50)
- EventRegister (Address: 0x180170b48)
- EventUnregister (Address: 0x180170b40)
- EventWriteTransfer (Address: 0x180170b58)
api-ms-win-security-base-l1-1-0.dll
- AllocateAndInitializeSid (Address: 0x180170b90)
- CopySid (Address: 0x180170b80)
- DuplicateTokenEx (Address: 0x180170b70)
- FreeSid (Address: 0x180170b98)
- GetLengthSid (Address: 0x180170b78)
- GetTokenInformation (Address: 0x180170ba0)
- ImpersonateLoggedOnUser (Address: 0x180170b68)
- RevertToSelf (Address: 0x180170b88)
api-ms-win-security-base-l1-2-0.dll
- CheckTokenMembershipEx (Address: 0x180170bb0)
api-ms-win-security-capability-l1-1-0.dll
- CapabilityCheck (Address: 0x180170bc0)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x180170bd0)
api-ms-win-shcore-stream-winrt-l1-1-0.dll
- CreateRandomAccessStreamOverStream (Address: 0x180170be0)
Cabinet.dll
- (Address: 0x180170500)
- (Address: 0x1801704e8)
- (Address: 0x1801704f0)
- (Address: 0x1801704f8)
combase.dll
- (Address: 0x180170bf0)
- (Address: 0x180170bf8)
- (Address: 0x180170c00)
- (Address: 0x180170c08)
- (Address: 0x180170c18)
- (Address: 0x180170c28)
- (Address: 0x180170c30)
- (Address: 0x180170c40)
- (Address: 0x180170c50)
- (Address: 0x180170c68)
- (Address: 0x180170c70)
- (Address: 0x180170c78)
- (Address: 0x180170c80)
- (Address: 0x180170c90)
- (Address: 0x180170c98)
- (Address: 0x180170cb0)
- (Address: 0x180170cd0)
- (Address: 0x180170ce8)
- (Address: 0x180170cf0)
- (Address: 0x180170cf8)
- (Address: 0x180170d00)
- (Address: 0x180170d10)
- (Address: 0x180170d18)
- (Address: 0x180170d20)
- (Address: 0x180170d28)
- CStdStubBuffer_AddRef (Address: 0x180170ce0)
- CStdStubBuffer_Connect (Address: 0x180170c60)
- CStdStubBuffer_CountRefs (Address: 0x180170c10)
- CStdStubBuffer_DebugServerQueryInterface (Address: 0x180170cc0)
- CStdStubBuffer_DebugServerRelease (Address: 0x180170c38)
- CStdStubBuffer_Disconnect (Address: 0x180170c58)
- CStdStubBuffer_Invoke (Address: 0x180170ca8)
- CStdStubBuffer_IsIIDSupported (Address: 0x180170c48)
- CStdStubBuffer_QueryInterface (Address: 0x180170c20)
- CStdStubBuffer2_Connect (Address: 0x180170d08)
- CStdStubBuffer2_CountRefs (Address: 0x180170cb8)
- CStdStubBuffer2_Disconnect (Address: 0x180170cc8)
- CStdStubBuffer2_QueryInterface (Address: 0x180170cd8)
- NdrCStdStubBuffer_Release (Address: 0x180170ca0)
- NdrCStdStubBuffer2_Release (Address: 0x180170c88)
CRYPTSP.dll
- CryptAcquireContextW (Address: 0x1801704d8)
- CryptCreateHash (Address: 0x1801704b0)
- CryptDestroyHash (Address: 0x1801704c8)
- CryptGetHashParam (Address: 0x1801704c0)
- CryptHashData (Address: 0x1801704b8)
- CryptReleaseContext (Address: 0x1801704d0)
iertutil.dll
- (Address: 0x180170d48)
- (Address: 0x180170d38)
- (Address: 0x180170d40)
- (Address: 0x180170d50)
msvcrt.dll
- __C_specific_handler (Address: 0x180170ed8)
- __CxxFrameHandler3 (Address: 0x180170e40)
- __dllonexit (Address: 0x180170e50)
- _amsg_exit (Address: 0x180170eb0)
- _callnewh (Address: 0x180170d60)
- _errno (Address: 0x180170e38)
- _initterm (Address: 0x180170ea8)
- _itow_s (Address: 0x180170de8)
- _lock (Address: 0x180170ea0)
- _onexit (Address: 0x180170e48)
- _purecall (Address: 0x180170ee8)
- _set_errno (Address: 0x180170e68)
- _snwprintf_s (Address: 0x180170d90)
- _unlock (Address: 0x180170e98)
- _vsnprintf (Address: 0x180170d88)
- _vsnwprintf (Address: 0x180170ef8)
- _wcsdup (Address: 0x180170dc0)
- _wcsicmp (Address: 0x180170df0)
- _wcstoi64 (Address: 0x180170db8)
- _wcstoui64 (Address: 0x180170d98)
- _wcsupr (Address: 0x180170e90)
- _wtof (Address: 0x180170d78)
- _wtoi (Address: 0x180170d68)
- _wtol (Address: 0x180170dc8)
- _XcptFilter (Address: 0x180170eb8)
- ??_V@YAXPEAX@Z (Address: 0x180170ed0)
- floor (Address: 0x180170de0)
- free (Address: 0x180170ee0)
- malloc (Address: 0x180170ec0)
- mbstowcs_s (Address: 0x180170e18)
- memcmp (Address: 0x180170df8)
- memcpy (Address: 0x180170e00)
- memcpy_s (Address: 0x180170ef0)
- memmove (Address: 0x180170e08)
- memmove_s (Address: 0x180170e20)
- memset (Address: 0x180170e10)
- realloc (Address: 0x180170e30)
- sprintf_s (Address: 0x180170e88)
- strchr (Address: 0x180170e58)
- strcmp (Address: 0x180170e28)
- strncpy_s (Address: 0x180170e78)
- strrchr (Address: 0x180170e60)
- strtol (Address: 0x180170e70)
- toupper (Address: 0x180170dd0)
- wcschr (Address: 0x180170da0)
- wcscmp (Address: 0x180170f00)
- wcscpy_s (Address: 0x180170ec8)
- wcscspn (Address: 0x180170d70)
- wcsrchr (Address: 0x180170da8)
- wcsstr (Address: 0x180170dd8)
- wcstod (Address: 0x180170db0)
- wcstombs (Address: 0x180170e80)
- wcstoul (Address: 0x180170d80)
ntdll.dll
- EtwEventRegister (Address: 0x180170f50)
- EtwEventSetInformation (Address: 0x180170f60)
- EtwEventUnregister (Address: 0x180170f58)
- EtwEventWriteTransfer (Address: 0x180170f70)
- NtQueryInformationProcess (Address: 0x180170f18)
- NtQueryWnfStateData (Address: 0x180170f20)
- RtlCaptureContext (Address: 0x180170f78)
- RtlGetDeviceFamilyInfoEnum (Address: 0x180170f28)
- RtlLookupFunctionEntry (Address: 0x180170f80)
- RtlNtStatusToDosError (Address: 0x180170f48)
- RtlPublishWnfStateData (Address: 0x180170f30)
- RtlQueryWnfStateData (Address: 0x180170f40)
- RtlSubscribeWnfStateChangeNotification (Address: 0x180170f38)
- RtlUnsubscribeWnfStateChangeNotification (Address: 0x180170f68)
- RtlUpcaseUnicodeChar (Address: 0x180170f10)
- RtlVirtualUnwind (Address: 0x180170f88)
RPCRT4.dll
- I_RpcBindingInqLocalClientPID (Address: 0x180170510)
- IUnknown_AddRef_Proxy (Address: 0x180170570)
- IUnknown_QueryInterface_Proxy (Address: 0x180170588)
- IUnknown_Release_Proxy (Address: 0x180170590)
- NdrClientCall3 (Address: 0x180170550)
- NdrDllCanUnloadNow (Address: 0x180170560)
- NdrDllGetClassObject (Address: 0x180170558)
- NdrOleAllocate (Address: 0x180170598)
- NdrOleFree (Address: 0x180170578)
- NdrStubCall3 (Address: 0x180170580)
- NdrStubForwardingFunction (Address: 0x180170568)
- RpcBindingFromStringBindingW (Address: 0x180170520)
- RpcBindingSetAuthInfoExW (Address: 0x180170538)
- RpcServerInqCallAttributesW (Address: 0x180170518)
- RpcStringBindingComposeW (Address: 0x180170530)
- RpcStringFreeW (Address: 0x180170548)
- UuidCreate (Address: 0x180170540)
- UuidFromStringW (Address: 0x180170528)
webservices.dll
- WsCreateError (Address: 0x180170fd8)
- WsCreateHeap (Address: 0x180170fe0)
- WsCreateReader (Address: 0x180170f98)
- WsFindAttribute (Address: 0x180171010)
- WsFreeError (Address: 0x180170ff8)
- WsFreeHeap (Address: 0x180170ff0)
- WsFreeReader (Address: 0x180170fe8)
- WsGetReaderPosition (Address: 0x180170fc0)
- WsMoveReader (Address: 0x180170fb0)
- WsReadBytes (Address: 0x180170fc8)
- WsReadChars (Address: 0x180171018)
- WsReadEndAttribute (Address: 0x180171000)
- WsReadStartAttribute (Address: 0x180171008)
- WsReadStartElement (Address: 0x180170fd0)
- WsReadToStartElement (Address: 0x180170fb8)
- WsReadXmlBufferFromBytes (Address: 0x180170fa0)
- WsSetInputToBuffer (Address: 0x180170fa8)
WINHTTP.dll
- WinHttpAddRequestHeaders (Address: 0x1801705d0)
- WinHttpCloseHandle (Address: 0x1801705b8)
- WinHttpConnect (Address: 0x1801705b0)
- WinHttpCrackUrl (Address: 0x1801705a8)
- WinHttpGetDefaultProxyConfiguration (Address: 0x1801705c0)
- WinHttpGetIEProxyConfigForCurrentUser (Address: 0x1801705c8)
- WinHttpGetProxyForUrl (Address: 0x1801705d8)
- WinHttpOpen (Address: 0x180170620)
- WinHttpOpenRequest (Address: 0x1801705f8)
- WinHttpQueryHeaders (Address: 0x180170618)
- WinHttpReadData (Address: 0x180170608)
- WinHttpReceiveResponse (Address: 0x180170610)
- WinHttpSendRequest (Address: 0x1801705f0)
- WinHttpSetOption (Address: 0x1801705e0)
- WinHttpSetStatusCallback (Address: 0x180170600)
- WinHttpSetTimeouts (Address: 0x1801705e8)