file.dll

Description: Microsoft Store Runtime DLL

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.18362.1110

Architecture: 64-bit

Operating System: Windows NT

SHA256: c1469dea551c95d2c68eb42ceb37f020

File Size: 2.2 MB

Uploaded At: April 6, 2026, 1:08 p.m.

Views: 10

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x5b60)
  • DllGetActivationFactory (Ordinal: 2, Address: 0x57f0)
  • DllGetClassObject (Ordinal: 3, Address: 0x5960)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x180170630)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x180170650)
  • IsDebuggerPresent (Address: 0x180170648)
  • OutputDebugStringW (Address: 0x180170640)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180170660)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180170670)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180170690)
  • RaiseException (Address: 0x180170680)
  • SetLastError (Address: 0x180170688)
  • SetUnhandledExceptionFilter (Address: 0x1801706a0)
  • UnhandledExceptionFilter (Address: 0x180170698)
api-ms-win-core-file-l1-1-0.dll
  • CompareFileTime (Address: 0x1801706c0)
  • CreateDirectoryW (Address: 0x1801706f0)
  • CreateFileA (Address: 0x1801706d0)
  • CreateFileW (Address: 0x180170708)
  • DeleteFileA (Address: 0x1801706c8)
  • DeleteFileW (Address: 0x180170700)
  • FileTimeToLocalFileTime (Address: 0x1801706d8)
  • FindClose (Address: 0x180170710)
  • FindFirstFileA (Address: 0x180170718)
  • FindFirstFileExA (Address: 0x1801706e0)
  • FindNextFileA (Address: 0x1801706e8)
  • GetFileInformationByHandle (Address: 0x180170720)
  • GetFileSize (Address: 0x1801706b0)
  • ReadFile (Address: 0x1801706f8)
  • SetFilePointer (Address: 0x180170728)
  • WriteFile (Address: 0x1801706b8)
api-ms-win-core-file-l1-2-2.dll
  • GetTempFileNameA (Address: 0x180170738)
  • GetTempPathA (Address: 0x180170740)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180170750)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180170768)
  • HeapAlloc (Address: 0x180170778)
  • HeapFree (Address: 0x180170770)
  • HeapReAlloc (Address: 0x180170760)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180170788)
  • LocalFree (Address: 0x180170790)
api-ms-win-core-heap-obsolete-l1-1-0.dll
  • GlobalFree (Address: 0x1801707a0)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • FileTimeToDosDateTime (Address: 0x1801707b0)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1801707d0)
  • FindResourceExW (Address: 0x180170800)
  • FreeLibrary (Address: 0x1801707c0)
  • FreeResource (Address: 0x1801707d8)
  • GetModuleFileNameA (Address: 0x180170808)
  • GetModuleHandleExW (Address: 0x180170810)
  • GetModuleHandleW (Address: 0x1801707e8)
  • GetProcAddress (Address: 0x1801707c8)
  • LoadResource (Address: 0x1801707f8)
  • LoadStringW (Address: 0x180170818)
  • LockResource (Address: 0x1801707e0)
  • SizeofResource (Address: 0x1801707f0)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x180170848)
  • GetGeoInfoW (Address: 0x180170828)
  • GetLocaleInfoEx (Address: 0x180170850)
  • GetUserDefaultLocaleName (Address: 0x180170830)
  • GetUserGeoID (Address: 0x180170838)
  • LCMapStringEx (Address: 0x180170840)
api-ms-win-core-localization-l2-1-0.dll
  • GetCurrencyFormatEx (Address: 0x180170860)
api-ms-win-core-path-l1-1-0.dll
  • PathCchAddExtension (Address: 0x180170878)
  • PathCchAppendEx (Address: 0x180170870)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsA (Address: 0x180170888)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1801708b0)
  • GetCurrentProcessId (Address: 0x1801708d0)
  • GetCurrentThread (Address: 0x1801708b8)
  • GetCurrentThreadId (Address: 0x1801708e0)
  • GetProcessId (Address: 0x180170898)
  • GetProcessIdOfThread (Address: 0x1801708d8)
  • OpenProcessToken (Address: 0x1801708c8)
  • OpenThread (Address: 0x1801708a8)
  • OpenThreadToken (Address: 0x1801708c0)
  • TerminateProcess (Address: 0x1801708a0)
api-ms-win-core-processthreads-l1-1-1.dll
  • OpenProcess (Address: 0x1801708f0)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180170900)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180170920)
  • RegGetValueW (Address: 0x180170928)
  • RegOpenCurrentUser (Address: 0x180170910)
  • RegOpenKeyExW (Address: 0x180170918)
api-ms-win-core-registry-l1-1-1.dll
  • RegDeleteKeyValueW (Address: 0x180170940)
  • RegSetKeyValueW (Address: 0x180170938)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathAppendA (Address: 0x180170958)
  • PathCombineA (Address: 0x180170950)
  • PathRemoveFileSpecA (Address: 0x180170960)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x180170970)
  • CompareStringW (Address: 0x180170978)
  • MultiByteToWideChar (Address: 0x180170980)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1801709c0)
  • AcquireSRWLockShared (Address: 0x1801709b8)
  • CreateEventExW (Address: 0x180170a08)
  • CreateEventW (Address: 0x1801709d8)
  • CreateMutexExW (Address: 0x180170998)
  • CreateSemaphoreExW (Address: 0x180170a38)
  • DeleteCriticalSection (Address: 0x180170a20)
  • EnterCriticalSection (Address: 0x180170a30)
  • InitializeCriticalSection (Address: 0x1801709f8)
  • InitializeCriticalSectionEx (Address: 0x180170a18)
  • InitializeSRWLock (Address: 0x1801709a0)
  • LeaveCriticalSection (Address: 0x180170a28)
  • OpenSemaphoreW (Address: 0x1801709d0)
  • ReleaseMutex (Address: 0x1801709e0)
  • ReleaseSemaphore (Address: 0x1801709e8)
  • ReleaseSRWLockExclusive (Address: 0x180170990)
  • ReleaseSRWLockShared (Address: 0x1801709f0)
  • ResetEvent (Address: 0x1801709a8)
  • SetEvent (Address: 0x180170a10)
  • WaitForMultipleObjectsEx (Address: 0x180170a00)
  • WaitForSingleObject (Address: 0x1801709b0)
  • WaitForSingleObjectEx (Address: 0x1801709c8)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceExecuteOnce (Address: 0x180170a50)
  • Sleep (Address: 0x180170a48)
  • SleepConditionVariableSRW (Address: 0x180170a60)
  • WakeAllConditionVariable (Address: 0x180170a58)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetLocalTime (Address: 0x180170a98)
  • GetSystemTime (Address: 0x180170a80)
  • GetSystemTimeAsFileTime (Address: 0x180170a90)
  • GetTickCount (Address: 0x180170a78)
  • GetTickCount64 (Address: 0x180170a88)
  • GetVersionExA (Address: 0x180170a70)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x180170ab0)
  • CreateThreadpoolTimer (Address: 0x180170ac0)
  • SetThreadpoolTimer (Address: 0x180170ab8)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180170aa8)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
  • QueueUserWorkItem (Address: 0x180170ad0)
api-ms-win-core-timezone-l1-1-0.dll
  • FileTimeToSystemTime (Address: 0x180170ae0)
  • SystemTimeToFileTime (Address: 0x180170ae8)
api-ms-win-core-url-l1-1-0.dll
  • UrlEscapeW (Address: 0x180170af8)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x180170b08)
  • EncodePointer (Address: 0x180170b10)
api-ms-win-eventing-legacy-l1-1-0.dll
  • FlushTraceW (Address: 0x180170b28)
  • QueryTraceW (Address: 0x180170b20)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x180170b38)
  • EventProviderEnabled (Address: 0x180170b50)
  • EventRegister (Address: 0x180170b48)
  • EventUnregister (Address: 0x180170b40)
  • EventWriteTransfer (Address: 0x180170b58)
api-ms-win-security-base-l1-1-0.dll
  • AllocateAndInitializeSid (Address: 0x180170b90)
  • CopySid (Address: 0x180170b80)
  • DuplicateTokenEx (Address: 0x180170b70)
  • FreeSid (Address: 0x180170b98)
  • GetLengthSid (Address: 0x180170b78)
  • GetTokenInformation (Address: 0x180170ba0)
  • ImpersonateLoggedOnUser (Address: 0x180170b68)
  • RevertToSelf (Address: 0x180170b88)
api-ms-win-security-base-l1-2-0.dll
  • CheckTokenMembershipEx (Address: 0x180170bb0)
api-ms-win-security-capability-l1-1-0.dll
  • CapabilityCheck (Address: 0x180170bc0)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x180170bd0)
api-ms-win-shcore-stream-winrt-l1-1-0.dll
  • CreateRandomAccessStreamOverStream (Address: 0x180170be0)
Cabinet.dll
  • (Address: 0x180170500)
  • (Address: 0x1801704e8)
  • (Address: 0x1801704f0)
  • (Address: 0x1801704f8)
combase.dll
  • (Address: 0x180170bf0)
  • (Address: 0x180170bf8)
  • (Address: 0x180170c00)
  • (Address: 0x180170c08)
  • (Address: 0x180170c18)
  • (Address: 0x180170c28)
  • (Address: 0x180170c30)
  • (Address: 0x180170c40)
  • (Address: 0x180170c50)
  • (Address: 0x180170c68)
  • (Address: 0x180170c70)
  • (Address: 0x180170c78)
  • (Address: 0x180170c80)
  • (Address: 0x180170c90)
  • (Address: 0x180170c98)
  • (Address: 0x180170cb0)
  • (Address: 0x180170cd0)
  • (Address: 0x180170ce8)
  • (Address: 0x180170cf0)
  • (Address: 0x180170cf8)
  • (Address: 0x180170d00)
  • (Address: 0x180170d10)
  • (Address: 0x180170d18)
  • (Address: 0x180170d20)
  • (Address: 0x180170d28)
  • CStdStubBuffer_AddRef (Address: 0x180170ce0)
  • CStdStubBuffer_Connect (Address: 0x180170c60)
  • CStdStubBuffer_CountRefs (Address: 0x180170c10)
  • CStdStubBuffer_DebugServerQueryInterface (Address: 0x180170cc0)
  • CStdStubBuffer_DebugServerRelease (Address: 0x180170c38)
  • CStdStubBuffer_Disconnect (Address: 0x180170c58)
  • CStdStubBuffer_Invoke (Address: 0x180170ca8)
  • CStdStubBuffer_IsIIDSupported (Address: 0x180170c48)
  • CStdStubBuffer_QueryInterface (Address: 0x180170c20)
  • CStdStubBuffer2_Connect (Address: 0x180170d08)
  • CStdStubBuffer2_CountRefs (Address: 0x180170cb8)
  • CStdStubBuffer2_Disconnect (Address: 0x180170cc8)
  • CStdStubBuffer2_QueryInterface (Address: 0x180170cd8)
  • NdrCStdStubBuffer_Release (Address: 0x180170ca0)
  • NdrCStdStubBuffer2_Release (Address: 0x180170c88)
CRYPTSP.dll
  • CryptAcquireContextW (Address: 0x1801704d8)
  • CryptCreateHash (Address: 0x1801704b0)
  • CryptDestroyHash (Address: 0x1801704c8)
  • CryptGetHashParam (Address: 0x1801704c0)
  • CryptHashData (Address: 0x1801704b8)
  • CryptReleaseContext (Address: 0x1801704d0)
iertutil.dll
  • (Address: 0x180170d48)
  • (Address: 0x180170d38)
  • (Address: 0x180170d40)
  • (Address: 0x180170d50)
msvcrt.dll
  • __C_specific_handler (Address: 0x180170ed8)
  • __CxxFrameHandler3 (Address: 0x180170e40)
  • __dllonexit (Address: 0x180170e50)
  • _amsg_exit (Address: 0x180170eb0)
  • _callnewh (Address: 0x180170d60)
  • _errno (Address: 0x180170e38)
  • _initterm (Address: 0x180170ea8)
  • _itow_s (Address: 0x180170de8)
  • _lock (Address: 0x180170ea0)
  • _onexit (Address: 0x180170e48)
  • _purecall (Address: 0x180170ee8)
  • _set_errno (Address: 0x180170e68)
  • _snwprintf_s (Address: 0x180170d90)
  • _unlock (Address: 0x180170e98)
  • _vsnprintf (Address: 0x180170d88)
  • _vsnwprintf (Address: 0x180170ef8)
  • _wcsdup (Address: 0x180170dc0)
  • _wcsicmp (Address: 0x180170df0)
  • _wcstoi64 (Address: 0x180170db8)
  • _wcstoui64 (Address: 0x180170d98)
  • _wcsupr (Address: 0x180170e90)
  • _wtof (Address: 0x180170d78)
  • _wtoi (Address: 0x180170d68)
  • _wtol (Address: 0x180170dc8)
  • _XcptFilter (Address: 0x180170eb8)
  • ??_V@YAXPEAX@Z (Address: 0x180170ed0)
  • floor (Address: 0x180170de0)
  • free (Address: 0x180170ee0)
  • malloc (Address: 0x180170ec0)
  • mbstowcs_s (Address: 0x180170e18)
  • memcmp (Address: 0x180170df8)
  • memcpy (Address: 0x180170e00)
  • memcpy_s (Address: 0x180170ef0)
  • memmove (Address: 0x180170e08)
  • memmove_s (Address: 0x180170e20)
  • memset (Address: 0x180170e10)
  • realloc (Address: 0x180170e30)
  • sprintf_s (Address: 0x180170e88)
  • strchr (Address: 0x180170e58)
  • strcmp (Address: 0x180170e28)
  • strncpy_s (Address: 0x180170e78)
  • strrchr (Address: 0x180170e60)
  • strtol (Address: 0x180170e70)
  • toupper (Address: 0x180170dd0)
  • wcschr (Address: 0x180170da0)
  • wcscmp (Address: 0x180170f00)
  • wcscpy_s (Address: 0x180170ec8)
  • wcscspn (Address: 0x180170d70)
  • wcsrchr (Address: 0x180170da8)
  • wcsstr (Address: 0x180170dd8)
  • wcstod (Address: 0x180170db0)
  • wcstombs (Address: 0x180170e80)
  • wcstoul (Address: 0x180170d80)
ntdll.dll
  • EtwEventRegister (Address: 0x180170f50)
  • EtwEventSetInformation (Address: 0x180170f60)
  • EtwEventUnregister (Address: 0x180170f58)
  • EtwEventWriteTransfer (Address: 0x180170f70)
  • NtQueryInformationProcess (Address: 0x180170f18)
  • NtQueryWnfStateData (Address: 0x180170f20)
  • RtlCaptureContext (Address: 0x180170f78)
  • RtlGetDeviceFamilyInfoEnum (Address: 0x180170f28)
  • RtlLookupFunctionEntry (Address: 0x180170f80)
  • RtlNtStatusToDosError (Address: 0x180170f48)
  • RtlPublishWnfStateData (Address: 0x180170f30)
  • RtlQueryWnfStateData (Address: 0x180170f40)
  • RtlSubscribeWnfStateChangeNotification (Address: 0x180170f38)
  • RtlUnsubscribeWnfStateChangeNotification (Address: 0x180170f68)
  • RtlUpcaseUnicodeChar (Address: 0x180170f10)
  • RtlVirtualUnwind (Address: 0x180170f88)
RPCRT4.dll
  • I_RpcBindingInqLocalClientPID (Address: 0x180170510)
  • IUnknown_AddRef_Proxy (Address: 0x180170570)
  • IUnknown_QueryInterface_Proxy (Address: 0x180170588)
  • IUnknown_Release_Proxy (Address: 0x180170590)
  • NdrClientCall3 (Address: 0x180170550)
  • NdrDllCanUnloadNow (Address: 0x180170560)
  • NdrDllGetClassObject (Address: 0x180170558)
  • NdrOleAllocate (Address: 0x180170598)
  • NdrOleFree (Address: 0x180170578)
  • NdrStubCall3 (Address: 0x180170580)
  • NdrStubForwardingFunction (Address: 0x180170568)
  • RpcBindingFromStringBindingW (Address: 0x180170520)
  • RpcBindingSetAuthInfoExW (Address: 0x180170538)
  • RpcServerInqCallAttributesW (Address: 0x180170518)
  • RpcStringBindingComposeW (Address: 0x180170530)
  • RpcStringFreeW (Address: 0x180170548)
  • UuidCreate (Address: 0x180170540)
  • UuidFromStringW (Address: 0x180170528)
webservices.dll
  • WsCreateError (Address: 0x180170fd8)
  • WsCreateHeap (Address: 0x180170fe0)
  • WsCreateReader (Address: 0x180170f98)
  • WsFindAttribute (Address: 0x180171010)
  • WsFreeError (Address: 0x180170ff8)
  • WsFreeHeap (Address: 0x180170ff0)
  • WsFreeReader (Address: 0x180170fe8)
  • WsGetReaderPosition (Address: 0x180170fc0)
  • WsMoveReader (Address: 0x180170fb0)
  • WsReadBytes (Address: 0x180170fc8)
  • WsReadChars (Address: 0x180171018)
  • WsReadEndAttribute (Address: 0x180171000)
  • WsReadStartAttribute (Address: 0x180171008)
  • WsReadStartElement (Address: 0x180170fd0)
  • WsReadToStartElement (Address: 0x180170fb8)
  • WsReadXmlBufferFromBytes (Address: 0x180170fa0)
  • WsSetInputToBuffer (Address: 0x180170fa8)
WINHTTP.dll
  • WinHttpAddRequestHeaders (Address: 0x1801705d0)
  • WinHttpCloseHandle (Address: 0x1801705b8)
  • WinHttpConnect (Address: 0x1801705b0)
  • WinHttpCrackUrl (Address: 0x1801705a8)
  • WinHttpGetDefaultProxyConfiguration (Address: 0x1801705c0)
  • WinHttpGetIEProxyConfigForCurrentUser (Address: 0x1801705c8)
  • WinHttpGetProxyForUrl (Address: 0x1801705d8)
  • WinHttpOpen (Address: 0x180170620)
  • WinHttpOpenRequest (Address: 0x1801705f8)
  • WinHttpQueryHeaders (Address: 0x180170618)
  • WinHttpReadData (Address: 0x180170608)
  • WinHttpReceiveResponse (Address: 0x180170610)
  • WinHttpSendRequest (Address: 0x1801705f0)
  • WinHttpSetOption (Address: 0x1801705e0)
  • WinHttpSetStatusCallback (Address: 0x180170600)
  • WinHttpSetTimeouts (Address: 0x1801705e8)