profext.dll

Description: profext

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5794

Architecture: 64-bit

Operating System: Windows NT

SHA256: e1e0cf33986ce9c87c0c1673d44bcd08

File Size: 174.6 KB

Uploaded At: Dec. 1, 2025, 7:36 a.m.

Views: 4

Exported Functions

  • CreateAppContainerProfileWorker (Ordinal: 1, Address: 0x6df0)
  • CreateDirectoryJunctionsForSystemWorker (Ordinal: 2, Address: 0x18e00)
  • CreateDirectoryJunctionsForUserProfileWorker (Ordinal: 3, Address: 0x19280)
  • CreateGroupExWorker (Ordinal: 4, Address: 0x1adb0)
  • CreateLinkFileExWorker (Ordinal: 5, Address: 0x1af70)
  • DeleteAppContainerProfileWorker (Ordinal: 6, Address: 0x14a80)
  • DeleteGroupWorker (Ordinal: 7, Address: 0x1b520)
  • DeleteLinkFileWorker (Ordinal: 8, Address: 0x1b900)
  • DeriveAppContainerSidFromAppContainerNameWorker (Ordinal: 9, Address: 0x71b0)
  • DeriveRestrictedAppContainerSidFromAppContainerSidAndRestrictedNameWorker (Ordinal: 10, Address: 0x5e80)
  • GetAppContainerFolderPathWorker (Ordinal: 11, Address: 0x5cf0)
  • GetAppContainerRegistryLocationWorker (Ordinal: 12, Address: 0x5ee0)
  • IsAppContainerProfilePresentWorker (Ordinal: 13, Address: 0x15d20)
  • LookupAppContainerDisplayNameWorker (Ordinal: 14, Address: 0x16100)
  • ProcessGroupPolicyCompletedExWorker (Ordinal: 15, Address: 0x1a2b0)
  • ProcessGroupPolicyCompletedWorker (Ordinal: 16, Address: 0x1a320)
  • RsopAccessCheckByTypeWorker (Ordinal: 17, Address: 0x1a380)
  • RsopFileAccessCheckWorker (Ordinal: 18, Address: 0x1a440)
  • RsopResetPolicySettingStatusWorker (Ordinal: 19, Address: 0x1a4b0)
  • RsopSetPolicySettingStatusWorker (Ordinal: 20, Address: 0x1a510)
  • UpdateAppContainerProfileWorker (Ordinal: 21, Address: 0x17d70)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x18001dff0)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x18001e010)
  • CoInitializeEx (Address: 0x18001e000)
  • CoTaskMemAlloc (Address: 0x18001e018)
  • CoTaskMemFree (Address: 0x18001e008)
  • CoUninitialize (Address: 0x18001e020)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x18001e040)
  • IsDebuggerPresent (Address: 0x18001e030)
  • OutputDebugStringW (Address: 0x18001e038)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x18001e050)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x18001e060)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x18001e078)
  • SetLastError (Address: 0x18001e088)
  • SetUnhandledExceptionFilter (Address: 0x18001e070)
  • UnhandledExceptionFilter (Address: 0x18001e080)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x18001e098)
  • CreateFileW (Address: 0x18001e0d0)
  • DeleteFileW (Address: 0x18001e0b0)
  • FindClose (Address: 0x18001e0d8)
  • FindFirstFileW (Address: 0x18001e0a8)
  • FindNextFileW (Address: 0x18001e0a0)
  • GetFileAttributesW (Address: 0x18001e0b8)
  • GetFinalPathNameByHandleW (Address: 0x18001e0c8)
  • RemoveDirectoryW (Address: 0x18001e0e0)
  • SetFileAttributesW (Address: 0x18001e0c0)
api-ms-win-core-file-l2-1-0.dll
  • CreateSymbolicLinkW (Address: 0x18001e0f8)
  • GetFileInformationByHandleEx (Address: 0x18001e0f0)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x18001e108)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x18001e128)
  • HeapAlloc (Address: 0x18001e120)
  • HeapFree (Address: 0x18001e130)
  • HeapReAlloc (Address: 0x18001e118)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x18001e140)
  • LocalFree (Address: 0x18001e148)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x18001e158)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x18001e168)
  • FindResourceExW (Address: 0x18001e190)
  • GetModuleFileNameA (Address: 0x18001e188)
  • GetModuleHandleExW (Address: 0x18001e170)
  • GetModuleHandleW (Address: 0x18001e180)
  • GetProcAddress (Address: 0x18001e178)
  • LoadResource (Address: 0x18001e1a0)
  • LockResource (Address: 0x18001e198)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x18001e1b0)
api-ms-win-core-path-l1-1-0.dll
  • PathAllocCanonicalize (Address: 0x18001e1c0)
  • PathCchRemoveBackslash (Address: 0x18001e1d0)
  • PathCchRemoveFileSpec (Address: 0x18001e1c8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x18001e1e0)
  • SearchPathW (Address: 0x18001e1e8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x18001e210)
  • GetCurrentProcessId (Address: 0x18001e218)
  • GetCurrentThread (Address: 0x18001e220)
  • GetCurrentThreadId (Address: 0x18001e200)
  • OpenProcessToken (Address: 0x18001e228)
  • OpenThreadToken (Address: 0x18001e1f8)
  • TerminateProcess (Address: 0x18001e208)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x18001e238)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x18001e258)
  • RegCreateKeyExW (Address: 0x18001e250)
  • RegDeleteTreeW (Address: 0x18001e268)
  • RegOpenKeyExW (Address: 0x18001e248)
  • RegQueryValueExW (Address: 0x18001e260)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x18001e278)
  • RtlLookupFunctionEntry (Address: 0x18001e280)
  • RtlVirtualUnwind (Address: 0x18001e288)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathGetArgsW (Address: 0x18001e2a0)
  • PathUnquoteSpacesW (Address: 0x18001e298)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x18001e2b0)
api-ms-win-core-string-l2-1-1.dll
  • SHLoadIndirectString (Address: 0x18001e2c0)
api-ms-win-core-string-obsolete-l1-1-0.dll
  • lstrcmpiW (Address: 0x18001e2d0)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x18001e350)
  • AcquireSRWLockShared (Address: 0x18001e2e8)
  • CreateMutexExW (Address: 0x18001e2f8)
  • CreateSemaphoreExW (Address: 0x18001e330)
  • DeleteCriticalSection (Address: 0x18001e318)
  • EnterCriticalSection (Address: 0x18001e348)
  • InitializeCriticalSectionEx (Address: 0x18001e338)
  • LeaveCriticalSection (Address: 0x18001e340)
  • OpenSemaphoreW (Address: 0x18001e300)
  • ReleaseMutex (Address: 0x18001e310)
  • ReleaseSemaphore (Address: 0x18001e328)
  • ReleaseSRWLockExclusive (Address: 0x18001e2f0)
  • ReleaseSRWLockShared (Address: 0x18001e308)
  • WaitForSingleObject (Address: 0x18001e320)
  • WaitForSingleObjectEx (Address: 0x18001e2e0)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x18001e360)
  • InitOnceComplete (Address: 0x18001e370)
  • Sleep (Address: 0x18001e368)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x18001e388)
  • GetTickCount (Address: 0x18001e380)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x18001e3a8)
  • CreateThreadpoolTimer (Address: 0x18001e3b0)
  • SetThreadpoolTimer (Address: 0x18001e3a0)
  • WaitForThreadpoolTimerCallbacks (Address: 0x18001e398)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventProviderEnabled (Address: 0x18001e3d0)
  • EventRegister (Address: 0x18001e3e0)
  • EventSetInformation (Address: 0x18001e3d8)
  • EventUnregister (Address: 0x18001e3c8)
  • EventWriteTransfer (Address: 0x18001e3c0)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAce (Address: 0x18001e450)
  • AddAccessAllowedAceEx (Address: 0x18001e420)
  • AddAccessDeniedAce (Address: 0x18001e3f0)
  • AllocateAndInitializeSid (Address: 0x18001e3f8)
  • CopySid (Address: 0x18001e438)
  • DestroyPrivateObjectSecurity (Address: 0x18001e410)
  • FreeSid (Address: 0x18001e430)
  • GetLengthSid (Address: 0x18001e448)
  • GetSecurityDescriptorSacl (Address: 0x18001e408)
  • GetSidSubAuthority (Address: 0x18001e418)
  • GetSidSubAuthorityCount (Address: 0x18001e440)
  • GetTokenInformation (Address: 0x18001e428)
  • InitializeAcl (Address: 0x18001e400)
api-ms-win-security-provider-l1-1-0.dll
  • GetSecurityInfo (Address: 0x18001e468)
  • SetEntriesInAclW (Address: 0x18001e470)
  • SetNamedSecurityInfoW (Address: 0x18001e478)
  • SetSecurityInfo (Address: 0x18001e460)
KERNELBASE.dll
  • AppContainerDeriveSidFromMoniker (Address: 0x18001dfc8)
  • AppContainerFreeMemory (Address: 0x18001dfc0)
  • AppContainerLookupDisplayNameMrtReference (Address: 0x18001df80)
  • AppContainerLookupMoniker (Address: 0x18001dfb8)
  • AppContainerRegisterSid (Address: 0x18001df98)
  • AppContainerUnregisterSid (Address: 0x18001df90)
  • CloseState (Address: 0x18001df88)
  • GetPackageFamilyNameFromToken (Address: 0x18001dfa8)
  • GetStateRootFolder (Address: 0x18001dfa0)
  • OpenStateExplicit (Address: 0x18001dfb0)
msvcrt.dll
  • __C_specific_handler (Address: 0x18001e4c0)
  • __CxxFrameHandler3 (Address: 0x18001e580)
  • __dllonexit (Address: 0x18001e4f8)
  • _amsg_exit (Address: 0x18001e4f0)
  • _callnewh (Address: 0x18001e4a8)
  • _CxxThrowException (Address: 0x18001e4a0)
  • _get_errno (Address: 0x18001e518)
  • _initterm (Address: 0x18001e4d8)
  • _lock (Address: 0x18001e4e0)
  • _onexit (Address: 0x18001e500)
  • _purecall (Address: 0x18001e560)
  • _set_errno (Address: 0x18001e520)
  • _unlock (Address: 0x18001e578)
  • _vsnprintf_s (Address: 0x18001e540)
  • _vsnwprintf (Address: 0x18001e598)
  • _wcsnicmp (Address: 0x18001e510)
  • _XcptFilter (Address: 0x18001e4e8)
  • ??_V@YAXPEAX@Z (Address: 0x18001e528)
  • ??0exception@@QEAA@AEBQEBD@Z (Address: 0x18001e498)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x18001e490)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x18001e548)
  • ??0exception@@QEAA@XZ (Address: 0x18001e550)
  • ??1exception@@UEAA@XZ (Address: 0x18001e558)
  • ??1type_info@@UEAA@XZ (Address: 0x18001e568)
  • ??3@YAXPEAX@Z (Address: 0x18001e588)
  • ?terminate@@YAXXZ (Address: 0x18001e508)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x18001e488)
  • free (Address: 0x18001e4c8)
  • malloc (Address: 0x18001e4b0)
  • memcmp (Address: 0x18001e570)
  • memcpy (Address: 0x18001e4d0)
  • memcpy_s (Address: 0x18001e590)
  • memmove (Address: 0x18001e5a0)
  • memmove_s (Address: 0x18001e530)
  • memset (Address: 0x18001e5b0)
  • toupper (Address: 0x18001e5a8)
  • wcsncmp (Address: 0x18001e4b8)
  • wcsrchr (Address: 0x18001e538)
ntdll.dll
  • EtwEventActivityIdControl (Address: 0x18001e628)
  • EtwEventRegister (Address: 0x18001e630)
  • EtwEventSetInformation (Address: 0x18001e5d8)
  • EtwEventUnregister (Address: 0x18001e5e8)
  • EtwEventWrite (Address: 0x18001e5e0)
  • EtwEventWriteTransfer (Address: 0x18001e5f0)
  • NtQueryInformationToken (Address: 0x18001e610)
  • RtlDowncaseUnicodeString (Address: 0x18001e600)
  • RtlExpandEnvironmentStrings (Address: 0x18001e5d0)
  • RtlFreeSid (Address: 0x18001e5f8)
  • RtlGetAppContainerSidType (Address: 0x18001e620)
  • RtlInitUnicodeString (Address: 0x18001e618)
  • RtlNtStatusToDosError (Address: 0x18001e5c0)
  • RtlNtStatusToDosErrorNoTeb (Address: 0x18001e5c8)
  • RtlQueryPackageClaims (Address: 0x18001e608)
profapi.dll
  • (Address: 0x18001e668)
  • (Address: 0x18001e660)
  • (Address: 0x18001e650)
  • (Address: 0x18001e658)
  • (Address: 0x18001e640)
  • (Address: 0x18001e670)
  • (Address: 0x18001e678)
  • (Address: 0x18001e648)
  • (Address: 0x18001e680)
USERENV.dll
  • (Address: 0x18001dfe0)
  • (Address: 0x18001dfd8)