ProximityServicePal.dll
Description: Proximity Service PAL
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.4355
Architecture: 64-bit
Operating System: Windows NT
SHA256: 82a6e271be82405babc87af9a81a71b5
File Size: 58.0 KB
Uploaded At: Dec. 1, 2025, 7:37 a.m.
Views: 3
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- PAL_AllowNetworkInterface (Ordinal: 1, Address: 0x4f00)
- PAL_BluetoothEnableDiscovery (Ordinal: 2, Address: 0x17d0)
- PAL_BluetoothFindDeviceClose (Ordinal: 3, Address: 0x17d0)
- PAL_BluetoothFindFirstDevice (Ordinal: 4, Address: 0x17d0)
- PAL_BluetoothFindFirstRadio (Ordinal: 5, Address: 0x4f20)
- PAL_BluetoothFindRadioClose (Ordinal: 6, Address: 0x17d0)
- PAL_BluetoothOpenFirewall (Ordinal: 7, Address: 0x4f30)
- PAL_ConvertAppIdToPackageName (Ordinal: 8, Address: 0x5130)
- PAL_CreateForegroundNotifier (Ordinal: 9, Address: 0x5140)
- PAL_CreateUnicastIpAddressEntry (Ordinal: 10, Address: 0x5150)
- PAL_DeleteUnicastIpAddressEntry (Ordinal: 11, Address: 0x5170)
- PAL_FWIndicateTupleInUse (Ordinal: 12, Address: 0x5190)
- PAL_FWResetIndicatedTupleInUse (Ordinal: 13, Address: 0x1750)
- PAL_GetCallingApplicationInfo (Ordinal: 14, Address: 0x5200)
- PAL_GetConsoleSessionInfo (Ordinal: 15, Address: 0x13b0)
- PAL_HasWFDHardwareSupport (Ordinal: 16, Address: 0x5550)
- PAL_IsInteractiveApplicationId (Ordinal: 17, Address: 0x5560)
- PAL_IsMachineDomainJoined (Ordinal: 18, Address: 0x5820)
- PAL_OpenProcessForQuery (Ordinal: 19, Address: 0x5990)
- PAL_RegisterConnectedStandbyNotification (Ordinal: 20, Address: 0x59f0)
- PAL_RegisterConsoleDisplayStateNotifications (Ordinal: 21, Address: 0x10b0)
- PAL_ServiceFreeTransientObjectSecurityAttribute (Ordinal: 22, Address: 0x17d0)
- PAL_ServiceQueryTransientObjectSecurityAttribute (Ordinal: 23, Address: 0x4f20)
- PAL_UnregisterConnectedStandbyNotification (Ordinal: 24, Address: 0x5b70)
- PAL_UnregisterConsoleDisplayStateNotifications (Ordinal: 25, Address: 0x5cd0)
- PAL_VerifyCallerIsElevated (Ordinal: 26, Address: 0x5d10)
- PAL_CoCreateInstanceInSession (Ordinal: 27, Address: 0x6d40)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x18000b250)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x18000b270)
- IsDebuggerPresent (Address: 0x18000b268)
- OutputDebugStringW (Address: 0x18000b260)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x18000b280)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x18000b290)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x18000b2b8)
- RaiseException (Address: 0x18000b2a0)
- SetLastError (Address: 0x18000b2a8)
- SetUnhandledExceptionFilter (Address: 0x18000b2c0)
- UnhandledExceptionFilter (Address: 0x18000b2b0)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x18000b2d0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x18000b2e0)
- HeapAlloc (Address: 0x18000b2f0)
- HeapFree (Address: 0x18000b2e8)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- WTSGetActiveConsoleSessionId (Address: 0x18000b300)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x18000b318)
- GetModuleFileNameA (Address: 0x18000b310)
- GetModuleHandleExW (Address: 0x18000b320)
- GetModuleHandleW (Address: 0x18000b328)
- GetProcAddress (Address: 0x18000b330)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x18000b340)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x18000b388)
- GetCurrentProcessId (Address: 0x18000b380)
- GetCurrentThreadId (Address: 0x18000b368)
- GetProcessId (Address: 0x18000b390)
- OpenProcessToken (Address: 0x18000b378)
- ProcessIdToSessionId (Address: 0x18000b360)
- TerminateProcess (Address: 0x18000b350)
- TlsAlloc (Address: 0x18000b3a0)
- TlsFree (Address: 0x18000b398)
- TlsGetValue (Address: 0x18000b370)
- TlsSetValue (Address: 0x18000b358)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x18000b3b0)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x18000b3c0)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x18000b3d0)
- RtlLookupFunctionEntry (Address: 0x18000b3d8)
- RtlVirtualUnwind (Address: 0x18000b3e0)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
- QISearch (Address: 0x18000b3f0)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x18000b400)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x18000b450)
- AcquireSRWLockShared (Address: 0x18000b470)
- CreateMutexExW (Address: 0x18000b448)
- CreateSemaphoreExW (Address: 0x18000b488)
- DeleteCriticalSection (Address: 0x18000b418)
- EnterCriticalSection (Address: 0x18000b460)
- InitializeCriticalSection (Address: 0x18000b420)
- InitializeSRWLock (Address: 0x18000b428)
- LeaveCriticalSection (Address: 0x18000b480)
- OpenSemaphoreW (Address: 0x18000b440)
- ReleaseMutex (Address: 0x18000b478)
- ReleaseSemaphore (Address: 0x18000b468)
- ReleaseSRWLockExclusive (Address: 0x18000b458)
- ReleaseSRWLockShared (Address: 0x18000b410)
- WaitForSingleObject (Address: 0x18000b430)
- WaitForSingleObjectEx (Address: 0x18000b438)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x18000b498)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x18000b4a8)
- GetTickCount (Address: 0x18000b4b0)
api-ms-win-core-threadpool-l1-2-0.dll
- CallbackMayRunLong (Address: 0x18000b4e0)
- CloseThreadpoolWork (Address: 0x18000b4c0)
- CreateThreadpoolWork (Address: 0x18000b4d0)
- SubmitThreadpoolWork (Address: 0x18000b4d8)
- WaitForThreadpoolWorkCallbacks (Address: 0x18000b4c8)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x18000b4f0)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCreateStringReference (Address: 0x18000b500)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- GetTraceEnableFlags (Address: 0x18000b538)
- GetTraceEnableLevel (Address: 0x18000b528)
- GetTraceLoggerHandle (Address: 0x18000b518)
- RegisterTraceGuidsW (Address: 0x18000b520)
- TraceMessage (Address: 0x18000b530)
- UnregisterTraceGuids (Address: 0x18000b510)
api-ms-win-power-setting-l1-1-0.dll
- PowerSettingRegisterNotification (Address: 0x18000b548)
- PowerSettingUnregisterNotification (Address: 0x18000b550)
api-ms-win-security-base-l1-1-0.dll
- AllocateAndInitializeSid (Address: 0x18000b578)
- CheckTokenMembership (Address: 0x18000b568)
- DuplicateTokenEx (Address: 0x18000b560)
- FreeSid (Address: 0x18000b570)
msvcrt.dll
- __C_specific_handler (Address: 0x18000b588)
- __dllonexit (Address: 0x18000b5c8)
- _amsg_exit (Address: 0x18000b5b8)
- _callnewh (Address: 0x18000b5d8)
- _initterm (Address: 0x18000b5b0)
- _lock (Address: 0x18000b5a0)
- _onexit (Address: 0x18000b5e8)
- _purecall (Address: 0x18000b5f8)
- _unlock (Address: 0x18000b5a8)
- _vsnwprintf (Address: 0x18000b600)
- _XcptFilter (Address: 0x18000b5d0)
- free (Address: 0x18000b5f0)
- malloc (Address: 0x18000b5e0)
- memcpy (Address: 0x18000b608)
- memcpy_s (Address: 0x18000b598)
- memset (Address: 0x18000b610)
- wcschr (Address: 0x18000b590)
- wcsrchr (Address: 0x18000b5c0)
ntdll.dll
- NtQueryInformationProcess (Address: 0x18000b648)
- NtQueryInformationToken (Address: 0x18000b640)
- RtlAllocateHeap (Address: 0x18000b620)
- RtlCompareUnicodeString (Address: 0x18000b630)
- RtlFreeHeap (Address: 0x18000b680)
- RtlInitUnicodeString (Address: 0x18000b638)
- RtlIsMultiSessionSku (Address: 0x18000b658)
- RtlNtStatusToDosErrorNoTeb (Address: 0x18000b628)
- RtlQueryPackageClaims (Address: 0x18000b650)
- RtlQueryWnfStateData (Address: 0x18000b670)
- RtlSubscribeWnfStateChangeNotification (Address: 0x18000b668)
- RtlUnsubscribeWnfNotificationWaitForCompletion (Address: 0x18000b678)
- RtlUnsubscribeWnfNotificationWithCompletionCallback (Address: 0x18000b660)