rdbui.dll

Description: ReadyBoost UI

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5794

Architecture: 64-bit

Operating System: Windows NT

SHA256: 6f4ff03fa91e7058ccd51a9b028c97ec

File Size: 656.5 KB

Uploaded At: Dec. 1, 2025, 7:37 a.m.

Views: 5

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • RDBMgmtLaunchPropertiesW (Ordinal: 1, Address: 0x5770)
  • DllCanUnloadNow (Ordinal: 2, Address: 0x5430)
  • DllGetClassObject (Ordinal: 3, Address: 0x5470)
  • DllRegisterServer (Ordinal: 4, Address: 0x55b0)
  • DllUnregisterServer (Ordinal: 5, Address: 0x5690)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x180074c38)
api-ms-win-core-datetime-l1-1-0.dll
  • GetDateFormatW (Address: 0x180074c50)
  • GetTimeFormatW (Address: 0x180074c48)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x180074c78)
  • IsDebuggerPresent (Address: 0x180074c70)
  • OutputDebugStringA (Address: 0x180074c60)
  • OutputDebugStringW (Address: 0x180074c68)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180074c88)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180074c98)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180074cb8)
  • SetLastError (Address: 0x180074cb0)
  • SetUnhandledExceptionFilter (Address: 0x180074cc0)
  • UnhandledExceptionFilter (Address: 0x180074ca8)
api-ms-win-core-file-l1-1-0.dll
  • CompareFileTime (Address: 0x180074d00)
  • CreateFileW (Address: 0x180074cd0)
  • DeleteFileW (Address: 0x180074ce8)
  • FileTimeToLocalFileTime (Address: 0x180074cf8)
  • FindClose (Address: 0x180074d40)
  • FindFirstFileExW (Address: 0x180074d18)
  • FindFirstFileW (Address: 0x180074d50)
  • FindNextFileW (Address: 0x180074ce0)
  • GetFileSize (Address: 0x180074d48)
  • GetFileSizeEx (Address: 0x180074d38)
  • GetFileTime (Address: 0x180074d10)
  • GetFinalPathNameByHandleW (Address: 0x180074d30)
  • ReadFile (Address: 0x180074d08)
  • SetEndOfFile (Address: 0x180074d20)
  • SetFileInformationByHandle (Address: 0x180074cd8)
  • SetFilePointerEx (Address: 0x180074d28)
  • WriteFile (Address: 0x180074cf0)
api-ms-win-core-file-l2-1-0.dll
  • MoveFileExW (Address: 0x180074d60)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180074d78)
  • DuplicateHandle (Address: 0x180074d70)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180074d90)
  • HeapAlloc (Address: 0x180074d98)
  • HeapCreate (Address: 0x180074da8)
  • HeapDestroy (Address: 0x180074da0)
  • HeapFree (Address: 0x180074d88)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x180074db8)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • GetSystemPowerStatus (Address: 0x180074dc8)
  • WTSGetActiveConsoleSessionId (Address: 0x180074dd0)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180074e10)
  • FreeLibrary (Address: 0x180074e08)
  • FreeLibraryAndExitThread (Address: 0x180074de0)
  • GetModuleFileNameA (Address: 0x180074de8)
  • GetModuleFileNameW (Address: 0x180074e00)
  • GetModuleHandleExW (Address: 0x180074df0)
  • GetModuleHandleW (Address: 0x180074e20)
  • GetProcAddress (Address: 0x180074e30)
  • LoadLibraryExW (Address: 0x180074df8)
  • LoadResource (Address: 0x180074e38)
  • LoadStringW (Address: 0x180074e28)
  • LockResource (Address: 0x180074e40)
  • SizeofResource (Address: 0x180074e18)
api-ms-win-core-libraryloader-l1-2-1.dll
  • FindResourceW (Address: 0x180074e50)
  • LoadLibraryW (Address: 0x180074e58)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x180074e78)
  • GetThreadLocale (Address: 0x180074e68)
  • SetThreadLocale (Address: 0x180074e70)
api-ms-win-core-memory-l1-1-0.dll
  • CreateFileMappingW (Address: 0x180074eb8)
  • FlushViewOfFile (Address: 0x180074e90)
  • MapViewOfFile (Address: 0x180074e98)
  • UnmapViewOfFile (Address: 0x180074ea0)
  • VirtualAlloc (Address: 0x180074eb0)
  • VirtualFree (Address: 0x180074e88)
  • VirtualProtect (Address: 0x180074ea8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x180074ec8)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateThread (Address: 0x180074ef0)
  • GetCurrentProcess (Address: 0x180074ed8)
  • GetCurrentProcessId (Address: 0x180074f10)
  • GetCurrentThread (Address: 0x180074ee8)
  • GetCurrentThreadId (Address: 0x180074ef8)
  • GetThreadPriority (Address: 0x180074f08)
  • OpenProcessToken (Address: 0x180074ee0)
  • OpenThread (Address: 0x180074f18)
  • OpenThreadToken (Address: 0x180074f30)
  • ResumeThread (Address: 0x180074f28)
  • SetThreadPriority (Address: 0x180074f00)
  • TerminateProcess (Address: 0x180074f20)
api-ms-win-core-processthreads-l1-1-1.dll
  • OpenProcess (Address: 0x180074f40)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180074f58)
  • QueryPerformanceFrequency (Address: 0x180074f50)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180074fa8)
  • RegCopyTreeW (Address: 0x180074f68)
  • RegCreateKeyExW (Address: 0x180074f78)
  • RegDeleteValueW (Address: 0x180074f90)
  • RegGetValueW (Address: 0x180074f70)
  • RegOpenKeyExW (Address: 0x180074f88)
  • RegQueryInfoKeyW (Address: 0x180074fa0)
  • RegQueryValueExW (Address: 0x180074f80)
  • RegSetValueExW (Address: 0x180074f98)
api-ms-win-core-sidebyside-l1-1-0.dll
  • ActivateActCtx (Address: 0x180074fd0)
  • CreateActCtxW (Address: 0x180074fc8)
  • DeactivateActCtx (Address: 0x180074fb8)
  • FindActCtxSectionStringW (Address: 0x180074fc0)
  • QueryActCtxW (Address: 0x180074fd8)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x180074ff8)
  • AcquireSRWLockShared (Address: 0x180075060)
  • CreateEventW (Address: 0x180075040)
  • CreateMutexExW (Address: 0x180075048)
  • CreateSemaphoreExW (Address: 0x180075050)
  • CreateWaitableTimerExW (Address: 0x180075020)
  • DeleteCriticalSection (Address: 0x180075078)
  • EnterCriticalSection (Address: 0x180075038)
  • InitializeCriticalSection (Address: 0x180075018)
  • InitializeCriticalSectionEx (Address: 0x180075058)
  • LeaveCriticalSection (Address: 0x180075030)
  • OpenSemaphoreW (Address: 0x180075010)
  • ReleaseMutex (Address: 0x180075000)
  • ReleaseSemaphore (Address: 0x180074fe8)
  • ReleaseSRWLockExclusive (Address: 0x180074ff0)
  • ReleaseSRWLockShared (Address: 0x180075080)
  • ResetEvent (Address: 0x180075070)
  • SetEvent (Address: 0x180075068)
  • WaitForSingleObject (Address: 0x180075028)
  • WaitForSingleObjectEx (Address: 0x180075008)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x180075090)
api-ms-win-core-synch-l1-2-1.dll
  • WaitForMultipleObjects (Address: 0x1800750a0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetLocalTime (Address: 0x1800750d0)
  • GetSystemTimeAsFileTime (Address: 0x1800750c0)
  • GetSystemWindowsDirectoryW (Address: 0x1800750b8)
  • GetTickCount (Address: 0x1800750c8)
  • GetWindowsDirectoryW (Address: 0x1800750b0)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1800750f0)
  • CreateThreadpoolTimer (Address: 0x1800750e0)
  • SetThreadpoolTimer (Address: 0x1800750e8)
  • WaitForThreadpoolTimerCallbacks (Address: 0x1800750f8)
api-ms-win-core-timezone-l1-1-0.dll
  • FileTimeToSystemTime (Address: 0x180075108)
  • SystemTimeToFileTime (Address: 0x180075118)
  • SystemTimeToTzSpecificLocalTime (Address: 0x180075110)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • GetTraceEnableFlags (Address: 0x180075150)
  • GetTraceEnableLevel (Address: 0x180075128)
  • GetTraceLoggerHandle (Address: 0x180075148)
  • RegisterTraceGuidsW (Address: 0x180075138)
  • TraceEvent (Address: 0x180075130)
  • UnregisterTraceGuids (Address: 0x180075140)
api-ms-win-eventing-consumer-l1-1-0.dll
  • CloseTrace (Address: 0x180075160)
  • OpenTraceW (Address: 0x180075170)
  • ProcessTrace (Address: 0x180075168)
api-ms-win-eventing-controller-l1-1-0.dll
  • ControlTraceW (Address: 0x180075180)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventEnabled (Address: 0x180075198)
  • EventRegister (Address: 0x1800751a0)
  • EventUnregister (Address: 0x180075190)
  • EventWrite (Address: 0x1800751b0)
  • EventWriteTransfer (Address: 0x1800751a8)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAceEx (Address: 0x1800751f8)
  • AdjustTokenPrivileges (Address: 0x1800751f0)
  • AllocateAndInitializeSid (Address: 0x1800751e0)
  • CopySid (Address: 0x1800751c0)
  • EqualSid (Address: 0x180075208)
  • FreeSid (Address: 0x1800751c8)
  • GetLengthSid (Address: 0x180075200)
  • GetTokenInformation (Address: 0x1800751d8)
  • ImpersonateSelf (Address: 0x180075218)
  • InitializeAcl (Address: 0x180075210)
  • IsValidSid (Address: 0x1800751d0)
  • RevertToSelf (Address: 0x1800751e8)
api-ms-win-shcore-thread-l1-1-0.dll
  • SHCreateThreadRef (Address: 0x180075228)
msvcrt.dll
  • __C_specific_handler (Address: 0x1800753e8)
  • __CxxFrameHandler3 (Address: 0x180075328)
  • __dllonexit (Address: 0x180075358)
  • __iob_func (Address: 0x180075368)
  • _amsg_exit (Address: 0x1800752d0)
  • _callnewh (Address: 0x180075240)
  • _CxxThrowException (Address: 0x180075238)
  • _errno (Address: 0x1800753c8)
  • _initterm (Address: 0x1800752e8)
  • _lock (Address: 0x180075348)
  • _onexit (Address: 0x180075360)
  • _purecall (Address: 0x180075390)
  • _strupr (Address: 0x180075380)
  • _unlock (Address: 0x180075350)
  • _vsnprintf (Address: 0x180075250)
  • _vsnwprintf (Address: 0x1800753b0)
  • _wcsicmp (Address: 0x1800753a8)
  • _wcsnicmp (Address: 0x180075268)
  • _wcsupr (Address: 0x1800752b0)
  • _wcsupr_s (Address: 0x180075300)
  • _wfopen (Address: 0x180075298)
  • _wtof (Address: 0x180075400)
  • _wtoi (Address: 0x180075408)
  • _XcptFilter (Address: 0x1800752b8)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180075320)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180075318)
  • ??1exception@@UEAA@XZ (Address: 0x180075310)
  • ??1type_info@@UEAA@XZ (Address: 0x180075338)
  • ?terminate@@YAXXZ (Address: 0x180075330)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180075248)
  • bsearch (Address: 0x1800752d8)
  • exp (Address: 0x1800753f8)
  • fclose (Address: 0x1800752c0)
  • fopen (Address: 0x1800753b8)
  • fprintf (Address: 0x1800752a0)
  • free (Address: 0x1800752f0)
  • isprint (Address: 0x180075258)
  • iswascii (Address: 0x180075260)
  • log (Address: 0x1800753e0)
  • malloc (Address: 0x180075340)
  • memcmp (Address: 0x1800753d8)
  • memcpy (Address: 0x1800753a0)
  • memcpy_s (Address: 0x1800753c0)
  • memmove (Address: 0x180075398)
  • memmove_s (Address: 0x1800753f0)
  • memset (Address: 0x180075378)
  • powf (Address: 0x180075370)
  • qsort (Address: 0x1800752a8)
  • sqrt (Address: 0x180075410)
  • srand (Address: 0x1800752c8)
  • strchr (Address: 0x180075288)
  • strnlen (Address: 0x180075280)
  • strstr (Address: 0x180075290)
  • wcscat_s (Address: 0x1800752f8)
  • wcschr (Address: 0x180075270)
  • wcscpy_s (Address: 0x180075388)
  • wcsncmp (Address: 0x180075308)
  • wcsnlen (Address: 0x1800752e0)
  • wcsstr (Address: 0x180075278)
  • wcstok (Address: 0x1800753d0)
ntdll.dll
  • NtAllocateVirtualMemory (Address: 0x1800754d0)
  • NtClose (Address: 0x180075598)
  • NtCreateFile (Address: 0x1800754f8)
  • NtCreateKey (Address: 0x1800754a0)
  • NtDeviceIoControlFile (Address: 0x1800755a8)
  • NtFreeVirtualMemory (Address: 0x1800754d8)
  • NtOpenEvent (Address: 0x1800755f8)
  • NtOpenFile (Address: 0x1800754f0)
  • NtOpenKey (Address: 0x180075600)
  • NtPowerInformation (Address: 0x1800755c8)
  • NtQueryInformationProcess (Address: 0x180075478)
  • NtQueryInformationThread (Address: 0x180075450)
  • NtQueryObject (Address: 0x180075500)
  • NtQuerySystemInformation (Address: 0x180075608)
  • NtQueryValueKey (Address: 0x180075498)
  • NtQueryVirtualMemory (Address: 0x180075488)
  • NtQueryVolumeInformationFile (Address: 0x180075508)
  • NtReadFile (Address: 0x180075618)
  • NtSetInformationFile (Address: 0x1800754e8)
  • NtSetInformationProcess (Address: 0x180075490)
  • NtSetInformationThread (Address: 0x180075470)
  • NtSetSystemInformation (Address: 0x1800755e0)
  • RtlAcquireSRWLockExclusive (Address: 0x1800755c0)
  • RtlAcquireSRWLockShared (Address: 0x1800755b8)
  • RtlAreBitsClear (Address: 0x180075510)
  • RtlAreBitsSet (Address: 0x180075540)
  • RtlCaptureContext (Address: 0x180075428)
  • RtlClearAllBits (Address: 0x180075570)
  • RtlClearBits (Address: 0x1800754c8)
  • RtlCompareMemory (Address: 0x180075430)
  • RtlCompressBuffer (Address: 0x180075460)
  • RtlComputeCrc32 (Address: 0x180075588)
  • RtlDecompressBufferEx (Address: 0x180075458)
  • RtlDosPathNameToNtPathName_U (Address: 0x1800754a8)
  • RtlFindClearBits (Address: 0x180075520)
  • RtlFindClearBitsAndSet (Address: 0x1800754b8)
  • RtlFindSetBits (Address: 0x180075530)
  • RtlFreeUnicodeString (Address: 0x180075448)
  • RtlGetCompressionWorkSpaceSize (Address: 0x180075468)
  • RtlGetVersion (Address: 0x180075590)
  • RtlImageNtHeader (Address: 0x1800755a0)
  • RtlInitializeBitMap (Address: 0x1800754c0)
  • RtlInitializeSRWLock (Address: 0x180075610)
  • RtlInitUnicodeString (Address: 0x1800755d8)
  • RtlInitUnicodeStringEx (Address: 0x180075440)
  • RtlInterlockedSetBitRun (Address: 0x180075538)
  • RtlLookupFunctionEntry (Address: 0x180075420)
  • RtlNtStatusToDosError (Address: 0x180075580)
  • RtlNumberOfSetBits (Address: 0x180075558)
  • RtlNumberOfSetBitsInRange (Address: 0x180075578)
  • RtlQueryPackageIdentity (Address: 0x180075480)
  • RtlRaiseException (Address: 0x180075518)
  • RtlRandom (Address: 0x180075438)
  • RtlRandomEx (Address: 0x1800754b0)
  • RtlReleaseSRWLockExclusive (Address: 0x1800755d0)
  • RtlReleaseSRWLockShared (Address: 0x1800755b0)
  • RtlSetAllBits (Address: 0x180075528)
  • RtlSetBits (Address: 0x180075560)
  • RtlTestBit (Address: 0x180075568)
  • RtlUpcaseUnicodeChar (Address: 0x1800755f0)
  • RtlUpcaseUnicodeString (Address: 0x1800755e8)
  • RtlVirtualUnwind (Address: 0x1800754e0)
  • ZwAllocateVirtualMemory (Address: 0x180075548)
  • ZwFreeVirtualMemory (Address: 0x180075550)
POWRPROF.dll
  • PowerSettingRegisterNotificationEx (Address: 0x180074bd8)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x180074c10)
  • RpcBindingFree (Address: 0x180074bf8)
  • RpcBindingFromStringBindingW (Address: 0x180074bf0)
  • RpcBindingSetAuthInfoExW (Address: 0x180074c00)
  • RpcStringBindingComposeW (Address: 0x180074be8)
  • RpcStringFreeW (Address: 0x180074c08)
UMPDC.dll
  • PdcActivationClientRegister (Address: 0x180074c20)
  • PdcActivationClientUnregister (Address: 0x180074c28)