rshx32.dll

Description: Security Shell Extension

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.4355

Architecture: 64-bit

Operating System: Windows NT

SHA256: 6a5d0e25efe18453ff1bce6f057d2b1a

File Size: 130.5 KB

Uploaded At: Dec. 1, 2025, 7:38 a.m.

Views: 3

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x6d10)
  • DllGetClassObject (Ordinal: 2, Address: 0x6bd0)
  • DllRegisterServer (Ordinal: 3, Address: 0x6d50)
  • DllUnregisterServer (Ordinal: 4, Address: 0x6dc0)
  • EditFSSecurity (Ordinal: 5, Address: 0x33b0)

Imported DLLs & Functions

ADVAPI32.dll
  • FreeInheritedFromArray (Address: 0x180017c48)
  • GetInheritanceSourceW (Address: 0x180017c50)
  • GetNamedSecurityInfoW (Address: 0x180017c40)
  • SetNamedSecurityInfoW (Address: 0x180017c38)
  • TreeSetNamedSecurityInfoW (Address: 0x180017c58)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x180017f18)
  • CoUninitialize (Address: 0x180017f10)
  • StringFromGUID2 (Address: 0x180017f20)
api-ms-win-core-com-midlproxystub-l1-1-0.dll
  • ObjectStublessClient3 (Address: 0x180017f30)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x180017f50)
  • IsDebuggerPresent (Address: 0x180017f40)
  • OutputDebugStringW (Address: 0x180017f48)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180017f60)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180017f70)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180017f90)
  • SetLastError (Address: 0x180017f88)
  • SetUnhandledExceptionFilter (Address: 0x180017f98)
  • UnhandledExceptionFilter (Address: 0x180017f80)
api-ms-win-core-file-l1-1-0.dll
  • GetDriveTypeW (Address: 0x180017fc0)
  • GetFileAttributesExW (Address: 0x180017fb0)
  • GetFileAttributesW (Address: 0x180017fb8)
  • GetFullPathNameW (Address: 0x180017fa8)
  • GetVolumeInformationW (Address: 0x180017fc8)
api-ms-win-core-file-l1-2-0.dll
  • GetVolumeNameForVolumeMountPointW (Address: 0x180017fd8)
api-ms-win-core-file-l2-1-0.dll
  • GetFileInformationByHandleEx (Address: 0x180017fe8)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180017ff8)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180018010)
  • HeapAlloc (Address: 0x180018008)
  • HeapFree (Address: 0x180018018)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180018030)
  • LocalFree (Address: 0x180018028)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180018050)
  • FreeLibrary (Address: 0x180018058)
  • GetModuleFileNameA (Address: 0x180018068)
  • GetModuleFileNameW (Address: 0x180018060)
  • GetModuleHandleExW (Address: 0x180018088)
  • GetModuleHandleW (Address: 0x180018070)
  • GetProcAddress (Address: 0x180018078)
  • LoadResource (Address: 0x180018040)
  • LoadStringW (Address: 0x180018080)
  • LockResource (Address: 0x180018048)
api-ms-win-core-libraryloader-l1-2-1.dll
  • FindResourceW (Address: 0x180018098)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1800180a8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x1800180b8)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateThread (Address: 0x180018110)
  • GetCurrentProcess (Address: 0x1800180f8)
  • GetCurrentProcessId (Address: 0x1800180f0)
  • GetCurrentThread (Address: 0x1800180e0)
  • GetCurrentThreadId (Address: 0x180018108)
  • GetExitCodeThread (Address: 0x1800180d0)
  • OpenProcessToken (Address: 0x1800180d8)
  • OpenThreadToken (Address: 0x1800180e8)
  • SetThreadToken (Address: 0x1800180c8)
  • TerminateProcess (Address: 0x180018100)
api-ms-win-core-processthreads-l1-1-1.dll
  • GetProcessMitigationPolicy (Address: 0x180018120)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180018130)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180018150)
  • RegOpenKeyExW (Address: 0x180018148)
  • RegQueryValueExW (Address: 0x180018140)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180018170)
  • RtlLookupFunctionEntry (Address: 0x180018160)
  • RtlVirtualUnwind (Address: 0x180018168)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringW (Address: 0x180018180)
api-ms-win-core-synch-l1-1-0.dll
  • CreateEventW (Address: 0x1800181b0)
  • CreateMutexExW (Address: 0x1800181c0)
  • CreateSemaphoreExW (Address: 0x1800181a8)
  • OpenSemaphoreW (Address: 0x1800181d0)
  • ReleaseMutex (Address: 0x180018198)
  • ReleaseSemaphore (Address: 0x1800181a0)
  • SetEvent (Address: 0x1800181c8)
  • WaitForSingleObject (Address: 0x180018190)
  • WaitForSingleObjectEx (Address: 0x1800181b8)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1800181e0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x1800181f8)
  • GetTickCount (Address: 0x1800181f0)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolWork (Address: 0x180018210)
  • CreateThreadpoolWork (Address: 0x180018208)
  • SubmitThreadpoolWork (Address: 0x180018218)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAce (Address: 0x180018280)
  • AdjustTokenPrivileges (Address: 0x180018230)
  • DuplicateTokenEx (Address: 0x180018270)
  • EqualSid (Address: 0x180018238)
  • GetLengthSid (Address: 0x180018228)
  • GetSecurityDescriptorControl (Address: 0x1800182b0)
  • GetSecurityDescriptorDacl (Address: 0x1800182c0)
  • GetSecurityDescriptorGroup (Address: 0x1800182f0)
  • GetSecurityDescriptorLength (Address: 0x180018290)
  • GetSecurityDescriptorOwner (Address: 0x1800182a0)
  • GetSecurityDescriptorSacl (Address: 0x180018298)
  • GetSidSubAuthority (Address: 0x1800182f8)
  • GetSidSubAuthorityCount (Address: 0x1800182e8)
  • InitializeAcl (Address: 0x180018260)
  • InitializeSecurityDescriptor (Address: 0x180018248)
  • IsValidAcl (Address: 0x180018278)
  • IsValidSecurityDescriptor (Address: 0x1800182d0)
  • IsValidSid (Address: 0x1800182b8)
  • MakeAbsoluteSD (Address: 0x180018250)
  • MakeSelfRelativeSD (Address: 0x180018288)
  • MapGenericMask (Address: 0x1800182c8)
  • SetFileSecurityW (Address: 0x1800182a8)
  • SetSecurityDescriptorControl (Address: 0x1800182d8)
  • SetSecurityDescriptorDacl (Address: 0x180018268)
  • SetSecurityDescriptorGroup (Address: 0x180018258)
  • SetSecurityDescriptorOwner (Address: 0x1800182e0)
  • SetSecurityDescriptorSacl (Address: 0x180018240)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupAccountSidW (Address: 0x180018308)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180018318)
AUTHZ.dll
  • AuthzAccessCheck (Address: 0x180017c78)
  • AuthzComputeEffectivePermission (Address: 0x180017c90)
  • AuthzFreeContext (Address: 0x180017c70)
  • AuthzFreeResourceManager (Address: 0x180017c68)
  • AuthzInitializeContextFromSid (Address: 0x180017c80)
  • AuthzInitializeRemoteResourceManager (Address: 0x180017c88)
  • AuthzInitializeResourceManager (Address: 0x180017c98)
COMCTL32.dll
  • DestroyPropertySheetPage (Address: 0x180017ca8)
KERNEL32.dll
  • GetComputerNameW (Address: 0x180017cd8)
  • GlobalLock (Address: 0x180017cc8)
  • GlobalUnlock (Address: 0x180017cd0)
  • LocalSize (Address: 0x180017cb8)
  • lstrlenW (Address: 0x180017cc0)
msvcrt.dll
  • __C_specific_handler (Address: 0x180018360)
  • __dllonexit (Address: 0x180018348)
  • _amsg_exit (Address: 0x180018380)
  • _initterm (Address: 0x180018368)
  • _lock (Address: 0x180018358)
  • _onexit (Address: 0x180018340)
  • _unlock (Address: 0x180018350)
  • _vsnwprintf (Address: 0x180018328)
  • _wcsicmp (Address: 0x1800183a0)
  • _wcsnicmp (Address: 0x180018398)
  • _XcptFilter (Address: 0x180018388)
  • free (Address: 0x180018378)
  • malloc (Address: 0x180018370)
  • memcpy (Address: 0x1800183b8)
  • memcpy_s (Address: 0x1800183b0)
  • memmove (Address: 0x180018330)
  • memset (Address: 0x180018338)
  • wcschr (Address: 0x180018390)
  • wcscmp (Address: 0x1800183c0)
  • wcsnlen (Address: 0x1800183a8)
ntdll.dll
  • NtClose (Address: 0x1800183f8)
  • NtOpenFile (Address: 0x1800183e0)
  • RtlDosPathNameToNtPathName_U (Address: 0x1800183f0)
  • RtlFreeUnicodeString (Address: 0x1800183d0)
  • RtlNtStatusToDosError (Address: 0x1800183e8)
  • WinSqmIsOptedIn (Address: 0x180018400)
  • WinSqmSetDWORD (Address: 0x1800183d8)
OLEAUT32.dll
  • BSTR_UserFree (Address: 0x180017cf8)
  • BSTR_UserFree64 (Address: 0x180017d20)
  • BSTR_UserMarshal (Address: 0x180017d10)
  • BSTR_UserMarshal64 (Address: 0x180017d28)
  • BSTR_UserSize (Address: 0x180017d18)
  • BSTR_UserSize64 (Address: 0x180017d30)
  • BSTR_UserUnmarshal (Address: 0x180017d08)
  • BSTR_UserUnmarshal64 (Address: 0x180017d00)
  • SysAllocString (Address: 0x180017ce8)
  • SysFreeString (Address: 0x180017cf0)
RPCRT4.dll
  • CStdStubBuffer_AddRef (Address: 0x180017d90)
  • CStdStubBuffer_Connect (Address: 0x180017d50)
  • CStdStubBuffer_CountRefs (Address: 0x180017d70)
  • CStdStubBuffer_DebugServerQueryInterface (Address: 0x180017da8)
  • CStdStubBuffer_DebugServerRelease (Address: 0x180017dc8)
  • CStdStubBuffer_Disconnect (Address: 0x180017d40)
  • CStdStubBuffer_Invoke (Address: 0x180017dc0)
  • CStdStubBuffer_IsIIDSupported (Address: 0x180017d48)
  • CStdStubBuffer_QueryInterface (Address: 0x180017d68)
  • IUnknown_AddRef_Proxy (Address: 0x180017db0)
  • IUnknown_QueryInterface_Proxy (Address: 0x180017da0)
  • IUnknown_Release_Proxy (Address: 0x180017d88)
  • NdrCStdStubBuffer_Release (Address: 0x180017db8)
  • NdrDllCanUnloadNow (Address: 0x180017dd0)
  • NdrDllGetClassObject (Address: 0x180017d80)
  • NdrDllRegisterProxy (Address: 0x180017d78)
  • NdrDllUnregisterProxy (Address: 0x180017d58)
  • NdrOleAllocate (Address: 0x180017d60)
  • NdrOleFree (Address: 0x180017d98)
SHELL32.dll
  • DragQueryFileW (Address: 0x180017df8)
  • SHBindToFolderIDListParent (Address: 0x180017e00)
  • SHBindToFolderIDListParentEx (Address: 0x180017df0)
  • SHBindToObject (Address: 0x180017de0)
  • SHChangeNotify (Address: 0x180017de8)
SHLWAPI.dll
  • PathAddBackslashW (Address: 0x180017e20)
  • PathFindFileNameW (Address: 0x180017e50)
  • PathIsRootW (Address: 0x180017e38)
  • PathIsUNCServerShareW (Address: 0x180017e48)
  • PathIsUNCW (Address: 0x180017e28)
  • PathRemoveBackslashW (Address: 0x180017e40)
  • PathRemoveFileSpecW (Address: 0x180017e30)
  • PathSetDlgItemPathW (Address: 0x180017e60)
  • StrChrW (Address: 0x180017e58)
  • StrDupW (Address: 0x180017e18)
  • StrRetToBufW (Address: 0x180017e10)
USER32.dll
  • DialogBoxParamW (Address: 0x180017ee0)
  • DispatchMessageW (Address: 0x180017ea8)
  • EndDialog (Address: 0x180017ec0)
  • GetAncestor (Address: 0x180017e70)
  • GetLastActivePopup (Address: 0x180017eb0)
  • GetWindow (Address: 0x180017e88)
  • GetWindowLongW (Address: 0x180017e90)
  • IsWindowVisible (Address: 0x180017ec8)
  • LoadCursorW (Address: 0x180017f00)
  • MessageBoxW (Address: 0x180017ef0)
  • MsgWaitForMultipleObjectsEx (Address: 0x180017e80)
  • PeekMessageW (Address: 0x180017e98)
  • RegisterClipboardFormatW (Address: 0x180017ee8)
  • SetCursor (Address: 0x180017e78)
  • SetDlgItemTextW (Address: 0x180017eb8)
  • SetForegroundWindow (Address: 0x180017ed8)
  • SetProcessDPIAware (Address: 0x180017ef8)
  • ShowWindow (Address: 0x180017ed0)
  • TranslateMessage (Address: 0x180017ea0)