TpmCoreProvisioning.dll

Description: TPM Core Provisioning Library

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6456

Architecture: 64-bit

Operating System: Windows NT

SHA256: 5871dda19c75b3f0ab4577c15c4b6cda

File Size: 1.1 MB

Uploaded At: Dec. 1, 2025, 7:40 a.m.

Views: 6

Exported Functions

  • Tpm20CanClearUsingAuthPolicy (Ordinal: 1, Address: 0x33be0)
  • Tpm20ClearUsingAuthPolicy (Ordinal: 2, Address: 0x33ca0)
  • Tpm20GetCompleteManufacturerVersion (Ordinal: 3, Address: 0x36b50)
  • Tpm20IsResetLockoutCountNeeded (Ordinal: 4, Address: 0x34090)
  • Tpm20ResetLockoutCountIfNeeded (Ordinal: 5, Address: 0x34150)
  • Tpm2CreateWindowsNvBits (Ordinal: 6, Address: 0x33130)
  • Tpm2ReadWindowsNvBit (Ordinal: 7, Address: 0x331f0)
  • Tpm2SetWindowsNvBit (Ordinal: 8, Address: 0x332c0)
  • TpmAddBlockedCommand (Ordinal: 9, Address: 0x34890)
  • TpmCertCheckEkCertMatchedEkPub (Ordinal: 10, Address: 0x45050)
  • TpmCertDeleteHealthCert (Ordinal: 11, Address: 0x42610)
  • TpmCertDeleteHealthEndpoint (Ordinal: 12, Address: 0x419b0)
  • TpmCertGetCurrentProtocolVersion (Ordinal: 13, Address: 0x42540)
  • TpmCertGetEkCertFromWeb (Ordinal: 14, Address: 0x49f30)
  • TpmCertGetFormattedHASUrl (Ordinal: 15, Address: 0x49b20)
  • TpmCertGetFormattedUrl (Ordinal: 16, Address: 0x49610)
  • TpmCertGetFwLinkId (Ordinal: 17, Address: 0x478e0)
  • TpmCertGetHealthCert (Ordinal: 18, Address: 0x42200)
  • TpmCertGetHealthCertFromWeb (Ordinal: 19, Address: 0x4cd70)
  • TpmCertGetHealthCorrelationId (Ordinal: 20, Address: 0x41ba0)
  • TpmCertGetHealthEndpoint (Ordinal: 21, Address: 0x418e0)
  • TpmCertGetHealthForceRetrieve (Ordinal: 22, Address: 0x41d50)
  • TpmCertGetHealthStatusCode (Ordinal: 23, Address: 0x41ef0)
  • TpmCertGetHealthStatusRequestBlob (Ordinal: 24, Address: 0x4c7c0)
  • TpmCertGetIsActiveZeroExhaust (Ordinal: 25, Address: 0x46a00)
  • TpmCertGetMaximumSupportedProtocolVersion (Ordinal: 26, Address: 0x422e0)
  • TpmCertGetPreferredMaximumProtocolVersion (Ordinal: 27, Address: 0x423a0)
  • TpmCertGetTpmManufacturerId (Ordinal: 28, Address: 0x44b00)
  • TpmCertGetWindowsAik (Ordinal: 29, Address: 0x430c0)
  • TpmCertInstallEkCertInRegistry (Ordinal: 30, Address: 0x45140)
  • TpmCertInstallNvEkCerts (Ordinal: 31, Address: 0x44bc0)
  • TpmCertIsHealthCertOnBootEnabled (Ordinal: 32, Address: 0x42970)
  • TpmCertParseHealthResponse (Ordinal: 33, Address: 0x484f0)
  • TpmCertPostHealthXmlData (Ordinal: 34, Address: 0x4c900)
  • TpmCertQueryEkPub (Ordinal: 35, Address: 0x44e90)
  • TpmCertSetHealthEndpoint (Ordinal: 36, Address: 0x41820)
  • TpmCertSetHealthForceRetrieve (Ordinal: 37, Address: 0x41c80)
  • TpmCertSetHealthStatusCode (Ordinal: 38, Address: 0x41e20)
  • TpmCertSetPreferredMaximumProtocolVersion (Ordinal: 39, Address: 0x42470)
  • TpmCertVerifyHealthCertFromWeb (Ordinal: 40, Address: 0x4d050)
  • TpmChangeOwnerAuth (Ordinal: 41, Address: 0x33fa0)
  • TpmCheckCreateWindowsAIK (Ordinal: 42, Address: 0x35dc0)
  • TpmCheckIFXRSAKeyGenVulnerability (Ordinal: 43, Address: 0x4fdd0)
  • TpmClear (Ordinal: 44, Address: 0x33d60)
  • TpmClearUsingPhysicalPresence (Ordinal: 45, Address: 0x36780)
  • TpmClearWithPolicyOrPPI (Ordinal: 46, Address: 0x36f60)
  • TpmConvertToOwnerAuth (Ordinal: 47, Address: 0x343b0)
  • TpmCreateEndorsementKeyPair (Ordinal: 48, Address: 0x32e50)
  • TpmCreateHealthAttestationClaim (Ordinal: 49, Address: 0x42da0)
  • TpmCreateHealthStatusClaim (Ordinal: 50, Address: 0x429e0)
  • TpmDeleteOwnerAuth (Ordinal: 51, Address: 0x350e0)
  • TpmDisable (Ordinal: 52, Address: 0x32c10)
  • TpmDisableAutoProvisioning (Ordinal: 53, Address: 0x34f50)
  • TpmEKCertValidateAndCleanup (Ordinal: 54, Address: 0x36600)
  • TpmEnable (Ordinal: 55, Address: 0x32b50)
  • TpmEnableAutoProvisioning (Ordinal: 56, Address: 0x34e20)
  • TpmEnrollWindowsAikCertificate (Ordinal: 57, Address: 0x373a0)
  • TpmGatherLogs (Ordinal: 58, Address: 0x37030)
  • TpmGatherTpmData (Ordinal: 59, Address: 0x4f8d0)
  • TpmGetCapLockoutInfo (Ordinal: 60, Address: 0x35cf0)
  • TpmGetDeviceInformation (Ordinal: 61, Address: 0x36dd0)
  • TpmGetDictionaryAttackParameters (Ordinal: 62, Address: 0x35a60)
  • TpmGetEffectiveGroupPolicyOwnerAuthLevel (Ordinal: 63, Address: 0x35900)
  • TpmGetEndorsementKeyCertificateState (Ordinal: 64, Address: 0x36480)
  • TpmGetHealthCertRequest (Ordinal: 65, Address: 0x43b50)
  • TpmGetOrderlyShutdownInfo (Ordinal: 66, Address: 0x35c30)
  • TpmGetOwnerAuth (Ordinal: 67, Address: 0x35010)
  • TpmGetOwnerAuthForEscrow (Ordinal: 68, Address: 0x356a0)
  • TpmGetOwnerAuthStatus (Ordinal: 69, Address: 0x35840)
  • TpmGetOwnershipAuthBits (Ordinal: 70, Address: 0x32540)
  • TpmGetPPIVersion (Ordinal: 71, Address: 0x36ce0)
  • TpmGetPhysicalPresenceConfirmationStatus (Ordinal: 72, Address: 0x35340)
  • TpmGetPhysicalPresenceRequest (Ordinal: 73, Address: 0x34620)
  • TpmGetPhysicalPresenceResponse (Ordinal: 74, Address: 0x347a0)
  • TpmGetPhysicalPresenceTransition (Ordinal: 75, Address: 0x346e0)
  • TpmGetPssSalt (Ordinal: 76, Address: 0x371b0)
  • TpmGetRandomAuthValue (Ordinal: 77, Address: 0x34210)
  • TpmGetSignedEKFromVendorCommand (Ordinal: 78, Address: 0x37290)
  • TpmGetSrkADThumbprint (Ordinal: 79, Address: 0x354e0)
  • TpmGetSrkPublicKeyModulus (Ordinal: 80, Address: 0x35410)
  • TpmGetTcgLog (Ordinal: 81, Address: 0x355d0)
  • TpmGetTpmVersion (Ordinal: 82, Address: 0x36c20)
  • TpmGetVerificationRequest (Ordinal: 83, Address: 0x43c80)
  • TpmGet_IsPpiVersion12 (Ordinal: 84, Address: 0x31f50)
  • TpmGet_IsTpmPresent (Ordinal: 85, Address: 0x31d30)
  • TpmGet_IsTpmVersion20 (Ordinal: 86, Address: 0x31e70)
  • TpmGet_ManufacturerId (Ordinal: 87, Address: 0x31820)
  • TpmGet_ManufacturerVersion (Ordinal: 88, Address: 0x31900)
  • TpmGet_ManufacturerVersionInfo (Ordinal: 89, Address: 0x319d0)
  • TpmGet_PhysicalPresenceVersionInfo (Ordinal: 90, Address: 0x31b70)
  • TpmGet_SpecVersion (Ordinal: 91, Address: 0x31aa0)
  • TpmGet_TpmVersionInfo (Ordinal: 92, Address: 0x31c40)
  • TpmHasVulnerableFW (Ordinal: 93, Address: 0x36e90)
  • TpmHealthCertGetAndVerify (Ordinal: 94, Address: 0x43370)
  • TpmImportOwnerAuth (Ordinal: 95, Address: 0x35280)
  • TpmIsActivated (Ordinal: 96, Address: 0x32600)
  • TpmIsAutoProvisioningEnabled (Ordinal: 97, Address: 0x34d30)
  • TpmIsAutoProvisioningEnabledEx (Ordinal: 98, Address: 0x34d50)
  • TpmIsCommandBlocked (Ordinal: 99, Address: 0x34ad0)
  • TpmIsCommandPresent (Ordinal: 100, Address: 0x329c0)
  • TpmIsEnabled (Ordinal: 101, Address: 0x323c0)
  • TpmIsEndorsementKeyPairPresent (Ordinal: 102, Address: 0x32cd0)
  • TpmIsFIPS (Ordinal: 103, Address: 0x32d90)
  • TpmIsKeyAttestationCapable (Ordinal: 104, Address: 0x32a90)
  • TpmIsLockedOut (Ordinal: 105, Address: 0x366c0)
  • TpmIsOwned (Ordinal: 106, Address: 0x32480)
  • TpmIsOwnerClearDisabled (Ordinal: 107, Address: 0x32780)
  • TpmIsOwnershipAllowed (Ordinal: 108, Address: 0x32900)
  • TpmIsPhysicalClearDisabled (Ordinal: 109, Address: 0x326c0)
  • TpmIsPhysicalPresenceHardwareEnabled (Ordinal: 110, Address: 0x32840)
  • TpmIsReady (Ordinal: 111, Address: 0x34ba0)
  • TpmIsReadyInformation (Ordinal: 112, Address: 0x34c60)
  • TpmIsSrkAuthCompatible (Ordinal: 113, Address: 0x33e20)
  • TpmIsUseLegacyDictionaryAttackParametersPolicySet (Ordinal: 114, Address: 0x32fd0)
  • TpmManufacturerId_From_TpmVersionInfo (Ordinal: 115, Address: 0x32010)
  • TpmManufacturerVersionInfo_From_TpmVersionInfo (Ordinal: 116, Address: 0x321e0)
  • TpmManufacturerVersion_From_TpmVersionInfo (Ordinal: 117, Address: 0x320f0)
  • TpmOwnerAuthEscrowed (Ordinal: 118, Address: 0x35780)
  • TpmPrepForNgc (Ordinal: 119, Address: 0x36210)
  • TpmProvision (Ordinal: 120, Address: 0x351a0)
  • TpmRemoveBlockedCommand (Ordinal: 121, Address: 0x34950)
  • TpmRemoveRegisteredWindowsAIK (Ordinal: 122, Address: 0x36150)
  • TpmResetAuthLockOut (Ordinal: 123, Address: 0x34a10)
  • TpmResetSrkAuth (Ordinal: 124, Address: 0x33ee0)
  • TpmRetrieveEkCertOrReschedule (Ordinal: 125, Address: 0x362e0)
  • TpmRetrieveEkCertificate (Ordinal: 126, Address: 0x46450)
  • TpmRetrieveEkCertificateURL (Ordinal: 127, Address: 0x46290)
  • TpmRetrieveHealthCertOrReschedule (Ordinal: 128, Address: 0x363a0)
  • TpmRetrieveHealthCertificate (Ordinal: 129, Address: 0x43260)
  • TpmSelfTest (Ordinal: 130, Address: 0x342e0)
  • TpmSetDictionaryAttackParameters (Ordinal: 131, Address: 0x35b40)
  • TpmSetInstance (Ordinal: 132, Address: 0x31500)
  • TpmSetPhysicalPresenceRequest (Ordinal: 133, Address: 0x34490)
  • TpmSetPhysicalPresenceRequestEx (Ordinal: 134, Address: 0x34550)
  • TpmSetToLegacyDictionaryAttackParameters (Ordinal: 135, Address: 0x36540)
  • TpmSpecVersion_From_TpmVersionInfo (Ordinal: 136, Address: 0x322d0)
  • TpmTakeOwnership (Ordinal: 137, Address: 0x32f10)
  • TpmUnattendedSetup (Ordinal: 138, Address: 0x36840)
  • TpmVerifyDeviceHealth (Ordinal: 139, Address: 0x43a90)
  • TpmWriteInformationSnapshotFile (Ordinal: 140, Address: 0x370f0)
  • DllCanUnloadNow (Ordinal: 141, Address: 0x11a30)
  • TpmCertGetHASProtocolVersion (Ordinal: 142, Address: 0x41660)
  • TpmCertSetEkAttestationOverride (Ordinal: 143, Address: 0x41750)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x1800d0de0)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateFreeThreadedMarshaler (Address: 0x1800d0df0)
  • CoCreateInstance (Address: 0x1800d0e00)
  • CoGetApartmentType (Address: 0x1800d0e18)
  • CoInitializeEx (Address: 0x1800d0e08)
  • CoTaskMemFree (Address: 0x1800d0e10)
  • CoUninitialize (Address: 0x1800d0df8)
  • CoWaitForMultipleHandles (Address: 0x1800d0e20)
api-ms-win-core-datetime-l1-1-1.dll
  • GetDateFormatEx (Address: 0x1800d0e38)
  • GetTimeFormatEx (Address: 0x1800d0e30)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1800d0e58)
  • IsDebuggerPresent (Address: 0x1800d0e48)
  • OutputDebugStringW (Address: 0x1800d0e50)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1800d0e68)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1800d0e78)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800d0e88)
  • RaiseException (Address: 0x1800d0ea8)
  • SetLastError (Address: 0x1800d0e90)
  • SetUnhandledExceptionFilter (Address: 0x1800d0e98)
  • UnhandledExceptionFilter (Address: 0x1800d0ea0)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x1800d0ec0)
  • CreateFileW (Address: 0x1800d0ed0)
  • FindClose (Address: 0x1800d0ed8)
  • FindFirstFileExW (Address: 0x1800d0ec8)
  • FindNextFileW (Address: 0x1800d0ee8)
  • ReadFile (Address: 0x1800d0ee0)
  • WriteFile (Address: 0x1800d0eb8)
api-ms-win-core-file-l1-2-0.dll
  • CreateFile2 (Address: 0x1800d0ef8)
api-ms-win-core-file-l2-1-0.dll
  • CopyFile2 (Address: 0x1800d0f08)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1800d0f18)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1800d0f38)
  • HeapAlloc (Address: 0x1800d0f40)
  • HeapFree (Address: 0x1800d0f30)
  • HeapSize (Address: 0x1800d0f28)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x1800d0f58)
  • LocalFree (Address: 0x1800d0f50)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x1800d0f68)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x1800d0f78)
  • GetOverlappedResult (Address: 0x1800d0f80)
api-ms-win-core-io-l1-1-1.dll
  • CancelIo (Address: 0x1800d0f90)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1800d0fb8)
  • FreeLibrary (Address: 0x1800d0fa8)
  • GetModuleFileNameA (Address: 0x1800d0fd8)
  • GetModuleHandleExW (Address: 0x1800d0fe8)
  • GetModuleHandleW (Address: 0x1800d0fc0)
  • GetProcAddress (Address: 0x1800d0fb0)
  • LoadLibraryExW (Address: 0x1800d0fa0)
  • LoadResource (Address: 0x1800d0fd0)
  • LoadStringW (Address: 0x1800d0fe0)
  • LockResource (Address: 0x1800d0ff0)
  • SizeofResource (Address: 0x1800d0fc8)
api-ms-win-core-libraryloader-l1-2-1.dll
  • FindResourceW (Address: 0x1800d1000)
  • LoadLibraryW (Address: 0x1800d1008)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1800d1018)
api-ms-win-core-processenvironment-l1-1-0.dll
  • GetEnvironmentVariableW (Address: 0x1800d1028)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1800d1068)
  • GetCurrentProcessId (Address: 0x1800d1048)
  • GetCurrentThread (Address: 0x1800d1050)
  • GetCurrentThreadId (Address: 0x1800d1058)
  • OpenThreadToken (Address: 0x1800d1038)
  • SetThreadToken (Address: 0x1800d1040)
  • TerminateProcess (Address: 0x1800d1060)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x1800d1078)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1800d1088)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1800d10a8)
  • RegCreateKeyExW (Address: 0x1800d1098)
  • RegDeleteKeyExW (Address: 0x1800d10d8)
  • RegDeleteValueW (Address: 0x1800d10d0)
  • RegFlushKey (Address: 0x1800d10c8)
  • RegGetValueW (Address: 0x1800d10b0)
  • RegOpenKeyExW (Address: 0x1800d10a0)
  • RegQueryValueExW (Address: 0x1800d10c0)
  • RegSetValueExW (Address: 0x1800d10b8)
api-ms-win-core-registry-l1-1-1.dll
  • RegDeleteKeyValueW (Address: 0x1800d10e8)
  • RegSetKeyValueW (Address: 0x1800d10f0)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringW (Address: 0x1800d1100)
  • MultiByteToWideChar (Address: 0x1800d1110)
  • WideCharToMultiByte (Address: 0x1800d1108)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1800d1198)
  • AcquireSRWLockShared (Address: 0x1800d11b8)
  • CreateEventExW (Address: 0x1800d11c8)
  • CreateEventW (Address: 0x1800d1190)
  • CreateMutexExW (Address: 0x1800d11b0)
  • CreateMutexW (Address: 0x1800d1120)
  • CreateSemaphoreExW (Address: 0x1800d1150)
  • DeleteCriticalSection (Address: 0x1800d1138)
  • EnterCriticalSection (Address: 0x1800d1178)
  • InitializeCriticalSection (Address: 0x1800d1130)
  • InitializeCriticalSectionEx (Address: 0x1800d11a8)
  • LeaveCriticalSection (Address: 0x1800d1148)
  • OpenEventW (Address: 0x1800d11c0)
  • OpenMutexW (Address: 0x1800d1158)
  • OpenSemaphoreW (Address: 0x1800d11a0)
  • ReleaseMutex (Address: 0x1800d1170)
  • ReleaseSemaphore (Address: 0x1800d1160)
  • ReleaseSRWLockExclusive (Address: 0x1800d11d0)
  • ReleaseSRWLockShared (Address: 0x1800d1180)
  • SetEvent (Address: 0x1800d1128)
  • WaitForMultipleObjectsEx (Address: 0x1800d1140)
  • WaitForSingleObject (Address: 0x1800d1168)
  • WaitForSingleObjectEx (Address: 0x1800d1188)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1800d11e0)
  • InitOnceComplete (Address: 0x1800d11f8)
  • InitOnceExecuteOnce (Address: 0x1800d11f0)
  • Sleep (Address: 0x1800d11e8)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetLocalTime (Address: 0x1800d1230)
  • GetSystemDirectoryW (Address: 0x1800d1228)
  • GetSystemTimeAsFileTime (Address: 0x1800d1218)
  • GetSystemWindowsDirectoryW (Address: 0x1800d1220)
  • GetTickCount (Address: 0x1800d1210)
  • GetTickCount64 (Address: 0x1800d1208)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1800d1250)
  • CreateThreadpoolTimer (Address: 0x1800d1248)
  • SetThreadpoolTimer (Address: 0x1800d1240)
  • WaitForThreadpoolTimerCallbacks (Address: 0x1800d1258)
api-ms-win-core-timezone-l1-1-0.dll
  • FileTimeToSystemTime (Address: 0x1800d1268)
  • SystemTimeToFileTime (Address: 0x1800d1270)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x1800d1290)
  • RoGetActivationFactory (Address: 0x1800d1288)
  • RoInitialize (Address: 0x1800d1280)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateStringReference (Address: 0x1800d12b0)
  • WindowsDeleteString (Address: 0x1800d12a0)
  • WindowsGetStringRawBuffer (Address: 0x1800d12a8)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x1800d1418)
  • __CxxFrameHandler3 (Address: 0x1800d1410)
  • __CxxFrameHandler4 (Address: 0x1800d1498)
  • __std_terminate (Address: 0x1800d1490)
  • _CxxThrowException (Address: 0x1800d1420)
  • _o___std_exception_copy (Address: 0x1800d1488)
  • _o___std_exception_destroy (Address: 0x1800d1480)
  • _o___std_type_info_destroy_list (Address: 0x1800d1478)
  • _o___stdio_common_vsnprintf_s (Address: 0x1800d1470)
  • _o___stdio_common_vsnwprintf_s (Address: 0x1800d1468)
  • _o___stdio_common_vsprintf (Address: 0x1800d1460)
  • _o___stdio_common_vsprintf_s (Address: 0x1800d1458)
  • _o___stdio_common_vswprintf (Address: 0x1800d1450)
  • _o___stdio_common_vswprintf_s (Address: 0x1800d1448)
  • _o__callnewh (Address: 0x1800d1440)
  • _o__cexit (Address: 0x1800d1438)
  • _o__configure_narrow_argv (Address: 0x1800d1430)
  • _o__crt_atexit (Address: 0x1800d1428)
  • _o__errno (Address: 0x1800d12c0)
  • _o__execute_onexit_table (Address: 0x1800d12c8)
  • _o__fseeki64 (Address: 0x1800d12d0)
  • _o__get_stream_buffer_pointers (Address: 0x1800d12d8)
  • _o__initialize_narrow_environment (Address: 0x1800d12e0)
  • _o__initialize_onexit_table (Address: 0x1800d12e8)
  • _o__invalid_parameter_noinfo (Address: 0x1800d12f0)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x1800d12f8)
  • _o__localtime64 (Address: 0x1800d1300)
  • _o__lock_file (Address: 0x1800d1308)
  • _o__mktime64 (Address: 0x1800d1310)
  • _o__purecall (Address: 0x1800d1318)
  • _o__register_onexit_function (Address: 0x1800d1320)
  • _o__seh_filter_dll (Address: 0x1800d1328)
  • _o__unlock_file (Address: 0x1800d1338)
  • _o__wcsicmp (Address: 0x1800d1340)
  • _o__wcsnicmp (Address: 0x1800d1348)
  • _o_btowc (Address: 0x1800d1350)
  • _o_fclose (Address: 0x1800d1358)
  • _o_fflush (Address: 0x1800d1360)
  • _o_fgetc (Address: 0x1800d1368)
  • _o_fgetpos (Address: 0x1800d1370)
  • _o_fputc (Address: 0x1800d1378)
  • _o_fread (Address: 0x1800d1380)
  • _o_free (Address: 0x1800d1388)
  • _o_fsetpos (Address: 0x1800d1390)
  • _o_fwrite (Address: 0x1800d1398)
  • _o_malloc (Address: 0x1800d13a0)
  • _o_mbstowcs_s (Address: 0x1800d13a8)
  • _o_memcpy_s (Address: 0x1800d13b0)
  • _o_setvbuf (Address: 0x1800d13b8)
  • _o_strtoul (Address: 0x1800d13c0)
  • _o_terminate (Address: 0x1800d13c8)
  • _o_toupper (Address: 0x1800d13d0)
  • _o_ungetc (Address: 0x1800d13d8)
  • _o_wcsftime (Address: 0x1800d13e0)
  • _o_wcsncpy_s (Address: 0x1800d13e8)
  • _o_wcstok (Address: 0x1800d13f0)
  • _o_wcstombs (Address: 0x1800d13f8)
  • _o_wcstoul (Address: 0x1800d1400)
  • _o_wmemcpy_s (Address: 0x1800d1408)
  • memcmp (Address: 0x1800d14a0)
  • memcpy (Address: 0x1800d14a8)
  • memmove (Address: 0x1800d1330)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x1800d14c0)
  • _initterm_e (Address: 0x1800d14b8)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x1800d14d0)
  • strncmp (Address: 0x1800d14e0)
  • wcscmp (Address: 0x1800d14d8)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x1800d14f0)
  • EventProviderEnabled (Address: 0x1800d1518)
  • EventRegister (Address: 0x1800d1500)
  • EventSetInformation (Address: 0x1800d1508)
  • EventUnregister (Address: 0x1800d1510)
  • EventWriteTransfer (Address: 0x1800d14f8)
api-ms-win-security-base-l1-1-0.dll
  • GetSecurityDescriptorLength (Address: 0x1800d1528)
  • ImpersonateLoggedOnUser (Address: 0x1800d1540)
  • IsValidSecurityDescriptor (Address: 0x1800d1530)
  • RevertToSelf (Address: 0x1800d1538)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1800d1550)
certenroll.dll
  • (Address: 0x1800d1560)
  • (Address: 0x1800d1568)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x1800d0c68)
  • CertAddEncodedCertificateToStore (Address: 0x1800d0c70)
  • CertCloseStore (Address: 0x1800d0c48)
  • CertCreateCertificateContext (Address: 0x1800d0c88)
  • CertDeleteCertificateFromStore (Address: 0x1800d0c78)
  • CertEnumCertificatesInStore (Address: 0x1800d0c50)
  • CertFindExtension (Address: 0x1800d0c98)
  • CertFreeCertificateContext (Address: 0x1800d0c80)
  • CertGetNameStringW (Address: 0x1800d0c90)
  • CertOpenStore (Address: 0x1800d0c40)
  • CryptBinaryToStringA (Address: 0x1800d0ca0)
  • CryptBinaryToStringW (Address: 0x1800d0c38)
  • CryptDecodeObject (Address: 0x1800d0ca8)
  • CryptImportPublicKeyInfoEx2 (Address: 0x1800d0c60)
  • CryptStringToBinaryW (Address: 0x1800d0c58)
DEVOBJ.dll
  • DevObjCreateDeviceInfoList (Address: 0x1800d0cd0)
  • DevObjDestroyDeviceInfoList (Address: 0x1800d0cd8)
  • DevObjEnumDeviceInterfaces (Address: 0x1800d0cc8)
  • DevObjGetClassDevs (Address: 0x1800d0cb8)
  • DevObjGetDeviceInterfaceDetail (Address: 0x1800d0cc0)
msvcp_win.dll
  • ?_Fiopen@std@@YAPEAU_iobuf@@PEBGHH@Z (Address: 0x1800d1668)
  • ?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z (Address: 0x1800d1660)
  • ?_Getcat@?$ctype@G@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z (Address: 0x1800d1788)
  • ?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ (Address: 0x1800d1678)
  • ?_Gndec@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ (Address: 0x1800d1618)
  • ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ (Address: 0x1800d1640)
  • ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ (Address: 0x1800d1740)
  • ?_Lock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800d1720)
  • ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ (Address: 0x1800d1768)
  • ?_Osfx@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAXXZ (Address: 0x1800d15a8)
  • ?_Pninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ (Address: 0x1800d1608)
  • ?_Pninc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAPEAGXZ (Address: 0x1800d1580)
  • ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ (Address: 0x1800d1738)
  • ?_Unlock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800d1718)
  • ?_Xbad_alloc@std@@YAXXZ (Address: 0x1800d16c0)
  • ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x1800d15c8)
  • ?_Xout_of_range@std@@YAXPEBD@Z (Address: 0x1800d1698)
  • ??0_Lockit@std@@QEAA@H@Z (Address: 0x1800d1680)
  • ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ (Address: 0x1800d1648)
  • ??0?$basic_ios@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x1800d1578)
  • ??0?$basic_iostream@GU?$char_traits@G@std@@@std@@QEAA@PEAV?$basic_streambuf@GU?$char_traits@G@std@@@1@@Z (Address: 0x1800d1710)
  • ??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z (Address: 0x1800d1638)
  • ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ (Address: 0x1800d1658)
  • ??0?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x1800d1588)
  • ??1_Lockit@std@@QEAA@XZ (Address: 0x1800d1688)
  • ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x1800d15f0)
  • ??1?$basic_ios@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800d17a0)
  • ??1?$basic_iostream@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800d16a0)
  • ??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x1800d16c8)
  • ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x1800d15e8)
  • ??1?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800d17b0)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@H@Z (Address: 0x1800d16a8)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@I@Z (Address: 0x1800d1690)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@P6AAEAVios_base@1@AEAV21@@Z@Z (Address: 0x1800d16b0)
  • ??Bid@locale@std@@QEAA_KXZ (Address: 0x1800d15b0)
  • ?always_noconv@codecvt_base@std@@QEBA_NXZ (Address: 0x1800d15b8)
  • ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ (Address: 0x1800d1770)
  • ?flush@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV12@XZ (Address: 0x1800d1700)
  • ?gbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXH@Z (Address: 0x1800d1620)
  • ?gbump@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAXH@Z (Address: 0x1800d16b8)
  • ?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ (Address: 0x1800d1650)
  • ?getloc@ios_base@std@@QEBA?AVlocale@2@XZ (Address: 0x1800d1798)
  • ?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A (Address: 0x1800d1670)
  • ?id@?$ctype@G@std@@2V0locale@2@A (Address: 0x1800d1790)
  • ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x1800d1760)
  • ?imbue@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x1800d16d0)
  • ?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z (Address: 0x1800d1600)
  • ?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z (Address: 0x1800d15f8)
  • ?pbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXH@Z (Address: 0x1800d1610)
  • ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z (Address: 0x1800d1758)
  • ?setbuf@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAPEAV12@PEAG_J@Z (Address: 0x1800d16e0)
  • ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z (Address: 0x1800d1628)
  • ?setstate@?$basic_ios@GU?$char_traits@G@std@@@std@@QEAAXH_N@Z (Address: 0x1800d17a8)
  • ?setw@std@@YA?AU?$_Smanip@_J@1@_J@Z (Address: 0x1800d1598)
  • ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ (Address: 0x1800d15e0)
  • ?showmanyc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JXZ (Address: 0x1800d1708)
  • ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z (Address: 0x1800d1730)
  • ?sputc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGG@Z (Address: 0x1800d1728)
  • ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z (Address: 0x1800d1778)
  • ?sputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAA_JPEBG_J@Z (Address: 0x1800d1590)
  • ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ (Address: 0x1800d1748)
  • ?sync@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAHXZ (Address: 0x1800d16d8)
  • ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ (Address: 0x1800d1750)
  • ?uflow@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAGXZ (Address: 0x1800d16f8)
  • ?uncaught_exception@std@@YA_NXZ (Address: 0x1800d15a0)
  • ?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z (Address: 0x1800d1630)
  • ?widen@?$ctype@G@std@@QEBAGD@Z (Address: 0x1800d1780)
  • ?write@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@PEBD_J@Z (Address: 0x1800d15c0)
  • ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z (Address: 0x1800d15d8)
  • ?xsgetn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEAG_J@Z (Address: 0x1800d16f0)
  • ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z (Address: 0x1800d15d0)
  • ?xsputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEBG_J@Z (Address: 0x1800d16e8)
ncrypt.dll
  • BCryptDecrypt (Address: 0x1800d17c0)
  • BCryptGenerateSymmetricKey (Address: 0x1800d17e8)
  • BCryptGenRandom (Address: 0x1800d17f0)
  • BCryptSetProperty (Address: 0x1800d17e0)
  • BCryptVerifySignature (Address: 0x1800d17c8)
  • NCryptCreateClaim (Address: 0x1800d17d0)
  • NCryptCreatePersistedKey (Address: 0x1800d1818)
  • NCryptDecrypt (Address: 0x1800d17d8)
  • NCryptDeleteKey (Address: 0x1800d1808)
  • NCryptEncrypt (Address: 0x1800d1850)
  • NCryptExportKey (Address: 0x1800d1828)
  • NCryptFinalizeKey (Address: 0x1800d1830)
  • NCryptFreeObject (Address: 0x1800d1848)
  • NCryptGetProperty (Address: 0x1800d1820)
  • NCryptImportKey (Address: 0x1800d1800)
  • NCryptOpenKey (Address: 0x1800d1840)
  • NCryptOpenStorageProvider (Address: 0x1800d1838)
  • NCryptSetProperty (Address: 0x1800d1810)
  • NCryptSignHash (Address: 0x1800d17f8)
ntdll.dll
  • NtClose (Address: 0x1800d18a8)
  • NtOpenKey (Address: 0x1800d1898)
  • NtQueryValueKey (Address: 0x1800d1880)
  • RtlCaptureContext (Address: 0x1800d1870)
  • RtlCompareMemory (Address: 0x1800d1878)
  • RtlGetPersistedStateLocation (Address: 0x1800d18b0)
  • RtlInitUnicodeString (Address: 0x1800d18a0)
  • RtlLookupFunctionEntry (Address: 0x1800d1868)
  • RtlNtStatusToDosError (Address: 0x1800d1890)
  • RtlPublishWnfStateData (Address: 0x1800d1888)
  • RtlVirtualUnwind (Address: 0x1800d1860)
OLEAUT32.dll
  • SysAllocString (Address: 0x1800d0d18)
  • SysAllocStringByteLen (Address: 0x1800d0cf8)
  • SysFreeString (Address: 0x1800d0d10)
  • SysStringByteLen (Address: 0x1800d0cf0)
  • SysStringLen (Address: 0x1800d0d08)
  • VariantClear (Address: 0x1800d0d00)
  • VariantInit (Address: 0x1800d0ce8)
RPCRT4.dll
  • RpcStringFreeW (Address: 0x1800d0d30)
  • UuidCreate (Address: 0x1800d0d28)
  • UuidToStringW (Address: 0x1800d0d38)
UMPDC.dll
  • Pdcv2ActivationClientActivate (Address: 0x1800d0d48)
  • Pdcv2ActivationClientDeactivate (Address: 0x1800d0d60)
  • Pdcv2ActivationClientRegister (Address: 0x1800d0d68)
  • Pdcv2ActivationClientRenewActivation (Address: 0x1800d0d50)
  • Pdcv2ActivationClientUnregister (Address: 0x1800d0d58)
WINHTTP.dll
  • WinHttpAddRequestHeaders (Address: 0x1800d0dc0)
  • WinHttpCloseHandle (Address: 0x1800d0da0)
  • WinHttpConnect (Address: 0x1800d0d90)
  • WinHttpCrackUrl (Address: 0x1800d0d98)
  • WinHttpOpen (Address: 0x1800d0d88)
  • WinHttpOpenRequest (Address: 0x1800d0da8)
  • WinHttpQueryDataAvailable (Address: 0x1800d0d80)
  • WinHttpQueryHeaders (Address: 0x1800d0dd0)
  • WinHttpReadData (Address: 0x1800d0db0)
  • WinHttpReceiveResponse (Address: 0x1800d0d78)
  • WinHttpSendRequest (Address: 0x1800d0dc8)
  • WinHttpSetOption (Address: 0x1800d0db8)