TpmCoreProvisioning.dll
Description: TPM Core Provisioning Library
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.6456
Architecture: 64-bit
Operating System: Windows NT
SHA256: 5871dda19c75b3f0ab4577c15c4b6cda
File Size: 1.1 MB
Uploaded At: Dec. 1, 2025, 7:40 a.m.
Views: 6
Exported Functions
- Tpm20CanClearUsingAuthPolicy (Ordinal: 1, Address: 0x33be0)
- Tpm20ClearUsingAuthPolicy (Ordinal: 2, Address: 0x33ca0)
- Tpm20GetCompleteManufacturerVersion (Ordinal: 3, Address: 0x36b50)
- Tpm20IsResetLockoutCountNeeded (Ordinal: 4, Address: 0x34090)
- Tpm20ResetLockoutCountIfNeeded (Ordinal: 5, Address: 0x34150)
- Tpm2CreateWindowsNvBits (Ordinal: 6, Address: 0x33130)
- Tpm2ReadWindowsNvBit (Ordinal: 7, Address: 0x331f0)
- Tpm2SetWindowsNvBit (Ordinal: 8, Address: 0x332c0)
- TpmAddBlockedCommand (Ordinal: 9, Address: 0x34890)
- TpmCertCheckEkCertMatchedEkPub (Ordinal: 10, Address: 0x45050)
- TpmCertDeleteHealthCert (Ordinal: 11, Address: 0x42610)
- TpmCertDeleteHealthEndpoint (Ordinal: 12, Address: 0x419b0)
- TpmCertGetCurrentProtocolVersion (Ordinal: 13, Address: 0x42540)
- TpmCertGetEkCertFromWeb (Ordinal: 14, Address: 0x49f30)
- TpmCertGetFormattedHASUrl (Ordinal: 15, Address: 0x49b20)
- TpmCertGetFormattedUrl (Ordinal: 16, Address: 0x49610)
- TpmCertGetFwLinkId (Ordinal: 17, Address: 0x478e0)
- TpmCertGetHealthCert (Ordinal: 18, Address: 0x42200)
- TpmCertGetHealthCertFromWeb (Ordinal: 19, Address: 0x4cd70)
- TpmCertGetHealthCorrelationId (Ordinal: 20, Address: 0x41ba0)
- TpmCertGetHealthEndpoint (Ordinal: 21, Address: 0x418e0)
- TpmCertGetHealthForceRetrieve (Ordinal: 22, Address: 0x41d50)
- TpmCertGetHealthStatusCode (Ordinal: 23, Address: 0x41ef0)
- TpmCertGetHealthStatusRequestBlob (Ordinal: 24, Address: 0x4c7c0)
- TpmCertGetIsActiveZeroExhaust (Ordinal: 25, Address: 0x46a00)
- TpmCertGetMaximumSupportedProtocolVersion (Ordinal: 26, Address: 0x422e0)
- TpmCertGetPreferredMaximumProtocolVersion (Ordinal: 27, Address: 0x423a0)
- TpmCertGetTpmManufacturerId (Ordinal: 28, Address: 0x44b00)
- TpmCertGetWindowsAik (Ordinal: 29, Address: 0x430c0)
- TpmCertInstallEkCertInRegistry (Ordinal: 30, Address: 0x45140)
- TpmCertInstallNvEkCerts (Ordinal: 31, Address: 0x44bc0)
- TpmCertIsHealthCertOnBootEnabled (Ordinal: 32, Address: 0x42970)
- TpmCertParseHealthResponse (Ordinal: 33, Address: 0x484f0)
- TpmCertPostHealthXmlData (Ordinal: 34, Address: 0x4c900)
- TpmCertQueryEkPub (Ordinal: 35, Address: 0x44e90)
- TpmCertSetHealthEndpoint (Ordinal: 36, Address: 0x41820)
- TpmCertSetHealthForceRetrieve (Ordinal: 37, Address: 0x41c80)
- TpmCertSetHealthStatusCode (Ordinal: 38, Address: 0x41e20)
- TpmCertSetPreferredMaximumProtocolVersion (Ordinal: 39, Address: 0x42470)
- TpmCertVerifyHealthCertFromWeb (Ordinal: 40, Address: 0x4d050)
- TpmChangeOwnerAuth (Ordinal: 41, Address: 0x33fa0)
- TpmCheckCreateWindowsAIK (Ordinal: 42, Address: 0x35dc0)
- TpmCheckIFXRSAKeyGenVulnerability (Ordinal: 43, Address: 0x4fdd0)
- TpmClear (Ordinal: 44, Address: 0x33d60)
- TpmClearUsingPhysicalPresence (Ordinal: 45, Address: 0x36780)
- TpmClearWithPolicyOrPPI (Ordinal: 46, Address: 0x36f60)
- TpmConvertToOwnerAuth (Ordinal: 47, Address: 0x343b0)
- TpmCreateEndorsementKeyPair (Ordinal: 48, Address: 0x32e50)
- TpmCreateHealthAttestationClaim (Ordinal: 49, Address: 0x42da0)
- TpmCreateHealthStatusClaim (Ordinal: 50, Address: 0x429e0)
- TpmDeleteOwnerAuth (Ordinal: 51, Address: 0x350e0)
- TpmDisable (Ordinal: 52, Address: 0x32c10)
- TpmDisableAutoProvisioning (Ordinal: 53, Address: 0x34f50)
- TpmEKCertValidateAndCleanup (Ordinal: 54, Address: 0x36600)
- TpmEnable (Ordinal: 55, Address: 0x32b50)
- TpmEnableAutoProvisioning (Ordinal: 56, Address: 0x34e20)
- TpmEnrollWindowsAikCertificate (Ordinal: 57, Address: 0x373a0)
- TpmGatherLogs (Ordinal: 58, Address: 0x37030)
- TpmGatherTpmData (Ordinal: 59, Address: 0x4f8d0)
- TpmGetCapLockoutInfo (Ordinal: 60, Address: 0x35cf0)
- TpmGetDeviceInformation (Ordinal: 61, Address: 0x36dd0)
- TpmGetDictionaryAttackParameters (Ordinal: 62, Address: 0x35a60)
- TpmGetEffectiveGroupPolicyOwnerAuthLevel (Ordinal: 63, Address: 0x35900)
- TpmGetEndorsementKeyCertificateState (Ordinal: 64, Address: 0x36480)
- TpmGetHealthCertRequest (Ordinal: 65, Address: 0x43b50)
- TpmGetOrderlyShutdownInfo (Ordinal: 66, Address: 0x35c30)
- TpmGetOwnerAuth (Ordinal: 67, Address: 0x35010)
- TpmGetOwnerAuthForEscrow (Ordinal: 68, Address: 0x356a0)
- TpmGetOwnerAuthStatus (Ordinal: 69, Address: 0x35840)
- TpmGetOwnershipAuthBits (Ordinal: 70, Address: 0x32540)
- TpmGetPPIVersion (Ordinal: 71, Address: 0x36ce0)
- TpmGetPhysicalPresenceConfirmationStatus (Ordinal: 72, Address: 0x35340)
- TpmGetPhysicalPresenceRequest (Ordinal: 73, Address: 0x34620)
- TpmGetPhysicalPresenceResponse (Ordinal: 74, Address: 0x347a0)
- TpmGetPhysicalPresenceTransition (Ordinal: 75, Address: 0x346e0)
- TpmGetPssSalt (Ordinal: 76, Address: 0x371b0)
- TpmGetRandomAuthValue (Ordinal: 77, Address: 0x34210)
- TpmGetSignedEKFromVendorCommand (Ordinal: 78, Address: 0x37290)
- TpmGetSrkADThumbprint (Ordinal: 79, Address: 0x354e0)
- TpmGetSrkPublicKeyModulus (Ordinal: 80, Address: 0x35410)
- TpmGetTcgLog (Ordinal: 81, Address: 0x355d0)
- TpmGetTpmVersion (Ordinal: 82, Address: 0x36c20)
- TpmGetVerificationRequest (Ordinal: 83, Address: 0x43c80)
- TpmGet_IsPpiVersion12 (Ordinal: 84, Address: 0x31f50)
- TpmGet_IsTpmPresent (Ordinal: 85, Address: 0x31d30)
- TpmGet_IsTpmVersion20 (Ordinal: 86, Address: 0x31e70)
- TpmGet_ManufacturerId (Ordinal: 87, Address: 0x31820)
- TpmGet_ManufacturerVersion (Ordinal: 88, Address: 0x31900)
- TpmGet_ManufacturerVersionInfo (Ordinal: 89, Address: 0x319d0)
- TpmGet_PhysicalPresenceVersionInfo (Ordinal: 90, Address: 0x31b70)
- TpmGet_SpecVersion (Ordinal: 91, Address: 0x31aa0)
- TpmGet_TpmVersionInfo (Ordinal: 92, Address: 0x31c40)
- TpmHasVulnerableFW (Ordinal: 93, Address: 0x36e90)
- TpmHealthCertGetAndVerify (Ordinal: 94, Address: 0x43370)
- TpmImportOwnerAuth (Ordinal: 95, Address: 0x35280)
- TpmIsActivated (Ordinal: 96, Address: 0x32600)
- TpmIsAutoProvisioningEnabled (Ordinal: 97, Address: 0x34d30)
- TpmIsAutoProvisioningEnabledEx (Ordinal: 98, Address: 0x34d50)
- TpmIsCommandBlocked (Ordinal: 99, Address: 0x34ad0)
- TpmIsCommandPresent (Ordinal: 100, Address: 0x329c0)
- TpmIsEnabled (Ordinal: 101, Address: 0x323c0)
- TpmIsEndorsementKeyPairPresent (Ordinal: 102, Address: 0x32cd0)
- TpmIsFIPS (Ordinal: 103, Address: 0x32d90)
- TpmIsKeyAttestationCapable (Ordinal: 104, Address: 0x32a90)
- TpmIsLockedOut (Ordinal: 105, Address: 0x366c0)
- TpmIsOwned (Ordinal: 106, Address: 0x32480)
- TpmIsOwnerClearDisabled (Ordinal: 107, Address: 0x32780)
- TpmIsOwnershipAllowed (Ordinal: 108, Address: 0x32900)
- TpmIsPhysicalClearDisabled (Ordinal: 109, Address: 0x326c0)
- TpmIsPhysicalPresenceHardwareEnabled (Ordinal: 110, Address: 0x32840)
- TpmIsReady (Ordinal: 111, Address: 0x34ba0)
- TpmIsReadyInformation (Ordinal: 112, Address: 0x34c60)
- TpmIsSrkAuthCompatible (Ordinal: 113, Address: 0x33e20)
- TpmIsUseLegacyDictionaryAttackParametersPolicySet (Ordinal: 114, Address: 0x32fd0)
- TpmManufacturerId_From_TpmVersionInfo (Ordinal: 115, Address: 0x32010)
- TpmManufacturerVersionInfo_From_TpmVersionInfo (Ordinal: 116, Address: 0x321e0)
- TpmManufacturerVersion_From_TpmVersionInfo (Ordinal: 117, Address: 0x320f0)
- TpmOwnerAuthEscrowed (Ordinal: 118, Address: 0x35780)
- TpmPrepForNgc (Ordinal: 119, Address: 0x36210)
- TpmProvision (Ordinal: 120, Address: 0x351a0)
- TpmRemoveBlockedCommand (Ordinal: 121, Address: 0x34950)
- TpmRemoveRegisteredWindowsAIK (Ordinal: 122, Address: 0x36150)
- TpmResetAuthLockOut (Ordinal: 123, Address: 0x34a10)
- TpmResetSrkAuth (Ordinal: 124, Address: 0x33ee0)
- TpmRetrieveEkCertOrReschedule (Ordinal: 125, Address: 0x362e0)
- TpmRetrieveEkCertificate (Ordinal: 126, Address: 0x46450)
- TpmRetrieveEkCertificateURL (Ordinal: 127, Address: 0x46290)
- TpmRetrieveHealthCertOrReschedule (Ordinal: 128, Address: 0x363a0)
- TpmRetrieveHealthCertificate (Ordinal: 129, Address: 0x43260)
- TpmSelfTest (Ordinal: 130, Address: 0x342e0)
- TpmSetDictionaryAttackParameters (Ordinal: 131, Address: 0x35b40)
- TpmSetInstance (Ordinal: 132, Address: 0x31500)
- TpmSetPhysicalPresenceRequest (Ordinal: 133, Address: 0x34490)
- TpmSetPhysicalPresenceRequestEx (Ordinal: 134, Address: 0x34550)
- TpmSetToLegacyDictionaryAttackParameters (Ordinal: 135, Address: 0x36540)
- TpmSpecVersion_From_TpmVersionInfo (Ordinal: 136, Address: 0x322d0)
- TpmTakeOwnership (Ordinal: 137, Address: 0x32f10)
- TpmUnattendedSetup (Ordinal: 138, Address: 0x36840)
- TpmVerifyDeviceHealth (Ordinal: 139, Address: 0x43a90)
- TpmWriteInformationSnapshotFile (Ordinal: 140, Address: 0x370f0)
- DllCanUnloadNow (Ordinal: 141, Address: 0x11a30)
- TpmCertGetHASProtocolVersion (Ordinal: 142, Address: 0x41660)
- TpmCertSetEkAttestationOverride (Ordinal: 143, Address: 0x41750)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x1800d0de0)
api-ms-win-core-com-l1-1-0.dll
- CoCreateFreeThreadedMarshaler (Address: 0x1800d0df0)
- CoCreateInstance (Address: 0x1800d0e00)
- CoGetApartmentType (Address: 0x1800d0e18)
- CoInitializeEx (Address: 0x1800d0e08)
- CoTaskMemFree (Address: 0x1800d0e10)
- CoUninitialize (Address: 0x1800d0df8)
- CoWaitForMultipleHandles (Address: 0x1800d0e20)
api-ms-win-core-datetime-l1-1-1.dll
- GetDateFormatEx (Address: 0x1800d0e38)
- GetTimeFormatEx (Address: 0x1800d0e30)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1800d0e58)
- IsDebuggerPresent (Address: 0x1800d0e48)
- OutputDebugStringW (Address: 0x1800d0e50)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1800d0e68)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1800d0e78)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1800d0e88)
- RaiseException (Address: 0x1800d0ea8)
- SetLastError (Address: 0x1800d0e90)
- SetUnhandledExceptionFilter (Address: 0x1800d0e98)
- UnhandledExceptionFilter (Address: 0x1800d0ea0)
api-ms-win-core-file-l1-1-0.dll
- CreateDirectoryW (Address: 0x1800d0ec0)
- CreateFileW (Address: 0x1800d0ed0)
- FindClose (Address: 0x1800d0ed8)
- FindFirstFileExW (Address: 0x1800d0ec8)
- FindNextFileW (Address: 0x1800d0ee8)
- ReadFile (Address: 0x1800d0ee0)
- WriteFile (Address: 0x1800d0eb8)
api-ms-win-core-file-l1-2-0.dll
- CreateFile2 (Address: 0x1800d0ef8)
api-ms-win-core-file-l2-1-0.dll
- CopyFile2 (Address: 0x1800d0f08)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1800d0f18)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1800d0f38)
- HeapAlloc (Address: 0x1800d0f40)
- HeapFree (Address: 0x1800d0f30)
- HeapSize (Address: 0x1800d0f28)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1800d0f58)
- LocalFree (Address: 0x1800d0f50)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x1800d0f68)
api-ms-win-core-io-l1-1-0.dll
- DeviceIoControl (Address: 0x1800d0f78)
- GetOverlappedResult (Address: 0x1800d0f80)
api-ms-win-core-io-l1-1-1.dll
- CancelIo (Address: 0x1800d0f90)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1800d0fb8)
- FreeLibrary (Address: 0x1800d0fa8)
- GetModuleFileNameA (Address: 0x1800d0fd8)
- GetModuleHandleExW (Address: 0x1800d0fe8)
- GetModuleHandleW (Address: 0x1800d0fc0)
- GetProcAddress (Address: 0x1800d0fb0)
- LoadLibraryExW (Address: 0x1800d0fa0)
- LoadResource (Address: 0x1800d0fd0)
- LoadStringW (Address: 0x1800d0fe0)
- LockResource (Address: 0x1800d0ff0)
- SizeofResource (Address: 0x1800d0fc8)
api-ms-win-core-libraryloader-l1-2-1.dll
- FindResourceW (Address: 0x1800d1000)
- LoadLibraryW (Address: 0x1800d1008)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1800d1018)
api-ms-win-core-processenvironment-l1-1-0.dll
- GetEnvironmentVariableW (Address: 0x1800d1028)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1800d1068)
- GetCurrentProcessId (Address: 0x1800d1048)
- GetCurrentThread (Address: 0x1800d1050)
- GetCurrentThreadId (Address: 0x1800d1058)
- OpenThreadToken (Address: 0x1800d1038)
- SetThreadToken (Address: 0x1800d1040)
- TerminateProcess (Address: 0x1800d1060)
api-ms-win-core-processthreads-l1-1-1.dll
- IsProcessorFeaturePresent (Address: 0x1800d1078)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1800d1088)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1800d10a8)
- RegCreateKeyExW (Address: 0x1800d1098)
- RegDeleteKeyExW (Address: 0x1800d10d8)
- RegDeleteValueW (Address: 0x1800d10d0)
- RegFlushKey (Address: 0x1800d10c8)
- RegGetValueW (Address: 0x1800d10b0)
- RegOpenKeyExW (Address: 0x1800d10a0)
- RegQueryValueExW (Address: 0x1800d10c0)
- RegSetValueExW (Address: 0x1800d10b8)
api-ms-win-core-registry-l1-1-1.dll
- RegDeleteKeyValueW (Address: 0x1800d10e8)
- RegSetKeyValueW (Address: 0x1800d10f0)
api-ms-win-core-string-l1-1-0.dll
- CompareStringW (Address: 0x1800d1100)
- MultiByteToWideChar (Address: 0x1800d1110)
- WideCharToMultiByte (Address: 0x1800d1108)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1800d1198)
- AcquireSRWLockShared (Address: 0x1800d11b8)
- CreateEventExW (Address: 0x1800d11c8)
- CreateEventW (Address: 0x1800d1190)
- CreateMutexExW (Address: 0x1800d11b0)
- CreateMutexW (Address: 0x1800d1120)
- CreateSemaphoreExW (Address: 0x1800d1150)
- DeleteCriticalSection (Address: 0x1800d1138)
- EnterCriticalSection (Address: 0x1800d1178)
- InitializeCriticalSection (Address: 0x1800d1130)
- InitializeCriticalSectionEx (Address: 0x1800d11a8)
- LeaveCriticalSection (Address: 0x1800d1148)
- OpenEventW (Address: 0x1800d11c0)
- OpenMutexW (Address: 0x1800d1158)
- OpenSemaphoreW (Address: 0x1800d11a0)
- ReleaseMutex (Address: 0x1800d1170)
- ReleaseSemaphore (Address: 0x1800d1160)
- ReleaseSRWLockExclusive (Address: 0x1800d11d0)
- ReleaseSRWLockShared (Address: 0x1800d1180)
- SetEvent (Address: 0x1800d1128)
- WaitForMultipleObjectsEx (Address: 0x1800d1140)
- WaitForSingleObject (Address: 0x1800d1168)
- WaitForSingleObjectEx (Address: 0x1800d1188)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x1800d11e0)
- InitOnceComplete (Address: 0x1800d11f8)
- InitOnceExecuteOnce (Address: 0x1800d11f0)
- Sleep (Address: 0x1800d11e8)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetLocalTime (Address: 0x1800d1230)
- GetSystemDirectoryW (Address: 0x1800d1228)
- GetSystemTimeAsFileTime (Address: 0x1800d1218)
- GetSystemWindowsDirectoryW (Address: 0x1800d1220)
- GetTickCount (Address: 0x1800d1210)
- GetTickCount64 (Address: 0x1800d1208)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1800d1250)
- CreateThreadpoolTimer (Address: 0x1800d1248)
- SetThreadpoolTimer (Address: 0x1800d1240)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800d1258)
api-ms-win-core-timezone-l1-1-0.dll
- FileTimeToSystemTime (Address: 0x1800d1268)
- SystemTimeToFileTime (Address: 0x1800d1270)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x1800d1290)
- RoGetActivationFactory (Address: 0x1800d1288)
- RoInitialize (Address: 0x1800d1280)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCreateStringReference (Address: 0x1800d12b0)
- WindowsDeleteString (Address: 0x1800d12a0)
- WindowsGetStringRawBuffer (Address: 0x1800d12a8)
api-ms-win-crt-private-l1-1-0.dll
- __C_specific_handler (Address: 0x1800d1418)
- __CxxFrameHandler3 (Address: 0x1800d1410)
- __CxxFrameHandler4 (Address: 0x1800d1498)
- __std_terminate (Address: 0x1800d1490)
- _CxxThrowException (Address: 0x1800d1420)
- _o___std_exception_copy (Address: 0x1800d1488)
- _o___std_exception_destroy (Address: 0x1800d1480)
- _o___std_type_info_destroy_list (Address: 0x1800d1478)
- _o___stdio_common_vsnprintf_s (Address: 0x1800d1470)
- _o___stdio_common_vsnwprintf_s (Address: 0x1800d1468)
- _o___stdio_common_vsprintf (Address: 0x1800d1460)
- _o___stdio_common_vsprintf_s (Address: 0x1800d1458)
- _o___stdio_common_vswprintf (Address: 0x1800d1450)
- _o___stdio_common_vswprintf_s (Address: 0x1800d1448)
- _o__callnewh (Address: 0x1800d1440)
- _o__cexit (Address: 0x1800d1438)
- _o__configure_narrow_argv (Address: 0x1800d1430)
- _o__crt_atexit (Address: 0x1800d1428)
- _o__errno (Address: 0x1800d12c0)
- _o__execute_onexit_table (Address: 0x1800d12c8)
- _o__fseeki64 (Address: 0x1800d12d0)
- _o__get_stream_buffer_pointers (Address: 0x1800d12d8)
- _o__initialize_narrow_environment (Address: 0x1800d12e0)
- _o__initialize_onexit_table (Address: 0x1800d12e8)
- _o__invalid_parameter_noinfo (Address: 0x1800d12f0)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x1800d12f8)
- _o__localtime64 (Address: 0x1800d1300)
- _o__lock_file (Address: 0x1800d1308)
- _o__mktime64 (Address: 0x1800d1310)
- _o__purecall (Address: 0x1800d1318)
- _o__register_onexit_function (Address: 0x1800d1320)
- _o__seh_filter_dll (Address: 0x1800d1328)
- _o__unlock_file (Address: 0x1800d1338)
- _o__wcsicmp (Address: 0x1800d1340)
- _o__wcsnicmp (Address: 0x1800d1348)
- _o_btowc (Address: 0x1800d1350)
- _o_fclose (Address: 0x1800d1358)
- _o_fflush (Address: 0x1800d1360)
- _o_fgetc (Address: 0x1800d1368)
- _o_fgetpos (Address: 0x1800d1370)
- _o_fputc (Address: 0x1800d1378)
- _o_fread (Address: 0x1800d1380)
- _o_free (Address: 0x1800d1388)
- _o_fsetpos (Address: 0x1800d1390)
- _o_fwrite (Address: 0x1800d1398)
- _o_malloc (Address: 0x1800d13a0)
- _o_mbstowcs_s (Address: 0x1800d13a8)
- _o_memcpy_s (Address: 0x1800d13b0)
- _o_setvbuf (Address: 0x1800d13b8)
- _o_strtoul (Address: 0x1800d13c0)
- _o_terminate (Address: 0x1800d13c8)
- _o_toupper (Address: 0x1800d13d0)
- _o_ungetc (Address: 0x1800d13d8)
- _o_wcsftime (Address: 0x1800d13e0)
- _o_wcsncpy_s (Address: 0x1800d13e8)
- _o_wcstok (Address: 0x1800d13f0)
- _o_wcstombs (Address: 0x1800d13f8)
- _o_wcstoul (Address: 0x1800d1400)
- _o_wmemcpy_s (Address: 0x1800d1408)
- memcmp (Address: 0x1800d14a0)
- memcpy (Address: 0x1800d14a8)
- memmove (Address: 0x1800d1330)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x1800d14c0)
- _initterm_e (Address: 0x1800d14b8)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x1800d14d0)
- strncmp (Address: 0x1800d14e0)
- wcscmp (Address: 0x1800d14d8)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x1800d14f0)
- EventProviderEnabled (Address: 0x1800d1518)
- EventRegister (Address: 0x1800d1500)
- EventSetInformation (Address: 0x1800d1508)
- EventUnregister (Address: 0x1800d1510)
- EventWriteTransfer (Address: 0x1800d14f8)
api-ms-win-security-base-l1-1-0.dll
- GetSecurityDescriptorLength (Address: 0x1800d1528)
- ImpersonateLoggedOnUser (Address: 0x1800d1540)
- IsValidSecurityDescriptor (Address: 0x1800d1530)
- RevertToSelf (Address: 0x1800d1538)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1800d1550)
certenroll.dll
- (Address: 0x1800d1560)
- (Address: 0x1800d1568)
CRYPT32.dll
- CertAddCertificateContextToStore (Address: 0x1800d0c68)
- CertAddEncodedCertificateToStore (Address: 0x1800d0c70)
- CertCloseStore (Address: 0x1800d0c48)
- CertCreateCertificateContext (Address: 0x1800d0c88)
- CertDeleteCertificateFromStore (Address: 0x1800d0c78)
- CertEnumCertificatesInStore (Address: 0x1800d0c50)
- CertFindExtension (Address: 0x1800d0c98)
- CertFreeCertificateContext (Address: 0x1800d0c80)
- CertGetNameStringW (Address: 0x1800d0c90)
- CertOpenStore (Address: 0x1800d0c40)
- CryptBinaryToStringA (Address: 0x1800d0ca0)
- CryptBinaryToStringW (Address: 0x1800d0c38)
- CryptDecodeObject (Address: 0x1800d0ca8)
- CryptImportPublicKeyInfoEx2 (Address: 0x1800d0c60)
- CryptStringToBinaryW (Address: 0x1800d0c58)
DEVOBJ.dll
- DevObjCreateDeviceInfoList (Address: 0x1800d0cd0)
- DevObjDestroyDeviceInfoList (Address: 0x1800d0cd8)
- DevObjEnumDeviceInterfaces (Address: 0x1800d0cc8)
- DevObjGetClassDevs (Address: 0x1800d0cb8)
- DevObjGetDeviceInterfaceDetail (Address: 0x1800d0cc0)
msvcp_win.dll
- ?_Fiopen@std@@YAPEAU_iobuf@@PEBGHH@Z (Address: 0x1800d1668)
- ?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z (Address: 0x1800d1660)
- ?_Getcat@?$ctype@G@std@@SA_KPEAPEBVfacet@locale@2@PEBV42@@Z (Address: 0x1800d1788)
- ?_Getgloballocale@locale@std@@CAPEAV_Locimp@12@XZ (Address: 0x1800d1678)
- ?_Gndec@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ (Address: 0x1800d1618)
- ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXXZ (Address: 0x1800d1640)
- ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ (Address: 0x1800d1740)
- ?_Lock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800d1720)
- ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAXXZ (Address: 0x1800d1768)
- ?_Osfx@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAXXZ (Address: 0x1800d15a8)
- ?_Pninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAPEADXZ (Address: 0x1800d1608)
- ?_Pninc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAPEAGXZ (Address: 0x1800d1580)
- ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ (Address: 0x1800d1738)
- ?_Unlock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800d1718)
- ?_Xbad_alloc@std@@YAXXZ (Address: 0x1800d16c0)
- ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x1800d15c8)
- ?_Xout_of_range@std@@YAXPEBD@Z (Address: 0x1800d1698)
- ??0_Lockit@std@@QEAA@H@Z (Address: 0x1800d1680)
- ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ (Address: 0x1800d1648)
- ??0?$basic_ios@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x1800d1578)
- ??0?$basic_iostream@GU?$char_traits@G@std@@@std@@QEAA@PEAV?$basic_streambuf@GU?$char_traits@G@std@@@1@@Z (Address: 0x1800d1710)
- ??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z (Address: 0x1800d1638)
- ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ (Address: 0x1800d1658)
- ??0?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x1800d1588)
- ??1_Lockit@std@@QEAA@XZ (Address: 0x1800d1688)
- ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x1800d15f0)
- ??1?$basic_ios@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800d17a0)
- ??1?$basic_iostream@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800d16a0)
- ??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x1800d16c8)
- ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x1800d15e8)
- ??1?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800d17b0)
- ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@H@Z (Address: 0x1800d16a8)
- ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@I@Z (Address: 0x1800d1690)
- ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@P6AAEAVios_base@1@AEAV21@@Z@Z (Address: 0x1800d16b0)
- ??Bid@locale@std@@QEAA_KXZ (Address: 0x1800d15b0)
- ?always_noconv@codecvt_base@std@@QEBA_NXZ (Address: 0x1800d15b8)
- ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@XZ (Address: 0x1800d1770)
- ?flush@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV12@XZ (Address: 0x1800d1700)
- ?gbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXH@Z (Address: 0x1800d1620)
- ?gbump@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAXH@Z (Address: 0x1800d16b8)
- ?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEBA?AVlocale@2@XZ (Address: 0x1800d1650)
- ?getloc@ios_base@std@@QEBA?AVlocale@2@XZ (Address: 0x1800d1798)
- ?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A (Address: 0x1800d1670)
- ?id@?$ctype@G@std@@2V0locale@2@A (Address: 0x1800d1790)
- ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x1800d1760)
- ?imbue@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x1800d16d0)
- ?in@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z (Address: 0x1800d1600)
- ?out@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEBD1AEAPEBDPEAD3AEAPEAD@Z (Address: 0x1800d15f8)
- ?pbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAAXH@Z (Address: 0x1800d1610)
- ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z (Address: 0x1800d1758)
- ?setbuf@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAPEAV12@PEAG_J@Z (Address: 0x1800d16e0)
- ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z (Address: 0x1800d1628)
- ?setstate@?$basic_ios@GU?$char_traits@G@std@@@std@@QEAAXH_N@Z (Address: 0x1800d17a8)
- ?setw@std@@YA?AU?$_Smanip@_J@1@_J@Z (Address: 0x1800d1598)
- ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ (Address: 0x1800d15e0)
- ?showmanyc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JXZ (Address: 0x1800d1708)
- ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHD@Z (Address: 0x1800d1730)
- ?sputc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGG@Z (Address: 0x1800d1728)
- ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAA_JPEBD_J@Z (Address: 0x1800d1778)
- ?sputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAA_JPEBG_J@Z (Address: 0x1800d1590)
- ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ (Address: 0x1800d1748)
- ?sync@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAHXZ (Address: 0x1800d16d8)
- ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ (Address: 0x1800d1750)
- ?uflow@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAGXZ (Address: 0x1800d16f8)
- ?uncaught_exception@std@@YA_NXZ (Address: 0x1800d15a0)
- ?unshift@?$codecvt@DDU_Mbstatet@@@std@@QEBAHAEAU_Mbstatet@@PEAD1AEAPEAD@Z (Address: 0x1800d1630)
- ?widen@?$ctype@G@std@@QEBAGD@Z (Address: 0x1800d1780)
- ?write@?$basic_ostream@DU?$char_traits@D@std@@@std@@QEAAAEAV12@PEBD_J@Z (Address: 0x1800d15c0)
- ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z (Address: 0x1800d15d8)
- ?xsgetn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEAG_J@Z (Address: 0x1800d16f0)
- ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z (Address: 0x1800d15d0)
- ?xsputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEBG_J@Z (Address: 0x1800d16e8)
ncrypt.dll
- BCryptDecrypt (Address: 0x1800d17c0)
- BCryptGenerateSymmetricKey (Address: 0x1800d17e8)
- BCryptGenRandom (Address: 0x1800d17f0)
- BCryptSetProperty (Address: 0x1800d17e0)
- BCryptVerifySignature (Address: 0x1800d17c8)
- NCryptCreateClaim (Address: 0x1800d17d0)
- NCryptCreatePersistedKey (Address: 0x1800d1818)
- NCryptDecrypt (Address: 0x1800d17d8)
- NCryptDeleteKey (Address: 0x1800d1808)
- NCryptEncrypt (Address: 0x1800d1850)
- NCryptExportKey (Address: 0x1800d1828)
- NCryptFinalizeKey (Address: 0x1800d1830)
- NCryptFreeObject (Address: 0x1800d1848)
- NCryptGetProperty (Address: 0x1800d1820)
- NCryptImportKey (Address: 0x1800d1800)
- NCryptOpenKey (Address: 0x1800d1840)
- NCryptOpenStorageProvider (Address: 0x1800d1838)
- NCryptSetProperty (Address: 0x1800d1810)
- NCryptSignHash (Address: 0x1800d17f8)
ntdll.dll
- NtClose (Address: 0x1800d18a8)
- NtOpenKey (Address: 0x1800d1898)
- NtQueryValueKey (Address: 0x1800d1880)
- RtlCaptureContext (Address: 0x1800d1870)
- RtlCompareMemory (Address: 0x1800d1878)
- RtlGetPersistedStateLocation (Address: 0x1800d18b0)
- RtlInitUnicodeString (Address: 0x1800d18a0)
- RtlLookupFunctionEntry (Address: 0x1800d1868)
- RtlNtStatusToDosError (Address: 0x1800d1890)
- RtlPublishWnfStateData (Address: 0x1800d1888)
- RtlVirtualUnwind (Address: 0x1800d1860)
OLEAUT32.dll
- SysAllocString (Address: 0x1800d0d18)
- SysAllocStringByteLen (Address: 0x1800d0cf8)
- SysFreeString (Address: 0x1800d0d10)
- SysStringByteLen (Address: 0x1800d0cf0)
- SysStringLen (Address: 0x1800d0d08)
- VariantClear (Address: 0x1800d0d00)
- VariantInit (Address: 0x1800d0ce8)
RPCRT4.dll
- RpcStringFreeW (Address: 0x1800d0d30)
- UuidCreate (Address: 0x1800d0d28)
- UuidToStringW (Address: 0x1800d0d38)
UMPDC.dll
- Pdcv2ActivationClientActivate (Address: 0x1800d0d48)
- Pdcv2ActivationClientDeactivate (Address: 0x1800d0d60)
- Pdcv2ActivationClientRegister (Address: 0x1800d0d68)
- Pdcv2ActivationClientRenewActivation (Address: 0x1800d0d50)
- Pdcv2ActivationClientUnregister (Address: 0x1800d0d58)
WINHTTP.dll
- WinHttpAddRequestHeaders (Address: 0x1800d0dc0)
- WinHttpCloseHandle (Address: 0x1800d0da0)
- WinHttpConnect (Address: 0x1800d0d90)
- WinHttpCrackUrl (Address: 0x1800d0d98)
- WinHttpOpen (Address: 0x1800d0d88)
- WinHttpOpenRequest (Address: 0x1800d0da8)
- WinHttpQueryDataAvailable (Address: 0x1800d0d80)
- WinHttpQueryHeaders (Address: 0x1800d0dd0)
- WinHttpReadData (Address: 0x1800d0db0)
- WinHttpReceiveResponse (Address: 0x1800d0d78)
- WinHttpSendRequest (Address: 0x1800d0dc8)
- WinHttpSetOption (Address: 0x1800d0db8)