ttdplm.dll

Description: Time Travel Debugger PLM APIs

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 64-bit

Operating System: Windows NT

SHA256: 2f776655fa879aec905af1136921750b

File Size: 65.5 KB

Uploaded At: Dec. 1, 2025, 7:40 a.m.

Views: 3

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • CreateModernAppToDelete (Ordinal: 1, Address: 0x23c0)
  • CreateModernAppToTrace (Ordinal: 2, Address: 0x22f0)
  • GetMaxPackageNameLength (Ordinal: 3, Address: 0x2400)
  • GetPackageFromPid (Ordinal: 4, Address: 0x2410)
  • SetPermisionsForFolder (Ordinal: 5, Address: 0x24c0)

Imported DLLs & Functions

api-ms-win-appmodel-runtime-l1-1-0.dll
  • GetPackageFullName (Address: 0x1800092b8)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x1800092c8)
  • CoInitializeEx (Address: 0x1800092d8)
  • CoUninitialize (Address: 0x1800092d0)
api-ms-win-core-debug-l1-1-0.dll
  • IsDebuggerPresent (Address: 0x1800092e8)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180009318)
  • RaiseException (Address: 0x180009300)
  • SetLastError (Address: 0x180009310)
  • SetUnhandledExceptionFilter (Address: 0x180009308)
  • UnhandledExceptionFilter (Address: 0x1800092f8)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x180009330)
  • GetFileAttributesW (Address: 0x180009328)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180009340)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180009360)
  • HeapAlloc (Address: 0x180009350)
  • HeapFree (Address: 0x180009358)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x180009370)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x180009390)
  • FreeLibrary (Address: 0x180009398)
  • GetProcAddress (Address: 0x180009388)
  • LoadLibraryExA (Address: 0x180009380)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1800093a8)
api-ms-win-core-memory-l1-1-0.dll
  • VirtualProtect (Address: 0x1800093c0)
  • VirtualQuery (Address: 0x1800093b8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1800093d0)
  • GetCurrentProcessId (Address: 0x1800093d8)
  • GetCurrentThreadId (Address: 0x1800093e8)
  • OpenProcessToken (Address: 0x1800093f0)
  • TerminateProcess (Address: 0x1800093e0)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x180009408)
  • OpenProcess (Address: 0x180009400)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180009418)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180009450)
  • RegEnumKeyExW (Address: 0x180009428)
  • RegGetKeySecurity (Address: 0x180009430)
  • RegGetValueW (Address: 0x180009458)
  • RegOpenKeyExW (Address: 0x180009440)
  • RegQueryInfoKeyW (Address: 0x180009448)
  • RegSetKeySecurity (Address: 0x180009438)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180009468)
  • RtlLookupFunctionEntry (Address: 0x180009470)
  • RtlVirtualUnwind (Address: 0x180009478)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1800094a8)
  • DeleteCriticalSection (Address: 0x180009498)
  • InitializeCriticalSectionEx (Address: 0x180009488)
  • LeaveCriticalSection (Address: 0x1800094a0)
  • ReleaseSRWLockExclusive (Address: 0x180009490)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemInfo (Address: 0x1800094b8)
  • GetSystemTimeAsFileTime (Address: 0x1800094c0)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1800094d8)
  • EncodePointer (Address: 0x1800094d0)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x1800094f0)
  • RoInitialize (Address: 0x1800094f8)
  • RoUninitialize (Address: 0x1800094e8)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateString (Address: 0x180009510)
  • WindowsDeleteString (Address: 0x180009508)
  • WindowsGetStringLen (Address: 0x180009520)
  • WindowsGetStringRawBuffer (Address: 0x180009518)
api-ms-win-crt-locale-l1-1-0.dll
  • _lock_locales (Address: 0x180009530)
  • _unlock_locales (Address: 0x180009538)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x1800095c0)
  • __CxxFrameHandler3 (Address: 0x180009608)
  • _CxxThrowException (Address: 0x1800095c8)
  • _o___acrt_iob_func (Address: 0x180009600)
  • _o___std_exception_copy (Address: 0x1800095f8)
  • _o___std_exception_destroy (Address: 0x1800095f0)
  • _o___std_type_info_destroy_list (Address: 0x1800095e8)
  • _o___stdio_common_vfprintf (Address: 0x1800095e0)
  • _o___stdio_common_vswprintf (Address: 0x1800095d8)
  • _o__callnewh (Address: 0x1800095d0)
  • _o__cexit (Address: 0x180009590)
  • _o__configure_narrow_argv (Address: 0x180009548)
  • _o__crt_atexit (Address: 0x180009550)
  • _o__execute_onexit_table (Address: 0x180009558)
  • _o__initialize_narrow_environment (Address: 0x180009560)
  • _o__initialize_onexit_table (Address: 0x180009568)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x180009570)
  • _o__purecall (Address: 0x180009578)
  • _o__register_onexit_function (Address: 0x180009580)
  • _o__seh_filter_dll (Address: 0x180009588)
  • _o_abort (Address: 0x180009598)
  • _o_free (Address: 0x1800095a0)
  • _o_malloc (Address: 0x1800095a8)
  • _o_terminate (Address: 0x1800095b0)
  • _o_toupper (Address: 0x1800095b8)
  • memcpy (Address: 0x180009610)
  • memmove (Address: 0x180009618)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x180009630)
  • _initterm_e (Address: 0x180009628)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x180009640)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAceEx (Address: 0x180009670)
  • AddAce (Address: 0x1800096d0)
  • AdjustTokenPrivileges (Address: 0x1800096a8)
  • EqualSid (Address: 0x180009678)
  • GetAce (Address: 0x180009680)
  • GetAclInformation (Address: 0x180009698)
  • GetLengthSid (Address: 0x1800096a0)
  • GetSecurityDescriptorDacl (Address: 0x1800096c0)
  • GetSecurityDescriptorGroup (Address: 0x1800096c8)
  • GetSecurityDescriptorOwner (Address: 0x180009660)
  • GetSecurityDescriptorSacl (Address: 0x180009690)
  • GetTokenInformation (Address: 0x1800096b8)
  • InitializeAcl (Address: 0x180009650)
  • InitializeSecurityDescriptor (Address: 0x180009658)
  • SetFileSecurityW (Address: 0x180009668)
  • SetSecurityDescriptorDacl (Address: 0x1800096b0)
  • SetSecurityDescriptorOwner (Address: 0x180009688)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupAccountSidW (Address: 0x1800096e0)
  • LookupPrivilegeValueW (Address: 0x1800096e8)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x1800096f8)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180009700)