utildll.dll

Description: WinStation utility support DLL

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 64-bit

Operating System: Windows NT

SHA256: d48369e760c5fd9809f3a8dd171d91bb

File Size: 46.9 KB

Uploaded At: Dec. 1, 2025, 7:41 a.m.

Views: 5

Exported Functions

  • AsyncDeviceEnumerate (Ordinal: 1, Address: 0x24a0)
  • CachedGetUserFromSid (Ordinal: 2, Address: 0x1010)
  • CalculateDiffTime (Ordinal: 3, Address: 0x2850)
  • CalculateElapsedTime (Ordinal: 4, Address: 0x2870)
  • CompareElapsedTime (Ordinal: 5, Address: 0x2b80)
  • ConfigureModem (Ordinal: 6, Address: 0x2bd0)
  • CurrentDateTimeString (Ordinal: 7, Address: 0x2d70)
  • DateTimeString (Ordinal: 8, Address: 0x2f40)
  • ElapsedTimeString (Ordinal: 9, Address: 0x3210)
  • EnumerateMultiUserServers (Ordinal: 10, Address: 0x3320)
  • FormDecoratedAsyncDeviceName (Ordinal: 11, Address: 0x3b40)
  • GetAssociatedPortName (Ordinal: 12, Address: 0x3b80)
  • GetSystemMessageA (Ordinal: 13, Address: 0x3c90)
  • GetSystemMessageW (Ordinal: 14, Address: 0x3d40)
  • GetUnknownString (Ordinal: 15, Address: 0x3f80)
  • GetUserFromSid (Ordinal: 16, Address: 0x3fe0)
  • HaveAnonymousUsersChanged (Ordinal: 17, Address: 0x4210)
  • InitializeAnonymousUserCompareList (Ordinal: 18, Address: 0x4330)
  • InstallModem (Ordinal: 19, Address: 0x4380)
  • IsPartOfDomain (Ordinal: 20, Address: 0x44c0)
  • NetBIOSDeviceEnumerate (Ordinal: 21, Address: 0x4580)
  • NetworkDeviceEnumerate (Ordinal: 22, Address: 0x4900)
  • ParseDecoratedAsyncDeviceName (Ordinal: 23, Address: 0x4b50)
  • QueryCurrentWinStation (Ordinal: 24, Address: 0x4c00)
  • RegGetNetworkDeviceName (Ordinal: 25, Address: 0x4d30)
  • RegGetNetworkServiceName (Ordinal: 26, Address: 0x53a0)
  • StandardErrorMessage (Ordinal: 27, Address: 0x58f0)
  • StrAsyncConnectState (Ordinal: 28, Address: 0x5c20)
  • StrConnectState (Ordinal: 29, Address: 0x5c90)
  • StrProcessState (Ordinal: 30, Address: 0x5e10)
  • StrSdClass (Ordinal: 31, Address: 0x5e90)
  • StrSystemWaitReason (Ordinal: 32, Address: 0x5fb0)
  • TestUserForAdmin (Ordinal: 33, Address: 0x6360)
  • WinEnumerateDevices (Ordinal: 34, Address: 0x6430)

Imported DLLs & Functions

ADVAPI32.dll
  • CheckTokenMembership (Address: 0x130007178)
  • CopySid (Address: 0x130007130)
  • EqualSid (Address: 0x130007128)
  • GetLengthSid (Address: 0x130007138)
  • LookupAccountSidW (Address: 0x130007148)
  • LsaClose (Address: 0x130007150)
  • LsaFreeMemory (Address: 0x1300071a0)
  • LsaOpenPolicy (Address: 0x130007158)
  • LsaQueryInformationPolicy (Address: 0x130007160)
  • RegCloseKey (Address: 0x130007198)
  • RegEnumKeyExW (Address: 0x130007180)
  • RegEnumValueW (Address: 0x130007140)
  • RegOpenKeyExA (Address: 0x130007170)
  • RegOpenKeyExW (Address: 0x130007168)
  • RegQueryValueExA (Address: 0x130007188)
  • RegQueryValueExW (Address: 0x130007190)
KERNEL32.dll
  • CloseHandle (Address: 0x130007210)
  • CommConfigDialogW (Address: 0x130007278)
  • CreateFileW (Address: 0x1300071d8)
  • DelayLoadFailureHook (Address: 0x1300071b8)
  • FileTimeToLocalFileTime (Address: 0x130007220)
  • FileTimeToSystemTime (Address: 0x1300071f8)
  • FormatMessageW (Address: 0x1300071e8)
  • FreeLibrary (Address: 0x130007268)
  • GetCurrentProcess (Address: 0x1300072c0)
  • GetCurrentProcessId (Address: 0x1300072d8)
  • GetCurrentThreadId (Address: 0x1300072e0)
  • GetDateFormatW (Address: 0x130007288)
  • GetDefaultCommConfigW (Address: 0x130007230)
  • GetLastError (Address: 0x1300071f0)
  • GetLocalTime (Address: 0x130007228)
  • GetModuleHandleW (Address: 0x130007260)
  • GetProcAddress (Address: 0x130007238)
  • GetSystemTimeAsFileTime (Address: 0x1300072e8)
  • GetTickCount (Address: 0x1300072d0)
  • GetTimeFormatW (Address: 0x130007248)
  • GlobalAlloc (Address: 0x130007200)
  • GlobalFree (Address: 0x130007208)
  • LoadLibraryW (Address: 0x130007218)
  • LocalAlloc (Address: 0x1300071d0)
  • LocalFree (Address: 0x130007240)
  • lstrcmpiW (Address: 0x130007280)
  • MultiByteToWideChar (Address: 0x1300071e0)
  • QueryDosDeviceW (Address: 0x1300071c0)
  • QueryPerformanceCounter (Address: 0x1300072f0)
  • ResolveDelayLoadedAPI (Address: 0x1300071b0)
  • RtlCaptureContext (Address: 0x130007298)
  • RtlLookupFunctionEntry (Address: 0x1300072a0)
  • RtlVirtualUnwind (Address: 0x1300072a8)
  • SetDefaultCommConfigW (Address: 0x130007250)
  • SetLastError (Address: 0x1300071c8)
  • SetUnhandledExceptionFilter (Address: 0x1300072b8)
  • Sleep (Address: 0x130007290)
  • SystemTimeToFileTime (Address: 0x130007258)
  • TerminateProcess (Address: 0x1300072c8)
  • UnhandledExceptionFilter (Address: 0x1300072b0)
  • WideCharToMultiByte (Address: 0x130007270)
msvcrt.dll
  • __iob_func (Address: 0x130007360)
  • _amsg_exit (Address: 0x130007340)
  • _initterm (Address: 0x130007358)
  • _XcptFilter (Address: 0x130007350)
  • free (Address: 0x130007368)
  • fwprintf (Address: 0x130007348)
  • malloc (Address: 0x130007338)
netutils.dll
  • NetApiBufferFree (Address: 0x130007378)
ntdll.dll
  • __C_specific_handler (Address: 0x130007428)
  • __chkstk (Address: 0x130007388)
  • _vsnwprintf (Address: 0x130007420)
  • _wcsicmp (Address: 0x130007410)
  • _wcslwr (Address: 0x1300073e8)
  • _wcsnicmp (Address: 0x1300073a8)
  • memcpy (Address: 0x1300073c0)
  • memcpy_s (Address: 0x130007418)
  • memset (Address: 0x130007430)
  • NtQueryVolumeInformationFile (Address: 0x1300073b0)
  • RtlAllocateAndInitializeSid (Address: 0x1300073f0)
  • RtlEnterCriticalSection (Address: 0x130007390)
  • RtlFreeSid (Address: 0x1300073d8)
  • RtlInitializeCriticalSection (Address: 0x130007398)
  • RtlLeaveCriticalSection (Address: 0x1300073a0)
  • strstr (Address: 0x1300073c8)
  • swprintf_s (Address: 0x1300073e0)
  • vswprintf_s (Address: 0x1300073f8)
  • wcscat_s (Address: 0x130007400)
  • wcscpy_s (Address: 0x130007408)
  • wcsrchr (Address: 0x1300073b8)
  • wcsstr (Address: 0x1300073d0)
samcli.dll
  • NetLocalGroupGetMembers (Address: 0x130007440)
USER32.dll
  • LoadCursorW (Address: 0x130007308)
  • LoadStringW (Address: 0x130007300)
  • MessageBoxW (Address: 0x130007318)
  • SetCursor (Address: 0x130007310)
WINSTA.dll
  • WinStationQueryInformationW (Address: 0x130007328)