vmprox.dll

Description: Hyper-V Component Proxy

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.4355

Architecture: 64-bit

Operating System: Windows NT

SHA256: e5c38cdc51b9faf479f8ab69a2028f5a

File Size: 401.5 KB

Uploaded At: Dec. 1, 2025, 7:42 a.m.

Views: 6

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • GetProxyDllInfo (Ordinal: 3, Address: 0x24340)
  • ConnectToSynth3dVideoResourcePool (Ordinal: 4, Address: 0xd3d0)
  • DllCanUnloadNow (Ordinal: 5, Address: 0xc270)
  • DllGetClassObject (Ordinal: 6, Address: 0xc2b0)
  • DllRegisterServer (Ordinal: 7, Address: 0xc320)
  • DllUnregisterServer (Ordinal: 8, Address: 0xc390)
  • GetVmErrInfo (Ordinal: 9, Address: 0xe250)
  • IsErrorReported (Ordinal: 10, Address: 0xe590)
  • SetVmErrInfo (Ordinal: 11, Address: 0xe280)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x180044fd8)
  • CoGetMarshalSizeMax (Address: 0x180044fe8)
  • CoGetStandardMarshal (Address: 0x180044fe0)
  • CoGetStdMarshalEx (Address: 0x180044fc0)
  • CoMarshalInterface (Address: 0x180044fd0)
  • CoTaskMemFree (Address: 0x180044fc8)
  • CoUnmarshalInterface (Address: 0x180044ff8)
  • StringFromCLSID (Address: 0x180044ff0)
api-ms-win-core-com-midlproxystub-l1-1-0.dll
  • NdrProxyForwardingFunction3 (Address: 0x180045008)
  • NdrProxyForwardingFunction4 (Address: 0x180045070)
  • NdrProxyForwardingFunction5 (Address: 0x180045088)
  • NdrProxyForwardingFunction6 (Address: 0x180045080)
  • NdrProxyForwardingFunction7 (Address: 0x180045038)
  • NdrProxyForwardingFunction9 (Address: 0x180045010)
  • ObjectStublessClient10 (Address: 0x180045040)
  • ObjectStublessClient11 (Address: 0x180045018)
  • ObjectStublessClient12 (Address: 0x180045060)
  • ObjectStublessClient13 (Address: 0x180045068)
  • ObjectStublessClient3 (Address: 0x180045020)
  • ObjectStublessClient4 (Address: 0x180045048)
  • ObjectStublessClient5 (Address: 0x180045030)
  • ObjectStublessClient6 (Address: 0x180045050)
  • ObjectStublessClient7 (Address: 0x180045028)
  • ObjectStublessClient8 (Address: 0x180045058)
  • ObjectStublessClient9 (Address: 0x180045078)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1800450a0)
  • IsDebuggerPresent (Address: 0x1800450a8)
  • OutputDebugStringW (Address: 0x180045098)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800450d8)
  • RaiseException (Address: 0x1800450c0)
  • SetLastError (Address: 0x1800450b8)
  • SetUnhandledExceptionFilter (Address: 0x1800450d0)
  • UnhandledExceptionFilter (Address: 0x1800450c8)
api-ms-win-core-errorhandling-l1-1-2.dll
  • RaiseFailFastException (Address: 0x1800450e8)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1800450f8)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180045118)
  • HeapAlloc (Address: 0x180045108)
  • HeapFree (Address: 0x180045110)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180045128)
  • LocalFree (Address: 0x180045130)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x180045140)
api-ms-win-core-libraryloader-l1-2-0.dll
  • FreeLibrary (Address: 0x180045168)
  • GetModuleFileNameA (Address: 0x180045178)
  • GetModuleFileNameW (Address: 0x180045170)
  • GetModuleHandleExW (Address: 0x180045160)
  • GetModuleHandleW (Address: 0x180045180)
  • GetProcAddress (Address: 0x180045158)
  • LoadLibraryExA (Address: 0x180045150)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x180045190)
api-ms-win-core-memory-l1-1-0.dll
  • VirtualProtect (Address: 0x1800451a0)
  • VirtualQuery (Address: 0x1800451a8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1800451d8)
  • GetCurrentProcessId (Address: 0x1800451d0)
  • GetCurrentThreadId (Address: 0x1800451e8)
  • TerminateProcess (Address: 0x1800451c8)
  • TlsAlloc (Address: 0x1800451e0)
  • TlsFree (Address: 0x1800451c0)
  • TlsGetValue (Address: 0x1800451b8)
  • TlsSetValue (Address: 0x1800451f0)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x180045200)
  • OpenProcess (Address: 0x180045208)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180045218)
api-ms-win-core-psapi-l1-1-0.dll
  • K32GetModuleInformation (Address: 0x180045228)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180045238)
  • RegCreateKeyExW (Address: 0x180045240)
  • RegDeleteKeyExW (Address: 0x180045258)
  • RegGetValueW (Address: 0x180045250)
  • RegOpenKeyExW (Address: 0x180045260)
  • RegSetValueExW (Address: 0x180045248)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180045280)
  • RtlCaptureStackBackTrace (Address: 0x180045278)
  • RtlLookupFunctionEntry (Address: 0x180045290)
  • RtlPcToFileHeader (Address: 0x180045270)
  • RtlVirtualUnwind (Address: 0x180045288)
api-ms-win-core-string-l1-1-0.dll
  • MultiByteToWideChar (Address: 0x1800452a0)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x180045328)
  • AcquireSRWLockShared (Address: 0x1800452b8)
  • CreateMutexExW (Address: 0x180045308)
  • CreateSemaphoreExW (Address: 0x1800452f8)
  • DeleteCriticalSection (Address: 0x1800452e0)
  • EnterCriticalSection (Address: 0x1800452c0)
  • InitializeCriticalSection (Address: 0x180045300)
  • InitializeSRWLock (Address: 0x1800452d0)
  • LeaveCriticalSection (Address: 0x1800452d8)
  • OpenSemaphoreW (Address: 0x180045318)
  • ReleaseMutex (Address: 0x1800452e8)
  • ReleaseSemaphore (Address: 0x1800452f0)
  • ReleaseSRWLockExclusive (Address: 0x180045338)
  • ReleaseSRWLockShared (Address: 0x1800452c8)
  • ResetEvent (Address: 0x180045310)
  • SetEvent (Address: 0x180045330)
  • WaitForSingleObject (Address: 0x1800452b0)
  • WaitForSingleObjectEx (Address: 0x180045320)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x180045348)
  • InitOnceComplete (Address: 0x180045360)
  • SleepConditionVariableSRW (Address: 0x180045350)
  • WakeAllConditionVariable (Address: 0x180045358)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemInfo (Address: 0x180045370)
  • GetSystemTimeAsFileTime (Address: 0x180045378)
  • GetTickCount (Address: 0x180045380)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x180045498)
  • __CxxFrameHandler3 (Address: 0x180045410)
  • __CxxFrameHandler4 (Address: 0x1800454a0)
  • __RTDynamicCast (Address: 0x1800454a8)
  • __std_terminate (Address: 0x180045490)
  • _CxxThrowException (Address: 0x180045418)
  • _o___std_exception_copy (Address: 0x180045480)
  • _o___std_exception_destroy (Address: 0x180045478)
  • _o___std_type_info_destroy_list (Address: 0x180045470)
  • _o___stdio_common_vsnprintf_s (Address: 0x180045468)
  • _o___stdio_common_vsnwprintf_s (Address: 0x180045460)
  • _o___stdio_common_vswprintf (Address: 0x180045458)
  • _o___stdio_common_vswprintf_s (Address: 0x180045450)
  • _o__callnewh (Address: 0x180045438)
  • _o__cexit (Address: 0x180045430)
  • _o__configure_narrow_argv (Address: 0x180045448)
  • _o__crt_atexit (Address: 0x180045440)
  • _o__errno (Address: 0x180045428)
  • _o__execute_onexit_table (Address: 0x180045420)
  • _o__initialize_narrow_environment (Address: 0x180045390)
  • _o__initialize_onexit_table (Address: 0x180045398)
  • _o__invalid_parameter_noinfo (Address: 0x1800453a0)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x1800453a8)
  • _o__purecall (Address: 0x1800453b0)
  • _o__register_onexit_function (Address: 0x1800453b8)
  • _o__resetstkoflw (Address: 0x1800453c0)
  • _o__seh_filter_dll (Address: 0x1800453c8)
  • _o__strnicmp (Address: 0x1800453d0)
  • _o__wcsicmp (Address: 0x1800453e0)
  • _o__wcsnicmp (Address: 0x1800453e8)
  • _o_free (Address: 0x1800453f0)
  • _o_malloc (Address: 0x1800453f8)
  • _o_terminate (Address: 0x180045400)
  • _o_wcscpy_s (Address: 0x180045408)
  • memcmp (Address: 0x1800454b0)
  • memcpy (Address: 0x1800454b8)
  • memmove (Address: 0x1800453d8)
  • wcschr (Address: 0x180045488)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x1800454d0)
  • _initterm_e (Address: 0x1800454c8)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x1800454e0)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventEnabled (Address: 0x180045508)
  • EventRegister (Address: 0x180045500)
  • EventSetInformation (Address: 0x180045510)
  • EventUnregister (Address: 0x1800454f0)
  • EventWrite (Address: 0x1800454f8)
api-ms-win-security-base-l1-1-0.dll
  • EqualSid (Address: 0x180045520)
OLEAUT32.dll
  • BSTR_UserFree (Address: 0x180044ec8)
  • BSTR_UserFree64 (Address: 0x180044e78)
  • BSTR_UserMarshal (Address: 0x180044ea0)
  • BSTR_UserMarshal64 (Address: 0x180044e58)
  • BSTR_UserSize (Address: 0x180044ec0)
  • BSTR_UserSize64 (Address: 0x180044e70)
  • BSTR_UserUnmarshal (Address: 0x180044eb0)
  • BSTR_UserUnmarshal64 (Address: 0x180044ee0)
  • LPSAFEARRAY_UserFree (Address: 0x180044e38)
  • LPSAFEARRAY_UserFree64 (Address: 0x180044e28)
  • LPSAFEARRAY_UserMarshal (Address: 0x180044e00)
  • LPSAFEARRAY_UserMarshal64 (Address: 0x180044e20)
  • LPSAFEARRAY_UserSize (Address: 0x180044e40)
  • LPSAFEARRAY_UserSize64 (Address: 0x180044df8)
  • LPSAFEARRAY_UserUnmarshal (Address: 0x180044e30)
  • LPSAFEARRAY_UserUnmarshal64 (Address: 0x180044e08)
  • SafeArrayAccessData (Address: 0x180044e18)
  • SafeArrayCopy (Address: 0x180044e68)
  • SafeArrayCreateVector (Address: 0x180044e48)
  • SafeArrayCreateVectorEx (Address: 0x180044ef0)
  • SafeArrayDestroy (Address: 0x180044e80)
  • SafeArrayGetElemsize (Address: 0x180044de8)
  • SafeArrayGetLBound (Address: 0x180044ea8)
  • SafeArrayGetUBound (Address: 0x180044e50)
  • SafeArrayGetVartype (Address: 0x180044ef8)
  • SafeArrayPtrOfIndex (Address: 0x180044da0)
  • SafeArrayPutElement (Address: 0x180044df0)
  • SafeArrayRedim (Address: 0x180044e98)
  • SafeArrayUnaccessData (Address: 0x180044ed0)
  • SysAllocString (Address: 0x180044eb8)
  • SysAllocStringLen (Address: 0x180044e90)
  • SysFreeString (Address: 0x180044e88)
  • SysReAllocStringLen (Address: 0x180044ee8)
  • SysStringLen (Address: 0x180044ed8)
  • SystemTimeToVariantTime (Address: 0x180044d98)
  • VARIANT_UserFree (Address: 0x180044dd0)
  • VARIANT_UserFree64 (Address: 0x180044db0)
  • VARIANT_UserMarshal (Address: 0x180044db8)
  • VARIANT_UserMarshal64 (Address: 0x180044dd8)
  • VARIANT_UserSize (Address: 0x180044dc0)
  • VARIANT_UserSize64 (Address: 0x180044de0)
  • VARIANT_UserUnmarshal (Address: 0x180044dc8)
  • VARIANT_UserUnmarshal64 (Address: 0x180044da8)
  • VariantClear (Address: 0x180044e10)
  • VariantCopy (Address: 0x180044e60)
RPCRT4.dll
  • CStdStubBuffer_AddRef (Address: 0x180044f20)
  • CStdStubBuffer_Connect (Address: 0x180044f98)
  • CStdStubBuffer_CountRefs (Address: 0x180044fa8)
  • CStdStubBuffer_DebugServerQueryInterface (Address: 0x180044f08)
  • CStdStubBuffer_DebugServerRelease (Address: 0x180044f78)
  • CStdStubBuffer_Disconnect (Address: 0x180044f80)
  • CStdStubBuffer_Invoke (Address: 0x180044f18)
  • CStdStubBuffer_IsIIDSupported (Address: 0x180044f90)
  • CStdStubBuffer_QueryInterface (Address: 0x180044f68)
  • IUnknown_AddRef_Proxy (Address: 0x180044f60)
  • IUnknown_QueryInterface_Proxy (Address: 0x180044f88)
  • IUnknown_Release_Proxy (Address: 0x180044f50)
  • NdrClientCall3 (Address: 0x180044fb0)
  • NdrCStdStubBuffer_Release (Address: 0x180044f28)
  • NdrDllCanUnloadNow (Address: 0x180044f30)
  • NdrDllGetClassObject (Address: 0x180044f38)
  • NdrDllRegisterProxy (Address: 0x180044f40)
  • NdrDllUnregisterProxy (Address: 0x180044f48)
  • NdrOleAllocate (Address: 0x180044f70)
  • NdrOleFree (Address: 0x180044f10)
  • UuidCompare (Address: 0x180044fa0)
  • UuidEqual (Address: 0x180044f58)