weretw.dll
Description: WERETW.DLL
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.4355
Architecture: 64-bit
Operating System: Windows NT
SHA256: 72a73f9ec30a21d8cb8979ff418b9aa3
File Size: 249.2 KB
Uploaded At: Dec. 1, 2025, 7:42 a.m.
Views: 4
Exported Functions
- WerMergeEtl (Ordinal: 1, Address: 0x1ce0)
- WerMergeEtlEx (Ordinal: 2, Address: 0x1d60)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CoCreateGuid (Address: 0x18002bf60)
- CoCreateInstance (Address: 0x18002bf78)
- CoInitializeEx (Address: 0x18002bf68)
- CoUninitialize (Address: 0x18002bf70)
- StringFromGUID2 (Address: 0x18002bf80)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x18002bf98)
- IsDebuggerPresent (Address: 0x18002bfa0)
- OutputDebugStringA (Address: 0x18002bf90)
- OutputDebugStringW (Address: 0x18002bfa8)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x18002bfc8)
- RaiseException (Address: 0x18002bfc0)
- SetLastError (Address: 0x18002bfd0)
- SetUnhandledExceptionFilter (Address: 0x18002bfb8)
- UnhandledExceptionFilter (Address: 0x18002bfd8)
api-ms-win-core-file-l1-1-0.dll
- CreateDirectoryW (Address: 0x18002bfe8)
- CreateFileW (Address: 0x18002c000)
- DeleteFileW (Address: 0x18002c018)
- FindClose (Address: 0x18002c048)
- FindFirstFileW (Address: 0x18002c038)
- FindFirstVolumeW (Address: 0x18002c008)
- FindNextFileW (Address: 0x18002c040)
- FindNextVolumeW (Address: 0x18002c020)
- FindVolumeClose (Address: 0x18002c030)
- GetFileAttributesW (Address: 0x18002bff8)
- GetFileSize (Address: 0x18002c068)
- GetTempFileNameW (Address: 0x18002c028)
- QueryDosDeviceW (Address: 0x18002c010)
- ReadFile (Address: 0x18002c050)
- SetFilePointer (Address: 0x18002c060)
- SetFilePointerEx (Address: 0x18002c058)
- WriteFile (Address: 0x18002bff0)
api-ms-win-core-file-l1-2-0.dll
- GetTempPathW (Address: 0x18002c080)
- GetVolumePathNamesForVolumeNameW (Address: 0x18002c078)
api-ms-win-core-file-l2-1-2.dll
- CopyFileW (Address: 0x18002c090)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x18002c0a0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x18002c0d8)
- HeapAlloc (Address: 0x18002c0b8)
- HeapDestroy (Address: 0x18002c0b0)
- HeapFree (Address: 0x18002c0c0)
- HeapReAlloc (Address: 0x18002c0c8)
- HeapSize (Address: 0x18002c0d0)
api-ms-win-core-libraryloader-l1-2-0.dll
- FindResourceExW (Address: 0x18002c100)
- FreeLibrary (Address: 0x18002c0e8)
- GetModuleFileNameA (Address: 0x18002c130)
- GetModuleHandleExW (Address: 0x18002c0f8)
- GetModuleHandleW (Address: 0x18002c120)
- GetProcAddress (Address: 0x18002c110)
- LoadLibraryExW (Address: 0x18002c0f0)
- LoadResource (Address: 0x18002c128)
- LockResource (Address: 0x18002c118)
- SizeofResource (Address: 0x18002c108)
api-ms-win-core-libraryloader-l1-2-1.dll
- FindResourceW (Address: 0x18002c148)
- LoadLibraryW (Address: 0x18002c140)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x18002c158)
api-ms-win-core-memory-l1-1-0.dll
- CreateFileMappingW (Address: 0x18002c170)
- MapViewOfFileEx (Address: 0x18002c168)
- UnmapViewOfFile (Address: 0x18002c178)
api-ms-win-core-processenvironment-l1-1-0.dll
- GetEnvironmentVariableW (Address: 0x18002c188)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateProcessW (Address: 0x18002c1c8)
- GetCurrentProcess (Address: 0x18002c1a0)
- GetCurrentProcessId (Address: 0x18002c1b0)
- GetCurrentThread (Address: 0x18002c1b8)
- GetCurrentThreadId (Address: 0x18002c1a8)
- GetExitCodeProcess (Address: 0x18002c198)
- TerminateProcess (Address: 0x18002c1c0)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x18002c1d8)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x18002c200)
- RegEnumKeyExW (Address: 0x18002c1f0)
- RegOpenKeyExW (Address: 0x18002c1e8)
- RegQueryValueExW (Address: 0x18002c1f8)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x18002c220)
- RtlLookupFunctionEntry (Address: 0x18002c210)
- RtlVirtualUnwind (Address: 0x18002c218)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x18002c230)
- WideCharToMultiByte (Address: 0x18002c238)
api-ms-win-core-synch-l1-1-0.dll
- CreateMutexExW (Address: 0x18002c278)
- CreateSemaphoreExW (Address: 0x18002c270)
- DeleteCriticalSection (Address: 0x18002c250)
- EnterCriticalSection (Address: 0x18002c258)
- InitializeCriticalSection (Address: 0x18002c260)
- LeaveCriticalSection (Address: 0x18002c248)
- OpenSemaphoreW (Address: 0x18002c280)
- ReleaseMutex (Address: 0x18002c290)
- ReleaseSemaphore (Address: 0x18002c298)
- WaitForSingleObject (Address: 0x18002c268)
- WaitForSingleObjectEx (Address: 0x18002c288)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x18002c2a8)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x18002c2d0)
- GetSystemTimeAsFileTime (Address: 0x18002c2e0)
- GetSystemWindowsDirectoryW (Address: 0x18002c2b8)
- GetTickCount (Address: 0x18002c2c0)
- GetVersionExW (Address: 0x18002c2c8)
- GetWindowsDirectoryW (Address: 0x18002c2d8)
api-ms-win-core-timezone-l1-1-0.dll
- SystemTimeToFileTime (Address: 0x18002c2f0)
api-ms-win-core-version-l1-1-0.dll
- GetFileVersionInfoExW (Address: 0x18002c300)
- GetFileVersionInfoSizeExW (Address: 0x18002c308)
- VerQueryValueW (Address: 0x18002c310)
api-ms-win-core-wow64-l1-1-0.dll
- IsWow64Process (Address: 0x18002c320)
- Wow64DisableWow64FsRedirection (Address: 0x18002c330)
- Wow64RevertWow64FsRedirection (Address: 0x18002c328)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- RegisterTraceGuidsW (Address: 0x18002c350)
- TraceEvent (Address: 0x18002c348)
- UnregisterTraceGuids (Address: 0x18002c340)
api-ms-win-eventing-consumer-l1-1-0.dll
- CloseTrace (Address: 0x18002c360)
- OpenTraceW (Address: 0x18002c370)
- ProcessTrace (Address: 0x18002c368)
api-ms-win-eventing-controller-l1-1-0.dll
- ControlTraceW (Address: 0x18002c380)
- StartTraceW (Address: 0x18002c388)
api-ms-win-eventing-provider-l1-1-0.dll
- EventWriteTransfer (Address: 0x18002c398)
bcrypt.dll
- BCryptCloseAlgorithmProvider (Address: 0x18002c3d0)
- BCryptCreateHash (Address: 0x18002c3c0)
- BCryptDestroyHash (Address: 0x18002c3d8)
- BCryptFinishHash (Address: 0x18002c3b0)
- BCryptGetProperty (Address: 0x18002c3b8)
- BCryptHashData (Address: 0x18002c3c8)
- BCryptOpenAlgorithmProvider (Address: 0x18002c3a8)
msvcrt.dll
- __C_specific_handler (Address: 0x18002c3f8)
- __CxxFrameHandler3 (Address: 0x18002c3f0)
- __dllonexit (Address: 0x18002c590)
- _amsg_exit (Address: 0x18002c460)
- _callnewh (Address: 0x18002c410)
- _CxxThrowException (Address: 0x18002c3e8)
- _errno (Address: 0x18002c478)
- _gmtime64 (Address: 0x18002c4a8)
- _initterm (Address: 0x18002c5a0)
- _lock (Address: 0x18002c480)
- _memicmp (Address: 0x18002c4a0)
- _onexit (Address: 0x18002c580)
- _purecall (Address: 0x18002c420)
- _stricmp (Address: 0x18002c518)
- _ultow_s (Address: 0x18002c4d8)
- _unlock (Address: 0x18002c470)
- _vscwprintf (Address: 0x18002c4e8)
- _vsnprintf_s (Address: 0x18002c578)
- _vsnwprintf (Address: 0x18002c520)
- _wcsicmp (Address: 0x18002c508)
- _wcslwr_s (Address: 0x18002c528)
- _wcsnicmp (Address: 0x18002c530)
- _XcptFilter (Address: 0x18002c448)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x18002c4b8)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x18002c458)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x18002c468)
- ??0exception@@QEAA@XZ (Address: 0x18002c500)
- ??1exception@@UEAA@XZ (Address: 0x18002c438)
- ??1type_info@@UEAA@XZ (Address: 0x18002c588)
- ?terminate@@YAXXZ (Address: 0x18002c598)
- ?what@exception@@UEBAPEBDXZ (Address: 0x18002c418)
- calloc (Address: 0x18002c428)
- free (Address: 0x18002c440)
- iswdigit (Address: 0x18002c548)
- ldiv (Address: 0x18002c558)
- malloc (Address: 0x18002c450)
- memchr (Address: 0x18002c498)
- memcpy (Address: 0x18002c490)
- memcpy_s (Address: 0x18002c4b0)
- memmove (Address: 0x18002c488)
- memmove_s (Address: 0x18002c4c0)
- memset (Address: 0x18002c400)
- realloc (Address: 0x18002c408)
- strrchr (Address: 0x18002c568)
- towlower (Address: 0x18002c560)
- vswprintf_s (Address: 0x18002c4e0)
- wcschr (Address: 0x18002c4f8)
- wcscmp (Address: 0x18002c5a8)
- wcscpy_s (Address: 0x18002c430)
- wcscspn (Address: 0x18002c540)
- wcsncmp (Address: 0x18002c4f0)
- wcsncpy_s (Address: 0x18002c4d0)
- wcsnlen (Address: 0x18002c4c8)
- wcsrchr (Address: 0x18002c510)
- wcsspn (Address: 0x18002c538)
- wcsstr (Address: 0x18002c570)
- wcstol (Address: 0x18002c550)
ntdll.dll
- RtlAcquireSRWLockExclusive (Address: 0x18002c5c8)
- RtlGetVersion (Address: 0x18002c5b8)
- RtlImageDirectoryEntryToData (Address: 0x18002c5d8)
- RtlImageRvaToVa (Address: 0x18002c5d0)
- RtlReleaseSRWLockExclusive (Address: 0x18002c5c0)
OLEAUT32.dll
- SysAllocString (Address: 0x18002bf50)
- SysFreeString (Address: 0x18002bf48)