WinBioDataModel.dll
Description: Win Bio Enrollment Data Model
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5915
Architecture: 64-bit
Operating System: Windows NT
SHA256: 5dde96a6474b212ded8a0055cfe31496
File Size: 508.5 KB
Uploaded At: Dec. 1, 2025, 7:42 a.m.
Views: 3
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x6b00)
- DllGetActivationFactory (Ordinal: 2, Address: 0x6820)
- DllGetClassObject (Ordinal: 3, Address: 0x6a00)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x180065600)
api-ms-win-core-com-l1-1-0.dll
- CoCreateFreeThreadedMarshaler (Address: 0x180065650)
- CoCreateInstance (Address: 0x180065618)
- CoGetCallContext (Address: 0x180065668)
- CoGetCallerTID (Address: 0x180065640)
- CoGetInterfaceAndReleaseStream (Address: 0x180065678)
- CoGetMalloc (Address: 0x180065670)
- CoMarshalInterface (Address: 0x180065638)
- CoReleaseMarshalData (Address: 0x180065628)
- CoTaskMemAlloc (Address: 0x180065610)
- CoTaskMemFree (Address: 0x180065620)
- CoTaskMemRealloc (Address: 0x180065648)
- CoWaitForMultipleHandles (Address: 0x180065660)
- CreateStreamOnHGlobal (Address: 0x180065630)
- PropVariantClear (Address: 0x180065658)
api-ms-win-core-com-l1-1-1.dll
- RoGetAgileReference (Address: 0x180065688)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1800656a0)
- IsDebuggerPresent (Address: 0x1800656a8)
- OutputDebugStringW (Address: 0x180065698)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1800656b8)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1800656c8)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1800656e8)
- RaiseException (Address: 0x1800656f0)
- SetLastError (Address: 0x1800656f8)
- SetUnhandledExceptionFilter (Address: 0x1800656e0)
- UnhandledExceptionFilter (Address: 0x1800656d8)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180065708)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x180065718)
- HeapAlloc (Address: 0x180065720)
- HeapFree (Address: 0x180065728)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180065740)
- LocalFree (Address: 0x180065748)
- LocalReAlloc (Address: 0x180065738)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x180065758)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x180065778)
- FindResourceExW (Address: 0x180065780)
- FreeLibrary (Address: 0x180065768)
- GetModuleFileNameA (Address: 0x1800657a8)
- GetModuleHandleExW (Address: 0x1800657a0)
- GetModuleHandleW (Address: 0x180065798)
- GetProcAddress (Address: 0x180065770)
- LoadResource (Address: 0x180065788)
- LockResource (Address: 0x180065790)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1800657b8)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsW (Address: 0x1800657c8)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x180065810)
- GetCurrentProcessId (Address: 0x180065800)
- GetCurrentThread (Address: 0x1800657e0)
- GetCurrentThreadId (Address: 0x1800657f0)
- GetProcessId (Address: 0x180065808)
- OpenProcessToken (Address: 0x1800657d8)
- OpenThreadToken (Address: 0x1800657e8)
- TerminateProcess (Address: 0x1800657f8)
api-ms-win-core-processthreads-l1-1-1.dll
- IsProcessorFeaturePresent (Address: 0x180065820)
- OpenProcess (Address: 0x180065828)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180065838)
api-ms-win-core-psapi-l1-1-0.dll
- QueryFullProcessImageNameW (Address: 0x180065848)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x180065868)
- RegCreateKeyExW (Address: 0x180065858)
- RegGetValueW (Address: 0x180065878)
- RegOpenKeyExW (Address: 0x180065860)
- RegSetValueExW (Address: 0x180065870)
api-ms-win-core-registry-l2-1-0.dll
- RegOpenKeyW (Address: 0x180065888)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x1800658a8)
- RtlLookupFunctionEntry (Address: 0x180065898)
- RtlVirtualUnwind (Address: 0x1800658a0)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x1800658b8)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1800658d0)
- AcquireSRWLockShared (Address: 0x180065940)
- CreateEventExW (Address: 0x1800658f0)
- CreateEventW (Address: 0x1800658e8)
- CreateMutexExW (Address: 0x180065928)
- CreateSemaphoreExW (Address: 0x180065930)
- DeleteCriticalSection (Address: 0x1800658d8)
- EnterCriticalSection (Address: 0x180065910)
- InitializeCriticalSectionAndSpinCount (Address: 0x180065968)
- InitializeCriticalSectionEx (Address: 0x180065960)
- InitializeSRWLock (Address: 0x180065958)
- LeaveCriticalSection (Address: 0x180065918)
- OpenSemaphoreW (Address: 0x180065948)
- ReleaseMutex (Address: 0x180065938)
- ReleaseSemaphore (Address: 0x1800658e0)
- ReleaseSRWLockExclusive (Address: 0x1800658c8)
- ReleaseSRWLockShared (Address: 0x180065908)
- ResetEvent (Address: 0x180065920)
- SetEvent (Address: 0x180065900)
- WaitForSingleObject (Address: 0x1800658f8)
- WaitForSingleObjectEx (Address: 0x180065950)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x180065990)
- InitOnceComplete (Address: 0x180065980)
- InitOnceExecuteOnce (Address: 0x180065978)
- Sleep (Address: 0x180065988)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x1800659b0)
- GetTickCount (Address: 0x1800659a8)
- GetTickCount64 (Address: 0x1800659a0)
api-ms-win-core-sysinfo-l2-1-0.dll
- GetUserNameW (Address: 0x1800659c0)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1800659d0)
- CreateThreadpoolTimer (Address: 0x1800659e8)
- SetThreadpoolTimer (Address: 0x1800659e0)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800659d8)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
- CreateTimerQueueTimer (Address: 0x1800659f8)
- DeleteTimerQueueTimer (Address: 0x180065a00)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x180065a10)
- EncodePointer (Address: 0x180065a18)
api-ms-win-core-winrt-error-l1-1-0.dll
- GetRestrictedErrorInfo (Address: 0x180065a28)
- RoOriginateError (Address: 0x180065a48)
- RoOriginateErrorW (Address: 0x180065a30)
- RoTransformError (Address: 0x180065a40)
- SetRestrictedErrorInfo (Address: 0x180065a38)
api-ms-win-core-winrt-error-l1-1-1.dll
- IsErrorPropagationEnabled (Address: 0x180065a58)
- RoGetMatchingRestrictedErrorInfo (Address: 0x180065a68)
- RoReportFailedDelegate (Address: 0x180065a60)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x180065a80)
- RoGetActivationFactory (Address: 0x180065a78)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCreateString (Address: 0x180065ad0)
- WindowsCreateStringReference (Address: 0x180065a90)
- WindowsDeleteString (Address: 0x180065aa0)
- WindowsDuplicateString (Address: 0x180065ac8)
- WindowsGetStringRawBuffer (Address: 0x180065a98)
- WindowsIsStringEmpty (Address: 0x180065ab0)
- WindowsReplaceString (Address: 0x180065ab8)
- WindowsStringHasEmbeddedNull (Address: 0x180065aa8)
- WindowsSubstringWithSpecifiedLength (Address: 0x180065ac0)
api-ms-win-crt-math-l1-1-0.dll
- floorf (Address: 0x180065ae0)
api-ms-win-crt-private-l1-1-0.dll
- __C_specific_handler (Address: 0x180065b70)
- __CxxFrameHandler3 (Address: 0x180065be8)
- __CxxFrameHandler4 (Address: 0x180065be0)
- __std_terminate (Address: 0x180065bd8)
- _CxxThrowException (Address: 0x180065bd0)
- _o___std_exception_copy (Address: 0x180065bb8)
- _o___std_exception_destroy (Address: 0x180065bb0)
- _o___std_type_info_destroy_list (Address: 0x180065ba8)
- _o___stdio_common_vsnprintf_s (Address: 0x180065ba0)
- _o___stdio_common_vswprintf (Address: 0x180065b98)
- _o__callnewh (Address: 0x180065b90)
- _o__cexit (Address: 0x180065b88)
- _o__configure_narrow_argv (Address: 0x180065b80)
- _o__crt_atexit (Address: 0x180065b78)
- _o__errno (Address: 0x180065bc8)
- _o__execute_onexit_table (Address: 0x180065bc0)
- _o__get_errno (Address: 0x180065af0)
- _o__initialize_narrow_environment (Address: 0x180065af8)
- _o__initialize_onexit_table (Address: 0x180065b00)
- _o__invalid_parameter_noinfo (Address: 0x180065b08)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x180065b10)
- _o__purecall (Address: 0x180065b18)
- _o__register_onexit_function (Address: 0x180065b20)
- _o__seh_filter_dll (Address: 0x180065b28)
- _o__set_errno (Address: 0x180065b30)
- _o__wcsicmp (Address: 0x180065b40)
- _o_free (Address: 0x180065b48)
- _o_malloc (Address: 0x180065b50)
- _o_realloc (Address: 0x180065b58)
- _o_terminate (Address: 0x180065b60)
- _o_toupper (Address: 0x180065b68)
- memcmp (Address: 0x180065bf8)
- memcpy (Address: 0x180065c00)
- memmove (Address: 0x180065b38)
- wcschr (Address: 0x180065bf0)
- wcsrchr (Address: 0x180065c08)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x180065c20)
- _initterm_e (Address: 0x180065c18)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x180065c38)
- wcscspn (Address: 0x180065c30)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x180065c60)
- EventProviderEnabled (Address: 0x180065c48)
- EventRegister (Address: 0x180065c70)
- EventSetInformation (Address: 0x180065c68)
- EventUnregister (Address: 0x180065c58)
- EventWriteTransfer (Address: 0x180065c50)
api-ms-win-power-base-l1-1-0.dll
- GetPwrCapabilities (Address: 0x180065c80)
api-ms-win-security-base-l1-1-0.dll
- CopySid (Address: 0x180065cb0)
- DuplicateTokenEx (Address: 0x180065c90)
- EqualSid (Address: 0x180065ca8)
- GetLengthSid (Address: 0x180065c98)
- GetTokenInformation (Address: 0x180065cb8)
- IsValidSid (Address: 0x180065ca0)
api-ms-win-security-capability-l1-1-0.dll
- CapabilityCheck (Address: 0x180065cc8)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x180065ce0)
- ConvertStringSidToSidW (Address: 0x180065cd8)
msvcp_win.dll
- ?_Xbad_function_call@std@@YAXXZ (Address: 0x180065cf8)
- ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x180065cf0)
ntdll.dll
- NtQueryInformationToken (Address: 0x180065d48)
- NtQueryWnfStateData (Address: 0x180065d58)
- RtlAllocateHeap (Address: 0x180065d38)
- RtlCompareUnicodeString (Address: 0x180065d28)
- RtlFreeHeap (Address: 0x180065d50)
- RtlInitUnicodeString (Address: 0x180065d40)
- RtlIsMultiSessionSku (Address: 0x180065d20)
- RtlNtStatusToDosErrorNoTeb (Address: 0x180065d30)
- RtlPublishWnfStateData (Address: 0x180065d18)
- RtlSubscribeWnfStateChangeNotification (Address: 0x180065d08)
- RtlUnsubscribeWnfNotificationWaitForCompletion (Address: 0x180065d10)
OLEAUT32.dll
- SysFreeString (Address: 0x1800655e0)
RPCRT4.dll
- I_RpcBindingInqLocalClientPID (Address: 0x1800655f0)
twinapi.appcore.dll
- (Address: 0x180065d68)
- (Address: 0x180065d70)