Windows.Internal.UI.Shell.WindowTabManager.dll
Description:
Authors:
Version:
Architecture: 64-bit
Operating System:
SHA256: b9f488cef2304e9f1cb74e4730d5e339
File Size: 421.0 KB
Uploaded At: Dec. 1, 2025, 7:43 a.m.
Views: 5
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x73f0)
- DllGetActivationFactory (Ordinal: 2, Address: 0x74c0)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x18004b740)
api-ms-win-core-com-l1-1-0.dll
- CLSIDFromString (Address: 0x18004b760)
- CoCreateFreeThreadedMarshaler (Address: 0x18004b758)
- CoCreateInstance (Address: 0x18004b7a8)
- CoGetObjectContext (Address: 0x18004b768)
- CoIncrementMTAUsage (Address: 0x18004b750)
- CoRevertToSelf (Address: 0x18004b770)
- CoTaskMemAlloc (Address: 0x18004b780)
- CoTaskMemFree (Address: 0x18004b788)
- CoTaskMemRealloc (Address: 0x18004b778)
- CoWaitForMultipleHandles (Address: 0x18004b790)
- PropVariantClear (Address: 0x18004b7a0)
- StringFromCLSID (Address: 0x18004b798)
api-ms-win-core-com-l1-1-1.dll
- RoGetAgileReference (Address: 0x18004b7b8)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x18004b7d0)
- IsDebuggerPresent (Address: 0x18004b7d8)
- OutputDebugStringW (Address: 0x18004b7c8)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x18004b800)
- RaiseException (Address: 0x18004b808)
- SetLastError (Address: 0x18004b7f8)
- SetUnhandledExceptionFilter (Address: 0x18004b7f0)
- UnhandledExceptionFilter (Address: 0x18004b7e8)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x18004b818)
- DuplicateHandle (Address: 0x18004b820)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x18004b840)
- HeapAlloc (Address: 0x18004b830)
- HeapFree (Address: 0x18004b838)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x18004b858)
- InterlockedFlushSList (Address: 0x18004b850)
- InterlockedPushEntrySList (Address: 0x18004b860)
api-ms-win-core-libraryloader-l1-2-0.dll
- FreeLibrary (Address: 0x18004b878)
- GetModuleFileNameA (Address: 0x18004b870)
- GetModuleHandleExW (Address: 0x18004b888)
- GetModuleHandleW (Address: 0x18004b890)
- GetProcAddress (Address: 0x18004b880)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x18004b8a0)
api-ms-win-core-memory-l1-1-0.dll
- CreateFileMappingW (Address: 0x18004b8b0)
- FlushViewOfFile (Address: 0x18004b8b8)
- MapViewOfFile (Address: 0x18004b8c8)
- OpenFileMappingW (Address: 0x18004b8c0)
- UnmapViewOfFile (Address: 0x18004b8d8)
- VirtualQuery (Address: 0x18004b8d0)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x18004b900)
- GetCurrentProcessId (Address: 0x18004b8f8)
- GetCurrentThread (Address: 0x18004b910)
- GetCurrentThreadId (Address: 0x18004b8e8)
- OpenProcessToken (Address: 0x18004b918)
- OpenThreadToken (Address: 0x18004b908)
- TerminateProcess (Address: 0x18004b8f0)
api-ms-win-core-processthreads-l1-1-1.dll
- IsProcessorFeaturePresent (Address: 0x18004b930)
- OpenProcess (Address: 0x18004b928)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x18004b940)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x18004b958)
- RegCreateKeyExW (Address: 0x18004b968)
- RegDeleteValueW (Address: 0x18004b970)
- RegGetValueW (Address: 0x18004b950)
- RegOpenKeyExW (Address: 0x18004b960)
- RegSetValueExW (Address: 0x18004b978)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x18004b990)
- RtlLookupFunctionEntry (Address: 0x18004b988)
- RtlVirtualUnwind (Address: 0x18004b998)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x18004b9a8)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x18004ba48)
- AcquireSRWLockShared (Address: 0x18004b9b8)
- CreateEventExW (Address: 0x18004b9c8)
- CreateEventW (Address: 0x18004ba38)
- CreateMutexExW (Address: 0x18004ba28)
- CreateSemaphoreExW (Address: 0x18004b9d0)
- DeleteCriticalSection (Address: 0x18004b9e0)
- EnterCriticalSection (Address: 0x18004b9e8)
- InitializeCriticalSection (Address: 0x18004b9d8)
- InitializeCriticalSectionEx (Address: 0x18004b9c0)
- LeaveCriticalSection (Address: 0x18004b9f8)
- OpenSemaphoreW (Address: 0x18004ba20)
- ReleaseMutex (Address: 0x18004ba08)
- ReleaseSemaphore (Address: 0x18004b9f0)
- ReleaseSRWLockExclusive (Address: 0x18004ba30)
- ReleaseSRWLockShared (Address: 0x18004ba40)
- SetEvent (Address: 0x18004ba10)
- WaitForSingleObject (Address: 0x18004ba00)
- WaitForSingleObjectEx (Address: 0x18004ba18)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x18004ba60)
- InitOnceComplete (Address: 0x18004ba58)
- InitOnceExecuteOnce (Address: 0x18004ba68)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x18004ba78)
api-ms-win-core-sysinfo-l1-2-0.dll
- GetProductInfo (Address: 0x18004ba88)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x18004baa0)
- CreateThreadpoolTimer (Address: 0x18004bab0)
- SetThreadpoolTimer (Address: 0x18004baa8)
- TrySubmitThreadpoolCallback (Address: 0x18004ba98)
- WaitForThreadpoolTimerCallbacks (Address: 0x18004bab8)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x18004bac8)
- EncodePointer (Address: 0x18004bad0)
api-ms-win-core-winrt-error-l1-1-0.dll
- GetRestrictedErrorInfo (Address: 0x18004bae8)
- RoFailFastWithErrorContext (Address: 0x18004bb08)
- RoOriginateError (Address: 0x18004baf8)
- RoOriginateErrorW (Address: 0x18004baf0)
- RoTransformError (Address: 0x18004bb00)
- SetRestrictedErrorInfo (Address: 0x18004bae0)
api-ms-win-core-winrt-error-l1-1-1.dll
- RoOriginateLanguageException (Address: 0x18004bb18)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x18004bb28)
- RoGetActivationFactory (Address: 0x18004bb30)
api-ms-win-core-winrt-propertysetprivate-l1-1-1.dll
- RoCreatePropertySetSerializer (Address: 0x18004bb40)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCreateString (Address: 0x18004bb80)
- WindowsCreateStringReference (Address: 0x18004bb70)
- WindowsDeleteString (Address: 0x18004bb50)
- WindowsDeleteStringBuffer (Address: 0x18004bb58)
- WindowsDuplicateString (Address: 0x18004bb78)
- WindowsGetStringLen (Address: 0x18004bba0)
- WindowsGetStringRawBuffer (Address: 0x18004bb68)
- WindowsIsStringEmpty (Address: 0x18004bb60)
- WindowsPreallocateStringBuffer (Address: 0x18004bb90)
- WindowsPromoteStringBuffer (Address: 0x18004bb88)
- WindowsStringHasEmbeddedNull (Address: 0x18004bb98)
api-ms-win-crt-private-l1-1-0.dll
- __C_specific_handler (Address: 0x18004bc18)
- __CxxFrameHandler3 (Address: 0x18004bc90)
- __CxxFrameHandler4 (Address: 0x18004bc88)
- __std_terminate (Address: 0x18004bc80)
- _CxxThrowException (Address: 0x18004bcb0)
- _o___std_exception_copy (Address: 0x18004bc68)
- _o___std_exception_destroy (Address: 0x18004bc60)
- _o___std_type_info_destroy_list (Address: 0x18004bc58)
- _o___stdio_common_vsnprintf_s (Address: 0x18004bc38)
- _o___stdio_common_vswprintf (Address: 0x18004bc30)
- _o___stdio_common_vswprintf_s (Address: 0x18004bc20)
- _o__callnewh (Address: 0x18004bc78)
- _o__cexit (Address: 0x18004bc70)
- _o__configure_narrow_argv (Address: 0x18004bc48)
- _o__crt_atexit (Address: 0x18004bc28)
- _o__errno (Address: 0x18004bc50)
- _o__execute_onexit_table (Address: 0x18004bc40)
- _o__get_errno (Address: 0x18004bbb0)
- _o__initialize_narrow_environment (Address: 0x18004bbb8)
- _o__initialize_onexit_table (Address: 0x18004bbc0)
- _o__invalid_parameter_noinfo (Address: 0x18004bbc8)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x18004bbd0)
- _o__purecall (Address: 0x18004bbd8)
- _o__register_onexit_function (Address: 0x18004bbe0)
- _o__seh_filter_dll (Address: 0x18004bbe8)
- _o__set_errno (Address: 0x18004bbf0)
- _o_free (Address: 0x18004bbf8)
- _o_iswspace (Address: 0x18004bc00)
- _o_malloc (Address: 0x18004bc08)
- _o_terminate (Address: 0x18004bc10)
- memcmp (Address: 0x18004bca0)
- memcpy (Address: 0x18004bc98)
- memmove (Address: 0x18004bca8)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x18004bcc8)
- _initterm_e (Address: 0x18004bcc0)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x18004bcd8)
- strlen (Address: 0x18004bce8)
- wcslen (Address: 0x18004bce0)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x18004bcf8)
- EventRegister (Address: 0x18004bd18)
- EventSetInformation (Address: 0x18004bd10)
- EventUnregister (Address: 0x18004bd08)
- EventWriteTransfer (Address: 0x18004bd00)
api-ms-win-rtcore-ntuser-window-l1-1-0.dll
- GetWindowThreadProcessId (Address: 0x18004bd28)
api-ms-win-security-base-l1-1-0.dll
- DuplicateTokenEx (Address: 0x18004bd40)
- EqualSid (Address: 0x18004bd58)
- GetAce (Address: 0x18004bd50)
- GetTokenInformation (Address: 0x18004bd48)
- RevertToSelf (Address: 0x18004bd38)
api-ms-win-security-capability-l1-1-0.dll
- CapabilityCheck (Address: 0x18004bd68)
api-ms-win-shcore-comhelpers-l1-1-0.dll
- IUnknown_QueryService (Address: 0x18004bd78)
combase.dll
- (Address: 0x18004bd88)
- (Address: 0x18004bd90)
ext-ms-win-session-usermgr-l1-1-0.dll
- UMgrGetConstrainedUserToken (Address: 0x18004bda0)
- UMgrOpenProcessTokenForQuery (Address: 0x18004bda8)
msvcp_win.dll
- ?__ExceptionPtrAssign@@YAXPEAXPEBX@Z (Address: 0x18004be28)
- ?__ExceptionPtrCopy@@YAXPEAXPEBX@Z (Address: 0x18004be58)
- ?__ExceptionPtrCopyException@@YAXPEAXPEBX1@Z (Address: 0x18004bec0)
- ?__ExceptionPtrCreate@@YAXPEAX@Z (Address: 0x18004be88)
- ?__ExceptionPtrCurrentException@@YAXPEAX@Z (Address: 0x18004be80)
- ?__ExceptionPtrDestroy@@YAXPEAX@Z (Address: 0x18004be50)
- ?__ExceptionPtrRethrow@@YAXPEBX@Z (Address: 0x18004be90)
- ?_Lock@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@UEAAXXZ (Address: 0x18004be10)
- ?_Osfx@?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QEAAXXZ (Address: 0x18004bdc8)
- ?_Pninc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@IEAAPEA_WXZ (Address: 0x18004be40)
- ?_Unlock@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@UEAAXXZ (Address: 0x18004be38)
- ?_Xbad_function_call@std@@YAXXZ (Address: 0x18004bea8)
- ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x18004beb8)
- ?_Xout_of_range@std@@YAXPEBD@Z (Address: 0x18004beb0)
- ??0?$basic_ios@_WU?$char_traits@_W@std@@@std@@IEAA@XZ (Address: 0x18004be20)
- ??0?$basic_iostream@_WU?$char_traits@_W@std@@@std@@QEAA@PEAV?$basic_streambuf@_WU?$char_traits@_W@std@@@1@@Z (Address: 0x18004be60)
- ??0?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@IEAA@XZ (Address: 0x18004bdd0)
- ??1?$basic_ios@_WU?$char_traits@_W@std@@@std@@UEAA@XZ (Address: 0x18004bea0)
- ??1?$basic_iostream@_WU?$char_traits@_W@std@@@std@@UEAA@XZ (Address: 0x18004be98)
- ??1?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@UEAA@XZ (Address: 0x18004be78)
- ??6?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QEAAAEAV01@_J@Z (Address: 0x18004be68)
- ?flush@?$basic_ostream@_WU?$char_traits@_W@std@@@std@@QEAAAEAV12@XZ (Address: 0x18004bdc0)
- ?gbump@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@IEAAXH@Z (Address: 0x18004be48)
- ?imbue@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x18004bde0)
- ?setbuf@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAAPEAV12@PEA_W_J@Z (Address: 0x18004bde8)
- ?setstate@?$basic_ios@_WU?$char_traits@_W@std@@@std@@QEAAXH_N@Z (Address: 0x18004bdb8)
- ?showmanyc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAA_JXZ (Address: 0x18004be00)
- ?sputc@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@QEAAG_W@Z (Address: 0x18004be18)
- ?sputn@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@QEAA_JPEB_W_J@Z (Address: 0x18004bdd8)
- ?sync@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAAHXZ (Address: 0x18004be08)
- ?uflow@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAAGXZ (Address: 0x18004bdf8)
- ?uncaught_exception@std@@YA_NXZ (Address: 0x18004be30)
- ?xsgetn@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAA_JPEA_W_J@Z (Address: 0x18004bdf0)
- ?xsputn@?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@MEAA_JPEB_W_J@Z (Address: 0x18004be70)
ntdll.dll
- NtQuerySecurityObject (Address: 0x18004bf08)
- NtSetSecurityObject (Address: 0x18004bee0)
- RtlAddAccessAllowedAce (Address: 0x18004bef8)
- RtlAddAce (Address: 0x18004bf00)
- RtlCreateAcl (Address: 0x18004bed8)
- RtlCreateSecurityDescriptor (Address: 0x18004bf28)
- RtlFreeUnicodeString (Address: 0x18004bf30)
- RtlGetAce (Address: 0x18004bf20)
- RtlGetDaclSecurityDescriptor (Address: 0x18004bf18)
- RtlGetTokenNamedObjectPath (Address: 0x18004bef0)
- RtlLengthSid (Address: 0x18004bf10)
- RtlQueryInformationAcl (Address: 0x18004bed0)
- RtlSetDaclSecurityDescriptor (Address: 0x18004bee8)
OLEAUT32.dll
- SysFreeString (Address: 0x18004b728)
- SysStringLen (Address: 0x18004b730)
twinapi.appcore.dll
- (Address: 0x18004bf40)
- (Address: 0x18004bf48)