Windows.Security.Authentication.OnlineId.dll
Description: Windows Runtime OnlineId Authentication DLL
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 64-bit
Operating System: Windows NT
SHA256: 5c04aaa3b2cbc702dd930cf4409f4a99
File Size: 953.0 KB
Uploaded At: Dec. 1, 2025, 7:44 a.m.
Views: 4
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x7770)
- DllGetActivationFactory (Ordinal: 2, Address: 0x171c0)
- DllGetClassObject (Ordinal: 3, Address: 0x3e000)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x1800a9c08)
api-ms-win-core-atoms-l1-1-0.dll
- GlobalGetAtomNameW (Address: 0x1800a9c18)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1800a9c40)
- IsDebuggerPresent (Address: 0x1800a9c28)
- OutputDebugStringA (Address: 0x1800a9c38)
- OutputDebugStringW (Address: 0x1800a9c30)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1800a9c50)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1800a9c60)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1800a9c90)
- RaiseException (Address: 0x1800a9c78)
- SetLastError (Address: 0x1800a9c70)
- SetUnhandledExceptionFilter (Address: 0x1800a9c88)
- UnhandledExceptionFilter (Address: 0x1800a9c80)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1800a9ca8)
- DuplicateHandle (Address: 0x1800a9ca0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1800a9cd8)
- HeapAlloc (Address: 0x1800a9ce0)
- HeapDestroy (Address: 0x1800a9cc8)
- HeapFree (Address: 0x1800a9cd0)
- HeapReAlloc (Address: 0x1800a9cc0)
- HeapSize (Address: 0x1800a9cb8)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1800a9cf0)
- LocalFree (Address: 0x1800a9cf8)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- GetComputerNameW (Address: 0x1800a9d08)
api-ms-win-core-libraryloader-l1-2-0.dll
- FindResourceExW (Address: 0x1800a9d60)
- FreeLibrary (Address: 0x1800a9d30)
- GetModuleFileNameA (Address: 0x1800a9d48)
- GetModuleFileNameW (Address: 0x1800a9d20)
- GetModuleHandleExW (Address: 0x1800a9d28)
- GetModuleHandleW (Address: 0x1800a9d50)
- GetProcAddress (Address: 0x1800a9d68)
- LoadLibraryExW (Address: 0x1800a9d18)
- LoadResource (Address: 0x1800a9d40)
- LockResource (Address: 0x1800a9d38)
- SizeofResource (Address: 0x1800a9d58)
api-ms-win-core-libraryloader-l1-2-1.dll
- LoadLibraryW (Address: 0x1800a9d78)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1800a9d88)
- GetThreadPreferredUILanguages (Address: 0x1800a9d98)
- GetUserDefaultLocaleName (Address: 0x1800a9d90)
api-ms-win-core-localization-obsolete-l1-2-0.dll
- GetUserDefaultUILanguage (Address: 0x1800a9da8)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1800a9dd0)
- GetCurrentProcessId (Address: 0x1800a9dc8)
- GetCurrentThread (Address: 0x1800a9db8)
- GetCurrentThreadId (Address: 0x1800a9df8)
- GetProcessId (Address: 0x1800a9df0)
- GetProcessIdOfThread (Address: 0x1800a9dc0)
- OpenProcessToken (Address: 0x1800a9de8)
- OpenThread (Address: 0x1800a9e00)
- OpenThreadToken (Address: 0x1800a9de0)
- TerminateProcess (Address: 0x1800a9dd8)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x1800a9e10)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1800a9e20)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1800a9e80)
- RegCreateKeyExW (Address: 0x1800a9e70)
- RegDeleteKeyExW (Address: 0x1800a9e78)
- RegDeleteTreeW (Address: 0x1800a9e30)
- RegDeleteValueW (Address: 0x1800a9e90)
- RegEnumKeyExW (Address: 0x1800a9e68)
- RegEnumValueW (Address: 0x1800a9e40)
- RegGetValueW (Address: 0x1800a9e38)
- RegOpenCurrentUser (Address: 0x1800a9e98)
- RegOpenKeyExW (Address: 0x1800a9e58)
- RegQueryInfoKeyW (Address: 0x1800a9e88)
- RegQueryValueExW (Address: 0x1800a9e50)
- RegSetKeySecurity (Address: 0x1800a9e60)
- RegSetValueExW (Address: 0x1800a9e48)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x1800a9eb8)
- RtlLookupFunctionEntry (Address: 0x1800a9ea8)
- RtlVirtualUnwind (Address: 0x1800a9eb0)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
- StrStrIW (Address: 0x1800a9ec8)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x1800a9ee0)
- WideCharToMultiByte (Address: 0x1800a9ed8)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1800a9f78)
- AcquireSRWLockShared (Address: 0x1800a9f10)
- CreateEventExW (Address: 0x1800a9f20)
- CreateEventW (Address: 0x1800a9f80)
- CreateMutexExW (Address: 0x1800a9ef8)
- CreateSemaphoreExW (Address: 0x1800a9f00)
- DeleteCriticalSection (Address: 0x1800a9f28)
- EnterCriticalSection (Address: 0x1800a9f38)
- InitializeCriticalSection (Address: 0x1800a9f08)
- InitializeCriticalSectionEx (Address: 0x1800a9f90)
- InitializeSRWLock (Address: 0x1800a9f30)
- LeaveCriticalSection (Address: 0x1800a9f58)
- OpenSemaphoreW (Address: 0x1800a9f40)
- ReleaseMutex (Address: 0x1800a9f60)
- ReleaseSemaphore (Address: 0x1800a9f70)
- ReleaseSRWLockExclusive (Address: 0x1800a9f98)
- ReleaseSRWLockShared (Address: 0x1800a9ef0)
- ResetEvent (Address: 0x1800a9f18)
- SetEvent (Address: 0x1800a9f88)
- WaitForMultipleObjectsEx (Address: 0x1800a9f68)
- WaitForSingleObject (Address: 0x1800a9f48)
- WaitForSingleObjectEx (Address: 0x1800a9f50)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x1800a9fa8)
- InitOnceComplete (Address: 0x1800a9fb0)
- InitOnceExecuteOnce (Address: 0x1800a9fb8)
- Sleep (Address: 0x1800a9fc0)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x1800a9fe8)
- GetSystemTimeAsFileTime (Address: 0x1800a9fd8)
- GetTickCount (Address: 0x1800a9fd0)
- GetTickCount64 (Address: 0x1800a9ff0)
- GetVersionExW (Address: 0x1800a9fe0)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1800aa020)
- CloseThreadpoolWork (Address: 0x1800aa018)
- CreateThreadpoolTimer (Address: 0x1800aa000)
- CreateThreadpoolWork (Address: 0x1800aa008)
- FreeLibraryWhenCallbackReturns (Address: 0x1800aa038)
- SetThreadpoolTimer (Address: 0x1800aa010)
- SubmitThreadpoolWork (Address: 0x1800aa030)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800aa028)
api-ms-win-core-url-l1-1-0.dll
- UrlEscapeW (Address: 0x1800aa048)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x1800aa058)
- EncodePointer (Address: 0x1800aa060)
api-ms-win-core-version-l1-1-0.dll
- GetFileVersionInfoExW (Address: 0x1800aa078)
- GetFileVersionInfoSizeExW (Address: 0x1800aa080)
- VerQueryValueW (Address: 0x1800aa070)
api-ms-win-core-winrt-error-l1-1-0.dll
- GetRestrictedErrorInfo (Address: 0x1800aa0b0)
- RoOriginateError (Address: 0x1800aa090)
- RoOriginateErrorW (Address: 0x1800aa0a0)
- RoTransformError (Address: 0x1800aa098)
- SetRestrictedErrorInfo (Address: 0x1800aa0a8)
api-ms-win-core-winrt-error-l1-1-1.dll
- IsErrorPropagationEnabled (Address: 0x1800aa0c8)
- RoGetMatchingRestrictedErrorInfo (Address: 0x1800aa0d0)
- RoReportFailedDelegate (Address: 0x1800aa0c0)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x1800aa0f8)
- RoGetActivationFactory (Address: 0x1800aa0f0)
- RoInitialize (Address: 0x1800aa0e8)
- RoUninitialize (Address: 0x1800aa0e0)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsConcatString (Address: 0x1800aa108)
- WindowsCreateString (Address: 0x1800aa120)
- WindowsCreateStringReference (Address: 0x1800aa110)
- WindowsDeleteString (Address: 0x1800aa130)
- WindowsDuplicateString (Address: 0x1800aa118)
- WindowsGetStringLen (Address: 0x1800aa140)
- WindowsGetStringRawBuffer (Address: 0x1800aa148)
- WindowsIsStringEmpty (Address: 0x1800aa138)
- WindowsStringHasEmbeddedNull (Address: 0x1800aa128)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x1800aa168)
- EventRegister (Address: 0x1800aa158)
- EventSetInformation (Address: 0x1800aa178)
- EventUnregister (Address: 0x1800aa160)
- EventWriteTransfer (Address: 0x1800aa170)
api-ms-win-security-base-l1-1-0.dll
- CopySid (Address: 0x1800aa1a0)
- CreateWellKnownSid (Address: 0x1800aa1c8)
- EqualSid (Address: 0x1800aa198)
- GetAce (Address: 0x1800aa188)
- GetLengthSid (Address: 0x1800aa1b0)
- GetSecurityDescriptorDacl (Address: 0x1800aa1c0)
- GetSecurityDescriptorSacl (Address: 0x1800aa1b8)
- GetTokenInformation (Address: 0x1800aa1a8)
- ImpersonateLoggedOnUser (Address: 0x1800aa1d8)
- IsValidSid (Address: 0x1800aa1d0)
- RevertToSelf (Address: 0x1800aa190)
api-ms-win-shcore-taskpool-l1-1-0.dll
- SHTaskPoolAllowThreadReuse (Address: 0x1800aa1e8)
- SHTaskPoolQueueTask (Address: 0x1800aa1f0)
api-ms-win-stateseparation-helpers-l1-1-0.dll
- GetPersistedRegistryLocationW (Address: 0x1800aa200)
bcrypt.dll
- BCryptGenRandom (Address: 0x1800aa210)
combase.dll
- (Address: 0x1800aa220)
- (Address: 0x1800aa228)
- (Address: 0x1800aa230)
msvcrt.dll
- __C_specific_handler (Address: 0x1800aa298)
- __CxxFrameHandler3 (Address: 0x1800aa290)
- __dllonexit (Address: 0x1800aa2c0)
- _amsg_exit (Address: 0x1800aa280)
- _callnewh (Address: 0x1800aa2f0)
- _CxxThrowException (Address: 0x1800aa278)
- _errno (Address: 0x1800aa250)
- _initterm (Address: 0x1800aa2a0)
- _lock (Address: 0x1800aa350)
- _onexit (Address: 0x1800aa2a8)
- _purecall (Address: 0x1800aa338)
- _set_errno (Address: 0x1800aa330)
- _time64 (Address: 0x1800aa328)
- _unlock (Address: 0x1800aa2b8)
- _vsnprintf_s (Address: 0x1800aa300)
- _vsnwprintf (Address: 0x1800aa308)
- _XcptFilter (Address: 0x1800aa2d8)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x1800aa258)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x1800aa310)
- ??0exception@@QEAA@XZ (Address: 0x1800aa2f8)
- ??1exception@@UEAA@XZ (Address: 0x1800aa318)
- ??1type_info@@UEAA@XZ (Address: 0x1800aa248)
- ?terminate@@YAXXZ (Address: 0x1800aa2b0)
- ?what@exception@@UEBAPEBDXZ (Address: 0x1800aa240)
- calloc (Address: 0x1800aa2c8)
- free (Address: 0x1800aa288)
- malloc (Address: 0x1800aa270)
- memcmp (Address: 0x1800aa2e8)
- memcpy (Address: 0x1800aa2e0)
- memcpy_s (Address: 0x1800aa348)
- memmove_s (Address: 0x1800aa340)
- memset (Address: 0x1800aa268)
- realloc (Address: 0x1800aa260)
- strrchr (Address: 0x1800aa320)
- wcscmp (Address: 0x1800aa358)
- wcscpy_s (Address: 0x1800aa2d0)
ntdll.dll
- _i64tow_s (Address: 0x1800aa4a0)
- _vscwprintf (Address: 0x1800aa480)
- _wcsicmp (Address: 0x1800aa4b0)
- _wcslwr_s (Address: 0x1800aa3a8)
- _wcsnicmp (Address: 0x1800aa378)
- _wcsupr_s (Address: 0x1800aa460)
- _wtoi64 (Address: 0x1800aa370)
- iswspace (Address: 0x1800aa468)
- NtQueryInformationToken (Address: 0x1800aa3f0)
- NtQuerySecurityObject (Address: 0x1800aa4b8)
- NtSetSecurityObject (Address: 0x1800aa368)
- RtlAcquireSRWLockExclusive (Address: 0x1800aa408)
- RtlAddAccessAllowedAce (Address: 0x1800aa428)
- RtlAddAce (Address: 0x1800aa430)
- RtlAllocateHeap (Address: 0x1800aa3e0)
- RtlCompareUnicodeString (Address: 0x1800aa3d0)
- RtlCreateAcl (Address: 0x1800aa440)
- RtlCreateSecurityDescriptor (Address: 0x1800aa3c0)
- RtlEqualSid (Address: 0x1800aa3c8)
- RtlFreeHeap (Address: 0x1800aa3f8)
- RtlGetAce (Address: 0x1800aa438)
- RtlGetDaclSecurityDescriptor (Address: 0x1800aa458)
- RtlGetDeviceFamilyInfoEnum (Address: 0x1800aa3b0)
- RtlInitUnicodeString (Address: 0x1800aa3e8)
- RtlLengthSid (Address: 0x1800aa448)
- RtlNtStatusToDosError (Address: 0x1800aa4a8)
- RtlNtStatusToDosErrorNoTeb (Address: 0x1800aa3d8)
- RtlQueryInformationAcl (Address: 0x1800aa450)
- RtlReleaseSRWLockExclusive (Address: 0x1800aa400)
- RtlSetDaclSecurityDescriptor (Address: 0x1800aa420)
- RtlSleepConditionVariableSRW (Address: 0x1800aa418)
- RtlWakeAllConditionVariable (Address: 0x1800aa410)
- toupper (Address: 0x1800aa3b8)
- vswprintf_s (Address: 0x1800aa488)
- wcscat_s (Address: 0x1800aa498)
- wcschr (Address: 0x1800aa398)
- wcscspn (Address: 0x1800aa380)
- wcsspn (Address: 0x1800aa388)
- wcsstr (Address: 0x1800aa470)
- wcstol (Address: 0x1800aa3a0)
- wcstoul (Address: 0x1800aa390)
- WinSqmAddToStreamEx (Address: 0x1800aa478)
- WinSqmIsOptedIn (Address: 0x1800aa490)
RPCRT4.dll
- I_RpcBindingInqLocalClientPID (Address: 0x1800a9be8)
- MesBufferHandleReset (Address: 0x1800a9bb0)
- MesDecodeBufferHandleCreate (Address: 0x1800a9b98)
- MesEncodeFixedBufferHandleCreate (Address: 0x1800a9bb8)
- MesHandleFree (Address: 0x1800a9ba0)
- Ndr64AsyncClientCall (Address: 0x1800a9b70)
- NdrMesTypeAlignSize3 (Address: 0x1800a9bd8)
- NdrMesTypeDecode3 (Address: 0x1800a9bc0)
- NdrMesTypeEncode3 (Address: 0x1800a9bc8)
- NdrMesTypeFree3 (Address: 0x1800a9bd0)
- RpcAsyncCancelCall (Address: 0x1800a9b78)
- RpcAsyncCompleteCall (Address: 0x1800a9b68)
- RpcAsyncInitializeHandle (Address: 0x1800a9be0)
- RpcBindingFree (Address: 0x1800a9ba8)
- RpcBindingFromStringBindingW (Address: 0x1800a9b80)
- RpcBindingSetAuthInfoExW (Address: 0x1800a9b90)
- RpcSsDestroyClientContext (Address: 0x1800a9b60)
- RpcStringBindingComposeW (Address: 0x1800a9b88)
- RpcStringFreeW (Address: 0x1800a9bf8)
- UuidCreate (Address: 0x1800a9bf0)