wininitext.dll

Description: WinInit Utility Extension DLL

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.4842

Architecture: 64-bit

Operating System: Windows NT

SHA256: f5842eaf06466c117ffb2acbadafa67d

File Size: 46.5 KB

Uploaded At: Dec. 1, 2025, 7:44 a.m.

Views: 4

Exported Functions

  • GetLoggedOnUserCount (Ordinal: 1, Address: 0x4fb0)
  • LaunchUmfdHostWithVirtualAccountWorker (Ordinal: 2, Address: 0x3ee0)
  • PrimaryTerminalAndHookWorker (Ordinal: 3, Address: 0x1010)
  • StartLoadingFontsWorker (Ordinal: 4, Address: 0x3360)
  • UIStartupWorker (Ordinal: 5, Address: 0x5280)
  • WaitForWinstationShutdown (Ordinal: 6, Address: 0x5290)
  • WinStationSystemShutdownStartedWorker (Ordinal: 7, Address: 0x5360)

Imported DLLs & Functions

ADVAPI32.dll
  • RegOpenKeyW (Address: 0x180006138)
api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x1800061f8)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180006208)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180006218)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180006238)
  • SetLastError (Address: 0x180006228)
  • SetUnhandledExceptionFilter (Address: 0x180006240)
  • UnhandledExceptionFilter (Address: 0x180006230)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180006250)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180006268)
  • HeapAlloc (Address: 0x180006270)
  • HeapFree (Address: 0x180006260)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180006280)
  • LocalFree (Address: 0x180006288)
api-ms-win-core-libraryloader-l1-2-0.dll
  • GetModuleFileNameA (Address: 0x180006298)
  • GetModuleHandleExW (Address: 0x1800062a8)
  • GetProcAddress (Address: 0x1800062a0)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessAsUserW (Address: 0x1800062d8)
  • CreateProcessW (Address: 0x1800062f8)
  • CreateThread (Address: 0x1800062f0)
  • DeleteProcThreadAttributeList (Address: 0x1800062e8)
  • GetCurrentProcess (Address: 0x180006308)
  • GetCurrentProcessId (Address: 0x1800062b8)
  • GetCurrentThreadId (Address: 0x1800062c0)
  • InitializeProcThreadAttributeList (Address: 0x180006300)
  • ResumeThread (Address: 0x1800062d0)
  • TerminateProcess (Address: 0x1800062c8)
  • UpdateProcThreadAttribute (Address: 0x1800062e0)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180006318)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180006338)
  • RegOpenKeyExW (Address: 0x180006330)
  • RegQueryValueExW (Address: 0x180006328)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180006348)
  • RtlLookupFunctionEntry (Address: 0x180006350)
  • RtlVirtualUnwind (Address: 0x180006358)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x180006380)
  • CreateEventW (Address: 0x180006398)
  • EnterCriticalSection (Address: 0x180006390)
  • InitializeCriticalSection (Address: 0x180006378)
  • LeaveCriticalSection (Address: 0x1800063a0)
  • OpenEventW (Address: 0x1800063a8)
  • ReleaseSRWLockExclusive (Address: 0x180006370)
  • SetEvent (Address: 0x180006388)
  • WaitForSingleObject (Address: 0x180006368)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceExecuteOnce (Address: 0x1800063b8)
  • Sleep (Address: 0x1800063c0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x1800063e0)
  • GetTickCount (Address: 0x1800063d0)
  • GetVersionExW (Address: 0x1800063d8)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • TraceMessage (Address: 0x1800063f0)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventProviderEnabled (Address: 0x180006418)
  • EventRegister (Address: 0x180006408)
  • EventSetInformation (Address: 0x180006400)
  • EventUnregister (Address: 0x180006420)
  • EventWriteTransfer (Address: 0x180006410)
api-ms-win-security-base-l1-1-0.dll
  • AdjustTokenPrivileges (Address: 0x180006438)
  • CreateRestrictedToken (Address: 0x180006458)
  • FreeSid (Address: 0x180006460)
  • GetLengthSid (Address: 0x180006430)
  • GetSecurityDescriptorDacl (Address: 0x180006448)
  • GetTokenInformation (Address: 0x180006450)
  • SetTokenInformation (Address: 0x180006440)
api-ms-win-security-lsalookup-l1-1-0.dll
  • LsaLookupFreeMemory (Address: 0x180006478)
  • LsaLookupManageSidNameMapping (Address: 0x180006470)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x180006498)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180006488)
  • ConvertStringSidToSidW (Address: 0x180006490)
KERNELBASE.dll
  • AppContainerDeriveSidFromMoniker (Address: 0x180006150)
  • WTSGetServiceSessionId (Address: 0x180006148)
msvcrt.dll
  • __C_specific_handler (Address: 0x1800064c0)
  • _amsg_exit (Address: 0x1800064e0)
  • _initterm (Address: 0x1800064c8)
  • _vsnwprintf (Address: 0x1800064e8)
  • _XcptFilter (Address: 0x1800064a8)
  • free (Address: 0x1800064d8)
  • malloc (Address: 0x1800064d0)
  • memmove (Address: 0x1800064b8)
  • memset (Address: 0x1800064f0)
  • toupper (Address: 0x1800064b0)
ntdll.dll
  • EtwTraceMessage (Address: 0x180006578)
  • RtlAddAce (Address: 0x180006520)
  • RtlAddMandatoryAce (Address: 0x180006550)
  • RtlAllocateAndInitializeSid (Address: 0x180006570)
  • RtlCopySid (Address: 0x180006500)
  • RtlCreateAcl (Address: 0x180006558)
  • RtlCreateSecurityDescriptor (Address: 0x180006560)
  • RtlFreeSid (Address: 0x180006540)
  • RtlGetDaclSecurityDescriptor (Address: 0x180006510)
  • RtlInitUnicodeString (Address: 0x180006530)
  • RtlLengthSid (Address: 0x180006508)
  • RtlNtStatusToDosError (Address: 0x180006568)
  • RtlSetDaclSecurityDescriptor (Address: 0x180006518)
  • RtlSetEnvironmentVariable (Address: 0x180006528)
  • RtlSetSaclSecurityDescriptor (Address: 0x180006548)
  • TpSimpleTryPost (Address: 0x180006538)
SspiCli.dll
  • LogonUserExExW (Address: 0x180006160)
USER32.dll
  • CloseDesktop (Address: 0x180006190)
  • CloseWindowStation (Address: 0x180006198)
  • CreateDesktopW (Address: 0x1800061c8)
  • CreateWindowStationW (Address: 0x1800061c0)
  • LoadLocalFonts (Address: 0x1800061a8)
  • RegisterLogonProcess (Address: 0x1800061b0)
  • SetProcessWindowStation (Address: 0x1800061b8)
  • SetThreadDesktop (Address: 0x180006178)
  • SetUserObjectSecurity (Address: 0x1800061a0)
  • SetWindowStationUser (Address: 0x180006188)
  • SwitchDesktop (Address: 0x180006180)
  • UpdatePerUserSystemParameters (Address: 0x180006170)
USERENV.dll
  • CreateAppContainerProfile (Address: 0x1800061e0)
  • CreateEnvironmentBlock (Address: 0x1800061e8)
  • DestroyEnvironmentBlock (Address: 0x1800061d8)