winipcfile.dll
Description: Microsoft Active Directory Rights Management Services File API
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 64-bit
Operating System: Windows NT
SHA256: b8be82b27ca42809f70233c4e3555188
File Size: 529.0 KB
Uploaded At: Dec. 1, 2025, 7:44 a.m.
Views: 4
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- (Ordinal: 1, Address: 0x11d10)
- (Ordinal: 2, Address: 0x11da0)
- (Ordinal: 3, Address: 0x11db0)
- (Ordinal: 4, Address: 0x11dc0)
- (Ordinal: 5, Address: 0x11dd0)
- (Ordinal: 6, Address: 0x11e80)
- (Ordinal: 7, Address: 0x11e90)
- (Ordinal: 8, Address: 0x11ea0)
- (Ordinal: 9, Address: 0x11eb0)
- (Ordinal: 10, Address: 0x11ec0)
- (Ordinal: 11, Address: 0x11ed0)
- (Ordinal: 12, Address: 0x11ee0)
- (Ordinal: 13, Address: 0x11ef0)
- (Ordinal: 14, Address: 0x11f00)
- (Ordinal: 15, Address: 0x11f10)
- (Ordinal: 16, Address: 0x11f20)
- (Ordinal: 17, Address: 0x11f30)
- (Ordinal: 18, Address: 0x11f40)
- (Ordinal: 19, Address: 0x11f50)
- (Ordinal: 20, Address: 0x11f60)
- (Ordinal: 21, Address: 0x11e20)
- (Ordinal: 22, Address: 0x11d50)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CLSIDFromString (Address: 0x180055188)
- CoCreateGuid (Address: 0x1800551c0)
- CoCreateInstance (Address: 0x1800551b0)
- CoInitializeEx (Address: 0x1800551a0)
- CoTaskMemAlloc (Address: 0x180055198)
- CoTaskMemFree (Address: 0x180055190)
- CoUninitialize (Address: 0x1800551b8)
- StringFromGUID2 (Address: 0x1800551a8)
api-ms-win-core-com-l2-1-1.dll
- CreateILockBytesOnHGlobal (Address: 0x1800551d0)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1800551e8)
- IsDebuggerPresent (Address: 0x1800551e0)
- OutputDebugStringA (Address: 0x1800551f0)
- OutputDebugStringW (Address: 0x1800551f8)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180055220)
- RaiseException (Address: 0x180055218)
- SetLastError (Address: 0x180055210)
- SetUnhandledExceptionFilter (Address: 0x180055228)
- UnhandledExceptionFilter (Address: 0x180055208)
api-ms-win-core-file-l1-1-0.dll
- CreateFileW (Address: 0x180055260)
- DeleteFileW (Address: 0x180055270)
- FlushFileBuffers (Address: 0x180055250)
- GetFileAttributesExW (Address: 0x180055238)
- GetFileAttributesW (Address: 0x180055248)
- GetFileInformationByHandle (Address: 0x180055288)
- GetFullPathNameW (Address: 0x180055240)
- GetVolumeInformationW (Address: 0x180055280)
- LockFileEx (Address: 0x180055258)
- ReadFile (Address: 0x1800552a0)
- SetEndOfFile (Address: 0x180055298)
- SetFileAttributesW (Address: 0x180055278)
- SetFilePointerEx (Address: 0x180055268)
- UnlockFileEx (Address: 0x180055290)
- WriteFile (Address: 0x1800552a8)
api-ms-win-core-file-l1-2-0.dll
- GetTempPathW (Address: 0x1800552b8)
api-ms-win-core-file-l2-1-0.dll
- ReplaceFileW (Address: 0x1800552c8)
api-ms-win-core-file-l2-1-2.dll
- CopyFileW (Address: 0x1800552d8)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1800552e8)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1800552f8)
- HeapAlloc (Address: 0x180055320)
- HeapDestroy (Address: 0x180055318)
- HeapFree (Address: 0x180055308)
- HeapReAlloc (Address: 0x180055310)
- HeapSize (Address: 0x180055300)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180055338)
- LocalFree (Address: 0x180055330)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- MoveFileW (Address: 0x180055348)
api-ms-win-core-libraryloader-l1-2-0.dll
- AddDllDirectory (Address: 0x180055380)
- FreeLibrary (Address: 0x180055368)
- GetModuleFileNameA (Address: 0x180055390)
- GetModuleFileNameW (Address: 0x180055360)
- GetModuleHandleExW (Address: 0x180055388)
- GetModuleHandleW (Address: 0x180055398)
- GetProcAddress (Address: 0x180055378)
- LoadLibraryExA (Address: 0x180055370)
- LoadLibraryExW (Address: 0x1800553a0)
- RemoveDllDirectory (Address: 0x180055358)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1800553c0)
- GetSystemPreferredUILanguages (Address: 0x1800553b8)
- GetUserPreferredUILanguages (Address: 0x1800553c8)
- LocaleNameToLCID (Address: 0x1800553b0)
api-ms-win-core-memory-l1-1-0.dll
- VirtualProtect (Address: 0x1800553e0)
- VirtualQuery (Address: 0x1800553d8)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x180055408)
- GetCurrentProcessId (Address: 0x1800553f8)
- GetCurrentThreadId (Address: 0x1800553f0)
- OpenProcessToken (Address: 0x180055410)
- TerminateProcess (Address: 0x180055400)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x180055420)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180055430)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x180055440)
- RegOpenKeyExW (Address: 0x180055450)
- RegQueryValueExW (Address: 0x180055448)
api-ms-win-core-registry-l2-1-0.dll
- RegEnumKeyW (Address: 0x180055460)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x180055478)
- RtlLookupFunctionEntry (Address: 0x180055480)
- RtlVirtualUnwind (Address: 0x180055470)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
- QISearch (Address: 0x180055490)
api-ms-win-core-string-l1-1-0.dll
- GetStringTypeW (Address: 0x1800554a8)
- MultiByteToWideChar (Address: 0x1800554b0)
- WideCharToMultiByte (Address: 0x1800554a0)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x180055530)
- AcquireSRWLockShared (Address: 0x1800554c8)
- CreateMutexExW (Address: 0x180055528)
- CreateSemaphoreExW (Address: 0x1800554f8)
- DeleteCriticalSection (Address: 0x1800554d0)
- EnterCriticalSection (Address: 0x180055510)
- InitializeCriticalSection (Address: 0x1800554e0)
- InitializeCriticalSectionAndSpinCount (Address: 0x1800554d8)
- InitializeCriticalSectionEx (Address: 0x1800554e8)
- LeaveCriticalSection (Address: 0x1800554f0)
- OpenSemaphoreW (Address: 0x180055540)
- ReleaseMutex (Address: 0x180055518)
- ReleaseSemaphore (Address: 0x180055500)
- ReleaseSRWLockExclusive (Address: 0x180055520)
- ReleaseSRWLockShared (Address: 0x1800554c0)
- WaitForSingleObject (Address: 0x180055508)
- WaitForSingleObjectEx (Address: 0x180055538)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x180055568)
- InitOnceComplete (Address: 0x180055570)
- Sleep (Address: 0x180055550)
- SleepConditionVariableSRW (Address: 0x180055560)
- WakeAllConditionVariable (Address: 0x180055558)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemInfo (Address: 0x1800555a8)
- GetSystemTime (Address: 0x180055590)
- GetSystemTimeAsFileTime (Address: 0x180055598)
- GetSystemWindowsDirectoryW (Address: 0x180055588)
- GetTickCount (Address: 0x1800555a0)
- GetVersionExW (Address: 0x180055580)
api-ms-win-core-sysinfo-l1-2-0.dll
- GetNativeSystemInfo (Address: 0x1800555b8)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1800555d8)
- CreateThreadpoolTimer (Address: 0x1800555c8)
- SetThreadpoolTimer (Address: 0x1800555d0)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800555e0)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x1800555f0)
- EncodePointer (Address: 0x1800555f8)
api-ms-win-core-version-l1-1-0.dll
- GetFileVersionInfoExW (Address: 0x180055608)
- GetFileVersionInfoSizeExW (Address: 0x180055618)
- VerQueryValueW (Address: 0x180055610)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x180055628)
- EventEnabled (Address: 0x180055650)
- EventRegister (Address: 0x180055640)
- EventSetInformation (Address: 0x180055630)
- EventUnregister (Address: 0x180055648)
- EventWrite (Address: 0x180055658)
- EventWriteTransfer (Address: 0x180055638)
api-ms-win-security-base-l1-1-0.dll
- AdjustTokenPrivileges (Address: 0x180055670)
- GetSecurityDescriptorControl (Address: 0x180055668)
api-ms-win-security-cryptoapi-l1-1-0.dll
- CryptReleaseContext (Address: 0x180055680)
api-ms-win-security-lsalookup-l2-1-0.dll
- LookupPrivilegeValueW (Address: 0x180055690)
api-ms-win-security-provider-l1-1-0.dll
- GetNamedSecurityInfoW (Address: 0x1800556a8)
- SetNamedSecurityInfoW (Address: 0x1800556a0)
msvcrt.dll
- ___lc_codepage_func (Address: 0x1800557a8)
- ___lc_handle_func (Address: 0x1800557a0)
- ___mb_cur_max_func (Address: 0x1800557b0)
- __C_specific_handler (Address: 0x1800558d0)
- __crtLCMapStringA (Address: 0x1800557e0)
- __crtLCMapStringW (Address: 0x1800557d8)
- __CxxFrameHandler3 (Address: 0x1800558f0)
- __dllonexit (Address: 0x1800558f8)
- __pctype_func (Address: 0x180055790)
- __RTDynamicCast (Address: 0x180055928)
- __uncaught_exception (Address: 0x180055788)
- _amsg_exit (Address: 0x180055880)
- _callnewh (Address: 0x180055828)
- _CxxThrowException (Address: 0x180055858)
- _errno (Address: 0x1800556e0)
- _fseeki64 (Address: 0x180055768)
- _initterm (Address: 0x1800558c8)
- _ismbblead (Address: 0x1800557b8)
- _lock (Address: 0x1800558d8)
- _onexit (Address: 0x180055900)
- _purecall (Address: 0x180055898)
- _unlock (Address: 0x1800558e0)
- _vsnprintf (Address: 0x1800558a0)
- _vsnprintf_s (Address: 0x180055838)
- _vsnwprintf (Address: 0x1800558b8)
- _wcsdup (Address: 0x1800557c8)
- _wcsicmp (Address: 0x1800558a8)
- _wcsnicmp (Address: 0x180055718)
- _wfsopen (Address: 0x1800557f0)
- _wsetlocale (Address: 0x1800557e8)
- _wsplitpath_s (Address: 0x180055890)
- _XcptFilter (Address: 0x180055878)
- ??_V@YAXPEAX@Z (Address: 0x1800558e8)
- ??0bad_cast@@QEAA@AEBV0@@Z (Address: 0x1800556b8)
- ??0bad_cast@@QEAA@PEBD@Z (Address: 0x180055840)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180055830)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180055848)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x180055860)
- ??0exception@@QEAA@XZ (Address: 0x180055868)
- ??1bad_cast@@UEAA@XZ (Address: 0x180055810)
- ??1exception@@UEAA@XZ (Address: 0x180055888)
- ??1type_info@@UEAA@XZ (Address: 0x180055910)
- ??3@YAXPEAX@Z (Address: 0x180055918)
- ??8type_info@@QEBAHAEBV0@@Z (Address: 0x1800557d0)
- ?terminate@@YAXXZ (Address: 0x180055908)
- ?what@exception@@UEBAPEBDXZ (Address: 0x180055850)
- abort (Address: 0x1800557f8)
- calloc (Address: 0x180055700)
- fclose (Address: 0x180055708)
- fflush (Address: 0x180055730)
- fgetc (Address: 0x180055738)
- fgetpos (Address: 0x180055748)
- fputc (Address: 0x180055728)
- free (Address: 0x1800558c0)
- fseek (Address: 0x180055710)
- fsetpos (Address: 0x180055760)
- fwrite (Address: 0x180055740)
- islower (Address: 0x1800557c0)
- isupper (Address: 0x180055798)
- localeconv (Address: 0x1800556d0)
- malloc (Address: 0x180055818)
- memcmp (Address: 0x180055808)
- memcpy (Address: 0x180055870)
- memcpy_s (Address: 0x1800558b0)
- memmove (Address: 0x180055920)
- memmove_s (Address: 0x1800556f8)
- memset (Address: 0x180055800)
- setlocale (Address: 0x180055780)
- setvbuf (Address: 0x180055750)
- sprintf_s (Address: 0x1800556e8)
- strchr (Address: 0x180055820)
- strcspn (Address: 0x1800556c8)
- strnlen (Address: 0x180055778)
- swprintf_s (Address: 0x1800556d8)
- towlower (Address: 0x1800556c0)
- ungetc (Address: 0x180055758)
- wcsncmp (Address: 0x1800556f0)
- wcsnlen (Address: 0x180055770)
- wcsstr (Address: 0x180055720)