DiagnosticsHub.StandardCollector.Runtime.dll

Description: Microsoft (R) Diagnostics Hub Standard Collector Runtime

Authors: © Microsoft Corporation. All rights reserved.

Version: 11.0.19041.4355

Architecture: 64-bit

Operating System: Windows NT

SHA256: 84313b8c2e3630fa038967467bd46ab6

File Size: 380.5 KB

Uploaded At: Dec. 1, 2025, 7:46 a.m.

Views: 5

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x14de0)
  • DllGetClassObject (Ordinal: 2, Address: 0x14e20)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CLSIDFromString (Address: 0x1800459e0)
  • CoCreateFreeThreadedMarshaler (Address: 0x180045a20)
  • CoCreateGuid (Address: 0x1800459f8)
  • CoCreateInstance (Address: 0x180045a10)
  • CoDisconnectObject (Address: 0x180045a08)
  • CoGetCallContext (Address: 0x1800459f0)
  • CoInitializeEx (Address: 0x180045a28)
  • CoTaskMemAlloc (Address: 0x180045a18)
  • CoTaskMemFree (Address: 0x1800459e8)
  • CoTaskMemRealloc (Address: 0x1800459d0)
  • CoUninitialize (Address: 0x1800459d8)
  • StringFromGUID2 (Address: 0x180045a00)
api-ms-win-core-debug-l1-1-0.dll
  • IsDebuggerPresent (Address: 0x180045a38)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180045a60)
  • RaiseException (Address: 0x180045a50)
  • SetLastError (Address: 0x180045a48)
  • SetUnhandledExceptionFilter (Address: 0x180045a58)
  • UnhandledExceptionFilter (Address: 0x180045a68)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x180045aa0)
  • CreateFileW (Address: 0x180045a78)
  • DeleteFileW (Address: 0x180045a98)
  • DeleteVolumeMountPointW (Address: 0x180045ab0)
  • FindClose (Address: 0x180045ae8)
  • FindFirstFileExW (Address: 0x180045ac0)
  • FindNextFileW (Address: 0x180045ab8)
  • GetFileAttributesW (Address: 0x180045a90)
  • GetFinalPathNameByHandleW (Address: 0x180045ac8)
  • GetLongPathNameW (Address: 0x180045ad8)
  • ReadFile (Address: 0x180045a88)
  • RemoveDirectoryW (Address: 0x180045aa8)
  • SetFileInformationByHandle (Address: 0x180045ad0)
  • SetFilePointer (Address: 0x180045a80)
  • WriteFile (Address: 0x180045ae0)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180045b00)
  • DuplicateHandle (Address: 0x180045af8)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180045b38)
  • HeapAlloc (Address: 0x180045b20)
  • HeapDestroy (Address: 0x180045b10)
  • HeapFree (Address: 0x180045b18)
  • HeapReAlloc (Address: 0x180045b28)
  • HeapSize (Address: 0x180045b30)
api-ms-win-core-heap-l2-1-0.dll
  • LocalFree (Address: 0x180045b48)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x180045b58)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • RegisterWaitForSingleObject (Address: 0x180045b68)
  • UnregisterWait (Address: 0x180045b70)
api-ms-win-core-kernel32-legacy-l1-1-1.dll
  • VerifyVersionInfoW (Address: 0x180045b80)
api-ms-win-core-libraryloader-l1-2-0.dll
  • FindResourceExW (Address: 0x180045ba8)
  • FindStringOrdinal (Address: 0x180045bb8)
  • FreeLibrary (Address: 0x180045bc0)
  • GetModuleFileNameW (Address: 0x180045bd0)
  • GetModuleHandleExW (Address: 0x180045be0)
  • GetModuleHandleW (Address: 0x180045bc8)
  • GetProcAddress (Address: 0x180045ba0)
  • LoadLibraryExW (Address: 0x180045b90)
  • LoadResource (Address: 0x180045bb0)
  • LockResource (Address: 0x180045bd8)
  • SizeofResource (Address: 0x180045b98)
api-ms-win-core-libraryloader-l1-2-1.dll
  • LoadLibraryW (Address: 0x180045bf0)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x180045c10)
  • FreeEnvironmentStringsW (Address: 0x180045c08)
  • GetEnvironmentStringsW (Address: 0x180045c00)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessW (Address: 0x180045c50)
  • CreateThread (Address: 0x180045c58)
  • GetCurrentProcess (Address: 0x180045c68)
  • GetCurrentProcessId (Address: 0x180045c70)
  • GetCurrentThread (Address: 0x180045c38)
  • GetCurrentThreadId (Address: 0x180045c28)
  • GetExitCodeProcess (Address: 0x180045c48)
  • GetProcessTimes (Address: 0x180045c30)
  • OpenProcessToken (Address: 0x180045c20)
  • OpenThreadToken (Address: 0x180045c78)
  • SetThreadToken (Address: 0x180045c40)
  • TerminateProcess (Address: 0x180045c60)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x180045c90)
  • OpenProcess (Address: 0x180045c88)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180045ca0)
  • QueryPerformanceFrequency (Address: 0x180045ca8)
api-ms-win-core-psapi-l1-1-0.dll
  • K32GetProcessMemoryInfo (Address: 0x180045cb8)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180045cc8)
  • RegOpenKeyExW (Address: 0x180045cd0)
  • RegQueryValueExW (Address: 0x180045cd8)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180045ce8)
  • RtlLookupFunctionEntry (Address: 0x180045cf0)
  • RtlVirtualUnwind (Address: 0x180045cf8)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFindExtensionW (Address: 0x180045d08)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x180045d18)
  • MultiByteToWideChar (Address: 0x180045d20)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x180045d58)
  • AcquireSRWLockShared (Address: 0x180045d80)
  • CreateEventW (Address: 0x180045da0)
  • DeleteCriticalSection (Address: 0x180045d30)
  • EnterCriticalSection (Address: 0x180045d38)
  • InitializeCriticalSection (Address: 0x180045d98)
  • InitializeCriticalSectionAndSpinCount (Address: 0x180045d60)
  • InitializeSRWLock (Address: 0x180045d70)
  • LeaveCriticalSection (Address: 0x180045d40)
  • ReleaseSRWLockExclusive (Address: 0x180045d68)
  • ReleaseSRWLockShared (Address: 0x180045da8)
  • ResetEvent (Address: 0x180045d78)
  • SetEvent (Address: 0x180045d50)
  • TryEnterCriticalSection (Address: 0x180045d88)
  • WaitForSingleObject (Address: 0x180045d48)
  • WaitForSingleObjectEx (Address: 0x180045d90)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x180045db8)
api-ms-win-core-synch-l1-2-1.dll
  • WaitForMultipleObjects (Address: 0x180045dc8)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetComputerNameExW (Address: 0x180045de0)
  • GetSystemDirectoryW (Address: 0x180045df0)
  • GetSystemInfo (Address: 0x180045de8)
  • GetSystemTimeAsFileTime (Address: 0x180045dd8)
api-ms-win-core-sysinfo-l1-2-0.dll
  • VerSetConditionMask (Address: 0x180045e00)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
  • UnregisterWaitEx (Address: 0x180045e10)
api-ms-win-crt-math-l1-1-0.dll
  • _isnan (Address: 0x180045e28)
  • ceilf (Address: 0x180045e20)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x180045f48)
  • __CxxFrameHandler3 (Address: 0x180045ef8)
  • __CxxFrameHandler4 (Address: 0x180045f68)
  • __std_terminate (Address: 0x180045f58)
  • __std_type_info_compare (Address: 0x180045f28)
  • _CxxThrowException (Address: 0x180045f00)
  • _o___std_exception_copy (Address: 0x180045f18)
  • _o___std_exception_destroy (Address: 0x180045f10)
  • _o___std_type_info_destroy_list (Address: 0x180045f08)
  • _o___stdio_common_vsnwprintf_s (Address: 0x180045f88)
  • _o___stdio_common_vswprintf (Address: 0x180045f60)
  • _o___stdio_common_vswprintf_s (Address: 0x180045f20)
  • _o__callnewh (Address: 0x180045f80)
  • _o__cexit (Address: 0x180045f78)
  • _o__configure_narrow_argv (Address: 0x180045f70)
  • _o__crt_atexit (Address: 0x180045f30)
  • _o__errno (Address: 0x180045e38)
  • _o__execute_onexit_table (Address: 0x180045e40)
  • _o__initialize_narrow_environment (Address: 0x180045e48)
  • _o__initialize_onexit_table (Address: 0x180045e50)
  • _o__invalid_parameter_noinfo (Address: 0x180045e58)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x180045e60)
  • _o__itow_s (Address: 0x180045e68)
  • _o__purecall (Address: 0x180045e70)
  • _o__register_onexit_function (Address: 0x180045e78)
  • _o__resetstkoflw (Address: 0x180045e80)
  • _o__seh_filter_dll (Address: 0x180045e88)
  • _o__ultow_s (Address: 0x180045e98)
  • _o__wcstoui64 (Address: 0x180045ea0)
  • _o__wtoi (Address: 0x180045ea8)
  • _o_calloc (Address: 0x180045eb0)
  • _o_free (Address: 0x180045eb8)
  • _o_malloc (Address: 0x180045ec0)
  • _o_realloc (Address: 0x180045ec8)
  • _o_terminate (Address: 0x180045ed0)
  • _o_wcscat_s (Address: 0x180045ed8)
  • _o_wcscpy_s (Address: 0x180045ee0)
  • _o_wcstok_s (Address: 0x180045ee8)
  • _o_wmemcpy_s (Address: 0x180045ef0)
  • memcmp (Address: 0x180045f90)
  • memcpy (Address: 0x180045f98)
  • memmove (Address: 0x180045e90)
  • wcschr (Address: 0x180045f38)
  • wcsrchr (Address: 0x180045f50)
  • wcsstr (Address: 0x180045f40)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x180045fa8)
  • _initterm_e (Address: 0x180045fb0)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x180045fd0)
  • wcsncmp (Address: 0x180045fc0)
  • wcsnlen (Address: 0x180045fc8)
api-ms-win-eventing-controller-l1-1-0.dll
  • ControlTraceW (Address: 0x180046008)
  • EnableTraceEx2 (Address: 0x180045fe0)
  • EnumerateTraceGuidsEx (Address: 0x180045fe8)
  • QueryAllTracesW (Address: 0x180046000)
  • StartTraceW (Address: 0x180045ff0)
  • TraceSetInformation (Address: 0x180045ff8)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventRegister (Address: 0x180046018)
  • EventUnregister (Address: 0x180046020)
  • EventWrite (Address: 0x180046028)
api-ms-win-security-base-l1-1-0.dll
  • AccessCheck (Address: 0x1800460e8)
  • AddAccessAllowedAce (Address: 0x1800460f8)
  • AddAce (Address: 0x180046118)
  • AdjustTokenPrivileges (Address: 0x180046120)
  • AllocateAndInitializeSid (Address: 0x180046100)
  • CopySid (Address: 0x180046078)
  • DuplicateToken (Address: 0x180046108)
  • EqualSid (Address: 0x180046058)
  • GetAce (Address: 0x180046088)
  • GetAclInformation (Address: 0x180046080)
  • GetLengthSid (Address: 0x180046070)
  • GetSecurityDescriptorControl (Address: 0x1800460c0)
  • GetSecurityDescriptorDacl (Address: 0x1800460a0)
  • GetSecurityDescriptorGroup (Address: 0x1800460e0)
  • GetSecurityDescriptorLength (Address: 0x1800460b8)
  • GetSecurityDescriptorOwner (Address: 0x180046090)
  • GetSecurityDescriptorSacl (Address: 0x1800460a8)
  • GetSidLengthRequired (Address: 0x180046048)
  • GetSidSubAuthority (Address: 0x180046038)
  • GetTokenInformation (Address: 0x1800460d8)
  • InitializeAcl (Address: 0x180046060)
  • InitializeSecurityDescriptor (Address: 0x1800460d0)
  • InitializeSid (Address: 0x180046040)
  • IsValidSecurityDescriptor (Address: 0x1800460f0)
  • IsValidSid (Address: 0x180046068)
  • MakeAbsoluteSD (Address: 0x1800460c8)
  • MakeSelfRelativeSD (Address: 0x1800460b0)
  • RevertToSelf (Address: 0x180046050)
  • SetSecurityDescriptorDacl (Address: 0x180046098)
  • SetSecurityDescriptorGroup (Address: 0x180046110)
  • SetSecurityDescriptorOwner (Address: 0x180046128)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupPrivilegeValueW (Address: 0x180046138)
api-ms-win-security-provider-l1-1-0.dll
  • GetNamedSecurityInfoW (Address: 0x180046148)
  • SetNamedSecurityInfoW (Address: 0x180046158)
  • SetSecurityInfo (Address: 0x180046150)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x180046168)
msvcp_win.dll
  • ?__ExceptionPtrAssign@@YAXPEAXPEBX@Z (Address: 0x180046248)
  • ?__ExceptionPtrCopy@@YAXPEAXPEBX@Z (Address: 0x1800461d0)
  • ?__ExceptionPtrCreate@@YAXPEAX@Z (Address: 0x1800461a0)
  • ?__ExceptionPtrCurrentException@@YAXPEAX@Z (Address: 0x180046220)
  • ?__ExceptionPtrDestroy@@YAXPEAX@Z (Address: 0x180046230)
  • ?__ExceptionPtrRethrow@@YAXPEBX@Z (Address: 0x1800461a8)
  • ?__ExceptionPtrToBool@@YA_NPEBX@Z (Address: 0x180046188)
  • ?_Execute_once@std@@YAHAEAUonce_flag@1@P6AHPEAX1PEAPEAX@Z1@Z (Address: 0x180046178)
  • ?_Lock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800461f0)
  • ?_Osfx@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAXXZ (Address: 0x180046208)
  • ?_Pninc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAPEAGXZ (Address: 0x180046260)
  • ?_Unlock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800461f8)
  • ?_Xbad_function_call@std@@YAXXZ (Address: 0x180046228)
  • ?_XGetLastError@std@@YAXXZ (Address: 0x180046210)
  • ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x1800462a0)
  • ??0?$basic_ios@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x180046288)
  • ??0?$basic_iostream@GU?$char_traits@G@std@@@std@@QEAA@PEAV?$basic_streambuf@GU?$char_traits@G@std@@@1@@Z (Address: 0x180046180)
  • ??0?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x180046250)
  • ??1?$basic_ios@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x180046298)
  • ??1?$basic_iostream@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x180046290)
  • ??1?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x180046258)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@I@Z (Address: 0x180046198)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV01@P6AAEAV01@AEAV01@@Z@Z (Address: 0x180046280)
  • ?flush@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV12@XZ (Address: 0x180046238)
  • ?gbump@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAXH@Z (Address: 0x180046268)
  • ?imbue@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x1800461e0)
  • ?put@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV12@G@Z (Address: 0x180046270)
  • ?setbuf@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAPEAV12@PEAG_J@Z (Address: 0x1800461b0)
  • ?setstate@?$basic_ios@GU?$char_traits@G@std@@@std@@QEAAXH_N@Z (Address: 0x180046240)
  • ?showmanyc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JXZ (Address: 0x1800461c8)
  • ?sputc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGG@Z (Address: 0x1800461e8)
  • ?sputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAA_JPEBG_J@Z (Address: 0x180046190)
  • ?sync@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAHXZ (Address: 0x180046218)
  • ?uflow@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAGXZ (Address: 0x1800461c0)
  • ?uncaught_exception@std@@YA_NXZ (Address: 0x180046200)
  • ?widen@?$basic_ios@GU?$char_traits@G@std@@@std@@QEBAGD@Z (Address: 0x180046278)
  • ?xsgetn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEAG_J@Z (Address: 0x1800461b8)
  • ?xsputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEBG_J@Z (Address: 0x1800461d8)
OLEAUT32.dll
  • GetRecordInfoFromTypeInfo (Address: 0x180045908)
  • LoadTypeLib (Address: 0x180045930)
  • SafeArrayCopy (Address: 0x180045958)
  • SafeArrayCreate (Address: 0x1800459a0)
  • SafeArrayDestroy (Address: 0x180045948)
  • SafeArrayGetElement (Address: 0x180045910)
  • SafeArrayGetLBound (Address: 0x180045970)
  • SafeArrayGetUBound (Address: 0x180045968)
  • SafeArrayGetVartype (Address: 0x180045950)
  • SafeArrayLock (Address: 0x180045960)
  • SafeArrayRedim (Address: 0x180045990)
  • SafeArrayUnlock (Address: 0x180045940)
  • SysAllocString (Address: 0x180045988)
  • SysAllocStringByteLen (Address: 0x180045980)
  • SysAllocStringLen (Address: 0x180045928)
  • SysFreeString (Address: 0x180045918)
  • SysStringByteLen (Address: 0x180045978)
  • SysStringLen (Address: 0x180045920)
  • VarBstrCat (Address: 0x180045938)
  • VarBstrCmp (Address: 0x1800459a8)
  • VariantClear (Address: 0x1800459b0)
  • VariantCopy (Address: 0x180045998)
  • VariantInit (Address: 0x180045900)
USERENV.dll
  • UnloadUserProfile (Address: 0x1800459c0)