NfcCx.dll
Description: NFC Class Extension driver
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5915
Architecture: 64-bit
Operating System: Windows NT
SHA256: 76a4a0fb3ecf7754a04611c78c7013a1
File Size: 743.0 KB
Uploaded At: Dec. 1, 2025, 7:47 a.m.
Views: 5
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- FxDriverEntryUm (Ordinal: 1, Address: 0x2b670)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- StringFromGUID2 (Address: 0x1800ab618)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1800ab640)
- RaiseException (Address: 0x1800ab638)
- SetUnhandledExceptionFilter (Address: 0x1800ab630)
- UnhandledExceptionFilter (Address: 0x1800ab628)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1800ab650)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1800ab670)
- HeapAlloc (Address: 0x1800ab668)
- HeapFree (Address: 0x1800ab660)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1800ab680)
api-ms-win-core-libraryloader-l1-2-0.dll
- GetModuleFileNameA (Address: 0x1800ab690)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateThread (Address: 0x1800ab6d8)
- GetCurrentProcess (Address: 0x1800ab6d0)
- GetCurrentProcessId (Address: 0x1800ab6a8)
- GetCurrentThreadId (Address: 0x1800ab6c0)
- OpenProcessToken (Address: 0x1800ab6b0)
- ResumeThread (Address: 0x1800ab6b8)
- SetThreadPriority (Address: 0x1800ab6a0)
- TerminateProcess (Address: 0x1800ab6c8)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x1800ab6e8)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1800ab6f8)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x1800ab708)
- MultiByteToWideChar (Address: 0x1800ab718)
- WideCharToMultiByte (Address: 0x1800ab710)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1800ab780)
- AcquireSRWLockShared (Address: 0x1800ab770)
- CreateEventA (Address: 0x1800ab760)
- CreateEventW (Address: 0x1800ab740)
- DeleteCriticalSection (Address: 0x1800ab750)
- EnterCriticalSection (Address: 0x1800ab730)
- InitializeCriticalSection (Address: 0x1800ab768)
- InitializeSRWLock (Address: 0x1800ab788)
- LeaveCriticalSection (Address: 0x1800ab728)
- ReleaseSRWLockExclusive (Address: 0x1800ab790)
- ReleaseSRWLockShared (Address: 0x1800ab778)
- ResetEvent (Address: 0x1800ab758)
- SetEvent (Address: 0x1800ab738)
- TryAcquireSRWLockExclusive (Address: 0x1800ab798)
- WaitForSingleObject (Address: 0x1800ab748)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x1800ab7a8)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x1800ab7b8)
- GetTickCount (Address: 0x1800ab7c8)
- GetTickCount64 (Address: 0x1800ab7c0)
api-ms-win-core-threadpool-l1-2-0.dll
- CallbackMayRunLong (Address: 0x1800ab7e8)
- CloseThreadpoolTimer (Address: 0x1800ab7f0)
- CloseThreadpoolWork (Address: 0x1800ab7f8)
- CreateThreadpoolTimer (Address: 0x1800ab808)
- CreateThreadpoolWork (Address: 0x1800ab810)
- SetThreadpoolTimer (Address: 0x1800ab800)
- SubmitThreadpoolWork (Address: 0x1800ab7d8)
- WaitForThreadpoolTimerCallbacks (Address: 0x1800ab7e0)
- WaitForThreadpoolWorkCallbacks (Address: 0x1800ab818)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- GetTraceEnableFlags (Address: 0x1800ab848)
- GetTraceEnableLevel (Address: 0x1800ab840)
- GetTraceLoggerHandle (Address: 0x1800ab830)
- RegisterTraceGuidsW (Address: 0x1800ab838)
- TraceMessage (Address: 0x1800ab828)
- UnregisterTraceGuids (Address: 0x1800ab850)
api-ms-win-eventing-provider-l1-1-0.dll
- EventProviderEnabled (Address: 0x1800ab860)
- EventRegister (Address: 0x1800ab880)
- EventSetInformation (Address: 0x1800ab868)
- EventUnregister (Address: 0x1800ab878)
- EventWriteTransfer (Address: 0x1800ab870)
api-ms-win-security-base-l1-1-0.dll
- GetTokenInformation (Address: 0x1800ab890)
msvcrt.dll
- __C_specific_handler (Address: 0x1800ab8a0)
- _amsg_exit (Address: 0x1800ab8c8)
- _callnewh (Address: 0x1800ab8d8)
- _initterm (Address: 0x1800ab8e8)
- _vsnwprintf (Address: 0x1800ab8b0)
- _XcptFilter (Address: 0x1800ab8d0)
- free (Address: 0x1800ab900)
- malloc (Address: 0x1800ab920)
- memcmp (Address: 0x1800ab918)
- memcpy (Address: 0x1800ab910)
- memcpy_s (Address: 0x1800ab928)
- memmove (Address: 0x1800ab908)
- memset (Address: 0x1800ab930)
- sprintf_s (Address: 0x1800ab8b8)
- strtok_s (Address: 0x1800ab8a8)
- swscanf_s (Address: 0x1800ab8f0)
- toupper (Address: 0x1800ab8c0)
- wcschr (Address: 0x1800ab8f8)
- wcstombs_s (Address: 0x1800ab8e0)
ntdll.dll
- DbgPrintEx (Address: 0x1800ab958)
- RtlCaptureContext (Address: 0x1800ab948)
- RtlLookupFunctionEntry (Address: 0x1800ab940)
- RtlVirtualUnwind (Address: 0x1800ab950)