AuditNativeSnapIn.dll

Description: Audit Policy Group Policy Editor Extension

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5915

Architecture: 64-bit

Operating System: Windows NT

SHA256: 22db24ab885ae099322043921f682adb

File Size: 218.5 KB

Uploaded At: Dec. 1, 2025, 7:23 a.m.

Views: 20

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x17b0)
  • DllGetClassObject (Ordinal: 2, Address: 0x1640)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CoTaskMemAlloc (Address: 0x1800043e0)
  • CoTaskMemFree (Address: 0x1800043f0)
  • CreateStreamOnHGlobal (Address: 0x1800043e8)
  • StringFromCLSID (Address: 0x1800043f8)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180004408)
  • SetUnhandledExceptionFilter (Address: 0x180004410)
  • UnhandledExceptionFilter (Address: 0x180004418)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180004438)
  • HeapAlloc (Address: 0x180004428)
  • HeapFree (Address: 0x180004430)
api-ms-win-core-heap-l2-1-0.dll
  • GlobalAlloc (Address: 0x180004450)
  • GlobalFree (Address: 0x180004448)
api-ms-win-core-libraryloader-l1-2-0.dll
  • FreeResource (Address: 0x180004468)
  • LoadStringW (Address: 0x180004460)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180004488)
  • GetCurrentProcessId (Address: 0x180004478)
  • GetCurrentThreadId (Address: 0x180004490)
  • TerminateProcess (Address: 0x180004480)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1800044a0)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x1800044c0)
  • RtlLookupFunctionEntry (Address: 0x1800044b8)
  • RtlVirtualUnwind (Address: 0x1800044b0)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1800044d0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x1800044e8)
  • GetTickCount (Address: 0x1800044e0)
KERNEL32.dll
  • lstrlenW (Address: 0x1800043a8)
msvcrt.dll
  • __C_specific_handler (Address: 0x180004530)
  • _amsg_exit (Address: 0x180004508)
  • _callnewh (Address: 0x180004518)
  • _initterm (Address: 0x1800044f8)
  • _purecall (Address: 0x180004500)
  • _XcptFilter (Address: 0x180004510)
  • free (Address: 0x180004528)
  • malloc (Address: 0x180004520)
  • memset (Address: 0x180004538)
USER32.dll
  • LoadBitmapW (Address: 0x1800043d0)
  • LoadIconW (Address: 0x1800043c0)
  • LoadImageW (Address: 0x1800043b8)
  • RegisterClipboardFormatW (Address: 0x1800043c8)