CoreMessaging.dll
Description: Microsoft CoreMessaging Dll
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5915
Architecture: 32-bit
Operating System: Windows NT
SHA256: 873ac56faedf6e1523fcc2b6a6af4416
File Size: 617.4 KB
Uploaded At: Dec. 1, 2025, 7:54 a.m.
Views: 8
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- CoreUICallComputeMaximumMessageSize (Ordinal: 1, Address: 0x58dd0)
- CoreUICallCreateConversationHost (Ordinal: 2, Address: 0x5a1e0)
- CoreUICallCreateEndpointHost (Ordinal: 3, Address: 0x5a1c0)
- CoreUICallCreateEndpointHostWithSendPriority (Ordinal: 4, Address: 0x5a100)
- CoreUICallGetAddressOfParameterInBuffer (Ordinal: 5, Address: 0x58e70)
- CoreUICallReceive (Ordinal: 6, Address: 0x58d30)
- CoreUICallSend (Ordinal: 7, Address: 0x58b50)
- CoreUICallSendVaList (Ordinal: 8, Address: 0x58b80)
- CoreUIConfigureTestHost (Ordinal: 9, Address: 0x3bfb0)
- CoreUIConfigureUserIntegration (Ordinal: 10, Address: 0x3bfc0)
- CoreUICreate (Ordinal: 11, Address: 0x3bf60)
- CoreUICreateAnonymousStream (Ordinal: 12, Address: 0x59ee0)
- CoreUICreateClientWindowIDManager (Ordinal: 13, Address: 0x4d40)
- CoreUICreateEx (Ordinal: 14, Address: 0x3bf20)
- CoreUICreateSystemWindowIDManager (Ordinal: 15, Address: 0x66c0)
- CoreUIInitializeTestService (Ordinal: 16, Address: 0x546a0)
- CoreUIOpenExisting (Ordinal: 17, Address: 0x3bf80)
- CoreUIRouteToTestRegistrar (Ordinal: 18, Address: 0x54670)
- CoreUIUninitializeTestService (Ordinal: 19, Address: 0x546d0)
- CreateDispatcherQueueController (Ordinal: 20, Address: 0x5aeb0)
- CreateDispatcherQueueForCurrentThread (Ordinal: 21, Address: 0x5e6e0)
- DllCanUnloadNow (Ordinal: 22, Address: 0x60070)
- DllGetActivationFactory (Ordinal: 23, Address: 0x60050)
- DllGetClassObject (Ordinal: 24, Address: 0x60060)
- GetDispatcherQueueForCurrentThread (Ordinal: 25, Address: 0x5e710)
- MsgBlobCreateShared (Ordinal: 26, Address: 0x17a30)
- MsgBlobCreateStack (Ordinal: 27, Address: 0x17ba0)
- MsgBufferShare (Ordinal: 28, Address: 0x17c70)
- MsgRelease (Ordinal: 29, Address: 0x17d00)
- MsgStringCreateShared (Ordinal: 30, Address: 0x17ad0)
- MsgStringCreateStack (Ordinal: 31, Address: 0x17bf0)
- ServiceMain (Ordinal: 32, Address: 0x5a080)
- SvchostPushServiceGlobals (Ordinal: 33, Address: 0x39eb0)
Imported DLLs & Functions
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x10066024)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x10066030)
- IsDebuggerPresent (Address: 0x10066034)
- OutputDebugStringW (Address: 0x1006602c)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1006604c)
- RaiseException (Address: 0x1006603c)
- SetLastError (Address: 0x10066048)
- SetUnhandledExceptionFilter (Address: 0x10066044)
- UnhandledExceptionFilter (Address: 0x10066040)
api-ms-win-core-errorhandling-l1-1-2.dll
- RaiseFailFastException (Address: 0x10066054)
api-ms-win-core-file-l1-1-0.dll
- LocalFileTimeToFileTime (Address: 0x1006605c)
- ReadFile (Address: 0x10066060)
- WriteFile (Address: 0x10066064)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x10066070)
- DuplicateHandle (Address: 0x10066074)
- GetHandleInformation (Address: 0x1006606c)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x10066088)
- HeapAlloc (Address: 0x1006607c)
- HeapCreate (Address: 0x10066084)
- HeapDestroy (Address: 0x10066090)
- HeapFree (Address: 0x1006608c)
- HeapSize (Address: 0x10066080)
api-ms-win-core-heap-l2-1-0.dll
- LocalFree (Address: 0x10066098)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x100660b0)
- InterlockedFlushSList (Address: 0x100660ac)
- InterlockedPopEntrySList (Address: 0x100660a8)
- InterlockedPushEntrySList (Address: 0x100660a4)
- QueryDepthSList (Address: 0x100660a0)
api-ms-win-core-io-l1-1-0.dll
- GetOverlappedResult (Address: 0x100660b8)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x100660c8)
- FreeLibrary (Address: 0x100660dc)
- GetModuleFileNameA (Address: 0x100660c0)
- GetModuleFileNameW (Address: 0x100660e0)
- GetModuleHandleExW (Address: 0x100660c4)
- GetModuleHandleW (Address: 0x100660d0)
- GetProcAddress (Address: 0x100660d4)
- LoadLibraryExA (Address: 0x100660d8)
- LoadLibraryExW (Address: 0x100660cc)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x100660e8)
- GetLocaleInfoW (Address: 0x100660ec)
- LCMapStringW (Address: 0x100660f0)
api-ms-win-core-localization-obsolete-l1-2-0.dll
- GetNumberFormatW (Address: 0x100660f8)
api-ms-win-core-memory-l1-1-0.dll
- VirtualAlloc (Address: 0x10066100)
- VirtualFree (Address: 0x10066108)
- VirtualProtect (Address: 0x1006610c)
- VirtualQuery (Address: 0x10066104)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateThread (Address: 0x10066128)
- GetCurrentProcess (Address: 0x10066114)
- GetCurrentProcessId (Address: 0x1006613c)
- GetCurrentThread (Address: 0x1006614c)
- GetCurrentThreadId (Address: 0x10066140)
- GetThreadPriority (Address: 0x10066124)
- OpenProcessToken (Address: 0x10066130)
- OpenThread (Address: 0x10066148)
- OpenThreadToken (Address: 0x10066138)
- SetThreadPriority (Address: 0x10066120)
- TerminateProcess (Address: 0x10066134)
- TlsAlloc (Address: 0x1006611c)
- TlsFree (Address: 0x10066118)
- TlsGetValue (Address: 0x1006612c)
- TlsSetValue (Address: 0x10066144)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x10066154)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x10066160)
- QueryPerformanceFrequency (Address: 0x1006615c)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureStackBackTrace (Address: 0x10066168)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x10066170)
- CompareStringW (Address: 0x10066174)
- MultiByteToWideChar (Address: 0x10066178)
- WideCharToMultiByte (Address: 0x1006617c)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x10066198)
- AcquireSRWLockShared (Address: 0x10066190)
- CreateEventW (Address: 0x100661b8)
- CreateMutexExW (Address: 0x100661a4)
- CreateSemaphoreExW (Address: 0x1006618c)
- CreateWaitableTimerExW (Address: 0x10066188)
- DeleteCriticalSection (Address: 0x100661a8)
- EnterCriticalSection (Address: 0x100661dc)
- InitializeCriticalSection (Address: 0x10066184)
- InitializeCriticalSectionEx (Address: 0x100661cc)
- InitializeSRWLock (Address: 0x1006619c)
- LeaveCriticalSection (Address: 0x100661c8)
- OpenSemaphoreW (Address: 0x100661ac)
- ReleaseMutex (Address: 0x100661d4)
- ReleaseSemaphore (Address: 0x100661d8)
- ReleaseSRWLockExclusive (Address: 0x100661c4)
- ReleaseSRWLockShared (Address: 0x100661d0)
- ResetEvent (Address: 0x100661bc)
- SetEvent (Address: 0x100661c0)
- SetWaitableTimer (Address: 0x10066194)
- WaitForMultipleObjectsEx (Address: 0x100661b4)
- WaitForSingleObject (Address: 0x100661a0)
- WaitForSingleObjectEx (Address: 0x100661b0)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceExecuteOnce (Address: 0x100661e4)
- Sleep (Address: 0x100661e8)
- WaitOnAddress (Address: 0x100661ec)
- WakeByAddressAll (Address: 0x100661f0)
api-ms-win-core-synch-l1-2-1.dll
- WaitForMultipleObjects (Address: 0x100661f8)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemInfo (Address: 0x10066200)
- GetSystemTime (Address: 0x10066208)
- GetSystemTimeAsFileTime (Address: 0x1006620c)
- GetTickCount (Address: 0x10066210)
- GetTickCount64 (Address: 0x10066204)
api-ms-win-core-threadpool-l1-2-0.dll
- CallbackMayRunLong (Address: 0x10066220)
- CloseThreadpoolTimer (Address: 0x10066224)
- CloseThreadpoolWait (Address: 0x10066234)
- CreateThreadpoolTimer (Address: 0x10066218)
- CreateThreadpoolWait (Address: 0x1006621c)
- SetThreadpoolTimer (Address: 0x10066230)
- SetThreadpoolWait (Address: 0x1006622c)
- WaitForThreadpoolTimerCallbacks (Address: 0x10066228)
api-ms-win-core-timezone-l1-1-0.dll
- SystemTimeToFileTime (Address: 0x1006623c)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x10066248)
- EncodePointer (Address: 0x10066244)
api-ms-win-eventing-provider-l1-1-0.dll
- EventRegister (Address: 0x10066250)
- EventUnregister (Address: 0x10066258)
- EventWriteTransfer (Address: 0x10066254)
api-ms-win-security-accesshlpr-l1-1-0.dll
- FreeTransientObjectSecurityDescriptor (Address: 0x10066264)
- QueryTransientObjectSecurityDescriptor (Address: 0x10066260)
api-ms-win-security-base-l1-1-0.dll
- GetTokenInformation (Address: 0x1006626c)
- RevertToSelf (Address: 0x10066270)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSecurityDescriptorToStringSecurityDescriptorW (Address: 0x10066278)
- ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1006627c)
api-ms-win-service-core-l1-1-0.dll
- RegisterServiceCtrlHandlerExW (Address: 0x10066284)
- SetServiceStatus (Address: 0x10066288)
api-ms-win-service-management-l1-1-0.dll
- CloseServiceHandle (Address: 0x10066298)
- OpenSCManagerW (Address: 0x1006629c)
- OpenServiceW (Address: 0x10066290)
- StartServiceW (Address: 0x10066294)
api-ms-win-service-winsvc-l1-1-0.dll
- QueryServiceStatus (Address: 0x100662a4)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x100662c4)
- __dllonexit (Address: 0x100662c0)
- _aligned_free (Address: 0x10066310)
- _aligned_offset_malloc (Address: 0x1006630c)
- _amsg_exit (Address: 0x10066300)
- _callnewh (Address: 0x1006633c)
- _CxxThrowException (Address: 0x100662b4)
- _except_handler4_common (Address: 0x100662e8)
- _ftol2 (Address: 0x100662b0)
- _initterm (Address: 0x100662dc)
- _libm_sse2_sqrt_precise (Address: 0x100662ac)
- _lock (Address: 0x100662f0)
- _onexit (Address: 0x10066308)
- _purecall (Address: 0x100662fc)
- _unlock (Address: 0x100662f8)
- _vsnprintf_s (Address: 0x10066334)
- _vsnwprintf (Address: 0x1006632c)
- _wcsicmp (Address: 0x100662d4)
- _XcptFilter (Address: 0x10066304)
- ??_V@YAXPAX@Z (Address: 0x100662d0)
- ??0exception@@QAE@ABV0@@Z (Address: 0x10066324)
- ??0exception@@QAE@XZ (Address: 0x10066328)
- ??1exception@@UAE@XZ (Address: 0x10066320)
- ??1type_info@@UAE@XZ (Address: 0x100662bc)
- ??3@YAXPAX@Z (Address: 0x100662e4)
- ?terminate@@YAXXZ (Address: 0x100662ec)
- free (Address: 0x100662b8)
- malloc (Address: 0x100662cc)
- memchr (Address: 0x100662e0)
- memcmp (Address: 0x100662c8)
- memcpy (Address: 0x100662f4)
- memcpy_s (Address: 0x10066330)
- memmove (Address: 0x100662d8)
- memmove_s (Address: 0x10066338)
- memset (Address: 0x10066340)
- realloc (Address: 0x10066314)
- swprintf_s (Address: 0x10066318)
- wcscpy_s (Address: 0x1006631c)
ntdll.dll
- AlpcGetMessageAttribute (Address: 0x10066380)
- AlpcInitializeMessageAttribute (Address: 0x100663a0)
- NtAllocateReserveObject (Address: 0x1006635c)
- NtAlpcAcceptConnectPort (Address: 0x1006634c)
- NtAlpcConnectPortEx (Address: 0x10066370)
- NtAlpcCreatePort (Address: 0x10066350)
- NtAlpcDisconnectPort (Address: 0x10066358)
- NtAlpcImpersonateClientOfPort (Address: 0x10066374)
- NtAlpcQueryInformation (Address: 0x10066348)
- NtAlpcSendWaitReceivePort (Address: 0x10066384)
- NtAssociateWaitCompletionPacket (Address: 0x10066368)
- NtCancelWaitCompletionPacket (Address: 0x1006638c)
- NtClose (Address: 0x10066388)
- NtCreateIoCompletion (Address: 0x1006636c)
- NtCreateWaitCompletionPacket (Address: 0x10066390)
- NtQuerySystemInformation (Address: 0x1006639c)
- NtRemoveIoCompletionEx (Address: 0x10066360)
- NtSetIoCompletionEx (Address: 0x10066364)
- RtlClearThreadWorkOnBehalfTicket (Address: 0x10066378)
- RtlFreeUnicodeString (Address: 0x10066394)
- RtlGetAppContainerNamedObjectPath (Address: 0x10066398)
- RtlInitUnicodeString (Address: 0x10066354)
- RtlSetThreadWorkOnBehalfTicket (Address: 0x1006637c)
WS2_32.dll
- bind (Address: 0x10066010)
- closesocket (Address: 0x1006600c)
- listen (Address: 0x10066014)
- setsockopt (Address: 0x10066018)
- WSACleanup (Address: 0x10066008)
- WSAIoctl (Address: 0x10066000)
- WSASocketW (Address: 0x1006601c)
- WSAStartup (Address: 0x10066004)