eapphost.dll
Description: Microsoft EAPHost Peer service
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 32-bit
Operating System: Windows NT
SHA256: 864f118071028dae29bcd7e752e3b313
File Size: 252.5 KB
Uploaded At: Dec. 1, 2025, 7:55 a.m.
Views: 5
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- OnSessionChange (Ordinal: 1, Address: 0xadc0)
- DllCanUnloadNow (Ordinal: 2, Address: 0xd040)
- DllGetClassObject (Ordinal: 3, Address: 0xd060)
- DllRegisterServer (Ordinal: 4, Address: 0xcfd0)
- DllUnregisterServer (Ordinal: 5, Address: 0xd010)
- InitializeEapHost (Ordinal: 6, Address: 0xd4c0)
- StopServiceOnLowPower (Ordinal: 7, Address: 0xd5c0)
- UninitializeEapHost (Ordinal: 8, Address: 0xd530)
Imported DLLs & Functions
api-ms-win-core-com-midlproxystub-l1-1-0.dll
- ObjectStublessClient10 (Address: 0x1003b05c)
- ObjectStublessClient11 (Address: 0x1003b058)
- ObjectStublessClient12 (Address: 0x1003b068)
- ObjectStublessClient13 (Address: 0x1003b070)
- ObjectStublessClient14 (Address: 0x1003b064)
- ObjectStublessClient15 (Address: 0x1003b078)
- ObjectStublessClient16 (Address: 0x1003b084)
- ObjectStublessClient3 (Address: 0x1003b07c)
- ObjectStublessClient4 (Address: 0x1003b06c)
- ObjectStublessClient5 (Address: 0x1003b060)
- ObjectStublessClient6 (Address: 0x1003b054)
- ObjectStublessClient7 (Address: 0x1003b074)
- ObjectStublessClient8 (Address: 0x1003b080)
- ObjectStublessClient9 (Address: 0x1003b050)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1003b090)
- IsDebuggerPresent (Address: 0x1003b094)
- OutputDebugStringA (Address: 0x1003b08c)
- OutputDebugStringW (Address: 0x1003b098)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1003b0a0)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1003b0a8)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1003b0c0)
- RaiseException (Address: 0x1003b0b4)
- SetLastError (Address: 0x1003b0b0)
- SetUnhandledExceptionFilter (Address: 0x1003b0b8)
- UnhandledExceptionFilter (Address: 0x1003b0bc)
api-ms-win-core-file-l1-1-0.dll
- CreateFileW (Address: 0x1003b0c8)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1003b0d8)
- DuplicateHandle (Address: 0x1003b0d0)
- GetHandleInformation (Address: 0x1003b0d4)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1003b0ec)
- HeapAlloc (Address: 0x1003b0e0)
- HeapFree (Address: 0x1003b0e8)
- HeapSize (Address: 0x1003b0e4)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1003b0f4)
- LocalFree (Address: 0x1003b0f8)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1003b120)
- FindResourceExW (Address: 0x1003b124)
- FreeLibrary (Address: 0x1003b11c)
- GetModuleFileNameA (Address: 0x1003b108)
- GetModuleFileNameW (Address: 0x1003b110)
- GetModuleHandleExW (Address: 0x1003b118)
- GetModuleHandleW (Address: 0x1003b10c)
- GetProcAddress (Address: 0x1003b128)
- LoadLibraryExW (Address: 0x1003b100)
- LoadResource (Address: 0x1003b104)
- SizeofResource (Address: 0x1003b114)
api-ms-win-core-libraryloader-l1-2-1.dll
- LoadLibraryW (Address: 0x1003b130)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1003b138)
api-ms-win-core-memory-l1-1-0.dll
- CreateFileMappingW (Address: 0x1003b140)
- MapViewOfFile (Address: 0x1003b144)
- UnmapViewOfFile (Address: 0x1003b148)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsW (Address: 0x1003b150)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1003b160)
- GetCurrentProcessId (Address: 0x1003b164)
- GetCurrentThreadId (Address: 0x1003b158)
- TerminateProcess (Address: 0x1003b15c)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x1003b16c)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1003b174)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1003b188)
- RegCreateKeyExW (Address: 0x1003b190)
- RegDeleteValueW (Address: 0x1003b194)
- RegEnumKeyExW (Address: 0x1003b18c)
- RegLoadMUIStringW (Address: 0x1003b198)
- RegOpenKeyExW (Address: 0x1003b180)
- RegQueryInfoKeyW (Address: 0x1003b184)
- RegQueryValueExW (Address: 0x1003b19c)
- RegSetValueExW (Address: 0x1003b17c)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x1003b1a4)
- WideCharToMultiByte (Address: 0x1003b1a8)
api-ms-win-core-string-l2-1-0.dll
- CharNextW (Address: 0x1003b1b0)
api-ms-win-core-string-obsolete-l1-1-0.dll
- lstrcmpiW (Address: 0x1003b1b8)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1003b1cc)
- AcquireSRWLockShared (Address: 0x1003b1d4)
- CreateMutexExW (Address: 0x1003b200)
- CreateSemaphoreExW (Address: 0x1003b1fc)
- DeleteCriticalSection (Address: 0x1003b1e0)
- EnterCriticalSection (Address: 0x1003b1c4)
- InitializeCriticalSection (Address: 0x1003b1dc)
- InitializeCriticalSectionAndSpinCount (Address: 0x1003b1c0)
- InitializeCriticalSectionEx (Address: 0x1003b1f0)
- LeaveCriticalSection (Address: 0x1003b1c8)
- OpenSemaphoreW (Address: 0x1003b1f8)
- ReleaseMutex (Address: 0x1003b1e8)
- ReleaseSemaphore (Address: 0x1003b1e4)
- ReleaseSRWLockExclusive (Address: 0x1003b1d0)
- ReleaseSRWLockShared (Address: 0x1003b1d8)
- WaitForSingleObject (Address: 0x1003b1f4)
- WaitForSingleObjectEx (Address: 0x1003b1ec)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x1003b208)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x1003b21c)
- GetSystemInfo (Address: 0x1003b220)
- GetSystemTimeAsFileTime (Address: 0x1003b210)
- GetTickCount (Address: 0x1003b218)
- GetVersionExW (Address: 0x1003b214)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1003b234)
- CreateThreadpoolTimer (Address: 0x1003b230)
- SetThreadpoolTimer (Address: 0x1003b228)
- WaitForThreadpoolTimerCallbacks (Address: 0x1003b22c)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x1003b23c)
- EncodePointer (Address: 0x1003b240)
api-ms-win-security-base-l1-1-0.dll
- ImpersonateLoggedOnUser (Address: 0x1003b24c)
- RevertToSelf (Address: 0x1003b248)
api-ms-win-security-credentials-l1-1-0.dll
- CredDeleteW (Address: 0x1003b260)
- CredFree (Address: 0x1003b258)
- CredProtectW (Address: 0x1003b25c)
- CredReadW (Address: 0x1003b254)
msvcrt.dll
- ___lc_codepage_func (Address: 0x1003b290)
- ___lc_handle_func (Address: 0x1003b294)
- ___mb_cur_max_func (Address: 0x1003b29c)
- __crtLCMapStringA (Address: 0x1003b270)
- __CxxFrameHandler3 (Address: 0x1003b354)
- __dllonexit (Address: 0x1003b2c8)
- __pctype_func (Address: 0x1003b33c)
- __RTtypeid (Address: 0x1003b2e0)
- __uncaught_exception (Address: 0x1003b2b8)
- _amsg_exit (Address: 0x1003b2ac)
- _CxxThrowException (Address: 0x1003b2d4)
- _errno (Address: 0x1003b298)
- _except_handler4_common (Address: 0x1003b2d8)
- _initterm (Address: 0x1003b2b0)
- _ismbblead (Address: 0x1003b28c)
- _lock (Address: 0x1003b2a8)
- _onexit (Address: 0x1003b2cc)
- _purecall (Address: 0x1003b350)
- _unlock (Address: 0x1003b2a0)
- _vsnprintf (Address: 0x1003b318)
- _vsnprintf_s (Address: 0x1003b330)
- _vsnwprintf (Address: 0x1003b314)
- _wcsdup (Address: 0x1003b274)
- _wcsicmp (Address: 0x1003b304)
- _wsetlocale (Address: 0x1003b26c)
- _wtol (Address: 0x1003b310)
- _XcptFilter (Address: 0x1003b2a4)
- ??0bad_cast@@QAE@ABV0@@Z (Address: 0x1003b2f8)
- ??0bad_cast@@QAE@PBD@Z (Address: 0x1003b2f0)
- ??0exception@@QAE@ABQBD@Z (Address: 0x1003b300)
- ??0exception@@QAE@ABQBDH@Z (Address: 0x1003b308)
- ??0exception@@QAE@ABV0@@Z (Address: 0x1003b324)
- ??0exception@@QAE@XZ (Address: 0x1003b32c)
- ??1bad_cast@@UAE@XZ (Address: 0x1003b2f4)
- ??1exception@@UAE@XZ (Address: 0x1003b328)
- ??1type_info@@UAE@XZ (Address: 0x1003b2d0)
- ?name@type_info@@QBEPBDXZ (Address: 0x1003b2e4)
- ?terminate@@YAXXZ (Address: 0x1003b2bc)
- ?what@exception@@UBEPBDXZ (Address: 0x1003b30c)
- abort (Address: 0x1003b27c)
- calloc (Address: 0x1003b334)
- free (Address: 0x1003b344)
- islower (Address: 0x1003b280)
- isupper (Address: 0x1003b284)
- localeconv (Address: 0x1003b2ec)
- malloc (Address: 0x1003b340)
- memcmp (Address: 0x1003b268)
- memcpy (Address: 0x1003b2c4)
- memcpy_s (Address: 0x1003b348)
- memmove (Address: 0x1003b2c0)
- memmove_s (Address: 0x1003b320)
- memset (Address: 0x1003b288)
- realloc (Address: 0x1003b278)
- setlocale (Address: 0x1003b2b4)
- sprintf_s (Address: 0x1003b2fc)
- strcspn (Address: 0x1003b2e8)
- swprintf_s (Address: 0x1003b31c)
- wcscpy_s (Address: 0x1003b34c)
- wcsncpy_s (Address: 0x1003b338)
- wcsrchr (Address: 0x1003b2dc)
ncrypt.dll
- NCryptFreeObject (Address: 0x1003b360)
- NCryptOpenStorageProvider (Address: 0x1003b364)
- NCryptSetProperty (Address: 0x1003b35c)
netutils.dll
- NetApiBufferFree (Address: 0x1003b36c)
ntdll.dll
- DbgPrint (Address: 0x1003b378)
- EtwEventEnabled (Address: 0x1003b37c)
- EtwEventRegister (Address: 0x1003b3a0)
- EtwEventSetInformation (Address: 0x1003b39c)
- EtwEventUnregister (Address: 0x1003b3a4)
- EtwEventWriteTransfer (Address: 0x1003b3a8)
- EtwGetTraceEnableFlags (Address: 0x1003b390)
- EtwGetTraceEnableLevel (Address: 0x1003b394)
- EtwGetTraceLoggerHandle (Address: 0x1003b398)
- EtwRegisterTraceGuidsW (Address: 0x1003b38c)
- EtwTraceMessage (Address: 0x1003b374)
- EtwUnregisterTraceGuids (Address: 0x1003b388)
- WinSqmAddToStream (Address: 0x1003b384)
- WinSqmSetDWORD (Address: 0x1003b380)
RPCRT4.dll
- CStdStubBuffer_AddRef (Address: 0x1003b038)
- CStdStubBuffer_Connect (Address: 0x1003b018)
- CStdStubBuffer_CountRefs (Address: 0x1003b024)
- CStdStubBuffer_DebugServerQueryInterface (Address: 0x1003b000)
- CStdStubBuffer_DebugServerRelease (Address: 0x1003b044)
- CStdStubBuffer_Disconnect (Address: 0x1003b014)
- CStdStubBuffer_Invoke (Address: 0x1003b02c)
- CStdStubBuffer_IsIIDSupported (Address: 0x1003b00c)
- CStdStubBuffer_QueryInterface (Address: 0x1003b020)
- IUnknown_AddRef_Proxy (Address: 0x1003b01c)
- IUnknown_QueryInterface_Proxy (Address: 0x1003b030)
- IUnknown_Release_Proxy (Address: 0x1003b03c)
- NdrCStdStubBuffer_Release (Address: 0x1003b008)
- NdrDllCanUnloadNow (Address: 0x1003b010)
- NdrDllGetClassObject (Address: 0x1003b004)
- NdrDllRegisterProxy (Address: 0x1003b040)
- NdrDllUnregisterProxy (Address: 0x1003b048)
- NdrOleAllocate (Address: 0x1003b028)
- NdrOleFree (Address: 0x1003b034)
wkscli.dll
- NetGetJoinInformation (Address: 0x1003b3b0)