edgeIso.dll

Description: Isolation Library for edgehtml hosts

Authors: © Microsoft Corporation. All rights reserved.

Version: 11.0.19041.6456

Architecture: 32-bit

Operating System: Windows NT

SHA256: 1001cc6a57bc6c70b7b2219e8aca852e

File Size: 394.0 KB

Uploaded At: Dec. 1, 2025, 7:55 a.m.

Views: 5

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • (Ordinal: 1, Address: 0x3c870)
  • (Ordinal: 2, Address: 0x3c9e0)
  • (Ordinal: 3, Address: 0x29c30)
  • (Ordinal: 4, Address: 0x4e940)
  • (Ordinal: 5, Address: 0x4e620)
  • (Ordinal: 6, Address: 0x4e560)
  • (Ordinal: 7, Address: 0x4e4d0)
  • (Ordinal: 8, Address: 0x25d30)
  • (Ordinal: 9, Address: 0x4e430)
  • (Ordinal: 10, Address: 0x5ae2b)
  • (Ordinal: 11, Address: 0x4eeb0)
  • (Ordinal: 12, Address: 0x2a140)
  • (Ordinal: 13, Address: 0x4d890)
  • (Ordinal: 14, Address: 0x4d530)
  • (Ordinal: 15, Address: 0x4d6e0)
  • (Ordinal: 16, Address: 0x4d740)
  • (Ordinal: 17, Address: 0x4f400)
  • (Ordinal: 18, Address: 0x4f590)
  • (Ordinal: 19, Address: 0x5ae1e)
  • (Ordinal: 20, Address: 0x4d820)
  • (Ordinal: 21, Address: 0x4ec50)
  • (Ordinal: 22, Address: 0x20ba0)
  • (Ordinal: 23, Address: 0x4e7c0)
  • (Ordinal: 24, Address: 0x4e780)
  • (Ordinal: 25, Address: 0x4e810)
  • (Ordinal: 26, Address: 0x1f530)
  • (Ordinal: 27, Address: 0x1f500)
  • (Ordinal: 28, Address: 0x4eac0)
  • (Ordinal: 29, Address: 0x4ea70)
  • (Ordinal: 30, Address: 0x4eaf0)
  • (Ordinal: 31, Address: 0x1f490)
  • (Ordinal: 32, Address: 0x4ea20)
  • (Ordinal: 33, Address: 0x2a2a0)
  • (Ordinal: 34, Address: 0x15220)
  • (Ordinal: 35, Address: 0x4fb40)
  • (Ordinal: 36, Address: 0x4fb90)
  • (Ordinal: 37, Address: 0x4fc70)
  • (Ordinal: 38, Address: 0x4fcc0)
  • (Ordinal: 39, Address: 0x501f0)
  • (Ordinal: 40, Address: 0x50500)
  • (Ordinal: 41, Address: 0x4fd70)
  • (Ordinal: 42, Address: 0x4f930)
  • (Ordinal: 43, Address: 0x4fb10)
  • (Ordinal: 44, Address: 0xe430)
  • (Ordinal: 45, Address: 0x4e410)
  • (Ordinal: 46, Address: 0xc300)
  • (Ordinal: 47, Address: 0x4e3a0)
  • (Ordinal: 48, Address: 0x4df90)
  • (Ordinal: 49, Address: 0x1cfe0)
  • (Ordinal: 50, Address: 0x4e020)
  • (Ordinal: 51, Address: 0x4dff0)
  • (Ordinal: 52, Address: 0x4e0d0)
  • (Ordinal: 53, Address: 0x4dfc0)
  • (Ordinal: 54, Address: 0x4e060)
  • (Ordinal: 55, Address: 0x4f5d0)
  • (Ordinal: 56, Address: 0x4f630)
  • (Ordinal: 57, Address: 0x4f460)
  • (Ordinal: 58, Address: 0x25db0)
  • (Ordinal: 59, Address: 0x4e850)
  • (Ordinal: 60, Address: 0x4e320)
  • (Ordinal: 61, Address: 0x4e8a0)
  • (Ordinal: 62, Address: 0x4dd80)
  • (Ordinal: 63, Address: 0x4ddf0)
  • (Ordinal: 64, Address: 0x4de70)
  • (Ordinal: 65, Address: 0x13bb0)
  • (Ordinal: 66, Address: 0x3e320)
  • (Ordinal: 67, Address: 0x152e0)
  • (Ordinal: 68, Address: 0x3f200)
  • (Ordinal: 69, Address: 0x15020)
  • (Ordinal: 70, Address: 0x25e10)
  • (Ordinal: 71, Address: 0x3fc10)
  • (Ordinal: 72, Address: 0x270c0)
  • (Ordinal: 73, Address: 0x3fc60)
  • (Ordinal: 74, Address: 0x3fcb0)
  • (Ordinal: 75, Address: 0x3e530)
  • (Ordinal: 76, Address: 0xc330)
  • (Ordinal: 77, Address: 0x3f2c0)
  • (Ordinal: 78, Address: 0x3e3d0)
  • (Ordinal: 79, Address: 0x3e370)
  • (Ordinal: 80, Address: 0x3e580)
  • (Ordinal: 81, Address: 0x3f8a0)
  • (Ordinal: 82, Address: 0x2a0b0)
  • (Ordinal: 83, Address: 0x1f320)
  • (Ordinal: 84, Address: 0x3eaf0)
  • (Ordinal: 85, Address: 0x234e0)
  • (Ordinal: 86, Address: 0xaca0)
  • (Ordinal: 87, Address: 0x2a240)
  • (Ordinal: 88, Address: 0x3f8f0)
  • (Ordinal: 89, Address: 0x3e820)
  • (Ordinal: 90, Address: 0x3f160)
  • (Ordinal: 91, Address: 0x3f1b0)
  • (Ordinal: 92, Address: 0x29cb0)
  • (Ordinal: 93, Address: 0x3fbd0)
  • (Ordinal: 94, Address: 0x1d360)
  • (Ordinal: 95, Address: 0x3ffd0)
  • (Ordinal: 96, Address: 0x23160)
  • (Ordinal: 97, Address: 0x29d30)
  • (Ordinal: 98, Address: 0x3e4e0)
  • (Ordinal: 99, Address: 0xfe20)
  • (Ordinal: 100, Address: 0x3f560)
  • (Ordinal: 101, Address: 0x3e9d0)
  • (Ordinal: 102, Address: 0x1f230)
  • (Ordinal: 103, Address: 0x19ce0)
  • (Ordinal: 104, Address: 0x40950)
  • (Ordinal: 105, Address: 0x131b0)
  • (Ordinal: 106, Address: 0x3e430)
  • (Ordinal: 107, Address: 0x16580)
  • (Ordinal: 108, Address: 0x3e490)
  • (Ordinal: 109, Address: 0x15880)
  • (Ordinal: 110, Address: 0x12c40)
  • (Ordinal: 111, Address: 0x3f650)
  • (Ordinal: 112, Address: 0x29ba0)
  • (Ordinal: 113, Address: 0x1cf20)
  • (Ordinal: 114, Address: 0x3f6a0)
  • (Ordinal: 115, Address: 0x5ae04)
  • (Ordinal: 116, Address: 0x5ae11)
  • (Ordinal: 117, Address: 0x14b80)
  • (Ordinal: 118, Address: 0x21230)
  • (Ordinal: 119, Address: 0x24140)
  • (Ordinal: 120, Address: 0x1b7f0)
  • (Ordinal: 121, Address: 0x407a0)
  • (Ordinal: 122, Address: 0xbfd0)
  • (Ordinal: 123, Address: 0x40af0)
  • (Ordinal: 124, Address: 0x40700)
  • (Ordinal: 125, Address: 0x22de0)
  • (Ordinal: 126, Address: 0x40b40)
  • (Ordinal: 127, Address: 0x40750)
  • (Ordinal: 128, Address: 0x408e0)
  • (Ordinal: 129, Address: 0x3eab0)
  • (Ordinal: 130, Address: 0x281c0)
  • (Ordinal: 131, Address: 0x15070)
  • (Ordinal: 132, Address: 0x29740)
  • (Ordinal: 133, Address: 0x3e7b0)
  • (Ordinal: 134, Address: 0x225b0)
  • (Ordinal: 135, Address: 0x3f9a0)
  • (Ordinal: 136, Address: 0x21860)
  • (Ordinal: 137, Address: 0x3f950)
  • (Ordinal: 138, Address: 0x3f850)
  • (Ordinal: 139, Address: 0x3f5b0)
  • (Ordinal: 140, Address: 0x2a190)
  • (Ordinal: 141, Address: 0x3f270)
  • (Ordinal: 142, Address: 0x3f110)
  • (Ordinal: 143, Address: 0x25ea0)
  • (Ordinal: 144, Address: 0x21bd0)
  • (Ordinal: 145, Address: 0x406d0)
  • (Ordinal: 146, Address: 0xab10)
  • (Ordinal: 147, Address: 0x28140)
  • (Ordinal: 148, Address: 0x3ea60)
  • (Ordinal: 149, Address: 0x1f6f0)
  • (Ordinal: 150, Address: 0x13380)
  • (Ordinal: 151, Address: 0x21980)
  • (Ordinal: 152, Address: 0x407c0)
  • (Ordinal: 153, Address: 0x21820)
  • (Ordinal: 154, Address: 0x2a450)
  • (Ordinal: 155, Address: 0x1d580)
  • (Ordinal: 156, Address: 0x1d4d0)
  • (Ordinal: 157, Address: 0x3f0c0)
  • (Ordinal: 158, Address: 0x21790)
  • (Ordinal: 159, Address: 0x230e0)
  • (Ordinal: 160, Address: 0x3eb40)
  • (Ordinal: 161, Address: 0x22d00)
  • (Ordinal: 162, Address: 0x40930)
  • (Ordinal: 163, Address: 0x283f0)
  • (Ordinal: 164, Address: 0xafc0)
  • (Ordinal: 165, Address: 0x13270)
  • (Ordinal: 166, Address: 0xf150)
  • (Ordinal: 167, Address: 0xfae0)
  • (Ordinal: 168, Address: 0xbe80)
  • (Ordinal: 169, Address: 0x406f0)
  • (Ordinal: 170, Address: 0x2a590)
  • (Ordinal: 171, Address: 0x2a670)
  • (Ordinal: 172, Address: 0x2a670)
  • (Ordinal: 173, Address: 0x4ebf0)
  • (Ordinal: 174, Address: 0x4e910)
  • (Ordinal: 175, Address: 0xdbf0)
  • (Ordinal: 176, Address: 0x3e5d0)
  • (Ordinal: 177, Address: 0x3eb80)
  • (Ordinal: 178, Address: 0x3e920)
  • (Ordinal: 179, Address: 0x3e880)
  • (Ordinal: 180, Address: 0xd9b0)
  • (Ordinal: 185, Address: 0x2a310)
  • (Ordinal: 186, Address: 0x2a1e0)
  • (Ordinal: 187, Address: 0x3fd60)
  • (Ordinal: 188, Address: 0x3e2c0)
  • (Ordinal: 189, Address: 0x3f9f0)
  • (Ordinal: 190, Address: 0x3ff70)
  • (Ordinal: 191, Address: 0x3fb70)
  • (Ordinal: 192, Address: 0x3ff10)
  • (Ordinal: 193, Address: 0x3fec0)
  • (Ordinal: 194, Address: 0x3fd00)
  • (Ordinal: 195, Address: 0x22750)
  • (Ordinal: 196, Address: 0x4e140)
  • (Ordinal: 197, Address: 0x4e220)
  • (Ordinal: 198, Address: 0x4e1a0)
  • (Ordinal: 199, Address: 0x4e270)
  • (Ordinal: 200, Address: 0x3ef70)
  • (Ordinal: 201, Address: 0x3dbc0)
  • (Ordinal: 202, Address: 0x2a090)
  • (Ordinal: 203, Address: 0x2a400)
  • (Ordinal: 204, Address: 0x28380)
  • (Ordinal: 205, Address: 0x3db60)
  • (Ordinal: 206, Address: 0x28340)
  • (Ordinal: 207, Address: 0x23c40)
  • (Ordinal: 208, Address: 0x3f080)
  • (Ordinal: 209, Address: 0x291a0)
  • (Ordinal: 210, Address: 0xd900)
  • (Ordinal: 211, Address: 0xd680)
  • (Ordinal: 212, Address: 0x40240)
  • (Ordinal: 213, Address: 0x3efb0)
  • (Ordinal: 214, Address: 0x3fe70)
  • (Ordinal: 215, Address: 0x3f310)
  • (Ordinal: 216, Address: 0x3fdc0)
  • (Ordinal: 217, Address: 0x3d660)
  • (Ordinal: 218, Address: 0x3c710)
  • (Ordinal: 219, Address: 0x1f650)
  • (Ordinal: 220, Address: 0x3f600)
  • (Ordinal: 221, Address: 0x3fe20)
  • (Ordinal: 222, Address: 0x3e280)
  • (Ordinal: 223, Address: 0x27e30)
  • (Ordinal: 224, Address: 0x27e00)
  • (Ordinal: 225, Address: 0x1fde0)
  • (Ordinal: 226, Address: 0x3e2a0)
  • (Ordinal: 227, Address: 0x4e6a0)
  • (Ordinal: 228, Address: 0x4e720)
  • (Ordinal: 229, Address: 0x4e750)
  • (Ordinal: 230, Address: 0x4e6d0)
  • (Ordinal: 231, Address: 0x4eb30)
  • (Ordinal: 232, Address: 0x4ec00)
  • (Ordinal: 233, Address: 0x40820)
  • (Ordinal: 234, Address: 0x3f510)
  • (Ordinal: 235, Address: 0x56390)
  • (Ordinal: 236, Address: 0x56960)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x1005d044)
api-ms-win-core-atoms-l1-1-0.dll
  • AddAtomW (Address: 0x1005d054)
  • DeleteAtom (Address: 0x1005d050)
  • FindAtomW (Address: 0x1005d04c)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateFreeThreadedMarshaler (Address: 0x1005d078)
  • CoCreateInstance (Address: 0x1005d080)
  • CoGetApartmentType (Address: 0x1005d06c)
  • CoGetInterfaceAndReleaseStream (Address: 0x1005d08c)
  • CoGetMarshalSizeMax (Address: 0x1005d094)
  • CoImpersonateClient (Address: 0x1005d05c)
  • CoInitializeEx (Address: 0x1005d068)
  • CoInitializeSecurity (Address: 0x1005d070)
  • CoMarshalInterface (Address: 0x1005d09c)
  • CoReleaseMarshalData (Address: 0x1005d088)
  • CoRevertToSelf (Address: 0x1005d0a0)
  • CoTaskMemAlloc (Address: 0x1005d060)
  • CoTaskMemFree (Address: 0x1005d064)
  • CoUninitialize (Address: 0x1005d084)
  • CoUnmarshalInterface (Address: 0x1005d098)
  • CoWaitForMultipleHandles (Address: 0x1005d074)
  • CreateStreamOnHGlobal (Address: 0x1005d090)
  • StringFromGUID2 (Address: 0x1005d07c)
api-ms-win-core-com-l1-1-1.dll
  • RoGetAgileReference (Address: 0x1005d0a8)
api-ms-win-core-com-private-l1-1-0.dll
  • CoGetErrorInfo (Address: 0x1005d0b0)
  • CoSetErrorInfo (Address: 0x1005d0b4)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1005d0c4)
  • IsDebuggerPresent (Address: 0x1005d0c0)
  • OutputDebugStringW (Address: 0x1005d0bc)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1005d0cc)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1005d0d4)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1005d0dc)
  • RaiseException (Address: 0x1005d0e8)
  • SetLastError (Address: 0x1005d0ec)
  • SetUnhandledExceptionFilter (Address: 0x1005d0e4)
  • UnhandledExceptionFilter (Address: 0x1005d0e0)
api-ms-win-core-errorhandling-l1-1-2.dll
  • RaiseFailFastException (Address: 0x1005d0f4)
api-ms-win-core-file-l1-1-0.dll
  • FindClose (Address: 0x1005d104)
  • FindFirstFileExW (Address: 0x1005d0fc)
  • FindNextFileW (Address: 0x1005d100)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1005d10c)
  • DuplicateHandle (Address: 0x1005d110)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1005d11c)
  • HeapAlloc (Address: 0x1005d124)
  • HeapFree (Address: 0x1005d120)
  • HeapReAlloc (Address: 0x1005d118)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x1005d12c)
  • LocalFree (Address: 0x1005d130)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x1005d138)
api-ms-win-core-job-l1-1-0.dll
  • IsProcessInJob (Address: 0x1005d140)
api-ms-win-core-job-l2-1-0.dll
  • AssignProcessToJobObject (Address: 0x1005d148)
  • CreateJobObjectW (Address: 0x1005d150)
  • SetInformationJobObject (Address: 0x1005d14c)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • RegisterWaitForSingleObject (Address: 0x1005d158)
  • UnregisterWait (Address: 0x1005d15c)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1005d180)
  • FreeLibrary (Address: 0x1005d178)
  • GetModuleFileNameA (Address: 0x1005d174)
  • GetModuleFileNameW (Address: 0x1005d170)
  • GetModuleHandleExW (Address: 0x1005d168)
  • GetModuleHandleW (Address: 0x1005d17c)
  • GetProcAddress (Address: 0x1005d16c)
  • LoadLibraryExW (Address: 0x1005d164)
api-ms-win-core-libraryloader-l1-2-1.dll
  • LoadLibraryW (Address: 0x1005d188)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1005d190)
api-ms-win-core-memory-l1-1-0.dll
  • CreateFileMappingW (Address: 0x1005d1a0)
  • MapViewOfFile (Address: 0x1005d198)
  • MapViewOfFileEx (Address: 0x1005d1ac)
  • OpenFileMappingW (Address: 0x1005d1a4)
  • UnmapViewOfFile (Address: 0x1005d19c)
  • VirtualQuery (Address: 0x1005d1a8)
api-ms-win-core-namespace-l1-1-0.dll
  • AddSIDToBoundaryDescriptor (Address: 0x1005d1b4)
  • ClosePrivateNamespace (Address: 0x1005d1c4)
  • CreateBoundaryDescriptorW (Address: 0x1005d1c0)
  • CreatePrivateNamespaceW (Address: 0x1005d1b8)
  • DeleteBoundaryDescriptor (Address: 0x1005d1bc)
  • OpenPrivateNamespaceW (Address: 0x1005d1c8)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessAsUserW (Address: 0x1005d210)
  • CreateProcessW (Address: 0x1005d208)
  • CreateThread (Address: 0x1005d204)
  • DeleteProcThreadAttributeList (Address: 0x1005d220)
  • GetCurrentProcess (Address: 0x1005d1e8)
  • GetCurrentProcessId (Address: 0x1005d224)
  • GetCurrentThread (Address: 0x1005d228)
  • GetCurrentThreadId (Address: 0x1005d1d4)
  • GetExitCodeProcess (Address: 0x1005d1f8)
  • GetThreadId (Address: 0x1005d1ec)
  • InitializeProcThreadAttributeList (Address: 0x1005d1f4)
  • OpenProcessToken (Address: 0x1005d1f0)
  • OpenThread (Address: 0x1005d1e0)
  • OpenThreadToken (Address: 0x1005d20c)
  • ResumeThread (Address: 0x1005d1fc)
  • SuspendThread (Address: 0x1005d1dc)
  • TerminateProcess (Address: 0x1005d1e4)
  • TerminateThread (Address: 0x1005d1d8)
  • TlsAlloc (Address: 0x1005d21c)
  • TlsFree (Address: 0x1005d218)
  • TlsGetValue (Address: 0x1005d214)
  • TlsSetValue (Address: 0x1005d1d0)
  • UpdateProcThreadAttribute (Address: 0x1005d200)
api-ms-win-core-processthreads-l1-1-1.dll
  • GetThreadContext (Address: 0x1005d234)
  • IsProcessorFeaturePresent (Address: 0x1005d238)
  • OpenProcess (Address: 0x1005d230)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1005d240)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1005d260)
  • RegCreateKeyExW (Address: 0x1005d25c)
  • RegEnumKeyExW (Address: 0x1005d258)
  • RegGetValueW (Address: 0x1005d24c)
  • RegOpenKeyExW (Address: 0x1005d250)
  • RegQueryValueExW (Address: 0x1005d248)
  • RegSetValueExW (Address: 0x1005d254)
api-ms-win-core-registry-l2-1-0.dll
  • RegDeleteKeyW (Address: 0x1005d268)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFindFileNameW (Address: 0x1005d270)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
  • QISearch (Address: 0x1005d27c)
  • StrCmpICW (Address: 0x1005d280)
  • StrStrIW (Address: 0x1005d278)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1005d298)
  • AcquireSRWLockShared (Address: 0x1005d2a0)
  • CreateEventExW (Address: 0x1005d2dc)
  • CreateEventW (Address: 0x1005d2c8)
  • CreateMutexExW (Address: 0x1005d2d8)
  • CreateSemaphoreExW (Address: 0x1005d2d4)
  • DeleteCriticalSection (Address: 0x1005d2b4)
  • EnterCriticalSection (Address: 0x1005d294)
  • InitializeCriticalSection (Address: 0x1005d2e4)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1005d2ac)
  • InitializeCriticalSectionEx (Address: 0x1005d28c)
  • InitializeSRWLock (Address: 0x1005d2b8)
  • LeaveCriticalSection (Address: 0x1005d2bc)
  • OpenEventW (Address: 0x1005d2c4)
  • OpenSemaphoreW (Address: 0x1005d2e0)
  • ReleaseMutex (Address: 0x1005d290)
  • ReleaseSemaphore (Address: 0x1005d288)
  • ReleaseSRWLockExclusive (Address: 0x1005d2a8)
  • ReleaseSRWLockShared (Address: 0x1005d2a4)
  • ResetEvent (Address: 0x1005d2e8)
  • SetEvent (Address: 0x1005d2cc)
  • TryAcquireSRWLockExclusive (Address: 0x1005d2d0)
  • TryEnterCriticalSection (Address: 0x1005d29c)
  • WaitForSingleObject (Address: 0x1005d2c0)
  • WaitForSingleObjectEx (Address: 0x1005d2b0)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1005d2f0)
  • InitOnceComplete (Address: 0x1005d2f4)
  • InitOnceExecuteOnce (Address: 0x1005d2fc)
  • Sleep (Address: 0x1005d2f8)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemDirectoryW (Address: 0x1005d30c)
  • GetSystemInfo (Address: 0x1005d310)
  • GetSystemTimeAsFileTime (Address: 0x1005d314)
  • GetTickCount (Address: 0x1005d308)
  • GetTickCount64 (Address: 0x1005d304)
  • GetVersionExA (Address: 0x1005d318)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1005d324)
  • CreateThreadpoolTimer (Address: 0x1005d320)
  • SetThreadpoolTimer (Address: 0x1005d328)
  • WaitForThreadpoolTimerCallbacks (Address: 0x1005d32c)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
  • QueueUserWorkItem (Address: 0x1005d334)
  • UnregisterWaitEx (Address: 0x1005d338)
api-ms-win-core-toolhelp-l1-1-0.dll
  • CreateToolhelp32Snapshot (Address: 0x1005d348)
  • Process32FirstW (Address: 0x1005d340)
  • Process32NextW (Address: 0x1005d344)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1005d354)
  • EncodePointer (Address: 0x1005d350)
api-ms-win-core-windowserrorreporting-l1-1-0.dll
  • WerRegisterMemoryBlock (Address: 0x1005d360)
  • WerUnregisterMemoryBlock (Address: 0x1005d35c)
api-ms-win-core-winrt-error-l1-1-0.dll
  • GetRestrictedErrorInfo (Address: 0x1005d374)
  • RoOriginateError (Address: 0x1005d378)
  • RoOriginateErrorW (Address: 0x1005d370)
  • RoTransformError (Address: 0x1005d36c)
  • SetRestrictedErrorInfo (Address: 0x1005d368)
api-ms-win-core-winrt-error-l1-1-1.dll
  • IsErrorPropagationEnabled (Address: 0x1005d384)
  • RoGetMatchingRestrictedErrorInfo (Address: 0x1005d380)
  • RoReportFailedDelegate (Address: 0x1005d388)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x1005d390)
  • RoGetActivationFactory (Address: 0x1005d394)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateString (Address: 0x1005d3a0)
  • WindowsCreateStringReference (Address: 0x1005d3a8)
  • WindowsDeleteString (Address: 0x1005d3a4)
  • WindowsDuplicateString (Address: 0x1005d39c)
  • WindowsGetStringRawBuffer (Address: 0x1005d3ac)
api-ms-win-crt-private-l1-1-0.dll
  • __CxxFrameHandler3 (Address: 0x1005d440)
  • __std_terminate (Address: 0x1005d43c)
  • _CxxThrowException (Address: 0x1005d444)
  • _except_handler4_common (Address: 0x1005d404)
  • _o___std_exception_copy (Address: 0x1005d434)
  • _o___std_exception_destroy (Address: 0x1005d430)
  • _o___std_type_info_destroy_list (Address: 0x1005d42c)
  • _o___stdio_common_vsnprintf_s (Address: 0x1005d428)
  • _o___stdio_common_vsprintf (Address: 0x1005d424)
  • _o___stdio_common_vswprintf (Address: 0x1005d420)
  • _o___stdio_common_vswprintf_s (Address: 0x1005d41c)
  • _o__cexit (Address: 0x1005d418)
  • _o__configure_narrow_argv (Address: 0x1005d414)
  • _o__crt_atexit (Address: 0x1005d410)
  • _o__errno (Address: 0x1005d40c)
  • _o__execute_onexit_table (Address: 0x1005d408)
  • _o__initialize_narrow_environment (Address: 0x1005d3b4)
  • _o__initialize_onexit_table (Address: 0x1005d3b8)
  • _o__invalid_parameter_noinfo (Address: 0x1005d3bc)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x1005d3c0)
  • _o__register_onexit_function (Address: 0x1005d3c4)
  • _o__seh_filter_dll (Address: 0x1005d3c8)
  • _o__wcsicmp (Address: 0x1005d3cc)
  • _o__wtoi (Address: 0x1005d3d4)
  • _o__wtoi64 (Address: 0x1005d3d8)
  • _o_ceil (Address: 0x1005d3dc)
  • _o_free (Address: 0x1005d3e0)
  • _o_iswspace (Address: 0x1005d3e4)
  • _o_malloc (Address: 0x1005d3e8)
  • _o_memcpy_s (Address: 0x1005d3ec)
  • _o_realloc (Address: 0x1005d3f0)
  • _o_terminate (Address: 0x1005d3f4)
  • _o_toupper (Address: 0x1005d3f8)
  • _o_wcscpy_s (Address: 0x1005d3fc)
  • _o_wmemcpy_s (Address: 0x1005d400)
  • memcmp (Address: 0x1005d448)
  • memcpy (Address: 0x1005d44c)
  • memmove (Address: 0x1005d3d0)
  • wcschr (Address: 0x1005d438)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x1005d458)
  • _initterm_e (Address: 0x1005d454)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x1005d464)
  • wcsncmp (Address: 0x1005d468)
  • wcsnlen (Address: 0x1005d460)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventProviderEnabled (Address: 0x1005d47c)
  • EventRegister (Address: 0x1005d478)
  • EventSetInformation (Address: 0x1005d470)
  • EventUnregister (Address: 0x1005d474)
  • EventWriteTransfer (Address: 0x1005d480)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAceEx (Address: 0x1005d490)
  • AddAce (Address: 0x1005d4f0)
  • AddMandatoryAce (Address: 0x1005d4e0)
  • AllocateAndInitializeSid (Address: 0x1005d4dc)
  • CopySid (Address: 0x1005d4b0)
  • DeleteAce (Address: 0x1005d48c)
  • DuplicateTokenEx (Address: 0x1005d498)
  • EqualSid (Address: 0x1005d4c0)
  • FreeSid (Address: 0x1005d4c8)
  • GetAce (Address: 0x1005d4bc)
  • GetKernelObjectSecurity (Address: 0x1005d4e8)
  • GetLengthSid (Address: 0x1005d4b4)
  • GetSecurityDescriptorDacl (Address: 0x1005d4d8)
  • GetSecurityDescriptorSacl (Address: 0x1005d4b8)
  • GetSidIdentifierAuthority (Address: 0x1005d488)
  • GetSidLengthRequired (Address: 0x1005d4ac)
  • GetSidSubAuthority (Address: 0x1005d4a0)
  • GetSidSubAuthorityCount (Address: 0x1005d494)
  • GetTokenInformation (Address: 0x1005d4a4)
  • InitializeAcl (Address: 0x1005d4ec)
  • InitializeSecurityDescriptor (Address: 0x1005d4d0)
  • InitializeSid (Address: 0x1005d4a8)
  • IsValidSid (Address: 0x1005d4cc)
  • SetKernelObjectSecurity (Address: 0x1005d4e4)
  • SetSecurityDescriptorDacl (Address: 0x1005d4d4)
  • SetSecurityDescriptorSacl (Address: 0x1005d4c4)
  • SetTokenInformation (Address: 0x1005d49c)
api-ms-win-security-base-l1-2-0.dll
  • CheckTokenCapability (Address: 0x1005d4f8)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x1005d508)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1005d504)
  • ConvertStringSidToSidW (Address: 0x1005d500)
api-ms-win-shcore-taskpool-l1-1-0.dll
  • SHTaskPoolAllowThreadReuse (Address: 0x1005d514)
  • SHTaskPoolQueueTask (Address: 0x1005d510)
ntdll.dll
  • NtQuerySystemInformation (Address: 0x1005d534)
  • NtQueryVirtualMemory (Address: 0x1005d52c)
  • RtlGetSuiteMask (Address: 0x1005d530)
  • RtlImageDirectoryEntryToData (Address: 0x1005d528)
  • RtlQueryPackageClaims (Address: 0x1005d524)
  • RtlQueryTokenHostIdAsUlong64 (Address: 0x1005d51c)
  • RtlReportExceptionEx (Address: 0x1005d520)
OLEAUT32.dll
  • SafeArrayAccessData (Address: 0x1005d00c)
  • SafeArrayCreate (Address: 0x1005d000)
  • SafeArrayGetDim (Address: 0x1005d018)
  • SafeArrayGetLBound (Address: 0x1005d014)
  • SafeArrayGetUBound (Address: 0x1005d010)
  • SafeArrayUnlock (Address: 0x1005d008)
  • SysAllocString (Address: 0x1005d004)
  • SysAllocStringByteLen (Address: 0x1005d024)
  • VariantClear (Address: 0x1005d020)
  • VariantCopyInd (Address: 0x1005d01c)
USERENV.dll
  • CreateAppContainerProfile (Address: 0x1005d030)
  • DeriveAppContainerSidFromAppContainerName (Address: 0x1005d034)
  • GetAppContainerRegistryLocation (Address: 0x1005d02c)
WINTRUST.dll
  • WTGetSignatureInfo (Address: 0x1005d03c)