gpscript.dll

Description: Script Client Side Extension

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 32-bit

Operating System: Windows NT

SHA256: 7ae8e53b7691b70ec211a840d123049d

File Size: 40.0 KB

Uploaded At: Dec. 1, 2025, 7:56 a.m.

Views: 6

Exported Functions

  • GenerateScriptsGroupPolicy (Ordinal: 1, Address: 0x6200)
  • ProcessScriptsGroupPolicy (Ordinal: 2, Address: 0x60b0)
  • ProcessScriptsGroupPolicyEx (Ordinal: 3, Address: 0x60e0)
  • ScrRegGPOListToWbem (Ordinal: 4, Address: 0x5560)

Imported DLLs & Functions

api-ms-win-core-debug-l1-1-0.dll
  • OutputDebugStringW (Address: 0x1000b018)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1000b020)
  • SetLastError (Address: 0x1000b028)
  • SetUnhandledExceptionFilter (Address: 0x1000b024)
  • UnhandledExceptionFilter (Address: 0x1000b02c)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x1000b044)
  • CreateFileW (Address: 0x1000b040)
  • GetFileAttributesExW (Address: 0x1000b03c)
  • SetFilePointer (Address: 0x1000b038)
  • WriteFile (Address: 0x1000b034)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1000b04c)
api-ms-win-core-heap-l2-1-0.dll
  • GlobalAlloc (Address: 0x1000b058)
  • GlobalFree (Address: 0x1000b060)
  • LocalAlloc (Address: 0x1000b054)
  • LocalFree (Address: 0x1000b064)
  • LocalReAlloc (Address: 0x1000b05c)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1000b070)
  • LoadStringW (Address: 0x1000b06c)
api-ms-win-core-privateprofile-l1-1-0.dll
  • GetPrivateProfileStringW (Address: 0x1000b078)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x1000b080)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1000b08c)
  • GetCurrentProcessId (Address: 0x1000b09c)
  • GetCurrentThread (Address: 0x1000b094)
  • GetCurrentThreadId (Address: 0x1000b0a0)
  • OpenThreadToken (Address: 0x1000b088)
  • SetThreadToken (Address: 0x1000b090)
  • TerminateProcess (Address: 0x1000b098)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1000b0a8)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1000b0cc)
  • RegCreateKeyExW (Address: 0x1000b0b8)
  • RegDeleteKeyExW (Address: 0x1000b0c4)
  • RegEnumKeyExW (Address: 0x1000b0d4)
  • RegOpenCurrentUser (Address: 0x1000b0b0)
  • RegOpenKeyExW (Address: 0x1000b0d0)
  • RegQueryInfoKeyW (Address: 0x1000b0bc)
  • RegQueryValueExW (Address: 0x1000b0c8)
  • RegSetKeySecurity (Address: 0x1000b0c0)
  • RegSetValueExW (Address: 0x1000b0b4)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringW (Address: 0x1000b0dc)
api-ms-win-core-synch-l1-1-0.dll
  • DeleteCriticalSection (Address: 0x1000b0e4)
  • InitializeCriticalSectionEx (Address: 0x1000b0e8)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1000b0f0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetLocalTime (Address: 0x1000b100)
  • GetSystemTimeAsFileTime (Address: 0x1000b0f8)
  • GetTickCount (Address: 0x1000b0fc)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAce (Address: 0x1000b128)
  • AllocateAndInitializeSid (Address: 0x1000b114)
  • FreeSid (Address: 0x1000b11c)
  • GetAce (Address: 0x1000b124)
  • GetLengthSid (Address: 0x1000b10c)
  • ImpersonateLoggedOnUser (Address: 0x1000b110)
  • InitializeAcl (Address: 0x1000b120)
  • InitializeSecurityDescriptor (Address: 0x1000b118)
  • SetSecurityDescriptorDacl (Address: 0x1000b108)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x1000b130)
  • __dllonexit (Address: 0x1000b17c)
  • _amsg_exit (Address: 0x1000b154)
  • _callnewh (Address: 0x1000b168)
  • _CxxThrowException (Address: 0x1000b15c)
  • _except_handler4_common (Address: 0x1000b194)
  • _initterm (Address: 0x1000b148)
  • _itow (Address: 0x1000b188)
  • _lock (Address: 0x1000b14c)
  • _onexit (Address: 0x1000b184)
  • _purecall (Address: 0x1000b164)
  • _unlock (Address: 0x1000b170)
  • _vsnwprintf (Address: 0x1000b190)
  • _wcsicmp (Address: 0x1000b180)
  • _XcptFilter (Address: 0x1000b150)
  • ??0exception@@QAE@ABQBD@Z (Address: 0x1000b158)
  • ??0exception@@QAE@ABQBDH@Z (Address: 0x1000b198)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x1000b13c)
  • ??1exception@@UAE@XZ (Address: 0x1000b134)
  • ??1type_info@@UAE@XZ (Address: 0x1000b18c)
  • ??3@YAXPAX@Z (Address: 0x1000b174)
  • ?what@exception@@UBEPBDXZ (Address: 0x1000b144)
  • free (Address: 0x1000b140)
  • malloc (Address: 0x1000b16c)
  • memcpy (Address: 0x1000b138)
  • memmove (Address: 0x1000b160)
  • memset (Address: 0x1000b19c)
  • wcschr (Address: 0x1000b178)
ntdll.dll
  • NtQueryInformationToken (Address: 0x1000b1ac)
  • RtlConvertSidToUnicodeString (Address: 0x1000b1b8)
  • RtlCopySid (Address: 0x1000b1a4)
  • RtlFreeUnicodeString (Address: 0x1000b1b0)
  • RtlInitUnicodeString (Address: 0x1000b1b4)
  • RtlLengthSid (Address: 0x1000b1a8)
OLEAUT32.dll
  • SafeArrayCreate (Address: 0x1000b010)
  • SafeArrayDestroy (Address: 0x1000b000)
  • SafeArrayPutElement (Address: 0x1000b00c)
  • SysAllocString (Address: 0x1000b008)
  • SysFreeString (Address: 0x1000b004)