scecli.dll

Description: Windows Security Configuration Editor Client Engine

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5794

Architecture: 32-bit

Operating System: Windows NT

SHA256: 5826b99a0abfe9adc267366cae4ff7a0

File Size: 249.0 KB

Uploaded At: Dec. 1, 2025, 8:03 a.m.

Views: 6

Exported Functions

  • ConvertSecurityDescriptorToText (Ordinal: 1, Address: 0x197e0)
  • DeltaNotify (Ordinal: 2, Address: 0x27da0)
  • InitializeChangeNotify (Ordinal: 3, Address: 0x9f60)
  • SceConfigureConvertedFileSecurity (Ordinal: 4, Address: 0x2f020)
  • SceGenerateGroupPolicy (Ordinal: 5, Address: 0x24df0)
  • SceNotifyPolicyDelta (Ordinal: 6, Address: 0x27eb0)
  • SceOpenPolicy (Ordinal: 7, Address: 0x27f40)
  • SceProcessSecurityPolicyGPO (Ordinal: 8, Address: 0x25dd0)
  • SceProcessSecurityPolicyGPOEx (Ordinal: 9, Address: 0x25f30)
  • SceSysPrep (Ordinal: 10, Address: 0x2f460)
  • SceSysPrepOffline (Ordinal: 11, Address: 0x2f5f0)
  • DllRegisterServer (Ordinal: 12, Address: 0x2e9f0)
  • DllUnregisterServer (Ordinal: 13, Address: 0x2ee20)
  • SceAddToNameList (Ordinal: 14, Address: 0x19010)
  • SceAddToNameStatusList (Ordinal: 15, Address: 0x19040)
  • SceAddToObjectList (Ordinal: 16, Address: 0x19060)
  • SceAnalyzeSystem (Ordinal: 17, Address: 0x2c570)
  • SceAppendSecurityProfileInfo (Ordinal: 18, Address: 0x22c50)
  • SceBrowseDatabaseTable (Ordinal: 19, Address: 0x2c7a0)
  • SceCloseProfile (Ordinal: 20, Address: 0x2c950)
  • SceCommitTransaction (Ordinal: 21, Address: 0x2ca00)
  • SceCompareNameList (Ordinal: 22, Address: 0x19090)
  • SceCompareSecurityDescriptors (Ordinal: 23, Address: 0x19110)
  • SceConfigureSystem (Ordinal: 24, Address: 0x2ca80)
  • SceCopyBaseProfile (Ordinal: 25, Address: 0x2cbb0)
  • SceCreateDirectory (Ordinal: 26, Address: 0x19170)
  • SceDcPromoCreateGPOsInSysvol (Ordinal: 27, Address: 0x317f0)
  • SceDcPromoCreateGPOsInSysvolEx (Ordinal: 28, Address: 0x31820)
  • SceDcPromoteSecurity (Ordinal: 29, Address: 0x31ab0)
  • SceDcPromoteSecurityEx (Ordinal: 30, Address: 0x31ad0)
  • SceEnforceSecurityPolicyPropagation (Ordinal: 31, Address: 0x31bd0)
  • SceEnumerateServices (Ordinal: 32, Address: 0x19190)
  • SceFreeMemory (Ordinal: 33, Address: 0x174e0)
  • SceFreeProfileMemory (Ordinal: 34, Address: 0x17a40)
  • SceGenerateRollback (Ordinal: 35, Address: 0x2cf40)
  • SceGetAnalysisAreaSummary (Ordinal: 36, Address: 0x2d0c0)
  • SceGetAreas (Ordinal: 37, Address: 0x27b70)
  • SceGetDatabaseSetting (Ordinal: 38, Address: 0x2d140)
  • SceGetDbTime (Ordinal: 39, Address: 0x2d240)
  • SceGetObjectChildren (Ordinal: 40, Address: 0x2d3a0)
  • SceGetObjectSecurity (Ordinal: 41, Address: 0x2d490)
  • SceGetScpProfileDescription (Ordinal: 42, Address: 0x2d560)
  • SceGetSecurityProfileInfo (Ordinal: 43, Address: 0x2d5f0)
  • SceGetServerProductType (Ordinal: 44, Address: 0x2d850)
  • SceGetTimeStamp (Ordinal: 45, Address: 0x2d910)
  • SceIsSystemDatabase (Ordinal: 46, Address: 0x16b10)
  • SceLookupPrivRightName (Ordinal: 47, Address: 0x19390)
  • SceOpenProfile (Ordinal: 48, Address: 0x2db80)
  • SceRegisterRegValues (Ordinal: 49, Address: 0x2dd50)
  • SceRollbackTransaction (Ordinal: 50, Address: 0x2e110)
  • SceSetDatabaseSetting (Ordinal: 51, Address: 0x2e190)
  • SceSetupBackupSecurity (Ordinal: 52, Address: 0x31be0)
  • SceSetupConfigureServices (Ordinal: 53, Address: 0x323c0)
  • SceSetupGenerateTemplate (Ordinal: 54, Address: 0x324a0)
  • SceSetupMoveSecurityFile (Ordinal: 55, Address: 0x325d0)
  • SceSetupRootSecurity (Ordinal: 56, Address: 0x326b0)
  • SceSetupSystemByInfName (Ordinal: 57, Address: 0x32d00)
  • SceSetupUnwindSecurityFile (Ordinal: 58, Address: 0x333c0)
  • SceSetupUpdateSecurityFile (Ordinal: 59, Address: 0x334b0)
  • SceSetupUpdateSecurityKey (Ordinal: 60, Address: 0x33560)
  • SceSetupUpdateSecurityService (Ordinal: 61, Address: 0x33880)
  • SceStartTransaction (Ordinal: 62, Address: 0x2e240)
  • SceSvcConvertSDToText (Ordinal: 63, Address: 0x339c0)
  • SceSvcConvertTextToSD (Ordinal: 64, Address: 0x339f0)
  • SceSvcFree (Ordinal: 65, Address: 0x33a20)
  • SceSvcGetInformationTemplate (Ordinal: 66, Address: 0x1f870)
  • SceSvcQueryInfo (Ordinal: 67, Address: 0x33a40)
  • SceSvcSetInfo (Ordinal: 68, Address: 0x33be0)
  • SceSvcSetInformationTemplate (Ordinal: 69, Address: 0x22c80)
  • SceSvcUpdateInfo (Ordinal: 70, Address: 0x2e2c0)
  • SceUpdateObjectInfo (Ordinal: 71, Address: 0x2e350)
  • SceUpdateSecurityProfile (Ordinal: 72, Address: 0x2e4f0)
  • SceWrapperExportSecurityProfile (Ordinal: 73, Address: 0x33d70)
  • SceWrapperImportSecurityProfile (Ordinal: 74, Address: 0x33dd0)
  • SceWriteSecurityProfileInfo (Ordinal: 75, Address: 0x22e20)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x5fd3a02c)
api-ms-win-core-datetime-l1-1-0.dll
  • GetDateFormatW (Address: 0x5fd3a034)
  • GetTimeFormatW (Address: 0x5fd3a038)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x5fd3a044)
  • IsDebuggerPresent (Address: 0x5fd3a040)
  • OutputDebugStringW (Address: 0x5fd3a048)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x5fd3a050)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x5fd3a058)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x5fd3a074)
  • RaiseException (Address: 0x5fd3a068)
  • SetErrorMode (Address: 0x5fd3a060)
  • SetLastError (Address: 0x5fd3a064)
  • SetUnhandledExceptionFilter (Address: 0x5fd3a06c)
  • UnhandledExceptionFilter (Address: 0x5fd3a070)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x5fd3a0a4)
  • CreateFileW (Address: 0x5fd3a098)
  • DeleteFileW (Address: 0x5fd3a0b0)
  • FindClose (Address: 0x5fd3a09c)
  • FindFirstFileW (Address: 0x5fd3a0a8)
  • GetDriveTypeW (Address: 0x5fd3a0b4)
  • GetFileAttributesW (Address: 0x5fd3a0ac)
  • GetFileSize (Address: 0x5fd3a090)
  • GetFullPathNameW (Address: 0x5fd3a08c)
  • GetTempFileNameW (Address: 0x5fd3a07c)
  • GetVolumeInformationW (Address: 0x5fd3a080)
  • ReadFile (Address: 0x5fd3a088)
  • SetFileAttributesW (Address: 0x5fd3a0a0)
  • SetFilePointer (Address: 0x5fd3a084)
  • WriteFile (Address: 0x5fd3a094)
api-ms-win-core-file-l1-2-0.dll
  • GetTempPathW (Address: 0x5fd3a0bc)
api-ms-win-core-file-l2-1-2.dll
  • CopyFileW (Address: 0x5fd3a0c4)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x5fd3a0cc)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x5fd3a0e0)
  • HeapAlloc (Address: 0x5fd3a0dc)
  • HeapFree (Address: 0x5fd3a0d4)
  • HeapReAlloc (Address: 0x5fd3a0d8)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x5fd3a0ec)
  • LocalFree (Address: 0x5fd3a0e8)
api-ms-win-core-libraryloader-l1-2-0.dll
  • FreeLibrary (Address: 0x5fd3a0f8)
  • FreeLibraryAndExitThread (Address: 0x5fd3a100)
  • GetModuleFileNameA (Address: 0x5fd3a114)
  • GetModuleHandleExW (Address: 0x5fd3a10c)
  • GetModuleHandleW (Address: 0x5fd3a118)
  • GetProcAddress (Address: 0x5fd3a110)
  • LoadLibraryExW (Address: 0x5fd3a0fc)
  • LoadResource (Address: 0x5fd3a104)
  • LoadStringW (Address: 0x5fd3a108)
  • LockResource (Address: 0x5fd3a0f4)
api-ms-win-core-libraryloader-l1-2-1.dll
  • FindResourceW (Address: 0x5fd3a120)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x5fd3a12c)
  • GetThreadLocale (Address: 0x5fd3a130)
  • LCMapStringW (Address: 0x5fd3a128)
api-ms-win-core-localization-obsolete-l1-2-0.dll
  • GetSystemDefaultUILanguage (Address: 0x5fd3a138)
api-ms-win-core-memory-l1-1-0.dll
  • CreateFileMappingW (Address: 0x5fd3a144)
  • MapViewOfFile (Address: 0x5fd3a14c)
  • UnmapViewOfFile (Address: 0x5fd3a140)
  • VirtualAlloc (Address: 0x5fd3a154)
  • VirtualProtect (Address: 0x5fd3a150)
  • VirtualQuery (Address: 0x5fd3a148)
api-ms-win-core-privateprofile-l1-1-0.dll
  • GetPrivateProfileIntW (Address: 0x5fd3a160)
  • GetPrivateProfileSectionW (Address: 0x5fd3a164)
  • GetPrivateProfileStringW (Address: 0x5fd3a15c)
  • WritePrivateProfileStringW (Address: 0x5fd3a168)
api-ms-win-core-privateprofile-l1-1-1.dll
  • WritePrivateProfileSectionW (Address: 0x5fd3a170)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x5fd3a17c)
  • FreeEnvironmentStringsW (Address: 0x5fd3a180)
  • GetEnvironmentStringsW (Address: 0x5fd3a178)
  • GetEnvironmentVariableW (Address: 0x5fd3a184)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateThread (Address: 0x5fd3a1ac)
  • ExitThread (Address: 0x5fd3a198)
  • GetCurrentProcess (Address: 0x5fd3a1b0)
  • GetCurrentProcessId (Address: 0x5fd3a1a8)
  • GetCurrentThread (Address: 0x5fd3a18c)
  • GetCurrentThreadId (Address: 0x5fd3a190)
  • OpenProcessToken (Address: 0x5fd3a1a4)
  • OpenThreadToken (Address: 0x5fd3a19c)
  • SetThreadStackGuarantee (Address: 0x5fd3a1a0)
  • TerminateProcess (Address: 0x5fd3a194)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x5fd3a1bc)
  • QueryPerformanceFrequency (Address: 0x5fd3a1b8)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x5fd3a1d0)
  • RegCreateKeyExW (Address: 0x5fd3a1e8)
  • RegDeleteKeyExW (Address: 0x5fd3a1cc)
  • RegDeleteValueW (Address: 0x5fd3a1e0)
  • RegEnumKeyExW (Address: 0x5fd3a1c8)
  • RegGetValueW (Address: 0x5fd3a1d8)
  • RegOpenCurrentUser (Address: 0x5fd3a1c4)
  • RegOpenKeyExW (Address: 0x5fd3a1e4)
  • RegQueryValueExW (Address: 0x5fd3a1d4)
  • RegSetValueExW (Address: 0x5fd3a1dc)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x5fd3a1f8)
  • CompareStringW (Address: 0x5fd3a1fc)
  • GetStringTypeExW (Address: 0x5fd3a1f4)
  • MultiByteToWideChar (Address: 0x5fd3a200)
  • WideCharToMultiByte (Address: 0x5fd3a1f0)
api-ms-win-core-string-obsolete-l1-1-0.dll
  • lstrlenW (Address: 0x5fd3a208)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x5fd3a264)
  • AcquireSRWLockShared (Address: 0x5fd3a248)
  • CreateEventW (Address: 0x5fd3a210)
  • CreateMutexExW (Address: 0x5fd3a24c)
  • CreateMutexW (Address: 0x5fd3a22c)
  • CreateSemaphoreExW (Address: 0x5fd3a220)
  • DeleteCriticalSection (Address: 0x5fd3a244)
  • EnterCriticalSection (Address: 0x5fd3a224)
  • InitializeCriticalSection (Address: 0x5fd3a21c)
  • InitializeCriticalSectionEx (Address: 0x5fd3a234)
  • LeaveCriticalSection (Address: 0x5fd3a230)
  • OpenEventW (Address: 0x5fd3a214)
  • OpenSemaphoreW (Address: 0x5fd3a25c)
  • ReleaseMutex (Address: 0x5fd3a240)
  • ReleaseSemaphore (Address: 0x5fd3a228)
  • ReleaseSRWLockExclusive (Address: 0x5fd3a258)
  • ReleaseSRWLockShared (Address: 0x5fd3a250)
  • SetEvent (Address: 0x5fd3a218)
  • SleepEx (Address: 0x5fd3a238)
  • WaitForMultipleObjectsEx (Address: 0x5fd3a254)
  • WaitForSingleObject (Address: 0x5fd3a23c)
  • WaitForSingleObjectEx (Address: 0x5fd3a260)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x5fd3a26c)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetComputerNameExW (Address: 0x5fd3a284)
  • GetSystemDirectoryW (Address: 0x5fd3a274)
  • GetSystemInfo (Address: 0x5fd3a288)
  • GetSystemTimeAsFileTime (Address: 0x5fd3a278)
  • GetSystemWindowsDirectoryW (Address: 0x5fd3a280)
  • GetTickCount (Address: 0x5fd3a27c)
api-ms-win-core-sysinfo-l1-2-0.dll
  • GetSystemTimePreciseAsFileTime (Address: 0x5fd3a290)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x5fd3a2a0)
  • CreateThreadpoolTimer (Address: 0x5fd3a298)
  • SetThreadpoolTimer (Address: 0x5fd3a29c)
  • WaitForThreadpoolTimerCallbacks (Address: 0x5fd3a2a4)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
  • QueueUserWorkItem (Address: 0x5fd3a2ac)
api-ms-win-core-timezone-l1-1-0.dll
  • FileTimeToSystemTime (Address: 0x5fd3a2b4)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • GetTraceEnableFlags (Address: 0x5fd3a2c0)
  • GetTraceEnableLevel (Address: 0x5fd3a2bc)
  • GetTraceLoggerHandle (Address: 0x5fd3a2c4)
  • RegisterTraceGuidsW (Address: 0x5fd3a2cc)
  • TraceMessage (Address: 0x5fd3a2c8)
  • UnregisterTraceGuids (Address: 0x5fd3a2d0)
api-ms-win-eventing-controller-l1-1-0.dll
  • ControlTraceW (Address: 0x5fd3a2e0)
  • EnableTraceEx2 (Address: 0x5fd3a2d8)
  • StartTraceW (Address: 0x5fd3a2dc)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventRegister (Address: 0x5fd3a2f0)
  • EventSetInformation (Address: 0x5fd3a2e8)
  • EventUnregister (Address: 0x5fd3a2f4)
  • EventWriteTransfer (Address: 0x5fd3a2ec)
api-ms-win-security-base-l1-1-0.dll
  • AllocateAndInitializeSid (Address: 0x5fd3a318)
  • CheckTokenMembership (Address: 0x5fd3a314)
  • DuplicateToken (Address: 0x5fd3a310)
  • EqualSid (Address: 0x5fd3a304)
  • FreeSid (Address: 0x5fd3a31c)
  • GetSecurityDescriptorDacl (Address: 0x5fd3a30c)
  • GetSidSubAuthority (Address: 0x5fd3a300)
  • ImpersonateLoggedOnUser (Address: 0x5fd3a320)
  • ImpersonateSelf (Address: 0x5fd3a2fc)
  • RevertToSelf (Address: 0x5fd3a308)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x5fd3a36c)
  • __dllonexit (Address: 0x5fd3a3d8)
  • _amsg_exit (Address: 0x5fd3a388)
  • _callnewh (Address: 0x5fd3a33c)
  • _CxxThrowException (Address: 0x5fd3a364)
  • _except_handler4_common (Address: 0x5fd3a39c)
  • _findclose (Address: 0x5fd3a34c)
  • _initterm (Address: 0x5fd3a398)
  • _itow_s (Address: 0x5fd3a344)
  • _lock (Address: 0x5fd3a3a8)
  • _onexit (Address: 0x5fd3a3e8)
  • _purecall (Address: 0x5fd3a340)
  • _resetstkoflw (Address: 0x5fd3a37c)
  • _unlock (Address: 0x5fd3a3ac)
  • _vsnprintf_s (Address: 0x5fd3a338)
  • _vsnwprintf (Address: 0x5fd3a350)
  • _vsnwprintf_s (Address: 0x5fd3a3dc)
  • _wcsicmp (Address: 0x5fd3a3ec)
  • _wcsnicmp (Address: 0x5fd3a3c8)
  • _wcsupr (Address: 0x5fd3a3e4)
  • _wfindfirst64 (Address: 0x5fd3a35c)
  • _wfindnext64 (Address: 0x5fd3a390)
  • _wfopen (Address: 0x5fd3a394)
  • _wtol (Address: 0x5fd3a3f0)
  • _XcptFilter (Address: 0x5fd3a380)
  • ??0exception@@QAE@ABQBD@Z (Address: 0x5fd3a3b4)
  • ??0exception@@QAE@ABQBDH@Z (Address: 0x5fd3a358)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x5fd3a330)
  • ??0exception@@QAE@XZ (Address: 0x5fd3a328)
  • ??1exception@@UAE@XZ (Address: 0x5fd3a32c)
  • ??1type_info@@UAE@XZ (Address: 0x5fd3a3a4)
  • ??3@YAXPAX@Z (Address: 0x5fd3a354)
  • ?what@exception@@UBEPBDXZ (Address: 0x5fd3a360)
  • fclose (Address: 0x5fd3a3bc)
  • free (Address: 0x5fd3a38c)
  • malloc (Address: 0x5fd3a334)
  • memcmp (Address: 0x5fd3a368)
  • memcpy (Address: 0x5fd3a370)
  • memcpy_s (Address: 0x5fd3a348)
  • memmove (Address: 0x5fd3a378)
  • memmove_s (Address: 0x5fd3a3a0)
  • memset (Address: 0x5fd3a3f4)
  • swprintf_s (Address: 0x5fd3a3d4)
  • towlower (Address: 0x5fd3a384)
  • wcscat_s (Address: 0x5fd3a3b0)
  • wcschr (Address: 0x5fd3a3d0)
  • wcscpy_s (Address: 0x5fd3a3e0)
  • wcsncat_s (Address: 0x5fd3a3b8)
  • wcsncmp (Address: 0x5fd3a3c4)
  • wcsncpy_s (Address: 0x5fd3a3c0)
  • wcsstr (Address: 0x5fd3a3cc)
  • wcstoul (Address: 0x5fd3a374)
ntdll.dll
  • DbgPrint (Address: 0x5fd3a430)
  • NtAdjustPrivilegesToken (Address: 0x5fd3a490)
  • NtQueryInformationProcess (Address: 0x5fd3a43c)
  • NtQueryInformationToken (Address: 0x5fd3a460)
  • NtQueryObject (Address: 0x5fd3a440)
  • NtQuerySystemTime (Address: 0x5fd3a48c)
  • NtQueryWnfStateData (Address: 0x5fd3a410)
  • RtlAllocateAndInitializeSid (Address: 0x5fd3a468)
  • RtlAllocateHeap (Address: 0x5fd3a444)
  • RtlConvertSidToUnicodeString (Address: 0x5fd3a404)
  • RtlCopySid (Address: 0x5fd3a494)
  • RtlEqualSid (Address: 0x5fd3a41c)
  • RtlFreeHeap (Address: 0x5fd3a44c)
  • RtlFreeSid (Address: 0x5fd3a454)
  • RtlFreeUnicodeString (Address: 0x5fd3a408)
  • RtlGetAce (Address: 0x5fd3a470)
  • RtlGetControlSecurityDescriptor (Address: 0x5fd3a488)
  • RtlGetDaclSecurityDescriptor (Address: 0x5fd3a3fc)
  • RtlGetGroupSecurityDescriptor (Address: 0x5fd3a420)
  • RtlGetNtProductType (Address: 0x5fd3a414)
  • RtlGetOwnerSecurityDescriptor (Address: 0x5fd3a46c)
  • RtlGetSaclSecurityDescriptor (Address: 0x5fd3a474)
  • RtlIdentifierAuthoritySid (Address: 0x5fd3a47c)
  • RtlImageNtHeader (Address: 0x5fd3a448)
  • RtlInitUnicodeString (Address: 0x5fd3a40c)
  • RtlIsTextUnicode (Address: 0x5fd3a450)
  • RtlLengthRequiredSid (Address: 0x5fd3a418)
  • RtlLengthSecurityDescriptor (Address: 0x5fd3a434)
  • RtlLengthSid (Address: 0x5fd3a458)
  • RtlMakeSelfRelativeSD (Address: 0x5fd3a438)
  • RtlMapGenericMask (Address: 0x5fd3a484)
  • RtlNtStatusToDosError (Address: 0x5fd3a424)
  • RtlRandomEx (Address: 0x5fd3a428)
  • RtlSubAuthorityCountSid (Address: 0x5fd3a464)
  • RtlSubAuthoritySid (Address: 0x5fd3a480)
  • RtlSystemTimeToLocalTime (Address: 0x5fd3a45c)
  • RtlTimeToSecondsSince1980 (Address: 0x5fd3a42c)
  • RtlTimeToTimeFields (Address: 0x5fd3a478)
  • RtlValidSid (Address: 0x5fd3a400)
RPCRT4.dll
  • I_RpcExceptionFilter (Address: 0x5fd3a004)
  • NdrClientCall4 (Address: 0x5fd3a018)
  • NdrServerCall2 (Address: 0x5fd3a008)
  • RpcBindingFree (Address: 0x5fd3a014)
  • RpcBindingFromStringBindingW (Address: 0x5fd3a00c)
  • RpcBindingSetAuthInfoW (Address: 0x5fd3a020)
  • RpcBindingToStringBindingW (Address: 0x5fd3a01c)
  • RpcStringBindingComposeW (Address: 0x5fd3a010)
  • RpcStringBindingParseW (Address: 0x5fd3a024)
  • RpcStringFreeW (Address: 0x5fd3a000)