TpmCoreProvisioning.dll

Description: TPM Core Provisioning Library

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6456

Architecture: 32-bit

Operating System: Windows NT

SHA256: 91d6cff158be82251036c37033713c86

File Size: 923.0 KB

Uploaded At: Dec. 1, 2025, 8:05 a.m.

Views: 7

Exported Functions

  • Tpm20CanClearUsingAuthPolicy (Ordinal: 1, Address: 0x57d10)
  • Tpm20ClearUsingAuthPolicy (Ordinal: 2, Address: 0x57dd0)
  • Tpm20GetCompleteManufacturerVersion (Ordinal: 3, Address: 0x5a760)
  • Tpm20IsResetLockoutCountNeeded (Ordinal: 4, Address: 0x581a0)
  • Tpm20ResetLockoutCountIfNeeded (Ordinal: 5, Address: 0x58260)
  • Tpm2CreateWindowsNvBits (Ordinal: 6, Address: 0x574f0)
  • Tpm2ReadWindowsNvBit (Ordinal: 7, Address: 0x575b0)
  • Tpm2SetWindowsNvBit (Ordinal: 8, Address: 0x57670)
  • TpmAddBlockedCommand (Ordinal: 9, Address: 0x58950)
  • TpmCertCheckEkCertMatchedEkPub (Ordinal: 10, Address: 0x65520)
  • TpmCertDeleteHealthCert (Ordinal: 11, Address: 0x63490)
  • TpmCertDeleteHealthEndpoint (Ordinal: 12, Address: 0x62a20)
  • TpmCertGetCurrentProtocolVersion (Ordinal: 13, Address: 0x633d0)
  • TpmCertGetEkCertFromWeb (Ordinal: 14, Address: 0x68c10)
  • TpmCertGetFormattedHASUrl (Ordinal: 15, Address: 0x68a80)
  • TpmCertGetFormattedUrl (Ordinal: 16, Address: 0x688d0)
  • TpmCertGetFwLinkId (Ordinal: 17, Address: 0x67360)
  • TpmCertGetHealthCert (Ordinal: 18, Address: 0x630c0)
  • TpmCertGetHealthCertFromWeb (Ordinal: 19, Address: 0x6ae30)
  • TpmCertGetHealthCorrelationId (Ordinal: 20, Address: 0x62b90)
  • TpmCertGetHealthEndpoint (Ordinal: 21, Address: 0x62960)
  • TpmCertGetHealthForceRetrieve (Ordinal: 22, Address: 0x62d20)
  • TpmCertGetHealthStatusCode (Ordinal: 23, Address: 0x62ea0)
  • TpmCertGetHealthStatusRequestBlob (Ordinal: 24, Address: 0x6ab90)
  • TpmCertGetIsActiveZeroExhaust (Ordinal: 25, Address: 0x66670)
  • TpmCertGetMaximumSupportedProtocolVersion (Ordinal: 26, Address: 0x63190)
  • TpmCertGetPreferredMaximumProtocolVersion (Ordinal: 27, Address: 0x63250)
  • TpmCertGetTpmManufacturerId (Ordinal: 28, Address: 0x650d0)
  • TpmCertGetWindowsAik (Ordinal: 29, Address: 0x63ab0)
  • TpmCertInstallEkCertInRegistry (Ordinal: 30, Address: 0x655f0)
  • TpmCertInstallNvEkCerts (Ordinal: 31, Address: 0x65190)
  • TpmCertIsHealthCertOnBootEnabled (Ordinal: 32, Address: 0x636d0)
  • TpmCertParseHealthResponse (Ordinal: 33, Address: 0x67e80)
  • TpmCertPostHealthXmlData (Ordinal: 34, Address: 0x6ac70)
  • TpmCertQueryEkPub (Ordinal: 35, Address: 0x65430)
  • TpmCertSetHealthEndpoint (Ordinal: 36, Address: 0x628a0)
  • TpmCertSetHealthForceRetrieve (Ordinal: 37, Address: 0x62c60)
  • TpmCertSetHealthStatusCode (Ordinal: 38, Address: 0x62de0)
  • TpmCertSetPreferredMaximumProtocolVersion (Ordinal: 39, Address: 0x63310)
  • TpmCertVerifyHealthCertFromWeb (Ordinal: 40, Address: 0x6afc0)
  • TpmChangeOwnerAuth (Ordinal: 41, Address: 0x580d0)
  • TpmCheckCreateWindowsAIK (Ordinal: 42, Address: 0x59d10)
  • TpmCheckIFXRSAKeyGenVulnerability (Ordinal: 43, Address: 0x6d230)
  • TpmClear (Ordinal: 44, Address: 0x57e90)
  • TpmClearUsingPhysicalPresence (Ordinal: 45, Address: 0x5a4a0)
  • TpmClearWithPolicyOrPPI (Ordinal: 46, Address: 0x5ab00)
  • TpmConvertToOwnerAuth (Ordinal: 47, Address: 0x584a0)
  • TpmCreateEndorsementKeyPair (Ordinal: 48, Address: 0x571e0)
  • TpmCreateHealthAttestationClaim (Ordinal: 49, Address: 0x63920)
  • TpmCreateHealthStatusClaim (Ordinal: 50, Address: 0x63750)
  • TpmDeleteOwnerAuth (Ordinal: 51, Address: 0x590f0)
  • TpmDisable (Ordinal: 52, Address: 0x56fa0)
  • TpmDisableAutoProvisioning (Ordinal: 53, Address: 0x58f80)
  • TpmEKCertValidateAndCleanup (Ordinal: 54, Address: 0x5a320)
  • TpmEnable (Ordinal: 55, Address: 0x56ee0)
  • TpmEnableAutoProvisioning (Ordinal: 56, Address: 0x58ed0)
  • TpmEnrollWindowsAikCertificate (Ordinal: 57, Address: 0x5aee0)
  • TpmGatherLogs (Ordinal: 58, Address: 0x5abc0)
  • TpmGatherTpmData (Ordinal: 59, Address: 0x6cf00)
  • TpmGetCapLockoutInfo (Ordinal: 60, Address: 0x59c50)
  • TpmGetDeviceInformation (Ordinal: 61, Address: 0x5a980)
  • TpmGetDictionaryAttackParameters (Ordinal: 62, Address: 0x599f0)
  • TpmGetEffectiveGroupPolicyOwnerAuthLevel (Ordinal: 63, Address: 0x598a0)
  • TpmGetEndorsementKeyCertificateState (Ordinal: 64, Address: 0x5a1a0)
  • TpmGetHealthCertRequest (Ordinal: 65, Address: 0x64410)
  • TpmGetOrderlyShutdownInfo (Ordinal: 66, Address: 0x59b90)
  • TpmGetOwnerAuth (Ordinal: 67, Address: 0x59030)
  • TpmGetOwnerAuthForEscrow (Ordinal: 68, Address: 0x59650)
  • TpmGetOwnerAuthStatus (Ordinal: 69, Address: 0x597e0)
  • TpmGetOwnershipAuthBits (Ordinal: 70, Address: 0x568e0)
  • TpmGetPPIVersion (Ordinal: 71, Address: 0x5a8b0)
  • TpmGetPhysicalPresenceConfirmationStatus (Ordinal: 72, Address: 0x59340)
  • TpmGetPhysicalPresenceRequest (Ordinal: 73, Address: 0x586f0)
  • TpmGetPhysicalPresenceResponse (Ordinal: 74, Address: 0x58870)
  • TpmGetPhysicalPresenceTransition (Ordinal: 75, Address: 0x587b0)
  • TpmGetPssSalt (Ordinal: 76, Address: 0x5ad40)
  • TpmGetRandomAuthValue (Ordinal: 77, Address: 0x58320)
  • TpmGetSignedEKFromVendorCommand (Ordinal: 78, Address: 0x5ae10)
  • TpmGetSrkADThumbprint (Ordinal: 79, Address: 0x594c0)
  • TpmGetSrkPublicKeyModulus (Ordinal: 80, Address: 0x59400)
  • TpmGetTcgLog (Ordinal: 81, Address: 0x59590)
  • TpmGetTpmVersion (Ordinal: 82, Address: 0x5a820)
  • TpmGetVerificationRequest (Ordinal: 83, Address: 0x644d0)
  • TpmGet_IsPpiVersion12 (Ordinal: 84, Address: 0x56370)
  • TpmGet_IsTpmPresent (Ordinal: 85, Address: 0x561e0)
  • TpmGet_IsTpmVersion20 (Ordinal: 86, Address: 0x56280)
  • TpmGet_ManufacturerId (Ordinal: 87, Address: 0x55d00)
  • TpmGet_ManufacturerVersion (Ordinal: 88, Address: 0x55e00)
  • TpmGet_ManufacturerVersionInfo (Ordinal: 89, Address: 0x55ec0)
  • TpmGet_PhysicalPresenceVersionInfo (Ordinal: 90, Address: 0x56040)
  • TpmGet_SpecVersion (Ordinal: 91, Address: 0x55f80)
  • TpmGet_TpmVersionInfo (Ordinal: 92, Address: 0x56100)
  • TpmHasVulnerableFW (Ordinal: 93, Address: 0x5aa40)
  • TpmHealthCertGetAndVerify (Ordinal: 94, Address: 0x63de0)
  • TpmImportOwnerAuth (Ordinal: 95, Address: 0x59280)
  • TpmIsActivated (Ordinal: 96, Address: 0x569a0)
  • TpmIsAutoProvisioningEnabled (Ordinal: 97, Address: 0x58dd0)
  • TpmIsAutoProvisioningEnabledEx (Ordinal: 98, Address: 0x58e20)
  • TpmIsCommandBlocked (Ordinal: 99, Address: 0x58b90)
  • TpmIsCommandPresent (Ordinal: 100, Address: 0x56d60)
  • TpmIsEnabled (Ordinal: 101, Address: 0x56760)
  • TpmIsEndorsementKeyPairPresent (Ordinal: 102, Address: 0x57060)
  • TpmIsFIPS (Ordinal: 103, Address: 0x57120)
  • TpmIsKeyAttestationCapable (Ordinal: 104, Address: 0x56e20)
  • TpmIsLockedOut (Ordinal: 105, Address: 0x5a3e0)
  • TpmIsOwned (Ordinal: 106, Address: 0x56820)
  • TpmIsOwnerClearDisabled (Ordinal: 107, Address: 0x56b20)
  • TpmIsOwnershipAllowed (Ordinal: 108, Address: 0x56ca0)
  • TpmIsPhysicalClearDisabled (Ordinal: 109, Address: 0x56a60)
  • TpmIsPhysicalPresenceHardwareEnabled (Ordinal: 110, Address: 0x56be0)
  • TpmIsReady (Ordinal: 111, Address: 0x58c50)
  • TpmIsReadyInformation (Ordinal: 112, Address: 0x58d10)
  • TpmIsSrkAuthCompatible (Ordinal: 113, Address: 0x57f50)
  • TpmIsUseLegacyDictionaryAttackParametersPolicySet (Ordinal: 114, Address: 0x57360)
  • TpmManufacturerId_From_TpmVersionInfo (Ordinal: 115, Address: 0x56430)
  • TpmManufacturerVersionInfo_From_TpmVersionInfo (Ordinal: 116, Address: 0x565c0)
  • TpmManufacturerVersion_From_TpmVersionInfo (Ordinal: 117, Address: 0x564f0)
  • TpmOwnerAuthEscrowed (Ordinal: 118, Address: 0x59720)
  • TpmPrepForNgc (Ordinal: 119, Address: 0x59f50)
  • TpmProvision (Ordinal: 120, Address: 0x591b0)
  • TpmRemoveBlockedCommand (Ordinal: 121, Address: 0x58a10)
  • TpmRemoveRegisteredWindowsAIK (Ordinal: 122, Address: 0x59e90)
  • TpmResetAuthLockOut (Ordinal: 123, Address: 0x58ad0)
  • TpmResetSrkAuth (Ordinal: 124, Address: 0x58010)
  • TpmRetrieveEkCertOrReschedule (Ordinal: 125, Address: 0x5a010)
  • TpmRetrieveEkCertificate (Ordinal: 126, Address: 0x661f0)
  • TpmRetrieveEkCertificateURL (Ordinal: 127, Address: 0x660a0)
  • TpmRetrieveHealthCertOrReschedule (Ordinal: 128, Address: 0x5a0d0)
  • TpmRetrieveHealthCertificate (Ordinal: 129, Address: 0x63d00)
  • TpmSelfTest (Ordinal: 130, Address: 0x583e0)
  • TpmSetDictionaryAttackParameters (Ordinal: 131, Address: 0x59ac0)
  • TpmSetInstance (Ordinal: 132, Address: 0x55b60)
  • TpmSetPhysicalPresenceRequest (Ordinal: 133, Address: 0x58570)
  • TpmSetPhysicalPresenceRequestEx (Ordinal: 134, Address: 0x58630)
  • TpmSetToLegacyDictionaryAttackParameters (Ordinal: 135, Address: 0x5a260)
  • TpmSpecVersion_From_TpmVersionInfo (Ordinal: 136, Address: 0x56690)
  • TpmTakeOwnership (Ordinal: 137, Address: 0x572a0)
  • TpmUnattendedSetup (Ordinal: 138, Address: 0x5a560)
  • TpmVerifyDeviceHealth (Ordinal: 139, Address: 0x64350)
  • TpmWriteInformationSnapshotFile (Ordinal: 140, Address: 0x5ac80)
  • DllCanUnloadNow (Ordinal: 141, Address: 0x3cd00)
  • TpmCertGetHASProtocolVersion (Ordinal: 142, Address: 0x62710)
  • TpmCertSetEkAttestationOverride (Ordinal: 143, Address: 0x627e0)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x100d90d4)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateFreeThreadedMarshaler (Address: 0x100d90dc)
  • CoCreateInstance (Address: 0x100d90e0)
  • CoGetApartmentType (Address: 0x100d90f4)
  • CoInitializeEx (Address: 0x100d90f0)
  • CoTaskMemFree (Address: 0x100d90e8)
  • CoUninitialize (Address: 0x100d90ec)
  • CoWaitForMultipleHandles (Address: 0x100d90e4)
api-ms-win-core-datetime-l1-1-1.dll
  • GetDateFormatEx (Address: 0x100d9100)
  • GetTimeFormatEx (Address: 0x100d90fc)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x100d9110)
  • IsDebuggerPresent (Address: 0x100d910c)
  • OutputDebugStringW (Address: 0x100d9108)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x100d9118)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x100d9120)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x100d9130)
  • RaiseException (Address: 0x100d9128)
  • SetLastError (Address: 0x100d912c)
  • SetUnhandledExceptionFilter (Address: 0x100d9138)
  • UnhandledExceptionFilter (Address: 0x100d9134)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x100d9150)
  • CreateFileW (Address: 0x100d9144)
  • FindClose (Address: 0x100d9148)
  • FindFirstFileExW (Address: 0x100d9158)
  • FindNextFileW (Address: 0x100d9154)
  • ReadFile (Address: 0x100d9140)
  • WriteFile (Address: 0x100d914c)
api-ms-win-core-file-l1-2-0.dll
  • CreateFile2 (Address: 0x100d9160)
api-ms-win-core-file-l2-1-0.dll
  • CopyFile2 (Address: 0x100d9168)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x100d9170)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x100d9184)
  • HeapAlloc (Address: 0x100d917c)
  • HeapFree (Address: 0x100d9178)
  • HeapSize (Address: 0x100d9180)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x100d9190)
  • LocalFree (Address: 0x100d918c)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x100d9198)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x100d91a4)
  • GetOverlappedResult (Address: 0x100d91a0)
api-ms-win-core-io-l1-1-1.dll
  • CancelIo (Address: 0x100d91ac)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x100d91c8)
  • FreeLibrary (Address: 0x100d91c0)
  • GetModuleFileNameA (Address: 0x100d91c4)
  • GetModuleHandleExW (Address: 0x100d91d0)
  • GetModuleHandleW (Address: 0x100d91dc)
  • GetProcAddress (Address: 0x100d91bc)
  • LoadLibraryExW (Address: 0x100d91b8)
  • LoadResource (Address: 0x100d91cc)
  • LoadStringW (Address: 0x100d91b4)
  • LockResource (Address: 0x100d91d8)
  • SizeofResource (Address: 0x100d91d4)
api-ms-win-core-libraryloader-l1-2-1.dll
  • FindResourceW (Address: 0x100d91e4)
  • LoadLibraryW (Address: 0x100d91e8)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x100d91f0)
api-ms-win-core-processenvironment-l1-1-0.dll
  • GetEnvironmentVariableW (Address: 0x100d91f8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x100d920c)
  • GetCurrentProcessId (Address: 0x100d9200)
  • GetCurrentThread (Address: 0x100d9210)
  • GetCurrentThreadId (Address: 0x100d9204)
  • OpenThreadToken (Address: 0x100d9218)
  • SetThreadToken (Address: 0x100d9214)
  • TerminateProcess (Address: 0x100d9208)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x100d9220)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x100d9228)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x100d9230)
  • RegCreateKeyExW (Address: 0x100d923c)
  • RegDeleteKeyExW (Address: 0x100d9234)
  • RegDeleteValueW (Address: 0x100d9238)
  • RegFlushKey (Address: 0x100d9244)
  • RegGetValueW (Address: 0x100d924c)
  • RegOpenKeyExW (Address: 0x100d9240)
  • RegQueryValueExW (Address: 0x100d9248)
  • RegSetValueExW (Address: 0x100d9250)
api-ms-win-core-registry-l1-1-1.dll
  • RegDeleteKeyValueW (Address: 0x100d9258)
  • RegSetKeyValueW (Address: 0x100d925c)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringW (Address: 0x100d9268)
  • MultiByteToWideChar (Address: 0x100d9264)
  • WideCharToMultiByte (Address: 0x100d926c)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x100d92cc)
  • AcquireSRWLockShared (Address: 0x100d92b4)
  • CreateEventExW (Address: 0x100d92bc)
  • CreateEventW (Address: 0x100d9280)
  • CreateMutexExW (Address: 0x100d9284)
  • CreateMutexW (Address: 0x100d9288)
  • CreateSemaphoreExW (Address: 0x100d92c8)
  • DeleteCriticalSection (Address: 0x100d9298)
  • EnterCriticalSection (Address: 0x100d927c)
  • InitializeCriticalSection (Address: 0x100d9274)
  • InitializeCriticalSectionEx (Address: 0x100d92c0)
  • LeaveCriticalSection (Address: 0x100d9278)
  • OpenEventW (Address: 0x100d928c)
  • OpenMutexW (Address: 0x100d92a8)
  • OpenSemaphoreW (Address: 0x100d9294)
  • ReleaseMutex (Address: 0x100d92a4)
  • ReleaseSemaphore (Address: 0x100d92b8)
  • ReleaseSRWLockExclusive (Address: 0x100d92b0)
  • ReleaseSRWLockShared (Address: 0x100d92c4)
  • SetEvent (Address: 0x100d9290)
  • WaitForMultipleObjectsEx (Address: 0x100d929c)
  • WaitForSingleObject (Address: 0x100d92ac)
  • WaitForSingleObjectEx (Address: 0x100d92a0)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x100d92d8)
  • InitOnceComplete (Address: 0x100d92d4)
  • InitOnceExecuteOnce (Address: 0x100d92e0)
  • Sleep (Address: 0x100d92dc)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetLocalTime (Address: 0x100d92f4)
  • GetSystemDirectoryW (Address: 0x100d92f8)
  • GetSystemTimeAsFileTime (Address: 0x100d92f0)
  • GetSystemWindowsDirectoryW (Address: 0x100d92e8)
  • GetTickCount (Address: 0x100d92fc)
  • GetTickCount64 (Address: 0x100d92ec)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x100d9310)
  • CreateThreadpoolTimer (Address: 0x100d9308)
  • SetThreadpoolTimer (Address: 0x100d930c)
  • WaitForThreadpoolTimerCallbacks (Address: 0x100d9304)
api-ms-win-core-timezone-l1-1-0.dll
  • FileTimeToSystemTime (Address: 0x100d931c)
  • SystemTimeToFileTime (Address: 0x100d9318)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x100d932c)
  • RoGetActivationFactory (Address: 0x100d9328)
  • RoInitialize (Address: 0x100d9324)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateStringReference (Address: 0x100d933c)
  • WindowsDeleteString (Address: 0x100d9334)
  • WindowsGetStringRawBuffer (Address: 0x100d9338)
api-ms-win-crt-private-l1-1-0.dll
  • __CxxFrameHandler3 (Address: 0x100d942c)
  • __std_terminate (Address: 0x100d9428)
  • _CxxThrowException (Address: 0x100d93f8)
  • _except_handler4_common (Address: 0x100d93f4)
  • _o___std_exception_copy (Address: 0x100d9424)
  • _o___std_exception_destroy (Address: 0x100d9420)
  • _o___std_type_info_destroy_list (Address: 0x100d941c)
  • _o___stdio_common_vsnprintf_s (Address: 0x100d9418)
  • _o___stdio_common_vsnwprintf_s (Address: 0x100d9414)
  • _o___stdio_common_vsprintf (Address: 0x100d9410)
  • _o___stdio_common_vsprintf_s (Address: 0x100d940c)
  • _o___stdio_common_vswprintf (Address: 0x100d9408)
  • _o___stdio_common_vswprintf_s (Address: 0x100d9404)
  • _o__callnewh (Address: 0x100d9400)
  • _o__cexit (Address: 0x100d93fc)
  • _o__configure_narrow_argv (Address: 0x100d9344)
  • _o__crt_atexit (Address: 0x100d9348)
  • _o__errno (Address: 0x100d934c)
  • _o__execute_onexit_table (Address: 0x100d9350)
  • _o__fseeki64 (Address: 0x100d9354)
  • _o__get_stream_buffer_pointers (Address: 0x100d9358)
  • _o__initialize_narrow_environment (Address: 0x100d935c)
  • _o__initialize_onexit_table (Address: 0x100d9360)
  • _o__invalid_parameter_noinfo (Address: 0x100d9364)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x100d9368)
  • _o__localtime32 (Address: 0x100d936c)
  • _o__lock_file (Address: 0x100d9370)
  • _o__mktime32 (Address: 0x100d9374)
  • _o__purecall (Address: 0x100d9378)
  • _o__register_onexit_function (Address: 0x100d937c)
  • _o__seh_filter_dll (Address: 0x100d9380)
  • _o__unlock_file (Address: 0x100d9388)
  • _o__wcsicmp (Address: 0x100d938c)
  • _o__wcsnicmp (Address: 0x100d9390)
  • _o_btowc (Address: 0x100d9394)
  • _o_fclose (Address: 0x100d9398)
  • _o_fflush (Address: 0x100d939c)
  • _o_fgetc (Address: 0x100d93a0)
  • _o_fgetpos (Address: 0x100d93a4)
  • _o_fputc (Address: 0x100d93a8)
  • _o_fread (Address: 0x100d93ac)
  • _o_free (Address: 0x100d93b0)
  • _o_fsetpos (Address: 0x100d93b4)
  • _o_fwrite (Address: 0x100d93b8)
  • _o_malloc (Address: 0x100d93bc)
  • _o_mbstowcs_s (Address: 0x100d93c0)
  • _o_memcpy_s (Address: 0x100d93c4)
  • _o_setvbuf (Address: 0x100d93c8)
  • _o_strtoul (Address: 0x100d93cc)
  • _o_terminate (Address: 0x100d93d0)
  • _o_toupper (Address: 0x100d93d4)
  • _o_ungetc (Address: 0x100d93d8)
  • _o_wcsftime (Address: 0x100d93dc)
  • _o_wcsncpy_s (Address: 0x100d93e0)
  • _o_wcstok (Address: 0x100d93e4)
  • _o_wcstombs (Address: 0x100d93e8)
  • _o_wcstoul (Address: 0x100d93ec)
  • _o_wmemcpy_s (Address: 0x100d93f0)
  • memcmp (Address: 0x100d9430)
  • memcpy (Address: 0x100d9434)
  • memmove (Address: 0x100d9384)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x100d9440)
  • _initterm_e (Address: 0x100d943c)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x100d9448)
  • strncmp (Address: 0x100d944c)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x100d9464)
  • EventProviderEnabled (Address: 0x100d9458)
  • EventRegister (Address: 0x100d9454)
  • EventSetInformation (Address: 0x100d945c)
  • EventUnregister (Address: 0x100d9468)
  • EventWriteTransfer (Address: 0x100d9460)
api-ms-win-security-base-l1-1-0.dll
  • GetSecurityDescriptorLength (Address: 0x100d9470)
  • ImpersonateLoggedOnUser (Address: 0x100d947c)
  • IsValidSecurityDescriptor (Address: 0x100d9474)
  • RevertToSelf (Address: 0x100d9478)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x100d9484)
certenroll.dll
  • (Address: 0x100d948c)
  • (Address: 0x100d9490)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x100d9028)
  • CertAddEncodedCertificateToStore (Address: 0x100d9020)
  • CertCloseStore (Address: 0x100d900c)
  • CertCreateCertificateContext (Address: 0x100d9030)
  • CertDeleteCertificateFromStore (Address: 0x100d9024)
  • CertEnumCertificatesInStore (Address: 0x100d9000)
  • CertFindExtension (Address: 0x100d9018)
  • CertFreeCertificateContext (Address: 0x100d902c)
  • CertGetNameStringW (Address: 0x100d9034)
  • CertOpenStore (Address: 0x100d9008)
  • CryptBinaryToStringA (Address: 0x100d9038)
  • CryptBinaryToStringW (Address: 0x100d9004)
  • CryptDecodeObject (Address: 0x100d901c)
  • CryptImportPublicKeyInfoEx2 (Address: 0x100d9014)
  • CryptStringToBinaryW (Address: 0x100d9010)
DEVOBJ.dll
  • DevObjCreateDeviceInfoList (Address: 0x100d9048)
  • DevObjDestroyDeviceInfoList (Address: 0x100d9044)
  • DevObjEnumDeviceInterfaces (Address: 0x100d9050)
  • DevObjGetClassDevs (Address: 0x100d9040)
  • DevObjGetDeviceInterfaceDetail (Address: 0x100d904c)
msvcp_win.dll
  • ?_Fiopen@std@@YAPAU_iobuf@@PBGHH@Z (Address: 0x100d94fc)
  • ?_Getcat@?$codecvt@DDU_Mbstatet@@@std@@SAIPAPBVfacet@locale@2@PBV42@@Z (Address: 0x100d94f8)
  • ?_Getcat@?$ctype@G@std@@SAIPAPBVfacet@locale@2@PBV42@@Z (Address: 0x100d9590)
  • ?_Getgloballocale@locale@std@@CAPAV_Locimp@12@XZ (Address: 0x100d9504)
  • ?_Gndec@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEPADXZ (Address: 0x100d952c)
  • ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXXZ (Address: 0x100d94e8)
  • ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UAEXXZ (Address: 0x100d956c)
  • ?_Lock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UAEXXZ (Address: 0x100d955c)
  • ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEXXZ (Address: 0x100d9580)
  • ?_Osfx@?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEXXZ (Address: 0x100d9554)
  • ?_Pninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEPADXZ (Address: 0x100d94d8)
  • ?_Pninc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IAEPAGXZ (Address: 0x100d954c)
  • ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UAEXXZ (Address: 0x100d9568)
  • ?_Unlock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UAEXXZ (Address: 0x100d9558)
  • ?_Xbad_alloc@std@@YAXXZ (Address: 0x100d9528)
  • ?_Xlength_error@std@@YAXPBD@Z (Address: 0x100d94bc)
  • ?_Xout_of_range@std@@YAXPBD@Z (Address: 0x100d9514)
  • ??0_Lockit@std@@QAE@H@Z (Address: 0x100d9508)
  • ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IAE@XZ (Address: 0x100d94ec)
  • ??0?$basic_ios@GU?$char_traits@G@std@@@std@@IAE@XZ (Address: 0x100d9498)
  • ??0?$basic_iostream@GU?$char_traits@G@std@@@std@@QAE@PAV?$basic_streambuf@GU?$char_traits@G@std@@@1@@Z (Address: 0x100d95a0)
  • ??0?$basic_ostream@DU?$char_traits@D@std@@@std@@QAE@PAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z (Address: 0x100d94e4)
  • ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAE@XZ (Address: 0x100d94f4)
  • ??0?$basic_streambuf@GU?$char_traits@G@std@@@std@@IAE@XZ (Address: 0x100d949c)
  • ??1_Lockit@std@@QAE@XZ (Address: 0x100d950c)
  • ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UAE@XZ (Address: 0x100d94cc)
  • ??1?$basic_ios@GU?$char_traits@G@std@@@std@@UAE@XZ (Address: 0x100d95a4)
  • ??1?$basic_iostream@GU?$char_traits@G@std@@@std@@UAE@XZ (Address: 0x100d9518)
  • ??1?$basic_ostream@DU?$char_traits@D@std@@@std@@UAE@XZ (Address: 0x100d94b8)
  • ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UAE@XZ (Address: 0x100d94c8)
  • ??1?$basic_streambuf@GU?$char_traits@G@std@@@std@@UAE@XZ (Address: 0x100d95ac)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEAAV01@H@Z (Address: 0x100d951c)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEAAV01@I@Z (Address: 0x100d9510)
  • ??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEAAV01@P6AAAVios_base@1@AAV21@@Z@Z (Address: 0x100d9520)
  • ??Bid@locale@std@@QAEIXZ (Address: 0x100d94ac)
  • ?always_noconv@codecvt_base@std@@QBE_NXZ (Address: 0x100d94b0)
  • ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEAAV12@XZ (Address: 0x100d9584)
  • ?flush@?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEAAV12@XZ (Address: 0x100d959c)
  • ?gbump@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IAEXH@Z (Address: 0x100d9524)
  • ?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QBE?AVlocale@2@XZ (Address: 0x100d94f0)
  • ?getloc@ios_base@std@@QBE?AVlocale@2@XZ (Address: 0x100d9598)
  • ?id@?$codecvt@DDU_Mbstatet@@@std@@2V0locale@2@A (Address: 0x100d9500)
  • ?id@?$ctype@G@std@@2V0locale@2@A (Address: 0x100d9594)
  • ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEXABVlocale@2@@Z (Address: 0x100d957c)
  • ?imbue@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAEXABVlocale@2@@Z (Address: 0x100d9534)
  • ?in@?$codecvt@DDU_Mbstatet@@@std@@QBEHAAU_Mbstatet@@PBD1AAPBDPAD3AAPAD@Z (Address: 0x100d94d4)
  • ?out@?$codecvt@DDU_Mbstatet@@@std@@QBEHAAU_Mbstatet@@PBD1AAPBDPAD3AAPAD@Z (Address: 0x100d94d0)
  • ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEPAV12@PAD_J@Z (Address: 0x100d9578)
  • ?setbuf@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAEPAV12@PAG_J@Z (Address: 0x100d953c)
  • ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QAEXH_N@Z (Address: 0x100d94dc)
  • ?setstate@?$basic_ios@GU?$char_traits@G@std@@@std@@QAEXH_N@Z (Address: 0x100d95a8)
  • ?setw@std@@YA?AU?$_Smanip@_J@1@_J@Z (Address: 0x100d94a4)
  • ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAE_JXZ (Address: 0x100d94c4)
  • ?showmanyc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAE_JXZ (Address: 0x100d9550)
  • ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAEHD@Z (Address: 0x100d9564)
  • ?sputc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QAEGG@Z (Address: 0x100d9560)
  • ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAE_JPBD_J@Z (Address: 0x100d9588)
  • ?sputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QAE_JPBG_J@Z (Address: 0x100d94a0)
  • ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEHXZ (Address: 0x100d9570)
  • ?sync@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAEHXZ (Address: 0x100d9538)
  • ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEHXZ (Address: 0x100d9574)
  • ?uflow@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAEGXZ (Address: 0x100d9548)
  • ?uncaught_exception@std@@YA_NXZ (Address: 0x100d94a8)
  • ?unshift@?$codecvt@DDU_Mbstatet@@@std@@QBEHAAU_Mbstatet@@PAD1AAPAD@Z (Address: 0x100d94e0)
  • ?widen@?$ctype@G@std@@QBEGD@Z (Address: 0x100d958c)
  • ?write@?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEAAV12@PBD_J@Z (Address: 0x100d94b4)
  • ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAE_JPAD_J@Z (Address: 0x100d94c0)
  • ?xsgetn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAE_JPAG_J@Z (Address: 0x100d9544)
  • ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAE_JPBD_J@Z (Address: 0x100d9530)
  • ?xsputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MAE_JPBG_J@Z (Address: 0x100d9540)
ncrypt.dll
  • BCryptDecrypt (Address: 0x100d95b4)
  • BCryptGenerateSymmetricKey (Address: 0x100d95c8)
  • BCryptGenRandom (Address: 0x100d95cc)
  • BCryptSetProperty (Address: 0x100d95c4)
  • BCryptVerifySignature (Address: 0x100d95b8)
  • NCryptCreateClaim (Address: 0x100d95bc)
  • NCryptCreatePersistedKey (Address: 0x100d95e0)
  • NCryptDecrypt (Address: 0x100d95c0)
  • NCryptDeleteKey (Address: 0x100d95d8)
  • NCryptEncrypt (Address: 0x100d95f0)
  • NCryptExportKey (Address: 0x100d95f8)
  • NCryptFinalizeKey (Address: 0x100d95f4)
  • NCryptFreeObject (Address: 0x100d95ec)
  • NCryptGetProperty (Address: 0x100d95fc)
  • NCryptImportKey (Address: 0x100d95d4)
  • NCryptOpenKey (Address: 0x100d95e8)
  • NCryptOpenStorageProvider (Address: 0x100d95e4)
  • NCryptSetProperty (Address: 0x100d95dc)
  • NCryptSignHash (Address: 0x100d95d0)
ntdll.dll
  • NtClose (Address: 0x100d961c)
  • NtOpenKey (Address: 0x100d9614)
  • NtQueryValueKey (Address: 0x100d9610)
  • RtlCompareMemory (Address: 0x100d9604)
  • RtlGetPersistedStateLocation (Address: 0x100d9608)
  • RtlInitUnicodeString (Address: 0x100d9618)
  • RtlNtStatusToDosError (Address: 0x100d9620)
  • RtlPublishWnfStateData (Address: 0x100d960c)
OLEAUT32.dll
  • SysAllocString (Address: 0x100d9060)
  • SysAllocStringByteLen (Address: 0x100d905c)
  • SysFreeString (Address: 0x100d9068)
  • SysStringByteLen (Address: 0x100d9058)
  • SysStringLen (Address: 0x100d9064)
  • VariantClear (Address: 0x100d906c)
  • VariantInit (Address: 0x100d9070)
RPCRT4.dll
  • RpcStringFreeW (Address: 0x100d9078)
  • UuidCreate (Address: 0x100d9080)
  • UuidToStringW (Address: 0x100d907c)
UMPDC.dll
  • Pdcv2ActivationClientActivate (Address: 0x100d908c)
  • Pdcv2ActivationClientDeactivate (Address: 0x100d9088)
  • Pdcv2ActivationClientRegister (Address: 0x100d9098)
  • Pdcv2ActivationClientRenewActivation (Address: 0x100d9094)
  • Pdcv2ActivationClientUnregister (Address: 0x100d9090)
WINHTTP.dll
  • WinHttpAddRequestHeaders (Address: 0x100d90a4)
  • WinHttpCloseHandle (Address: 0x100d90b8)
  • WinHttpConnect (Address: 0x100d90b4)
  • WinHttpCrackUrl (Address: 0x100d90b0)
  • WinHttpOpen (Address: 0x100d90a8)
  • WinHttpOpenRequest (Address: 0x100d90c0)
  • WinHttpQueryDataAvailable (Address: 0x100d90ac)
  • WinHttpQueryHeaders (Address: 0x100d90a0)
  • WinHttpReadData (Address: 0x100d90c8)
  • WinHttpReceiveResponse (Address: 0x100d90bc)
  • WinHttpSendRequest (Address: 0x100d90c4)
  • WinHttpSetOption (Address: 0x100d90cc)