utildll.dll

Description: WinStation utility support DLL

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 32-bit

Operating System: Windows NT

SHA256: 325edd3adcb12713f2c50c0041cff2de

File Size: 39.8 KB

Uploaded At: Dec. 1, 2025, 8:05 a.m.

Views: 6

Exported Functions

  • AsyncDeviceEnumerate (Ordinal: 1, Address: 0x2d60)
  • CachedGetUserFromSid (Ordinal: 2, Address: 0x1b60)
  • CalculateDiffTime (Ordinal: 3, Address: 0x2ff0)
  • CalculateElapsedTime (Ordinal: 4, Address: 0x3020)
  • CompareElapsedTime (Ordinal: 5, Address: 0x32c0)
  • ConfigureModem (Ordinal: 6, Address: 0x3310)
  • CurrentDateTimeString (Ordinal: 7, Address: 0x3410)
  • DateTimeString (Ordinal: 8, Address: 0x3530)
  • ElapsedTimeString (Ordinal: 9, Address: 0x36a0)
  • EnumerateMultiUserServers (Ordinal: 10, Address: 0x3790)
  • FormDecoratedAsyncDeviceName (Ordinal: 11, Address: 0x3e80)
  • GetAssociatedPortName (Ordinal: 12, Address: 0x3ed0)
  • GetSystemMessageA (Ordinal: 13, Address: 0x3f90)
  • GetSystemMessageW (Ordinal: 14, Address: 0x4010)
  • GetUnknownString (Ordinal: 15, Address: 0x4210)
  • GetUserFromSid (Ordinal: 16, Address: 0x4250)
  • HaveAnonymousUsersChanged (Ordinal: 17, Address: 0x43b0)
  • InitializeAnonymousUserCompareList (Ordinal: 18, Address: 0x4500)
  • InstallModem (Ordinal: 19, Address: 0x4540)
  • IsPartOfDomain (Ordinal: 20, Address: 0x4600)
  • NetBIOSDeviceEnumerate (Ordinal: 21, Address: 0x4690)
  • NetworkDeviceEnumerate (Ordinal: 22, Address: 0x4920)
  • ParseDecoratedAsyncDeviceName (Ordinal: 23, Address: 0x4b20)
  • QueryCurrentWinStation (Ordinal: 24, Address: 0x4bf0)
  • RegGetNetworkDeviceName (Ordinal: 25, Address: 0x4cf0)
  • RegGetNetworkServiceName (Ordinal: 26, Address: 0x5260)
  • StandardErrorMessage (Ordinal: 27, Address: 0x5660)
  • StrAsyncConnectState (Ordinal: 28, Address: 0x5a00)
  • StrConnectState (Ordinal: 29, Address: 0x5a50)
  • StrProcessState (Ordinal: 30, Address: 0x5b80)
  • StrSdClass (Ordinal: 31, Address: 0x5bd0)
  • StrSystemWaitReason (Ordinal: 32, Address: 0x5cb0)
  • TestUserForAdmin (Ordinal: 33, Address: 0x6000)
  • WinEnumerateDevices (Ordinal: 34, Address: 0x60b0)

Imported DLLs & Functions

ADVAPI32.dll
  • CheckTokenMembership (Address: 0x30011028)
  • CopySid (Address: 0x30011004)
  • EqualSid (Address: 0x30011000)
  • GetLengthSid (Address: 0x30011008)
  • LookupAccountSidW (Address: 0x30011010)
  • LsaClose (Address: 0x30011014)
  • LsaFreeMemory (Address: 0x3001103c)
  • LsaOpenPolicy (Address: 0x30011018)
  • LsaQueryInformationPolicy (Address: 0x3001101c)
  • RegCloseKey (Address: 0x30011038)
  • RegEnumKeyExW (Address: 0x3001102c)
  • RegEnumValueW (Address: 0x3001100c)
  • RegOpenKeyExA (Address: 0x30011024)
  • RegOpenKeyExW (Address: 0x30011020)
  • RegQueryValueExA (Address: 0x30011030)
  • RegQueryValueExW (Address: 0x30011034)
KERNEL32.dll
  • CloseHandle (Address: 0x30011078)
  • CommConfigDialogW (Address: 0x300110ac)
  • CreateFileW (Address: 0x3001105c)
  • DelayLoadFailureHook (Address: 0x30011048)
  • FileTimeToLocalFileTime (Address: 0x30011080)
  • FileTimeToSystemTime (Address: 0x3001106c)
  • FormatMessageW (Address: 0x30011064)
  • FreeLibrary (Address: 0x300110a4)
  • GetCurrentProcess (Address: 0x300110c4)
  • GetCurrentProcessId (Address: 0x300110d8)
  • GetCurrentThreadId (Address: 0x300110d4)
  • GetDateFormatW (Address: 0x300110b4)
  • GetDefaultCommConfigW (Address: 0x30011088)
  • GetLastError (Address: 0x30011068)
  • GetLocalTime (Address: 0x30011084)
  • GetModuleHandleW (Address: 0x300110a0)
  • GetProcAddress (Address: 0x3001108c)
  • GetSystemTimeAsFileTime (Address: 0x300110d0)
  • GetTickCount (Address: 0x3001104c)
  • GetTimeFormatW (Address: 0x30011094)
  • GlobalAlloc (Address: 0x30011070)
  • GlobalFree (Address: 0x30011074)
  • LoadLibraryW (Address: 0x3001107c)
  • LocalAlloc (Address: 0x30011058)
  • LocalFree (Address: 0x30011090)
  • lstrcmpiW (Address: 0x300110b0)
  • MultiByteToWideChar (Address: 0x30011060)
  • QueryDosDeviceW (Address: 0x30011050)
  • QueryPerformanceCounter (Address: 0x300110cc)
  • ResolveDelayLoadedAPI (Address: 0x30011044)
  • SetDefaultCommConfigW (Address: 0x30011098)
  • SetLastError (Address: 0x30011054)
  • SetUnhandledExceptionFilter (Address: 0x300110c0)
  • Sleep (Address: 0x300110b8)
  • SystemTimeToFileTime (Address: 0x3001109c)
  • TerminateProcess (Address: 0x300110c8)
  • UnhandledExceptionFilter (Address: 0x300110bc)
  • WideCharToMultiByte (Address: 0x300110a8)
msvcrt.dll
  • __iob_func (Address: 0x30011114)
  • _amsg_exit (Address: 0x30011104)
  • _initterm (Address: 0x30011108)
  • _XcptFilter (Address: 0x300110fc)
  • free (Address: 0x30011110)
  • fwprintf (Address: 0x3001110c)
  • malloc (Address: 0x30011100)
netutils.dll
  • NetApiBufferFree (Address: 0x3001111c)
ntdll.dll
  • _chkstk (Address: 0x30011124)
  • _vsnwprintf (Address: 0x30011178)
  • _wcsicmp (Address: 0x30011170)
  • _wcslwr (Address: 0x3001115c)
  • _wcsnicmp (Address: 0x30011128)
  • memcpy (Address: 0x30011144)
  • memcpy_s (Address: 0x30011174)
  • memset (Address: 0x3001117c)
  • NtQueryVolumeInformationFile (Address: 0x30011138)
  • RtlAllocateAndInitializeSid (Address: 0x30011160)
  • RtlEnterCriticalSection (Address: 0x3001112c)
  • RtlExtendedLargeIntegerDivide (Address: 0x30011158)
  • RtlFreeSid (Address: 0x30011150)
  • RtlInitializeCriticalSection (Address: 0x30011130)
  • RtlLeaveCriticalSection (Address: 0x30011134)
  • RtlUnwind (Address: 0x30011140)
  • strstr (Address: 0x30011148)
  • swprintf_s (Address: 0x30011154)
  • vswprintf_s (Address: 0x30011164)
  • wcscat_s (Address: 0x30011168)
  • wcscpy_s (Address: 0x3001116c)
  • wcsrchr (Address: 0x3001113c)
  • wcsstr (Address: 0x3001114c)
samcli.dll
  • NetLocalGroupGetMembers (Address: 0x30011184)
USER32.dll
  • LoadCursorW (Address: 0x300110e0)
  • LoadStringW (Address: 0x300110ec)
  • MessageBoxW (Address: 0x300110e8)
  • SetCursor (Address: 0x300110e4)
WINSTA.dll
  • WinStationQueryInformationW (Address: 0x300110f4)