Windows.Security.Authentication.Web.Core.dll

Description: Token Broker WinRT API

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5848

Architecture: 32-bit

Operating System: Windows NT

SHA256: 64444c730957fefe65d5546d1011b0bc

File Size: 977.5 KB

Uploaded At: Dec. 1, 2025, 8:07 a.m.

Views: 6

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x454e0)
  • DllGetActivationFactory (Ordinal: 2, Address: 0x44d00)
  • DllGetClassObject (Ordinal: 3, Address: 0x702a0)
  • FreeIdentityProviderCookies (Ordinal: 4, Address: 0x702c0)
  • GetIdentityProviderCookies (Ordinal: 5, Address: 0x702e0)

Imported DLLs & Functions

api-ms-win-appmodel-identity-l1-2-0.dll
  • AppContainerDeriveSidFromMoniker (Address: 0x100e5000)
api-ms-win-appmodel-runtime-l1-1-1.dll
  • GetPackageFamilyNameFromToken (Address: 0x100e5008)
  • GetPackageFullNameFromToken (Address: 0x100e500c)
api-ms-win-appmodel-state-l1-2-0.dll
  • CloseState (Address: 0x100e501c)
  • GetStateRootFolder (Address: 0x100e5014)
  • OpenStateExplicit (Address: 0x100e5018)
api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x100e5024)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x100e5030)
  • IsDebuggerPresent (Address: 0x100e502c)
  • OutputDebugStringW (Address: 0x100e5034)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x100e503c)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x100e5044)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x100e5054)
  • RaiseException (Address: 0x100e504c)
  • SetLastError (Address: 0x100e505c)
  • SetUnhandledExceptionFilter (Address: 0x100e5058)
  • UnhandledExceptionFilter (Address: 0x100e5050)
api-ms-win-core-file-l1-1-0.dll
  • CompareFileTime (Address: 0x100e5080)
  • CreateDirectoryW (Address: 0x100e508c)
  • CreateFileW (Address: 0x100e5090)
  • FindClose (Address: 0x100e5064)
  • FindFirstFileW (Address: 0x100e5088)
  • FindNextFileW (Address: 0x100e506c)
  • GetFileSizeEx (Address: 0x100e5068)
  • GetFileTime (Address: 0x100e5084)
  • ReadFile (Address: 0x100e507c)
  • SetEndOfFile (Address: 0x100e5094)
  • SetFileInformationByHandle (Address: 0x100e5070)
  • SetFilePointer (Address: 0x100e5078)
  • WriteFile (Address: 0x100e5074)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x100e509c)
  • DuplicateHandle (Address: 0x100e50a0)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x100e50ac)
  • HeapAlloc (Address: 0x100e50b0)
  • HeapFree (Address: 0x100e50a8)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x100e50b8)
  • LocalFree (Address: 0x100e50bc)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x100e50c8)
  • InterlockedPushEntrySList (Address: 0x100e50c4)
api-ms-win-core-largeinteger-l1-1-0.dll
  • MulDiv (Address: 0x100e50d0)
api-ms-win-core-libraryloader-l1-2-0.dll
  • FreeLibrary (Address: 0x100e50e4)
  • GetModuleFileNameA (Address: 0x100e50dc)
  • GetModuleHandleExW (Address: 0x100e50e0)
  • GetModuleHandleW (Address: 0x100e50e8)
  • GetProcAddress (Address: 0x100e50d8)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x100e50f0)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x100e5118)
  • GetCurrentProcessId (Address: 0x100e5104)
  • GetCurrentThread (Address: 0x100e5108)
  • GetCurrentThreadId (Address: 0x100e5114)
  • GetProcessId (Address: 0x100e50fc)
  • OpenProcessToken (Address: 0x100e5100)
  • OpenThreadToken (Address: 0x100e5110)
  • SetThreadToken (Address: 0x100e510c)
  • TerminateProcess (Address: 0x100e50f8)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x100e5120)
  • OpenProcess (Address: 0x100e5124)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x100e512c)
api-ms-win-core-psapi-l1-1-0.dll
  • QueryFullProcessImageNameW (Address: 0x100e5134)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x100e5140)
  • RegEnumKeyExW (Address: 0x100e5144)
  • RegGetValueW (Address: 0x100e513c)
api-ms-win-core-registry-l2-1-0.dll
  • RegOpenKeyW (Address: 0x100e514c)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathFileExistsW (Address: 0x100e5158)
  • PathFindFileNameW (Address: 0x100e5154)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x100e5160)
api-ms-win-core-string-l2-1-0.dll
  • CharLowerW (Address: 0x100e5168)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x100e51b8)
  • AcquireSRWLockShared (Address: 0x100e5194)
  • CreateEventExW (Address: 0x100e51a4)
  • CreateMutexExW (Address: 0x100e5190)
  • CreateSemaphoreExW (Address: 0x100e5180)
  • DeleteCriticalSection (Address: 0x100e51b4)
  • EnterCriticalSection (Address: 0x100e517c)
  • InitializeCriticalSectionEx (Address: 0x100e51b0)
  • InitializeSRWLock (Address: 0x100e51a0)
  • LeaveCriticalSection (Address: 0x100e5178)
  • OpenSemaphoreW (Address: 0x100e5188)
  • ReleaseMutex (Address: 0x100e51ac)
  • ReleaseSemaphore (Address: 0x100e5174)
  • ReleaseSRWLockExclusive (Address: 0x100e5184)
  • ReleaseSRWLockShared (Address: 0x100e518c)
  • SetEvent (Address: 0x100e5198)
  • TryAcquireSRWLockExclusive (Address: 0x100e519c)
  • WaitForSingleObject (Address: 0x100e51a8)
  • WaitForSingleObjectEx (Address: 0x100e5170)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x100e51c0)
  • InitOnceComplete (Address: 0x100e51c4)
  • InitOnceExecuteOnce (Address: 0x100e51cc)
  • Sleep (Address: 0x100e51c8)
api-ms-win-core-synch-l1-2-1.dll
  • CreateSemaphoreW (Address: 0x100e51d4)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x100e51dc)
  • GetTickCount64 (Address: 0x100e51e0)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpool (Address: 0x100e51f8)
  • CloseThreadpoolTimer (Address: 0x100e51f0)
  • CloseThreadpoolWork (Address: 0x100e5200)
  • CreateThreadpool (Address: 0x100e51fc)
  • CreateThreadpoolTimer (Address: 0x100e5204)
  • CreateThreadpoolWork (Address: 0x100e51e8)
  • FreeLibraryWhenCallbackReturns (Address: 0x100e520c)
  • SetThreadpoolTimer (Address: 0x100e51ec)
  • SubmitThreadpoolWork (Address: 0x100e5208)
  • WaitForThreadpoolTimerCallbacks (Address: 0x100e51f4)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x100e5214)
  • EncodePointer (Address: 0x100e5218)
api-ms-win-core-winrt-error-l1-1-0.dll
  • GetRestrictedErrorInfo (Address: 0x100e522c)
  • RoOriginateError (Address: 0x100e5228)
  • RoOriginateErrorW (Address: 0x100e5220)
  • RoTransformError (Address: 0x100e5230)
  • SetRestrictedErrorInfo (Address: 0x100e5224)
api-ms-win-core-winrt-error-l1-1-1.dll
  • IsErrorPropagationEnabled (Address: 0x100e5238)
  • RoGetMatchingRestrictedErrorInfo (Address: 0x100e5240)
  • RoOriginateLanguageException (Address: 0x100e5244)
  • RoReportFailedDelegate (Address: 0x100e523c)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x100e524c)
  • RoGetActivationFactory (Address: 0x100e5254)
  • RoInitialize (Address: 0x100e5258)
  • RoUninitialize (Address: 0x100e5250)
api-ms-win-core-winrt-propertysetprivate-l1-1-1.dll
  • RoCreatePropertySetSerializer (Address: 0x100e5260)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCompareStringOrdinal (Address: 0x100e526c)
  • WindowsConcatString (Address: 0x100e5268)
  • WindowsCreateString (Address: 0x100e5290)
  • WindowsCreateStringReference (Address: 0x100e527c)
  • WindowsDeleteString (Address: 0x100e5284)
  • WindowsDuplicateString (Address: 0x100e5270)
  • WindowsGetStringLen (Address: 0x100e5278)
  • WindowsGetStringRawBuffer (Address: 0x100e5280)
  • WindowsIsStringEmpty (Address: 0x100e5288)
  • WindowsStringHasEmbeddedNull (Address: 0x100e528c)
  • WindowsSubstringWithSpecifiedLength (Address: 0x100e5274)
api-ms-win-crt-private-l1-1-0.dll
  • __CxxFrameHandler3 (Address: 0x100e531c)
  • __std_terminate (Address: 0x100e5318)
  • _CxxThrowException (Address: 0x100e52e4)
  • _except_handler4_common (Address: 0x100e52e0)
  • _o___std_exception_copy (Address: 0x100e5314)
  • _o___std_exception_destroy (Address: 0x100e5310)
  • _o___std_type_info_destroy_list (Address: 0x100e530c)
  • _o___stdio_common_vsnprintf_s (Address: 0x100e5308)
  • _o___stdio_common_vswprintf (Address: 0x100e5304)
  • _o___stdio_common_vswprintf_s (Address: 0x100e5300)
  • _o__callnewh (Address: 0x100e52fc)
  • _o__cexit (Address: 0x100e52f8)
  • _o__configure_narrow_argv (Address: 0x100e52f0)
  • _o__crt_atexit (Address: 0x100e52e8)
  • _o__errno (Address: 0x100e52f4)
  • _o__execute_onexit_table (Address: 0x100e52ec)
  • _o__initialize_narrow_environment (Address: 0x100e5298)
  • _o__initialize_onexit_table (Address: 0x100e529c)
  • _o__invalid_parameter_noinfo (Address: 0x100e52a0)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x100e52a4)
  • _o__purecall (Address: 0x100e52a8)
  • _o__register_onexit_function (Address: 0x100e52ac)
  • _o__seh_filter_dll (Address: 0x100e52b0)
  • _o__wcsicmp (Address: 0x100e52b8)
  • _o__wcsnicmp (Address: 0x100e52bc)
  • _o_ceil (Address: 0x100e52c0)
  • _o_free (Address: 0x100e52c4)
  • _o_iswspace (Address: 0x100e52c8)
  • _o_malloc (Address: 0x100e52cc)
  • _o_realloc (Address: 0x100e52d0)
  • _o_terminate (Address: 0x100e52d4)
  • _o_towlower (Address: 0x100e52d8)
  • _o_wcstoul (Address: 0x100e52dc)
  • memcmp (Address: 0x100e5320)
  • memcpy (Address: 0x100e5324)
  • memmove (Address: 0x100e52b4)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x100e532c)
  • _initterm_e (Address: 0x100e5330)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x100e5338)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x100e5344)
  • EventRegister (Address: 0x100e5340)
  • EventSetInformation (Address: 0x100e5350)
  • EventUnregister (Address: 0x100e5348)
  • EventWriteTransfer (Address: 0x100e534c)
api-ms-win-security-base-l1-1-0.dll
  • CreateWellKnownSid (Address: 0x100e5358)
  • DuplicateTokenEx (Address: 0x100e536c)
  • FreeSid (Address: 0x100e5364)
  • GetLengthSid (Address: 0x100e5374)
  • GetTokenInformation (Address: 0x100e5368)
  • ImpersonateLoggedOnUser (Address: 0x100e5370)
  • IsWellKnownSid (Address: 0x100e535c)
  • RevertToSelf (Address: 0x100e5360)
api-ms-win-security-base-l1-2-0.dll
  • CheckTokenMembershipEx (Address: 0x100e537c)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x100e5388)
  • ConvertStringSidToSidW (Address: 0x100e5384)
api-ms-win-service-private-l1-1-0.dll
  • I_QueryTagInformation (Address: 0x100e5390)
api-ms-win-shcore-stream-winrt-l1-1-0.dll
  • CreateRandomAccessStreamOverStream (Address: 0x100e539c)
  • CreateStreamOverRandomAccessStream (Address: 0x100e5398)
api-ms-win-shcore-taskpool-l1-1-0.dll
  • SHTaskPoolAllowThreadReuse (Address: 0x100e53a8)
  • SHTaskPoolQueueTask (Address: 0x100e53a4)
combase.dll
  • (Address: 0x100e53b8)
  • (Address: 0x100e53b4)
  • (Address: 0x100e53b0)
msvcp_win.dll
  • ?_Xlength_error@std@@YAXPBD@Z (Address: 0x100e53c0)
ntdll.dll
  • NtQueryInformationToken (Address: 0x100e53e0)
  • NtQueryWnfStateData (Address: 0x100e53f8)
  • RtlAcquireSRWLockExclusive (Address: 0x100e5408)
  • RtlCapabilityCheck (Address: 0x100e53c8)
  • RtlCheckTokenCapability (Address: 0x100e5414)
  • RtlCheckTokenMembership (Address: 0x100e53cc)
  • RtlCheckTokenMembershipEx (Address: 0x100e53d4)
  • RtlEqualSid (Address: 0x100e53f4)
  • RtlFreeSid (Address: 0x100e5418)
  • RtlGetDeviceFamilyInfoEnum (Address: 0x100e5404)
  • RtlInitializeSid (Address: 0x100e53e8)
  • RtlIsMultiSessionSku (Address: 0x100e5410)
  • RtlLoadString (Address: 0x100e53e4)
  • RtlNtStatusToDosError (Address: 0x100e53fc)
  • RtlReleaseSRWLockExclusive (Address: 0x100e540c)
  • RtlSleepConditionVariableSRW (Address: 0x100e53dc)
  • RtlSubAuthoritySid (Address: 0x100e53d0)
  • RtlSubscribeWnfStateChangeNotification (Address: 0x100e5400)
  • RtlUnsubscribeWnfNotificationWaitForCompletion (Address: 0x100e53f0)
  • RtlUnsubscribeWnfStateChangeNotification (Address: 0x100e53d8)
  • RtlWakeAllConditionVariable (Address: 0x100e53ec)