Windows.Security.Authentication.Web.Core.dll
Description: Token Broker WinRT API
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5848
Architecture: 32-bit
Operating System: Windows NT
SHA256: 64444c730957fefe65d5546d1011b0bc
File Size: 977.5 KB
Uploaded At: Dec. 1, 2025, 8:07 a.m.
Views: 6
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x454e0)
- DllGetActivationFactory (Ordinal: 2, Address: 0x44d00)
- DllGetClassObject (Ordinal: 3, Address: 0x702a0)
- FreeIdentityProviderCookies (Ordinal: 4, Address: 0x702c0)
- GetIdentityProviderCookies (Ordinal: 5, Address: 0x702e0)
Imported DLLs & Functions
api-ms-win-appmodel-identity-l1-2-0.dll
- AppContainerDeriveSidFromMoniker (Address: 0x100e5000)
api-ms-win-appmodel-runtime-l1-1-1.dll
- GetPackageFamilyNameFromToken (Address: 0x100e5008)
- GetPackageFullNameFromToken (Address: 0x100e500c)
api-ms-win-appmodel-state-l1-2-0.dll
- CloseState (Address: 0x100e501c)
- GetStateRootFolder (Address: 0x100e5014)
- OpenStateExplicit (Address: 0x100e5018)
api-ms-win-core-apiquery-l1-1-0.dll
- ApiSetQueryApiSetPresence (Address: 0x100e5024)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x100e5030)
- IsDebuggerPresent (Address: 0x100e502c)
- OutputDebugStringW (Address: 0x100e5034)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x100e503c)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x100e5044)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x100e5054)
- RaiseException (Address: 0x100e504c)
- SetLastError (Address: 0x100e505c)
- SetUnhandledExceptionFilter (Address: 0x100e5058)
- UnhandledExceptionFilter (Address: 0x100e5050)
api-ms-win-core-file-l1-1-0.dll
- CompareFileTime (Address: 0x100e5080)
- CreateDirectoryW (Address: 0x100e508c)
- CreateFileW (Address: 0x100e5090)
- FindClose (Address: 0x100e5064)
- FindFirstFileW (Address: 0x100e5088)
- FindNextFileW (Address: 0x100e506c)
- GetFileSizeEx (Address: 0x100e5068)
- GetFileTime (Address: 0x100e5084)
- ReadFile (Address: 0x100e507c)
- SetEndOfFile (Address: 0x100e5094)
- SetFileInformationByHandle (Address: 0x100e5070)
- SetFilePointer (Address: 0x100e5078)
- WriteFile (Address: 0x100e5074)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x100e509c)
- DuplicateHandle (Address: 0x100e50a0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x100e50ac)
- HeapAlloc (Address: 0x100e50b0)
- HeapFree (Address: 0x100e50a8)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x100e50b8)
- LocalFree (Address: 0x100e50bc)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x100e50c8)
- InterlockedPushEntrySList (Address: 0x100e50c4)
api-ms-win-core-largeinteger-l1-1-0.dll
- MulDiv (Address: 0x100e50d0)
api-ms-win-core-libraryloader-l1-2-0.dll
- FreeLibrary (Address: 0x100e50e4)
- GetModuleFileNameA (Address: 0x100e50dc)
- GetModuleHandleExW (Address: 0x100e50e0)
- GetModuleHandleW (Address: 0x100e50e8)
- GetProcAddress (Address: 0x100e50d8)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x100e50f0)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x100e5118)
- GetCurrentProcessId (Address: 0x100e5104)
- GetCurrentThread (Address: 0x100e5108)
- GetCurrentThreadId (Address: 0x100e5114)
- GetProcessId (Address: 0x100e50fc)
- OpenProcessToken (Address: 0x100e5100)
- OpenThreadToken (Address: 0x100e5110)
- SetThreadToken (Address: 0x100e510c)
- TerminateProcess (Address: 0x100e50f8)
api-ms-win-core-processthreads-l1-1-1.dll
- IsProcessorFeaturePresent (Address: 0x100e5120)
- OpenProcess (Address: 0x100e5124)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x100e512c)
api-ms-win-core-psapi-l1-1-0.dll
- QueryFullProcessImageNameW (Address: 0x100e5134)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x100e5140)
- RegEnumKeyExW (Address: 0x100e5144)
- RegGetValueW (Address: 0x100e513c)
api-ms-win-core-registry-l2-1-0.dll
- RegOpenKeyW (Address: 0x100e514c)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathFileExistsW (Address: 0x100e5158)
- PathFindFileNameW (Address: 0x100e5154)
api-ms-win-core-string-l1-1-0.dll
- CompareStringOrdinal (Address: 0x100e5160)
api-ms-win-core-string-l2-1-0.dll
- CharLowerW (Address: 0x100e5168)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x100e51b8)
- AcquireSRWLockShared (Address: 0x100e5194)
- CreateEventExW (Address: 0x100e51a4)
- CreateMutexExW (Address: 0x100e5190)
- CreateSemaphoreExW (Address: 0x100e5180)
- DeleteCriticalSection (Address: 0x100e51b4)
- EnterCriticalSection (Address: 0x100e517c)
- InitializeCriticalSectionEx (Address: 0x100e51b0)
- InitializeSRWLock (Address: 0x100e51a0)
- LeaveCriticalSection (Address: 0x100e5178)
- OpenSemaphoreW (Address: 0x100e5188)
- ReleaseMutex (Address: 0x100e51ac)
- ReleaseSemaphore (Address: 0x100e5174)
- ReleaseSRWLockExclusive (Address: 0x100e5184)
- ReleaseSRWLockShared (Address: 0x100e518c)
- SetEvent (Address: 0x100e5198)
- TryAcquireSRWLockExclusive (Address: 0x100e519c)
- WaitForSingleObject (Address: 0x100e51a8)
- WaitForSingleObjectEx (Address: 0x100e5170)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x100e51c0)
- InitOnceComplete (Address: 0x100e51c4)
- InitOnceExecuteOnce (Address: 0x100e51cc)
- Sleep (Address: 0x100e51c8)
api-ms-win-core-synch-l1-2-1.dll
- CreateSemaphoreW (Address: 0x100e51d4)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x100e51dc)
- GetTickCount64 (Address: 0x100e51e0)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpool (Address: 0x100e51f8)
- CloseThreadpoolTimer (Address: 0x100e51f0)
- CloseThreadpoolWork (Address: 0x100e5200)
- CreateThreadpool (Address: 0x100e51fc)
- CreateThreadpoolTimer (Address: 0x100e5204)
- CreateThreadpoolWork (Address: 0x100e51e8)
- FreeLibraryWhenCallbackReturns (Address: 0x100e520c)
- SetThreadpoolTimer (Address: 0x100e51ec)
- SubmitThreadpoolWork (Address: 0x100e5208)
- WaitForThreadpoolTimerCallbacks (Address: 0x100e51f4)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x100e5214)
- EncodePointer (Address: 0x100e5218)
api-ms-win-core-winrt-error-l1-1-0.dll
- GetRestrictedErrorInfo (Address: 0x100e522c)
- RoOriginateError (Address: 0x100e5228)
- RoOriginateErrorW (Address: 0x100e5220)
- RoTransformError (Address: 0x100e5230)
- SetRestrictedErrorInfo (Address: 0x100e5224)
api-ms-win-core-winrt-error-l1-1-1.dll
- IsErrorPropagationEnabled (Address: 0x100e5238)
- RoGetMatchingRestrictedErrorInfo (Address: 0x100e5240)
- RoOriginateLanguageException (Address: 0x100e5244)
- RoReportFailedDelegate (Address: 0x100e523c)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x100e524c)
- RoGetActivationFactory (Address: 0x100e5254)
- RoInitialize (Address: 0x100e5258)
- RoUninitialize (Address: 0x100e5250)
api-ms-win-core-winrt-propertysetprivate-l1-1-1.dll
- RoCreatePropertySetSerializer (Address: 0x100e5260)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCompareStringOrdinal (Address: 0x100e526c)
- WindowsConcatString (Address: 0x100e5268)
- WindowsCreateString (Address: 0x100e5290)
- WindowsCreateStringReference (Address: 0x100e527c)
- WindowsDeleteString (Address: 0x100e5284)
- WindowsDuplicateString (Address: 0x100e5270)
- WindowsGetStringLen (Address: 0x100e5278)
- WindowsGetStringRawBuffer (Address: 0x100e5280)
- WindowsIsStringEmpty (Address: 0x100e5288)
- WindowsStringHasEmbeddedNull (Address: 0x100e528c)
- WindowsSubstringWithSpecifiedLength (Address: 0x100e5274)
api-ms-win-crt-private-l1-1-0.dll
- __CxxFrameHandler3 (Address: 0x100e531c)
- __std_terminate (Address: 0x100e5318)
- _CxxThrowException (Address: 0x100e52e4)
- _except_handler4_common (Address: 0x100e52e0)
- _o___std_exception_copy (Address: 0x100e5314)
- _o___std_exception_destroy (Address: 0x100e5310)
- _o___std_type_info_destroy_list (Address: 0x100e530c)
- _o___stdio_common_vsnprintf_s (Address: 0x100e5308)
- _o___stdio_common_vswprintf (Address: 0x100e5304)
- _o___stdio_common_vswprintf_s (Address: 0x100e5300)
- _o__callnewh (Address: 0x100e52fc)
- _o__cexit (Address: 0x100e52f8)
- _o__configure_narrow_argv (Address: 0x100e52f0)
- _o__crt_atexit (Address: 0x100e52e8)
- _o__errno (Address: 0x100e52f4)
- _o__execute_onexit_table (Address: 0x100e52ec)
- _o__initialize_narrow_environment (Address: 0x100e5298)
- _o__initialize_onexit_table (Address: 0x100e529c)
- _o__invalid_parameter_noinfo (Address: 0x100e52a0)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x100e52a4)
- _o__purecall (Address: 0x100e52a8)
- _o__register_onexit_function (Address: 0x100e52ac)
- _o__seh_filter_dll (Address: 0x100e52b0)
- _o__wcsicmp (Address: 0x100e52b8)
- _o__wcsnicmp (Address: 0x100e52bc)
- _o_ceil (Address: 0x100e52c0)
- _o_free (Address: 0x100e52c4)
- _o_iswspace (Address: 0x100e52c8)
- _o_malloc (Address: 0x100e52cc)
- _o_realloc (Address: 0x100e52d0)
- _o_terminate (Address: 0x100e52d4)
- _o_towlower (Address: 0x100e52d8)
- _o_wcstoul (Address: 0x100e52dc)
- memcmp (Address: 0x100e5320)
- memcpy (Address: 0x100e5324)
- memmove (Address: 0x100e52b4)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x100e532c)
- _initterm_e (Address: 0x100e5330)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x100e5338)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x100e5344)
- EventRegister (Address: 0x100e5340)
- EventSetInformation (Address: 0x100e5350)
- EventUnregister (Address: 0x100e5348)
- EventWriteTransfer (Address: 0x100e534c)
api-ms-win-security-base-l1-1-0.dll
- CreateWellKnownSid (Address: 0x100e5358)
- DuplicateTokenEx (Address: 0x100e536c)
- FreeSid (Address: 0x100e5364)
- GetLengthSid (Address: 0x100e5374)
- GetTokenInformation (Address: 0x100e5368)
- ImpersonateLoggedOnUser (Address: 0x100e5370)
- IsWellKnownSid (Address: 0x100e535c)
- RevertToSelf (Address: 0x100e5360)
api-ms-win-security-base-l1-2-0.dll
- CheckTokenMembershipEx (Address: 0x100e537c)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x100e5388)
- ConvertStringSidToSidW (Address: 0x100e5384)
api-ms-win-service-private-l1-1-0.dll
- I_QueryTagInformation (Address: 0x100e5390)
api-ms-win-shcore-stream-winrt-l1-1-0.dll
- CreateRandomAccessStreamOverStream (Address: 0x100e539c)
- CreateStreamOverRandomAccessStream (Address: 0x100e5398)
api-ms-win-shcore-taskpool-l1-1-0.dll
- SHTaskPoolAllowThreadReuse (Address: 0x100e53a8)
- SHTaskPoolQueueTask (Address: 0x100e53a4)
combase.dll
- (Address: 0x100e53b8)
- (Address: 0x100e53b4)
- (Address: 0x100e53b0)
msvcp_win.dll
- ?_Xlength_error@std@@YAXPBD@Z (Address: 0x100e53c0)
ntdll.dll
- NtQueryInformationToken (Address: 0x100e53e0)
- NtQueryWnfStateData (Address: 0x100e53f8)
- RtlAcquireSRWLockExclusive (Address: 0x100e5408)
- RtlCapabilityCheck (Address: 0x100e53c8)
- RtlCheckTokenCapability (Address: 0x100e5414)
- RtlCheckTokenMembership (Address: 0x100e53cc)
- RtlCheckTokenMembershipEx (Address: 0x100e53d4)
- RtlEqualSid (Address: 0x100e53f4)
- RtlFreeSid (Address: 0x100e5418)
- RtlGetDeviceFamilyInfoEnum (Address: 0x100e5404)
- RtlInitializeSid (Address: 0x100e53e8)
- RtlIsMultiSessionSku (Address: 0x100e5410)
- RtlLoadString (Address: 0x100e53e4)
- RtlNtStatusToDosError (Address: 0x100e53fc)
- RtlReleaseSRWLockExclusive (Address: 0x100e540c)
- RtlSleepConditionVariableSRW (Address: 0x100e53dc)
- RtlSubAuthoritySid (Address: 0x100e53d0)
- RtlSubscribeWnfStateChangeNotification (Address: 0x100e5400)
- RtlUnsubscribeWnfNotificationWaitForCompletion (Address: 0x100e53f0)
- RtlUnsubscribeWnfStateChangeNotification (Address: 0x100e53d8)
- RtlWakeAllConditionVariable (Address: 0x100e53ec)