windowsperformancerecordercontrol.dll
Description: Microsoft Windows Performance Recorder Control Library
Authors: © 2019 Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 32-bit
Operating System: Windows NT
SHA256: 4b68cc6b769f9641347a6da3a70fb83c
File Size: 876.5 KB
Uploaded At: Dec. 1, 2025, 8:07 a.m.
Views: 7
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x16ba0)
- DllGetClassObject (Ordinal: 2, Address: 0x16bd0)
- DllRegisterServer (Ordinal: 3, Address: 0xe9e0)
- DllUnregisterServer (Ordinal: 4, Address: 0xe9e0)
- WPRCControlLogging (Ordinal: 5, Address: 0x4d230)
- WPRCCreateInstance (Ordinal: 6, Address: 0x4c220)
- WPRCCreateInstanceUnderInstanceName (Ordinal: 7, Address: 0x4c250)
- WPRCDisableBuiltinProfiles (Ordinal: 8, Address: 0x4c550)
- WPRCFormatError (Ordinal: 9, Address: 0x4d130)
- WPRCQueryBuiltInProfiles (Ordinal: 10, Address: 0x4c450)
- WPRCReleaseInstanceByName (Ordinal: 11, Address: 0x4c560)
- WPRCRemoveLogging (Ordinal: 12, Address: 0x4d330)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CoCreateGuid (Address: 0x1007b048)
- CoCreateInstance (Address: 0x1007b038)
- CoInitializeEx (Address: 0x1007b034)
- CoTaskMemFree (Address: 0x1007b044)
- CoUninitialize (Address: 0x1007b03c)
- IIDFromString (Address: 0x1007b04c)
- StringFromGUID2 (Address: 0x1007b040)
- StringFromIID (Address: 0x1007b050)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1007b058)
- IsDebuggerPresent (Address: 0x1007b05c)
- OutputDebugStringW (Address: 0x1007b060)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1007b074)
- RaiseException (Address: 0x1007b068)
- SetLastError (Address: 0x1007b06c)
- SetUnhandledExceptionFilter (Address: 0x1007b078)
- UnhandledExceptionFilter (Address: 0x1007b070)
api-ms-win-core-file-l1-1-0.dll
- CreateDirectoryW (Address: 0x1007b0b0)
- CreateFileW (Address: 0x1007b088)
- DeleteFileW (Address: 0x1007b0bc)
- FindClose (Address: 0x1007b098)
- FindFirstFileExW (Address: 0x1007b0b4)
- FindFirstFileW (Address: 0x1007b0c8)
- FindFirstVolumeW (Address: 0x1007b0a8)
- FindNextFileW (Address: 0x1007b0a0)
- FindNextVolumeW (Address: 0x1007b0c4)
- FindVolumeClose (Address: 0x1007b090)
- GetFileAttributesW (Address: 0x1007b09c)
- GetFileSize (Address: 0x1007b094)
- GetFileTime (Address: 0x1007b084)
- GetTempFileNameW (Address: 0x1007b0b8)
- QueryDosDeviceW (Address: 0x1007b0c0)
- ReadFile (Address: 0x1007b080)
- RemoveDirectoryW (Address: 0x1007b0cc)
- SetFilePointer (Address: 0x1007b0a4)
- SetFilePointerEx (Address: 0x1007b0ac)
- WriteFile (Address: 0x1007b08c)
api-ms-win-core-file-l1-2-0.dll
- GetTempPathW (Address: 0x1007b0d4)
- GetVolumePathNamesForVolumeNameW (Address: 0x1007b0d8)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1007b0e0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1007b0f0)
- HeapAlloc (Address: 0x1007b0f8)
- HeapDestroy (Address: 0x1007b0fc)
- HeapFree (Address: 0x1007b0e8)
- HeapReAlloc (Address: 0x1007b0ec)
- HeapSize (Address: 0x1007b0f4)
api-ms-win-core-heap-obsolete-l1-1-0.dll
- LocalFree (Address: 0x1007b104)
api-ms-win-core-interlocked-l1-1-0.dll
- InitializeSListHead (Address: 0x1007b10c)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- CopyFileW (Address: 0x1007b114)
- FindResourceW (Address: 0x1007b118)
- LoadLibraryW (Address: 0x1007b11c)
api-ms-win-core-libraryloader-l1-1-0.dll
- DisableThreadLibraryCalls (Address: 0x1007b130)
- FindResourceExW (Address: 0x1007b134)
- FreeLibrary (Address: 0x1007b128)
- GetModuleFileNameA (Address: 0x1007b14c)
- GetModuleFileNameW (Address: 0x1007b148)
- GetModuleHandleExW (Address: 0x1007b13c)
- GetModuleHandleW (Address: 0x1007b144)
- GetProcAddress (Address: 0x1007b140)
- LoadLibraryExW (Address: 0x1007b12c)
- LoadResource (Address: 0x1007b138)
- LockResource (Address: 0x1007b150)
- SizeofResource (Address: 0x1007b124)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1007b15c)
- LCMapStringEx (Address: 0x1007b158)
api-ms-win-core-memory-l1-1-0.dll
- CreateFileMappingW (Address: 0x1007b164)
- MapViewOfFileEx (Address: 0x1007b16c)
- UnmapViewOfFile (Address: 0x1007b168)
api-ms-win-core-processenvironment-l1-1-0.dll
- GetEnvironmentVariableW (Address: 0x1007b174)
- SetEnvironmentVariableW (Address: 0x1007b178)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateProcessW (Address: 0x1007b198)
- GetCurrentProcess (Address: 0x1007b188)
- GetCurrentProcessId (Address: 0x1007b18c)
- GetCurrentThread (Address: 0x1007b190)
- GetCurrentThreadId (Address: 0x1007b184)
- GetExitCodeProcess (Address: 0x1007b194)
- TerminateProcess (Address: 0x1007b180)
api-ms-win-core-processthreads-l1-1-1.dll
- IsProcessorFeaturePresent (Address: 0x1007b1a0)
- OpenProcess (Address: 0x1007b1a4)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1007b1ac)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1007b1b4)
- RegCreateKeyExW (Address: 0x1007b1c8)
- RegDeleteValueW (Address: 0x1007b1c0)
- RegEnumKeyExW (Address: 0x1007b1c4)
- RegOpenKeyExW (Address: 0x1007b1bc)
- RegQueryInfoKeyW (Address: 0x1007b1b8)
- RegQueryValueExW (Address: 0x1007b1cc)
- RegSetValueExW (Address: 0x1007b1d0)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathAddBackslashW (Address: 0x1007b1dc)
- PathAddExtensionW (Address: 0x1007b1d8)
- PathAppendW (Address: 0x1007b1e8)
- PathFileExistsW (Address: 0x1007b1e4)
- PathRemoveBackslashW (Address: 0x1007b1e0)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x1007b1f0)
- WideCharToMultiByte (Address: 0x1007b1f4)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1007b1fc)
- AcquireSRWLockShared (Address: 0x1007b214)
- CreateEventW (Address: 0x1007b21c)
- CreateMutexExW (Address: 0x1007b218)
- CreateSemaphoreExW (Address: 0x1007b23c)
- DeleteCriticalSection (Address: 0x1007b200)
- EnterCriticalSection (Address: 0x1007b238)
- InitializeCriticalSection (Address: 0x1007b230)
- InitializeCriticalSectionEx (Address: 0x1007b22c)
- LeaveCriticalSection (Address: 0x1007b234)
- OpenSemaphoreW (Address: 0x1007b208)
- ReleaseMutex (Address: 0x1007b220)
- ReleaseSemaphore (Address: 0x1007b240)
- ReleaseSRWLockExclusive (Address: 0x1007b20c)
- ReleaseSRWLockShared (Address: 0x1007b210)
- SetEvent (Address: 0x1007b204)
- WaitForSingleObject (Address: 0x1007b228)
- WaitForSingleObjectEx (Address: 0x1007b224)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x1007b248)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x1007b264)
- GetSystemInfo (Address: 0x1007b254)
- GetSystemTimeAsFileTime (Address: 0x1007b25c)
- GetSystemWindowsDirectoryW (Address: 0x1007b260)
- GetVersionExW (Address: 0x1007b268)
- GetWindowsDirectoryW (Address: 0x1007b258)
- GlobalMemoryStatusEx (Address: 0x1007b250)
api-ms-win-core-sysinfo-l1-2-0.dll
- GetNativeSystemInfo (Address: 0x1007b270)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1007b27c)
- CreateThreadpoolTimer (Address: 0x1007b284)
- SetThreadpoolTimer (Address: 0x1007b278)
- WaitForThreadpoolTimerCallbacks (Address: 0x1007b280)
api-ms-win-core-timezone-l1-1-0.dll
- SystemTimeToFileTime (Address: 0x1007b28c)
api-ms-win-core-version-l1-1-0.dll
- GetFileVersionInfoExW (Address: 0x1007b294)
- GetFileVersionInfoSizeExW (Address: 0x1007b29c)
- VerQueryValueW (Address: 0x1007b298)
api-ms-win-core-wow64-l1-1-0.dll
- IsWow64Process (Address: 0x1007b2a8)
- Wow64DisableWow64FsRedirection (Address: 0x1007b2a4)
- Wow64RevertWow64FsRedirection (Address: 0x1007b2ac)
api-ms-win-crt-private-l1-1-0.dll
- __CxxFrameHandler3 (Address: 0x1007b380)
- _CxxThrowException (Address: 0x1007b344)
- _except_handler4_common (Address: 0x1007b340)
- _o___std_exception_copy (Address: 0x1007b370)
- _o___std_exception_destroy (Address: 0x1007b36c)
- _o___std_type_info_destroy_list (Address: 0x1007b368)
- _o___stdio_common_vsnprintf_s (Address: 0x1007b364)
- _o___stdio_common_vswprintf (Address: 0x1007b360)
- _o___stdio_common_vswprintf_s (Address: 0x1007b35c)
- _o__callnewh (Address: 0x1007b354)
- _o__cexit (Address: 0x1007b350)
- _o__configure_narrow_argv (Address: 0x1007b34c)
- _o__crt_atexit (Address: 0x1007b348)
- _o__errno (Address: 0x1007b374)
- _o__execute_onexit_table (Address: 0x1007b358)
- _o__gmtime64 (Address: 0x1007b2b4)
- _o__initialize_narrow_environment (Address: 0x1007b2b8)
- _o__initialize_onexit_table (Address: 0x1007b2bc)
- _o__invalid_parameter_noinfo (Address: 0x1007b2c0)
- _o__invalid_parameter_noinfo_noreturn (Address: 0x1007b2c4)
- _o__memicmp (Address: 0x1007b2c8)
- _o__purecall (Address: 0x1007b2cc)
- _o__recalloc (Address: 0x1007b2d0)
- _o__register_onexit_function (Address: 0x1007b2d4)
- _o__seh_filter_dll (Address: 0x1007b2d8)
- _o__stricmp (Address: 0x1007b2dc)
- _o__ultow_s (Address: 0x1007b2e4)
- _o__wcsicmp (Address: 0x1007b2e8)
- _o__wcslwr_s (Address: 0x1007b2ec)
- _o__wcsnicmp (Address: 0x1007b2f0)
- _o__wcstoui64 (Address: 0x1007b2f4)
- _o__wfullpath (Address: 0x1007b2f8)
- _o__wtof (Address: 0x1007b2fc)
- _o__wtoi (Address: 0x1007b300)
- _o_calloc (Address: 0x1007b304)
- _o_ceil (Address: 0x1007b308)
- _o_free (Address: 0x1007b30c)
- _o_iswdigit (Address: 0x1007b310)
- _o_iswspace (Address: 0x1007b314)
- _o_malloc (Address: 0x1007b318)
- _o_realloc (Address: 0x1007b31c)
- _o_terminate (Address: 0x1007b320)
- _o_towlower (Address: 0x1007b324)
- _o_wcscpy_s (Address: 0x1007b328)
- _o_wcsncpy_s (Address: 0x1007b32c)
- _o_wcstod (Address: 0x1007b330)
- _o_wcstol (Address: 0x1007b334)
- _o_wcstoul (Address: 0x1007b338)
- _o_wmemcpy_s (Address: 0x1007b33c)
- memchr (Address: 0x1007b384)
- memcmp (Address: 0x1007b388)
- memcpy (Address: 0x1007b38c)
- memmove (Address: 0x1007b2e0)
- strrchr (Address: 0x1007b394)
- wcschr (Address: 0x1007b37c)
- wcsrchr (Address: 0x1007b378)
- wcsstr (Address: 0x1007b390)
api-ms-win-crt-runtime-l1-1-0.dll
- _initterm (Address: 0x1007b3a0)
- _initterm_e (Address: 0x1007b39c)
api-ms-win-crt-string-l1-1-0.dll
- memset (Address: 0x1007b3b4)
- strncmp (Address: 0x1007b3c0)
- wcscspn (Address: 0x1007b3b8)
- wcsncmp (Address: 0x1007b3bc)
- wcsnlen (Address: 0x1007b3b0)
- wcspbrk (Address: 0x1007b3ac)
- wcsspn (Address: 0x1007b3a8)
api-ms-win-crt-utility-l1-1-0.dll
- ldiv (Address: 0x1007b3c8)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- RegisterTraceGuidsW (Address: 0x1007b3d4)
- TraceEvent (Address: 0x1007b3d8)
- UnregisterTraceGuids (Address: 0x1007b3d0)
api-ms-win-eventing-consumer-l1-1-0.dll
- CloseTrace (Address: 0x1007b3e4)
- OpenTraceW (Address: 0x1007b3e8)
- ProcessTrace (Address: 0x1007b3e0)
api-ms-win-eventing-controller-l1-1-0.dll
- ControlTraceW (Address: 0x1007b400)
- EnumerateTraceGuidsEx (Address: 0x1007b3fc)
- QueryAllTracesW (Address: 0x1007b3f8)
- StartTraceW (Address: 0x1007b404)
- TraceQueryInformation (Address: 0x1007b3f4)
- TraceSetInformation (Address: 0x1007b3f0)
api-ms-win-eventing-legacy-l1-1-0.dll
- EnableTraceEx (Address: 0x1007b40c)
api-ms-win-eventing-provider-l1-1-0.dll
- EventRegister (Address: 0x1007b418)
- EventSetInformation (Address: 0x1007b414)
- EventUnregister (Address: 0x1007b41c)
- EventWriteTransfer (Address: 0x1007b420)
api-ms-win-shcore-stream-l1-1-0.dll
- SHCreateStreamOnFileW (Address: 0x1007b428)
bcrypt.dll
- BCryptCloseAlgorithmProvider (Address: 0x1007b440)
- BCryptCreateHash (Address: 0x1007b444)
- BCryptDestroyHash (Address: 0x1007b448)
- BCryptFinishHash (Address: 0x1007b434)
- BCryptGetProperty (Address: 0x1007b438)
- BCryptHashData (Address: 0x1007b430)
- BCryptOpenAlgorithmProvider (Address: 0x1007b43c)
ntdll.dll
- NtQuerySystemInformation (Address: 0x1007b45c)
- NtSetIntervalProfile (Address: 0x1007b480)
- NtSetSystemInformation (Address: 0x1007b47c)
- RtlAcquireSRWLockExclusive (Address: 0x1007b468)
- RtlAdjustPrivilege (Address: 0x1007b464)
- RtlGetVersion (Address: 0x1007b460)
- RtlGUIDFromString (Address: 0x1007b450)
- RtlImageDirectoryEntryToData (Address: 0x1007b470)
- RtlImageRvaToVa (Address: 0x1007b474)
- RtlInitUnicodeString (Address: 0x1007b458)
- RtlNtStatusToDosError (Address: 0x1007b454)
- RtlReleaseSRWLockExclusive (Address: 0x1007b46c)
- RtlSetHeapInformation (Address: 0x1007b478)
OLEAUT32.dll
- LoadRegTypeLib (Address: 0x1007b014)
- LoadTypeLib (Address: 0x1007b020)
- SysAllocString (Address: 0x1007b000)
- SysAllocStringByteLen (Address: 0x1007b004)
- SysAllocStringLen (Address: 0x1007b018)
- SysFreeString (Address: 0x1007b01c)
- SysStringByteLen (Address: 0x1007b00c)
- SysStringLen (Address: 0x1007b008)
- VarBstrCmp (Address: 0x1007b010)
XmlLite.dll
- CreateXmlReader (Address: 0x1007b028)
- CreateXmlReaderInputWithEncodingName (Address: 0x1007b02c)