winipcfile.dll
Description: Microsoft Active Directory Rights Management Services File API
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 32-bit
Operating System: Windows NT
SHA256: 045d11baf6cd86cfe962b56a02d61b5d
File Size: 365.0 KB
Uploaded At: Dec. 1, 2025, 8:07 a.m.
Views: 7
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- (Ordinal: 1, Address: 0xc110)
- (Ordinal: 2, Address: 0xc170)
- (Ordinal: 3, Address: 0xc1a0)
- (Ordinal: 4, Address: 0xc1c0)
- (Ordinal: 5, Address: 0xc1e0)
- (Ordinal: 6, Address: 0xc240)
- (Ordinal: 7, Address: 0xc270)
- (Ordinal: 8, Address: 0xc290)
- (Ordinal: 9, Address: 0xc2b0)
- (Ordinal: 10, Address: 0xc2d0)
- (Ordinal: 11, Address: 0xc2f0)
- (Ordinal: 12, Address: 0xc310)
- (Ordinal: 13, Address: 0xc330)
- (Ordinal: 14, Address: 0xc350)
- (Ordinal: 15, Address: 0xc370)
- (Ordinal: 16, Address: 0xc390)
- (Ordinal: 17, Address: 0xc3c0)
- (Ordinal: 18, Address: 0xc3e0)
- (Ordinal: 19, Address: 0xc400)
- (Ordinal: 20, Address: 0xc420)
- (Ordinal: 21, Address: 0xc210)
- (Ordinal: 22, Address: 0xc140)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CLSIDFromString (Address: 0x1003a42c)
- CoCreateGuid (Address: 0x1003a424)
- CoCreateInstance (Address: 0x1003a414)
- CoInitializeEx (Address: 0x1003a430)
- CoTaskMemAlloc (Address: 0x1003a418)
- CoTaskMemFree (Address: 0x1003a420)
- CoUninitialize (Address: 0x1003a428)
- StringFromGUID2 (Address: 0x1003a41c)
api-ms-win-core-com-l2-1-1.dll
- CreateILockBytesOnHGlobal (Address: 0x1003a438)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x1003a444)
- IsDebuggerPresent (Address: 0x1003a44c)
- OutputDebugStringA (Address: 0x1003a440)
- OutputDebugStringW (Address: 0x1003a448)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1003a458)
- RaiseException (Address: 0x1003a45c)
- SetLastError (Address: 0x1003a464)
- SetUnhandledExceptionFilter (Address: 0x1003a454)
- UnhandledExceptionFilter (Address: 0x1003a460)
api-ms-win-core-file-l1-1-0.dll
- CreateFileW (Address: 0x1003a48c)
- DeleteFileW (Address: 0x1003a474)
- FlushFileBuffers (Address: 0x1003a4a4)
- GetFileAttributesExW (Address: 0x1003a47c)
- GetFileAttributesW (Address: 0x1003a46c)
- GetFileInformationByHandle (Address: 0x1003a498)
- GetFullPathNameW (Address: 0x1003a478)
- GetVolumeInformationW (Address: 0x1003a494)
- LockFileEx (Address: 0x1003a488)
- ReadFile (Address: 0x1003a49c)
- SetEndOfFile (Address: 0x1003a480)
- SetFileAttributesW (Address: 0x1003a490)
- SetFilePointerEx (Address: 0x1003a470)
- UnlockFileEx (Address: 0x1003a4a0)
- WriteFile (Address: 0x1003a484)
api-ms-win-core-file-l1-2-0.dll
- GetTempPathW (Address: 0x1003a4ac)
api-ms-win-core-file-l2-1-0.dll
- ReplaceFileW (Address: 0x1003a4b4)
api-ms-win-core-file-l2-1-2.dll
- CopyFileW (Address: 0x1003a4bc)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1003a4c4)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x1003a4d0)
- HeapAlloc (Address: 0x1003a4cc)
- HeapDestroy (Address: 0x1003a4d4)
- HeapFree (Address: 0x1003a4e0)
- HeapReAlloc (Address: 0x1003a4d8)
- HeapSize (Address: 0x1003a4dc)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1003a4e8)
- LocalFree (Address: 0x1003a4ec)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
- MoveFileW (Address: 0x1003a4f4)
api-ms-win-core-libraryloader-l1-2-0.dll
- AddDllDirectory (Address: 0x1003a514)
- FreeLibrary (Address: 0x1003a4fc)
- GetModuleFileNameA (Address: 0x1003a508)
- GetModuleFileNameW (Address: 0x1003a51c)
- GetModuleHandleExW (Address: 0x1003a504)
- GetModuleHandleW (Address: 0x1003a50c)
- GetProcAddress (Address: 0x1003a520)
- LoadLibraryExA (Address: 0x1003a500)
- LoadLibraryExW (Address: 0x1003a510)
- RemoveDllDirectory (Address: 0x1003a518)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x1003a528)
- GetSystemPreferredUILanguages (Address: 0x1003a530)
- GetUserPreferredUILanguages (Address: 0x1003a534)
- LocaleNameToLCID (Address: 0x1003a52c)
api-ms-win-core-memory-l1-1-0.dll
- VirtualProtect (Address: 0x1003a540)
- VirtualQuery (Address: 0x1003a53c)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1003a54c)
- GetCurrentProcessId (Address: 0x1003a558)
- GetCurrentThreadId (Address: 0x1003a548)
- OpenProcessToken (Address: 0x1003a554)
- TerminateProcess (Address: 0x1003a550)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x1003a560)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1003a568)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1003a570)
- RegOpenKeyExW (Address: 0x1003a574)
- RegQueryValueExW (Address: 0x1003a578)
api-ms-win-core-registry-l2-1-0.dll
- RegEnumKeyW (Address: 0x1003a580)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
- QISearch (Address: 0x1003a588)
api-ms-win-core-string-l1-1-0.dll
- GetStringTypeW (Address: 0x1003a594)
- MultiByteToWideChar (Address: 0x1003a590)
- WideCharToMultiByte (Address: 0x1003a598)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x1003a5b8)
- AcquireSRWLockShared (Address: 0x1003a5d8)
- CreateMutexExW (Address: 0x1003a5c0)
- CreateSemaphoreExW (Address: 0x1003a5ac)
- DeleteCriticalSection (Address: 0x1003a5e0)
- EnterCriticalSection (Address: 0x1003a5d4)
- InitializeCriticalSection (Address: 0x1003a5cc)
- InitializeCriticalSectionAndSpinCount (Address: 0x1003a5dc)
- InitializeCriticalSectionEx (Address: 0x1003a5bc)
- LeaveCriticalSection (Address: 0x1003a5b0)
- OpenSemaphoreW (Address: 0x1003a5c8)
- ReleaseMutex (Address: 0x1003a5a4)
- ReleaseSemaphore (Address: 0x1003a5a8)
- ReleaseSRWLockExclusive (Address: 0x1003a5b4)
- ReleaseSRWLockShared (Address: 0x1003a5d0)
- WaitForSingleObject (Address: 0x1003a5a0)
- WaitForSingleObjectEx (Address: 0x1003a5c4)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x1003a5f8)
- InitOnceComplete (Address: 0x1003a5f4)
- Sleep (Address: 0x1003a5e8)
- SleepConditionVariableSRW (Address: 0x1003a5f0)
- WakeAllConditionVariable (Address: 0x1003a5ec)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemInfo (Address: 0x1003a610)
- GetSystemTime (Address: 0x1003a608)
- GetSystemTimeAsFileTime (Address: 0x1003a614)
- GetSystemWindowsDirectoryW (Address: 0x1003a600)
- GetTickCount (Address: 0x1003a604)
- GetVersionExW (Address: 0x1003a60c)
api-ms-win-core-sysinfo-l1-2-0.dll
- GetNativeSystemInfo (Address: 0x1003a61c)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x1003a628)
- CreateThreadpoolTimer (Address: 0x1003a630)
- SetThreadpoolTimer (Address: 0x1003a624)
- WaitForThreadpoolTimerCallbacks (Address: 0x1003a62c)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x1003a63c)
- EncodePointer (Address: 0x1003a638)
api-ms-win-core-version-l1-1-0.dll
- GetFileVersionInfoExW (Address: 0x1003a648)
- GetFileVersionInfoSizeExW (Address: 0x1003a644)
- VerQueryValueW (Address: 0x1003a64c)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x1003a65c)
- EventEnabled (Address: 0x1003a66c)
- EventRegister (Address: 0x1003a658)
- EventSetInformation (Address: 0x1003a668)
- EventUnregister (Address: 0x1003a654)
- EventWrite (Address: 0x1003a664)
- EventWriteTransfer (Address: 0x1003a660)
api-ms-win-security-base-l1-1-0.dll
- AdjustTokenPrivileges (Address: 0x1003a674)
- GetSecurityDescriptorControl (Address: 0x1003a678)
api-ms-win-security-cryptoapi-l1-1-0.dll
- CryptReleaseContext (Address: 0x1003a680)
api-ms-win-security-lsalookup-l2-1-0.dll
- LookupPrivilegeValueW (Address: 0x1003a688)
api-ms-win-security-provider-l1-1-0.dll
- GetNamedSecurityInfoW (Address: 0x1003a690)
- SetNamedSecurityInfoW (Address: 0x1003a694)
msvcrt.dll
- ___lc_codepage_func (Address: 0x1003a718)
- ___lc_handle_func (Address: 0x1003a714)
- ___mb_cur_max_func (Address: 0x1003a71c)
- __crtLCMapStringA (Address: 0x1003a738)
- __crtLCMapStringW (Address: 0x1003a734)
- __CxxFrameHandler3 (Address: 0x1003a7b8)
- __dllonexit (Address: 0x1003a7b4)
- __pctype_func (Address: 0x1003a70c)
- __RTDynamicCast (Address: 0x1003a7cc)
- __uncaught_exception (Address: 0x1003a708)
- _amsg_exit (Address: 0x1003a7a0)
- _callnewh (Address: 0x1003a75c)
- _CxxThrowException (Address: 0x1003a76c)
- _errno (Address: 0x1003a6b0)
- _except_handler4_common (Address: 0x1003a7c8)
- _fseeki64 (Address: 0x1003a6f4)
- _initterm (Address: 0x1003a7a8)
- _ismbblead (Address: 0x1003a720)
- _lock (Address: 0x1003a7ac)
- _onexit (Address: 0x1003a7bc)
- _purecall (Address: 0x1003a784)
- _unlock (Address: 0x1003a7b0)
- _vsnprintf (Address: 0x1003a78c)
- _vsnprintf_s (Address: 0x1003a750)
- _vsnwprintf (Address: 0x1003a798)
- _wcsdup (Address: 0x1003a72c)
- _wcsicmp (Address: 0x1003a790)
- _wcsnicmp (Address: 0x1003a6cc)
- _wfsopen (Address: 0x1003a740)
- _wsetlocale (Address: 0x1003a73c)
- _wsplitpath_s (Address: 0x1003a788)
- _XcptFilter (Address: 0x1003a780)
- ??_V@YAXPAX@Z (Address: 0x1003a79c)
- ??0bad_cast@@QAE@ABV0@@Z (Address: 0x1003a69c)
- ??0bad_cast@@QAE@PBD@Z (Address: 0x1003a700)
- ??0exception@@QAE@ABQBD@Z (Address: 0x1003a760)
- ??0exception@@QAE@ABQBDH@Z (Address: 0x1003a764)
- ??0exception@@QAE@ABV0@@Z (Address: 0x1003a754)
- ??0exception@@QAE@XZ (Address: 0x1003a770)
- ??1bad_cast@@UAE@XZ (Address: 0x1003a7d4)
- ??1exception@@UAE@XZ (Address: 0x1003a774)
- ??1type_info@@UAE@XZ (Address: 0x1003a7c4)
- ??3@YAXPAX@Z (Address: 0x1003a7d0)
- ??8type_info@@QBEHABV0@@Z (Address: 0x1003a730)
- ?terminate@@YAXXZ (Address: 0x1003a7c0)
- ?what@exception@@UBEPBDXZ (Address: 0x1003a768)
- abort (Address: 0x1003a744)
- calloc (Address: 0x1003a6c0)
- fclose (Address: 0x1003a6c4)
- fflush (Address: 0x1003a6d8)
- fgetc (Address: 0x1003a6dc)
- fgetpos (Address: 0x1003a6e4)
- fputc (Address: 0x1003a6d4)
- free (Address: 0x1003a7a4)
- fseek (Address: 0x1003a6c8)
- fsetpos (Address: 0x1003a6f0)
- fwrite (Address: 0x1003a6e0)
- islower (Address: 0x1003a728)
- isupper (Address: 0x1003a710)
- localeconv (Address: 0x1003a6a8)
- malloc (Address: 0x1003a758)
- memcmp (Address: 0x1003a748)
- memcpy (Address: 0x1003a778)
- memcpy_s (Address: 0x1003a794)
- memmove (Address: 0x1003a77c)
- memmove_s (Address: 0x1003a6bc)
- memset (Address: 0x1003a724)
- setlocale (Address: 0x1003a704)
- setvbuf (Address: 0x1003a6e8)
- sprintf_s (Address: 0x1003a6b4)
- strchr (Address: 0x1003a74c)
- strcspn (Address: 0x1003a6a4)
- strnlen (Address: 0x1003a6fc)
- swprintf_s (Address: 0x1003a6ac)
- towlower (Address: 0x1003a6a0)
- ungetc (Address: 0x1003a6ec)
- wcsncmp (Address: 0x1003a6b8)
- wcsnlen (Address: 0x1003a6f8)
- wcsstr (Address: 0x1003a6d0)