wtsapi32.dll
Description: Windows Remote Desktop Session Host Server SDK APIs
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 32-bit
Operating System: Windows NT
SHA256: 0f936043b11a3dabfd8f8270f0477ef0
File Size: 52.5 KB
Uploaded At: Dec. 1, 2025, 8:08 a.m.
Views: 10
Exported Functions
- IsInteractiveUserSession (Ordinal: 1, Address: 0x2570)
- QueryActiveSession (Ordinal: 2, Address: 0x2550)
- QueryUserToken (Ordinal: 3, Address: 0x1930)
- RegisterUsertokenForNoWinlogon (Ordinal: 4, Address: 0x4e60)
- WTSCloseServer (Ordinal: 5, Address: 0x4370)
- WTSConnectSessionA (Ordinal: 6, Address: 0x3d90)
- WTSConnectSessionW (Ordinal: 7, Address: 0x3e50)
- WTSCreateListenerA (Ordinal: 8, Address: 0x7710)
- WTSCreateListenerW (Ordinal: 9, Address: 0x77d0)
- WTSDisconnectSession (Ordinal: 10, Address: 0x4fb0)
- WTSEnableChildSessions (Ordinal: 11, Address: 0x3e80)
- WTSEnumerateListenersA (Ordinal: 12, Address: 0x7d80)
- WTSEnumerateListenersW (Ordinal: 13, Address: 0x7e70)
- WTSEnumerateProcessesA (Ordinal: 14, Address: 0x58e0)
- WTSEnumerateProcessesExA (Ordinal: 15, Address: 0x5b40)
- WTSEnumerateProcessesExW (Ordinal: 16, Address: 0x5bd0)
- WTSEnumerateProcessesW (Ordinal: 17, Address: 0x5ed0)
- WTSEnumerateServersA (Ordinal: 18, Address: 0x4380)
- WTSEnumerateServersW (Ordinal: 19, Address: 0x44c0)
- WTSEnumerateSessionsA (Ordinal: 20, Address: 0x4fd0)
- WTSEnumerateSessionsExA (Ordinal: 21, Address: 0x5200)
- WTSEnumerateSessionsExW (Ordinal: 22, Address: 0x1ec0)
- WTSEnumerateSessionsW (Ordinal: 23, Address: 0x2250)
- WTSFreeMemory (Ordinal: 24, Address: 0x24a0)
- WTSFreeMemoryExA (Ordinal: 25, Address: 0x3ea0)
- WTSFreeMemoryExW (Ordinal: 26, Address: 0x23e0)
- WTSGetChildSessionId (Ordinal: 27, Address: 0x3ee0)
- WTSGetListenerSecurityA (Ordinal: 28, Address: 0x7fa0)
- WTSGetListenerSecurityW (Ordinal: 29, Address: 0x8020)
- WTSIsChildSessionsEnabled (Ordinal: 30, Address: 0x3f10)
- WTSLogoffSession (Ordinal: 31, Address: 0x5380)
- WTSOpenServerA (Ordinal: 32, Address: 0x4620)
- WTSOpenServerExA (Ordinal: 33, Address: 0x4640)
- WTSOpenServerExW (Ordinal: 34, Address: 0x4660)
- WTSOpenServerW (Ordinal: 35, Address: 0x4680)
- WTSQueryListenerConfigA (Ordinal: 36, Address: 0x81b0)
- WTSQueryListenerConfigW (Ordinal: 37, Address: 0x8270)
- WTSQuerySessionInformationA (Ordinal: 38, Address: 0x53a0)
- WTSQuerySessionInformationW (Ordinal: 39, Address: 0x1a60)
- WTSQueryUserConfigA (Ordinal: 40, Address: 0x6ad0)
- WTSQueryUserConfigW (Ordinal: 41, Address: 0x6c60)
- WTSQueryUserToken (Ordinal: 42, Address: 0x1930)
- WTSRegisterSessionNotification (Ordinal: 43, Address: 0x24f0)
- WTSRegisterSessionNotificationEx (Ordinal: 44, Address: 0x5510)
- WTSSendMessageA (Ordinal: 45, Address: 0x5530)
- WTSSendMessageW (Ordinal: 46, Address: 0x5590)
- WTSSetListenerSecurityA (Ordinal: 47, Address: 0x84e0)
- WTSSetListenerSecurityW (Ordinal: 48, Address: 0x8560)
- WTSSetRenderHint (Ordinal: 49, Address: 0x3f50)
- WTSSetSessionInformationA (Ordinal: 50, Address: 0x55f0)
- WTSSetSessionInformationW (Ordinal: 51, Address: 0x55f0)
- WTSSetUserConfigA (Ordinal: 52, Address: 0x6fa0)
- WTSSetUserConfigW (Ordinal: 53, Address: 0x7100)
- WTSShutdownSystem (Ordinal: 54, Address: 0x3f70)
- WTSStartRemoteControlSessionA (Ordinal: 55, Address: 0x3fe0)
- WTSStartRemoteControlSessionW (Ordinal: 56, Address: 0x4090)
- WTSStopRemoteControlSession (Ordinal: 57, Address: 0x40c0)
- WTSTerminateProcess (Ordinal: 58, Address: 0x61d0)
- WTSUnRegisterSessionNotification (Ordinal: 59, Address: 0x2a10)
- WTSUnRegisterSessionNotificationEx (Ordinal: 60, Address: 0x5600)
- WTSVirtualChannelClose (Ordinal: 61, Address: 0x6270)
- WTSVirtualChannelOpen (Ordinal: 62, Address: 0x62d0)
- WTSVirtualChannelOpenEx (Ordinal: 63, Address: 0x62f0)
- WTSVirtualChannelPurgeInput (Ordinal: 64, Address: 0x6310)
- WTSVirtualChannelPurgeOutput (Ordinal: 65, Address: 0x6330)
- WTSVirtualChannelQuery (Ordinal: 66, Address: 0x6350)
- WTSVirtualChannelRead (Ordinal: 67, Address: 0x6450)
- WTSVirtualChannelWrite (Ordinal: 68, Address: 0x6500)
- WTSWaitSystemEvent (Ordinal: 69, Address: 0x40e0)
Imported DLLs & Functions
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x3000b000)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x3000b008)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x3000b018)
- SetLastError (Address: 0x3000b01c)
- SetUnhandledExceptionFilter (Address: 0x3000b010)
- UnhandledExceptionFilter (Address: 0x3000b014)
api-ms-win-core-file-l1-1-0.dll
- ReadFile (Address: 0x3000b024)
- WriteFile (Address: 0x3000b028)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x3000b030)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x3000b03c)
- LocalFree (Address: 0x3000b038)
- LocalReAlloc (Address: 0x3000b040)
api-ms-win-core-io-l1-1-0.dll
- GetOverlappedResult (Address: 0x3000b048)
api-ms-win-core-io-l1-1-1.dll
- CancelIo (Address: 0x3000b050)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x3000b058)
- GetCurrentProcessId (Address: 0x3000b068)
- GetCurrentThread (Address: 0x3000b06c)
- GetCurrentThreadId (Address: 0x3000b05c)
- OpenProcessToken (Address: 0x3000b064)
- OpenThreadToken (Address: 0x3000b060)
- TerminateProcess (Address: 0x3000b070)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x3000b078)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x3000b08c)
- RegOpenKeyExW (Address: 0x3000b088)
- RegQueryValueExW (Address: 0x3000b080)
- RegSetValueExW (Address: 0x3000b084)
api-ms-win-core-string-l1-1-0.dll
- WideCharToMultiByte (Address: 0x3000b094)
api-ms-win-core-synch-l1-1-0.dll
- WaitForSingleObject (Address: 0x3000b09c)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x3000b0a4)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x3000b0ac)
- GetTickCount (Address: 0x3000b0b0)
msvcrt.dll
- _amsg_exit (Address: 0x3000b0d0)
- _except_handler4_common (Address: 0x3000b0c0)
- _initterm (Address: 0x3000b0c4)
- _wcsupr (Address: 0x3000b0d8)
- _XcptFilter (Address: 0x3000b0d4)
- free (Address: 0x3000b0bc)
- malloc (Address: 0x3000b0c8)
- memcpy (Address: 0x3000b0b8)
- memcpy_s (Address: 0x3000b0cc)
- memset (Address: 0x3000b0e0)
- swscanf (Address: 0x3000b0dc)
ntdll.dll
- NtDeviceIoControlFile (Address: 0x3000b0fc)
- NtWaitForSingleObject (Address: 0x3000b100)
- RtlAdjustPrivilege (Address: 0x3000b0f8)
- RtlMultiByteToUnicodeN (Address: 0x3000b0ec)
- RtlNtStatusToDosError (Address: 0x3000b0e8)
- RtlUnicodeToMultiByteN (Address: 0x3000b0f4)
- RtlUnicodeToMultiByteSize (Address: 0x3000b0f0)