DMPushRouterCore.dll
Description: MDM Pushrouter
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.5794
Architecture: 64-bit
Operating System: Windows NT
SHA256: 05ddd6f8a0b7725594686dcd2a6e3aa5
File Size: 320.0 KB
Uploaded At: Dec. 1, 2025, 7:26 a.m.
Views: 10
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- PrAreAllClientsHandled (Ordinal: 1, Address: 0xb500)
- PrSvcDecMessageCount (Ordinal: 2, Address: 0xb5e0)
- PrSvcGetMessageCount (Ordinal: 3, Address: 0xb550)
- PrSvcIncMessageCount (Ordinal: 4, Address: 0xb6a0)
- PrSvcSetMessageCount (Ordinal: 5, Address: 0xb590)
- PushRouter_SubmitPushLocal (Ordinal: 6, Address: 0xbd00)
- InitializePushRouter (Ordinal: 7, Address: 0xcee0)
- RegisterRPCInterface (Ordinal: 8, Address: 0x9520)
- ShutDownPushRouter (Ordinal: 9, Address: 0xd280)
- ShutDownPushRouterSynchronously (Ordinal: 10, Address: 0xd330)
- UnregisterRPCInterface (Ordinal: 11, Address: 0x9880)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CLSIDFromProgID (Address: 0x180037eb0)
- CLSIDFromString (Address: 0x180037ec0)
- CoCreateInstance (Address: 0x180037eb8)
- CoInitializeEx (Address: 0x180037ee8)
- CoInitializeSecurity (Address: 0x180037ed8)
- CoRevertToSelf (Address: 0x180037ef0)
- CoTaskMemAlloc (Address: 0x180037ee0)
- CoTaskMemFree (Address: 0x180037ea8)
- CoUninitialize (Address: 0x180037ed0)
- StringFromGUID2 (Address: 0x180037ec8)
api-ms-win-core-debug-l1-1-0.dll
- DebugBreak (Address: 0x180037f00)
- IsDebuggerPresent (Address: 0x180037f10)
- OutputDebugStringW (Address: 0x180037f08)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x180037f20)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x180037f30)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180037f58)
- RaiseException (Address: 0x180037f60)
- SetLastError (Address: 0x180037f48)
- SetUnhandledExceptionFilter (Address: 0x180037f40)
- UnhandledExceptionFilter (Address: 0x180037f50)
api-ms-win-core-file-l1-1-0.dll
- CreateDirectoryW (Address: 0x180037fc8)
- CreateFileW (Address: 0x180037f88)
- DeleteFileW (Address: 0x180037f70)
- FileTimeToLocalFileTime (Address: 0x180037fb8)
- FindClose (Address: 0x180037fc0)
- FindFirstFileW (Address: 0x180037f90)
- FindNextFileW (Address: 0x180037fa0)
- GetFileAttributesW (Address: 0x180037f98)
- GetFileSize (Address: 0x180037fb0)
- ReadFile (Address: 0x180037f78)
- SetEndOfFile (Address: 0x180037fd0)
- SetFilePointer (Address: 0x180037fa8)
- WriteFile (Address: 0x180037f80)
api-ms-win-core-file-l2-1-0.dll
- MoveFileExW (Address: 0x180037fe0)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180037ff0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x180038018)
- HeapAlloc (Address: 0x180038008)
- HeapFree (Address: 0x180038010)
- HeapReAlloc (Address: 0x180038000)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180038028)
- LocalFree (Address: 0x180038038)
- LocalReAlloc (Address: 0x180038030)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x180038068)
- GetModuleFileNameA (Address: 0x180038058)
- GetModuleHandleExW (Address: 0x180038050)
- GetModuleHandleW (Address: 0x180038060)
- GetProcAddress (Address: 0x180038048)
api-ms-win-core-localization-l1-2-0.dll
- FormatMessageW (Address: 0x180038078)
api-ms-win-core-path-l1-1-0.dll
- PathCchAppend (Address: 0x180038090)
- PathCchCombine (Address: 0x180038088)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsW (Address: 0x1800380a0)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateProcessW (Address: 0x1800380d8)
- CreateThread (Address: 0x1800380e8)
- GetCurrentProcess (Address: 0x1800380b8)
- GetCurrentProcessId (Address: 0x1800380b0)
- GetCurrentThread (Address: 0x180038100)
- GetCurrentThreadId (Address: 0x1800380e0)
- GetExitCodeProcess (Address: 0x1800380f0)
- GetExitCodeThread (Address: 0x1800380d0)
- GetStartupInfoW (Address: 0x1800380f8)
- OpenProcessToken (Address: 0x1800380c8)
- OpenThreadToken (Address: 0x180038108)
- TerminateProcess (Address: 0x1800380c0)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x180038118)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180038128)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x180038178)
- RegCreateKeyExW (Address: 0x180038168)
- RegDeleteTreeW (Address: 0x180038138)
- RegDeleteValueW (Address: 0x180038148)
- RegEnumKeyExW (Address: 0x180038140)
- RegEnumValueW (Address: 0x180038170)
- RegGetValueW (Address: 0x180038160)
- RegOpenKeyExW (Address: 0x180038180)
- RegQueryInfoKeyW (Address: 0x180038150)
- RegQueryValueExW (Address: 0x180038188)
- RegSetValueExW (Address: 0x180038158)
api-ms-win-core-registry-l1-1-1.dll
- RegSetKeyValueW (Address: 0x180038198)
api-ms-win-core-registry-l2-1-0.dll
- RegDeleteKeyW (Address: 0x1800381a8)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x1800381c8)
- RtlCompareMemory (Address: 0x1800381d0)
- RtlLookupFunctionEntry (Address: 0x1800381c0)
- RtlVirtualUnwind (Address: 0x1800381b8)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathFindExtensionW (Address: 0x1800381e0)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x1800381f0)
api-ms-win-core-string-obsolete-l1-1-0.dll
- lstrlenA (Address: 0x180038200)
api-ms-win-core-synch-l1-1-0.dll
- AcquireSRWLockExclusive (Address: 0x180038298)
- AcquireSRWLockShared (Address: 0x180038280)
- CreateEventW (Address: 0x180038268)
- CreateMutexExW (Address: 0x180038230)
- CreateSemaphoreExW (Address: 0x180038238)
- DeleteCriticalSection (Address: 0x180038248)
- EnterCriticalSection (Address: 0x180038260)
- InitializeCriticalSection (Address: 0x180038288)
- InitializeCriticalSectionEx (Address: 0x180038250)
- LeaveCriticalSection (Address: 0x180038290)
- OpenEventW (Address: 0x180038278)
- OpenSemaphoreW (Address: 0x180038220)
- ReleaseMutex (Address: 0x180038228)
- ReleaseSemaphore (Address: 0x180038258)
- ReleaseSRWLockExclusive (Address: 0x180038218)
- ReleaseSRWLockShared (Address: 0x180038210)
- SetEvent (Address: 0x180038270)
- WaitForSingleObject (Address: 0x180038240)
- WaitForSingleObjectEx (Address: 0x1800382a0)
api-ms-win-core-synch-l1-2-0.dll
- InitOnceBeginInitialize (Address: 0x1800382d0)
- InitOnceComplete (Address: 0x1800382c0)
- Sleep (Address: 0x1800382c8)
- SleepConditionVariableSRW (Address: 0x1800382b8)
- WakeAllConditionVariable (Address: 0x1800382b0)
api-ms-win-core-synch-l1-2-1.dll
- WaitForMultipleObjects (Address: 0x1800382e0)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTime (Address: 0x1800382f8)
- GetSystemTimeAsFileTime (Address: 0x1800382f0)
- GetTickCount (Address: 0x180038300)
api-ms-win-core-threadpool-l1-2-0.dll
- CloseThreadpoolTimer (Address: 0x180038318)
- CreateThreadpoolTimer (Address: 0x180038320)
- SetThreadpoolTimer (Address: 0x180038328)
- WaitForThreadpoolTimerCallbacks (Address: 0x180038310)
api-ms-win-core-timezone-l1-1-0.dll
- FileTimeToSystemTime (Address: 0x180038338)
- SystemTimeToFileTime (Address: 0x180038340)
api-ms-win-core-winrt-l1-1-0.dll
- RoActivateInstance (Address: 0x180038358)
- RoInitialize (Address: 0x180038350)
api-ms-win-core-winrt-string-l1-1-0.dll
- WindowsCreateStringReference (Address: 0x180038368)
- WindowsGetStringRawBuffer (Address: 0x180038370)
api-ms-win-eventing-provider-l1-1-0.dll
- EventActivityIdControl (Address: 0x180038388)
- EventRegister (Address: 0x180038380)
- EventSetInformation (Address: 0x1800383a0)
- EventUnregister (Address: 0x180038390)
- EventWriteTransfer (Address: 0x180038398)
api-ms-win-security-accesshlpr-l1-1-0.dll
- BuildSecurityDescriptorForSharingAccess (Address: 0x1800383c0)
- FreeTransientObjectSecurityDescriptor (Address: 0x1800383b8)
- QueryTransientObjectSecurityDescriptor (Address: 0x1800383b0)
api-ms-win-security-base-l1-1-0.dll
- AllocateAndInitializeSid (Address: 0x180038410)
- CheckTokenMembership (Address: 0x1800383e8)
- CopySid (Address: 0x1800383e0)
- EqualSid (Address: 0x1800383d0)
- FreeSid (Address: 0x1800383d8)
- GetLengthSid (Address: 0x1800383f0)
- GetTokenInformation (Address: 0x180038408)
- ImpersonateLoggedOnUser (Address: 0x180038400)
- RevertToSelf (Address: 0x1800383f8)
api-ms-win-security-sddl-l1-1-0.dll
- ConvertSidToStringSidW (Address: 0x180038420)
api-ms-win-service-management-l1-1-0.dll
- CloseServiceHandle (Address: 0x180038438)
- OpenSCManagerW (Address: 0x180038440)
- OpenServiceW (Address: 0x180038430)
api-ms-win-service-management-l2-1-0.dll
- ChangeServiceConfig2W (Address: 0x180038450)
- ChangeServiceConfigW (Address: 0x180038458)
CRYPT32.dll
- CertCloseStore (Address: 0x180037d10)
- CertFindCertificateInStore (Address: 0x180037d18)
- CertFreeCertificateContext (Address: 0x180037d28)
- CertOpenStore (Address: 0x180037d20)
DMCmnUtils.dll
- BigStrcat (Address: 0x180037d80)
- CopyString (Address: 0x180037d70)
- DecodeBase64W (Address: 0x180037d90)
- DmCreateTask (Address: 0x180037d40)
- DmDisableTask (Address: 0x180037d68)
- DmIsTaskScheduled (Address: 0x180037d38)
- EncodeBase64W (Address: 0x180037d98)
- HexStringToBinary (Address: 0x180037d50)
- InvStrCmpIW (Address: 0x180037db0)
- InvStrCmpNIW (Address: 0x180037d78)
- InvStrCmpW (Address: 0x180037da8)
- IsWvdFeatureAllowed (Address: 0x180037d60)
- OmaDmRegistryGetDWORD (Address: 0x180037d88)
- OmaDmRegistryGetString (Address: 0x180037d58)
- SafeStringToDword (Address: 0x180037da0)
- UnicodeToMB (Address: 0x180037d48)
msvcp110_win.dll
- ?_Syserror_map@std@@YAPEBDH@Z (Address: 0x180038468)
- ?_Winerror_map@std@@YAPEBDH@Z (Address: 0x180038488)
- ?_Xbad_alloc@std@@YAXXZ (Address: 0x180038470)
- ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x180038478)
- ?_Xout_of_range@std@@YAXPEBD@Z (Address: 0x180038480)
msvcrt.dll
- __C_specific_handler (Address: 0x1800385f0)
- __CxxFrameHandler3 (Address: 0x1800384b8)
- __dllonexit (Address: 0x1800385c8)
- _amsg_exit (Address: 0x1800385b8)
- _callnewh (Address: 0x1800385a8)
- _CxxThrowException (Address: 0x1800384a8)
- _errno (Address: 0x1800384f8)
- _initterm (Address: 0x1800385f8)
- _itow_s (Address: 0x180038578)
- _lock (Address: 0x1800385d8)
- _ltow_s (Address: 0x180038598)
- _onexit (Address: 0x1800385c0)
- _purecall (Address: 0x180038558)
- _set_errno (Address: 0x180038500)
- _ultow_s (Address: 0x1800385a0)
- _unlock (Address: 0x1800385d0)
- _vsnprintf_s (Address: 0x180038548)
- _vsnwprintf (Address: 0x180038540)
- _wcsicmp (Address: 0x180038568)
- _wcsnicmp (Address: 0x1800384d8)
- _XcptFilter (Address: 0x1800385b0)
- ??_V@YAXPEAX@Z (Address: 0x180038528)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x180038530)
- ??0exception@@QEAA@XZ (Address: 0x180038538)
- ??1exception@@UEAA@XZ (Address: 0x180038508)
- ??1type_info@@UEAA@XZ (Address: 0x1800385e0)
- ??3@YAXPEAX@Z (Address: 0x180038510)
- ?terminate@@YAXXZ (Address: 0x1800385e8)
- free (Address: 0x1800384d0)
- malloc (Address: 0x180038550)
- memcmp (Address: 0x1800384a0)
- memcpy (Address: 0x180038498)
- memcpy_s (Address: 0x180038518)
- memmove (Address: 0x1800384b0)
- memmove_s (Address: 0x180038520)
- memset (Address: 0x180038588)
- qsort (Address: 0x180038580)
- rand (Address: 0x1800384c0)
- sprintf_s (Address: 0x180038570)
- srand (Address: 0x1800384c8)
- strchr (Address: 0x1800384e8)
- strncpy_s (Address: 0x180038560)
- strrchr (Address: 0x1800384e0)
- strtol (Address: 0x1800384f0)
- wcsstr (Address: 0x180038590)
ntdll.dll
- NtQuerySecurityAttributesToken (Address: 0x180038628)
- NtSetInformationToken (Address: 0x180038610)
- RtlAllocateHeap (Address: 0x180038638)
- RtlFreeHeap (Address: 0x180038618)
- RtlInitUnicodeString (Address: 0x180038608)
- RtlIsStateSeparationEnabled (Address: 0x180038630)
- RtlNtStatusToDosError (Address: 0x180038620)
OLEAUT32.dll
- SafeArrayCreate (Address: 0x180037dd8)
- SafeArrayDestroy (Address: 0x180037de8)
- SafeArrayGetLBound (Address: 0x180037e00)
- SafeArrayGetUBound (Address: 0x180037dc8)
- SafeArrayLock (Address: 0x180037e10)
- SafeArrayUnlock (Address: 0x180037dd0)
- SysAllocString (Address: 0x180037df0)
- SysFreeString (Address: 0x180037e08)
- SysStringByteLen (Address: 0x180037df8)
- VariantClear (Address: 0x180037dc0)
- VariantInit (Address: 0x180037de0)
omadmapi.dll
- (Address: 0x180038648)
RPCRT4.dll
- I_RpcBindingInqLocalClientPID (Address: 0x180037e68)
- NdrServerCall2 (Address: 0x180037e70)
- NdrServerCallAll (Address: 0x180037e38)
- RpcImpersonateClient (Address: 0x180037e60)
- RpcRevertToSelfEx (Address: 0x180037e58)
- RpcServerInterfaceGroupActivate (Address: 0x180037e30)
- RpcServerInterfaceGroupClose (Address: 0x180037e20)
- RpcServerInterfaceGroupCreateW (Address: 0x180037e50)
- RpcServerInterfaceGroupDeactivate (Address: 0x180037e28)
- UuidCreate (Address: 0x180037e40)
- UuidFromStringW (Address: 0x180037e48)
SspiCli.dll
- GetUserNameExW (Address: 0x180037e80)
XmlLite.dll
- CreateXmlReader (Address: 0x180037e98)
- CreateXmlWriter (Address: 0x180037e90)