Windows 10 DLL File Information - urlmon.dll |
The following DLL report was generated by automatic DLL script that scanned and loaded all DLL files in the system32 directory of Windows 10, extracted the information from them, and then saved it into HTML reports. If you want to view a report of another DLL, go to the main page of this Web site.
General Information
File Description: | OLE32 Extensions for Win32 |
File Version: | 11.0.10130.0 (fbl_impressive.150522-2224) |
Company: | Microsoft Corporation |
Product Name: | Internet Explorer |
DLL popularity | Medium - 34 other DLL files in system32 directory are statically linked to this file. |
File Size: | 1,327 KB |
Total Number of Exported Functions: | 465 |
Total Number of Exported Functions With Names: | 132 |
Section Headers
Name | Virtual Address | Raw Data Size | % of File | Characteristics | Section Contains... |
---|---|---|---|---|---|
.text | 0x00001000 | 950,784 Bytes | 69.9% | Read, Execute | Code |
.wpp_sf | 0x000ea000 | 5,632 Bytes | 0.4% | Read, Execute | Code |
.data | 0x000ec000 | 4,608 Bytes | 0.3% | Write, Read | Initialized Data |
.idata | 0x000f7000 | 15,872 Bytes | 1.2% | Read | Initialized Data |
.didat | 0x000fb000 | 1,024 Bytes | 0.1% | Write, Read | Initialized Data |
.rsrc | 0x000fc000 | 331,264 Bytes | 24.4% | Read | Initialized Data |
.reloc | 0x0014d000 | 49,152 Bytes | 3.6% | Read, Discardable | Initialized Data |
Static Linking
urlmon.dll is statically linked to the following files:msvcrt.dll
iertutil.dll
ntdll.dll
api-ms-win-core-synch-l1-2-0.dll
api-ms-win-core-libraryloader-l1-2-0.dll
api-ms-win-core-com-l1-1-1.dll
api-ms-win-eventing-provider-l1-1-0.dll
api-ms-win-eventing-classicprovider-l1-1-0.dll
api-ms-win-core-string-l1-1-0.dll
api-ms-win-core-registry-l1-1-0.dll
api-ms-win-core-processthreads-l1-1-2.dll
api-ms-win-core-heap-l1-2-0.dll
api-ms-win-core-errorhandling-l1-1-1.dll
api-ms-win-core-profile-l1-1-0.dll
api-ms-win-core-sysinfo-l1-2-1.dll
api-ms-win-core-heap-l2-1-0.dll
api-ms-win-core-handle-l1-1-0.dll
api-ms-win-core-path-l1-1-0.dll
api-ms-win-core-string-l2-1-0.dll
api-ms-win-core-localization-l1-2-1.dll
api-ms-win-core-libraryloader-l1-2-1.dll
api-ms-win-core-util-l1-1-0.dll
api-ms-win-core-file-l1-2-1.dll
api-ms-win-core-file-l1-2-2.dll
api-ms-win-core-version-l1-1-0.dll
api-ms-win-core-timezone-l1-1-0.dll
api-ms-win-security-base-l1-2-0.dll
api-ms-win-core-processenvironment-l1-2-0.dll
api-ms-win-core-wow64-l1-1-0.dll
api-ms-win-core-datetime-l1-1-1.dll
api-ms-win-core-debug-l1-1-1.dll
api-ms-win-core-threadpool-l1-2-0.dll
api-ms-win-core-file-l2-1-1.dll
CRYPTBASE.dll
api-ms-win-core-errorhandling-l1-1-3.dll
api-ms-win-core-memory-l1-1-2.dll
api-ms-win-core-synch-l1-2-1.dll
api-ms-win-core-registryuserspecific-l1-1-0.dll
api-ms-win-core-atoms-l1-1-0.dll
api-ms-win-core-url-l1-1-0.dll
api-ms-win-security-lsapolicy-l1-1-0.dll
api-ms-win-core-sidebyside-l1-1-0.dll
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
api-ms-win-core-kernel32-legacy-l1-1-1.dll
api-ms-win-core-registry-l2-2-0.dll
api-ms-win-core-shlwapi-obsolete-l1-2-0.dll
api-ms-win-eventing-obsolete-l1-1-0.dll
api-ms-win-core-string-obsolete-l1-1-0.dll
api-ms-win-core-stringansi-l1-1-0.dll
api-ms-win-core-privateprofile-l1-1-1.dll
api-ms-win-core-heap-obsolete-l1-1-0.dll
api-ms-win-core-localization-obsolete-l1-3-0.dll
api-ms-win-downlevel-shlwapi-l2-1-1.dll
api-ms-win-shlwapi-winrt-storage-l1-1-1.dll
api-ms-win-core-io-l1-1-1.dll
api-ms-win-core-apiquery-l1-1-0.dll
This means that when urlmon.dll is loaded, the above files are automatically loaded too. If one of these files is corrupted or missing, urlmon.dll won't be loaded.
General Resources Information
Resource Type | Number of Items | Total Size | % of File |
---|---|---|---|
Icons | 18 | 294,374 Bytes | 21.7% |
Animated Icons | 0 | 0 Bytes | 0.0% |
Cursors | 0 | 0 Bytes | 0.0% |
Animated Cursors | 0 | 0 Bytes | 0.0% |
Bitmaps | 0 | 0 Bytes | 0.0% |
AVI Files | 0 | 0 Bytes | 0.0% |
Dialog-Boxes | 10 | 8,060 Bytes | 0.6% |
HTML Related Files | 0 | 0 Bytes | 0.0% |
Menus | 0 | 0 Bytes | 0.0% |
Strings | 130 | 20,358 Bytes | 1.5% |
Type Libraries | 0 | 0 Bytes | 0.0% |
Manifest | 1 | 753 Bytes | 0.1% |
All Others | 5 | 35,345 Bytes | 2.6% |
Total | 164 | 358,890 Bytes | 26.4% |
Icons in this file
There are 18 icons stored in this DLL file. You can view all these icons in the following small thumbnail:
Cursors in this file
No cursors found in this file
Dialog-boxes list (up to 1000 dialogs)
In the following section, you can find the captions of dialog-boxes stored in this DLL. The list is currently limited to 1000 dialogs.ID | Dialog Caption |
---|---|
114 | Security Alert |
1175 | Internet Explorer |
4006 | Internet Explorer |
4007 | Internet Explorer |
4008 | Internet Explorer |
4009 | Internet Explorer |
4012 | Internet Explorer |
4100 | Security Warning |
4108 | Internet Explorer |
20001 | Internet Explorer |
String resources in this dll (up to 1000 strings)
String ID | String Text |
---|---|
2012 | Your current security settings do not allow you to download files from this location. |
2013 | When you send information to the %s, it might be possible for others to see that information. Do you want to continue? |
2014 | When you send information from the %s, it might be possible for others to see that information. Do you want to continue? |
2016 | An ActiveX control on this page might be unsafe to interact with other parts of the page. Do you want to allow this interaction? |
2017 | An ActiveX control on this page might be unsafe to interact with other parts of the page. Do you want to allow this interaction? |
2018 | Scripts are usually safe. Do you want to allow scripts to run? |
2019 | Do you want to allow scripts to access Java applets? |
2022 | Sending HTML forms is as safe as sending e-mail. Do you want to able to send HTML forms? |
2023 | This page uses fonts that need to be temporarily installed. This is usually safe. Do you want to allow these fonts to be downloaded? |
2024 | Do you want to allow Java applets to run? |
2026 | Are you sure you want to copy or move files to this folder? |
2027 | Do you want to allow a file to be downloaded? |
2028 | Running a system command on this item might be unsafe. Do you wish to continue? |
2029 | This site is requesting a password or a personal certificate. Do you want to connect to this site using your personal credentials? |
2030 | Do you want to connect to this site even though the client authentication is not possible? |
2031 | When software (an ActiveX control) is signed, it is possible to tell who published it. Do you want to allow signed software to be downloaded? |
2032 | Do you want to allow software such as ActiveX controls and plug-ins to run? |
2033 | This page has an unspecified potential security risk. Would you like to continue? |
2034 | Some software (an ActiveX control) on this page might be unsafe. Do you want to allow it to run? |
2035 | Some software (an ActiveX control) on this page might be unsafe. Do you want to allow it to run? |
2036 | Some software (a script) on this page might be unsafe. Do you want to allow it to run? |
2037 | Do you want to allow software such as ActiveX controls to be downloaded? |
2038 | Your current security settings prohibit creating Active Desktop items. |
2039 | Do you want to be able to drag items from the desktop or a folder onto this page? |
2040 | Your current security settings prohibit copying or moving files from this zone. |
2041 | Your current security settings do not allow you to perform system commands on this item. |
2042 | Your current security settings do not allow you to send HTML forms. |
2043 | Your current security settings do not allow this action. |
2044 | A script is accessing some software (an ActiveX control) on this page which has been marked safe for scripting. Do you want to allow this? |
2045 | Are you sure you want to open a file from this location? |
2046 | Opening a file from this location might not be safe and is not allowed with your current security settings. |
2047 | This page is accessing information that is not under its control. This poses a security risk. Do you want to continue? |
2048 | To allow this website to provide information personalized for you, will you allow it to put a small file (called a cookie) on your computer? |
2051 | Will you allow this website to put a small file (called a cookie) on your computer for this session only? |
2052 | Will you allow this website to save a file on your computer? |
2053 | Do you want to allow this page to cut, copy, or paste information from your clipboard? |
2054 | Allow sub-frames to navigate across different domains? |
2055 | Allow client authentication without prompting when only one certificate is available? |
2056 | Allow third party cookies stored on your computer (only effective if cookies can be stored on your computer) |
2057 | Allow third party per-session cookies (not stored - this setting is only effective if per-session cookies are enabled) |
2058 | Allow this page to meta-refresh? |
2059 | Display mixed content? |
2060 | Content from the website listed below is being blocked by the Internet Explorer Enhanced Security Configuration. |
2061 | If you trust this website, you can lower security settings for the site by adding it to the Trusted sites zone. If you know this website is on your local intranet, review help for instructions on adding the site to the local intranet zone instead. |
2062 | Content within this application coming from the website listed below is being blocked by Internet Explorer Enhanced Security Configuration. |
2064 | Important: adding this website to the Trusted sites zone will lower the security settings for all content from this web site for all applications, including Internet Explorer. |
2065 | You are attempting to download a file from a site that is not part of your Trusted Sites and that might be different from the website you are viewing. |
2069 | You should only copy or move files from locations that you trust. |
2070 | Windows Security Warning |
4112 | The current webpage is trying to open a file on your Computer. Do you want to allow this? |
4113 | The current webpage is trying to open a site on your intranet. Do you want to allow this? |
4114 | The current webpage is trying to open a site in your Trusted sites list. Do you want to allow this? |
4115 | The current webpage is trying to open a site on the Internet. Do you want to allow this? |
4116 | The current webpage is trying to open a site in your Restricted sites list. Do you want to allow this? |
4117 | The current webpage is trying to open a site that might be less secure. Do you want to allow this? |
4118 | File: |
4119 | Intranet site: |
4120 | Trusted site: |
4121 | Internet site: |
4122 | Restricted site: |
4123 | Site: |
4124 | Warning: allowing this can expose your computer to security risks. If you don't trust the current webpage, choose No. |
4125 | My Computer |
4126 | Computer |
4127 | Local intranet |
4128 | Trusted sites |
4129 | Internet |
4130 | Restricted sites |
4131 | Your computer |
4132 | This zone contains all websites that are on your organization's intranet. |
4133 | This zone contains websites that you trust not to damage your computer or data. |
4134 | This zone contains all websites you haven't placed in other zones |
4135 | This zone contains websites that could potentially damage your computer or data. |
4136 | Do you want to allow the current website to interact with content from another website? |
4137 | Do you want to allow this webpage to access your Clipboard? If you allow this, the webpage can read information that you’ve cut or copied recently. |
4200 | Open File - Security Warning |
4300 | Internet Explorer |
4301 | Security Warning |
4303 | Do you want to allow the current website to interact with content from another website? |
4304 | Do you want to allow this webpage to access your Clipboard? If you allow this, the webpage can read information that you’ve cut or copied recently. |
4305 | Current site: |
5000 | Internet Explorer Modal Dialog |
10000 | WRN: OCX Registration: no DllRegisterServer entry point in (%s). Skipping registration. INF Author: mark this section with RegisterServer=No as a performance optimization. |
10001 | ERR: OCX Install: detected incompatible platform binary (%s). Please contact site for a binary for your platform. |
10002 | ERR: Security Trust Verification Failed or rejected by user/administrator. Check Security Settings. Detailed Error Code (hr) = %lx |
10003 | ERR: INF Processing: Failed Error Code:(%lx) processing: %s. Cannot get primary language! |
10004 | ERR: INF Processing: No section for processing: %s . language = %s ! |
10005 | LOG: INF Processing: Satellite DLL found:%s ! |
10006 | ERR: INF Processing: Failed (%lx) processing: %s . Cannot get primary/default language! |
10007 | LOG: URL Download Complete: hrStatus:%lx, hrOSB:%lx, hrResponseHdr:%lx, URL:(%ws) |
10008 | LOG: Reporting Code Download Completion: (hr:%lx%s, CLASSID: %lx..., szCODE:(%ws), MainType:%ws, MainExt:%ws) |
10009 | LOG: detected DUP secondary CAB %ws. Adding CDL=(CLASSID: %lx..., szCODE:(%ws), VersionMS:%lx, VersionLS:%lx) |
10010 | ERR: Setup Failed Error Code: (hr) = %lx, installing: %s to %s destination code(%lx) |
10011 | WRN: Client no IWindowForBindingUI! Controls that need user confirmation to establish trust will fail. If you implement ICodeInstall pls note that it has been obsoleted now |
10012 | ERR: Run Setup Hook: Failed Error Code:(hr) = %lx, processing: %s |
10013 | WRN: OBJECT tags for CLASSID=%lx... have mixed usage with CODEBASE=%ws and %ws |
10014 | ERR: (OSD)Open Software Description Processor: Error loading OSD or missing SoftPkg tag. Check syntax! |
10015 | ERR: (OSD)Open Software Description Processor: SoftPkg tag: NAME, VERSION: Required attributes in SoftPkg tag missing or bad syntax! |
10016 | ERR: (OSD)Open Software Description Processor: MSICD::NativeCode tag: CODE: Required tag missing or bad syntax! |
10017 | ERR: (OSD)Open Software Description Processor: CODEBASE tag: HREF/FILENAME: Required attributes missing or bad syntax! |
10018 | ERR: (OSD)Open Software Description Processor: Error extracting INF file referred to in OSD file. INF needs to be in the same CAB as OSD. |
10019 | ERR: (OSD)Open Software Description Processor: MSICD::Java Package tag: Bad Syntax or Missing Required attribute! |
10020 | ERR: (OSD)Open Software Description Processor: DEPENDENCY tag (or subtag SoftPkg): Bad Syntax or Missing Required attribute! |
10021 | ERR: (OSD)Open Software Description Processor: SoftPkg under DEPENDENCY: Bad Syntax or Missing Required attribute! |
10022 | ERR: CDL Protocol Handler missing, can't process <DEPENDENCY> tag. |
10023 | WRN: File %s was installed, but will require a reboot for the install to take effect. |
10024 | LOG: Setup successful installing: %s to %s destination code(%lx) |
10025 | LOG: Setup Hook %s was executed successfully. |
10026 | LOG: File %s being registered. |
10027 | LOG: Item %s being processed. |
10028 | LOG: Java Package %ws being installed into %ws NameSpace. |
10029 | ERR: Error installing Java Package. Error Code (hr) = %lx. |
10030 | LOG: Redundant download started on %s (hr = %lx). |
10031 | LOG: Redundant download attempted, but no more codebases available. |
10032 | LOG: Download OnStopBinding called (hrStatus = %lx / hrResponseHdr = %lx). |
10033 | LOG: Version not identified for %s, using 0.1. |
10034 | For details, see |
10035 | ERR: Could not convert extension %s or type %s to clsid. |
10036 | ERR: Could not get clsid from string. |
10037 | A code download error has occurred: |
10038 | For more error details please see: |
10039 | Unknown Error! |
10040 | Unknown Setup Error. |
10041 | LOG: Downloaded images must now be all native code, URL:(%s) |
10042 | LOG: Downloaded images must now be all x86 code, URL:(%s) |
10043 | LOG: Cannot downgrade file which exists in the System File Protection list. |
10044 | These changes will take effect after your computer restarts. Please save any open files and restart your computer. |
10045 | Internet Explorer |
20005 | http://go.microsoft.com/fwlink/?LinkId=58658 |
COM Classes/Interfaces
There is no type library in this file with COM classes/interfaces information
Exported Functions List
The following functions are exported by this dll:AsyncGetClassBits | AsyncInstallDistributionUnit |
BindAsyncMoniker | CAuthenticateHostUI_CreateInstance |
CDLGetLongPathNameA | CDLGetLongPathNameW |
CORPolicyProvider | CoGetClassObjectFromURL |
CoInstall | CoInternetCanonicalizeIUri |
CoInternetCombineIUri | CoInternetCombineUrl |
CoInternetCombineUrlEx | CoInternetCompareUrl |
CoInternetCreateSecurityManager | CoInternetCreateZoneManager |
CoInternetFeatureSettingsChanged | CoInternetGetMobileBrowserAppCompatMode |
CoInternetGetMobileBrowserForceDesktopMode | CoInternetGetProtocolFlags |
CoInternetGetSecurityUrl | CoInternetGetSecurityUrlEx |
CoInternetGetSession | CoInternetIsFeatureEnabled |
CoInternetIsFeatureEnabledForIUri | CoInternetIsFeatureEnabledForUrl |
CoInternetIsFeatureZoneElevationEnabled | CoInternetParseIUri |
CoInternetParseUrl | CoInternetQueryInfo |
CoInternetSetFeatureEnabled | CoInternetSetMobileBrowserAppCompatMode |
CoInternetSetMobileBrowserForceDesktopMode | CompareSecurityIds |
CompatFlagsFromClsid | CopyBindInfo |
CopyStgMedium | CreateAsyncBindCtx |
CreateAsyncBindCtxEx | CreateFormatEnumerator |
CreateIUriBuilder | CreateURLMoniker |
CreateURLMonikerEx | CreateURLMonikerEx2 |
CreateUri | CreateUriFromMultiByteString |
CreateUriPriv | CreateUriWithFragment |
DllCanUnloadNow | DllGetClassObject |
DllInstall | DllRegisterServer |
DllRegisterServerEx | DllUnregisterServer |
Extract | FaultInIEFeature |
FileBearsMarkOfTheWeb | FindMediaType |
FindMediaTypeClass | FindMimeFromData |
GetAddSitesFileUrl | GetClassFileOrMime |
GetClassURL | GetComponentIDFromCLSSPEC |
GetIDNFlagsForUri | GetIUriPriv |
GetIUriPriv2 | GetLabelsFromNamedHost |
GetMarkOfTheWeb | GetPortFromUrlScheme |
GetPropertyFromName | GetPropertyName |
GetSoftwareUpdateInfo | GetUrlmonThreadNotificationHwnd |
GetZoneFromAlternateDataStreamEx | HlinkGoBack |
HlinkGoForward | HlinkNavigateMoniker |
HlinkNavigateString | HlinkSimpleNavigateToMoniker |
HlinkSimpleNavigateToString | IECompatLogCSSFix |
IEDllLoader | IEGetUserPrivateNamespaceName |
IEInstallScope | IntlPercentEncodeNormalize |
IsAsyncMoniker | IsDWORDProperty |
IsIntranetAvailable | IsJITInProgress |
IsLoggingEnabledA | IsLoggingEnabledW |
IsStringProperty | IsValidURL |
MkParseDisplayNameEx | ObtainUserAgentString |
PrivateCoInstall | QueryAssociations |
QueryClsidAssociation | RegisterBindStatusCallback |
RegisterFormatEnumerator | RegisterMediaTypeClass |
RegisterMediaTypes | RegisterWebPlatformPermanentSecurityManager |
ReleaseBindInfo | RestrictHTTP2 |
RevokeBindStatusCallback | RevokeFormatEnumerator |
SetAccessForIEAppContainer | SetSoftwareUpdateAdvertisementState |
ShouldDisplayPunycodeForUri | ShouldShowIntranetWarningSecband |
ShowTrustAlertDialog | URLDownloadA |
URLDownloadToCacheFileA | URLDownloadToCacheFileW |
URLDownloadToFileA | URLDownloadToFileW |
URLDownloadW | URLOpenBlockingStreamA |
URLOpenBlockingStreamW | URLOpenPullStreamA |
URLOpenPullStreamW | URLOpenStreamA |
URLOpenStreamW | UnregisterWebPlatformPermanentSecurityManager |
UrlMkBuildVersion | UrlMkGetSessionOption |
UrlMkSetSessionOption | UrlmonCleanupCurrentThread |
WriteHitLogging | ZonesReInit |
Imported Functions List
The following functions are imported by this dll:- msvcrt.dll:
_CxxThrowException _XcptFilter __CxxFrameHandler __dllonexit _amsg_exit _errno _except_handler4_common _ftol2 _i64tow_s _initterm _lock _onexit _purecall _snwscanf_s _ui64tow_s _ultow_s _unlock _vsnprintf _vsnwprintf _wcsicmp _wcslwr_s _wcsnicmp _wfopen _wtoi bsearch fclose fgets free isalpha malloc memcmp memcpy memcpy_s memmove memset public: virtual __thiscall type_info::~type_info(void) rand_s realloc strchr strnlen swscanf_s towlower wcscat_s wcschr wcscpy_s wcsncmp wcsrchr wcsstr wcstok_s wcstol wcstoul - iertutil.dll:
CreateIUriBuilder CreateStringHashN CreateUri CreateUriFromMultiByteString CreateUriPriv CreateUriWithFragment FastMimeGetIsMimeFilterEnabled FastMimeLookupKnownType FastMimeSetIsMimeFilterEnabled GetIDNSettingsForIE GetIUriPriv GetIUriPriv2 GetPortFromUrlScheme GetPropertyFromName GetPropertyName IERT_DelayLoadFailureHook IUriBuilderInternalCreateDomain IntlPercentEncodeNormalize IsDWORDProperty IsStringProperty PrivateCoInternetCanonicalizeIUri PrivateCoInternetCombineIUri PrivateCoInternetParseIUri UriFromHostAndScheme - ntdll.dll:
RtlIpv4StringToAddressExW RtlIpv6StringToAddressExW RtlMoveMemory VerSetConditionMask - api-ms-win-core-synch-l1-2-0.dll:
KernelBase!CreateEventW KernelBase!CreateMutexA KernelBase!CreateMutexW KernelBase!InitializeCriticalSectionEx KernelBase!OpenMutexW KernelBase!ReleaseMutex KernelBase!SetEvent KernelBase!Sleep KernelBase!WaitForSingleObject ntdll!RtlAcquireSRWLockExclusive ntdll!RtlAcquireSRWLockShared ntdll!RtlDeleteCriticalSection ntdll!RtlEnterCriticalSection ntdll!RtlInitializeConditionVariable ntdll!RtlInitializeCriticalSection ntdll!RtlLeaveCriticalSection ntdll!RtlReleaseSRWLockExclusive ntdll!RtlReleaseSRWLockShared ntdll!RtlTryEnterCriticalSection - api-ms-win-core-libraryloader-l1-2-0.dll:
KernelBase!FreeLibrary KernelBase!GetModuleFileNameA KernelBase!GetModuleFileNameW KernelBase!GetModuleHandleA KernelBase!GetModuleHandleExW KernelBase!GetModuleHandleW KernelBase!GetProcAddress KernelBase!LoadLibraryExA KernelBase!LoadLibraryExW KernelBase!LoadStringA KernelBase!LoadStringW - api-ms-win-core-com-l1-1-1.dll:
combase!CLSIDFromProgID combase!CLSIDFromString combase!CoCreateGuid combase!CoCreateInstance combase!CoFreeUnusedLibraries combase!CoGetClassObject combase!CoGetMarshalSizeMax combase!CoGetTreatAsClass combase!CoInitializeEx combase!CoMarshalInterface combase!CoSetProxyBlanket combase!CoTaskMemAlloc combase!CoTaskMemFree combase!CoTaskMemRealloc combase!CoUninitialize combase!CoUnmarshalInterface combase!FreePropVariantArray combase!StringFromCLSID combase!StringFromGUID2 - api-ms-win-eventing-provider-l1-1-0.dll:
ntdll!EtwEventRegister ntdll!EtwEventSetInformation ntdll!EtwEventUnregister ntdll!EtwEventWrite ntdll!EtwEventWriteTransfer - api-ms-win-eventing-classicprovider-l1-1-0.dll:
ntdll!EtwGetTraceEnableFlags ntdll!EtwGetTraceEnableLevel ntdll!EtwGetTraceLoggerHandle ntdll!EtwTraceMessageVa ntdll!EtwUnregisterTraceGuids - api-ms-win-core-string-l1-1-0.dll:
KernelBase!CompareStringW KernelBase!MultiByteToWideChar KernelBase!WideCharToMultiByte - api-ms-win-core-registry-l1-1-0.dll:
KernelBase!RegCloseKey KernelBase!RegCreateKeyExA KernelBase!RegCreateKeyExW KernelBase!RegDeleteKeyExA KernelBase!RegDeleteValueA KernelBase!RegEnumKeyExA KernelBase!RegEnumValueA KernelBase!RegEnumValueW KernelBase!RegGetValueA KernelBase!RegGetValueW KernelBase!RegOpenKeyExA KernelBase!RegOpenKeyExW KernelBase!RegQueryInfoKeyA KernelBase!RegQueryValueExA KernelBase!RegQueryValueExW KernelBase!RegSetValueExA KernelBase!RegSetValueExW - api-ms-win-core-processthreads-l1-1-2.dll:
KernelBase!OpenProcessToken KernelBase!OpenThreadToken kernel32!CreateProcessA kernel32!CreateThread kernel32!GetCurrentProcess kernel32!GetCurrentProcessId kernel32!GetCurrentThread kernel32!GetCurrentThreadId kernel32!GetExitCodeProcess kernel32!GetExitCodeThread kernel32!OpenProcess kernel32!TerminateProcess kernel32!TerminateThread kernel32!TlsAlloc kernel32!TlsFree kernel32!TlsGetValue kernel32!TlsSetValue ntdll!RtlExitUserThread - api-ms-win-core-heap-l1-2-0.dll:
KernelBase!GetProcessHeap ntdll!RtlAllocateHeap ntdll!RtlFreeHeap - api-ms-win-core-errorhandling-l1-1-1.dll:
KernelBase!GetLastError KernelBase!RaiseException KernelBase!SetUnhandledExceptionFilter KernelBase!UnhandledExceptionFilter ntdll!RtlRestoreLastWin32Error - api-ms-win-core-profile-l1-1-0.dll:
ntdll!RtlQueryPerformanceCounter - api-ms-win-core-sysinfo-l1-2-1.dll:
KernelBase!GetLocalTime KernelBase!GetSystemDirectoryA KernelBase!GetSystemInfo KernelBase!GetSystemTime KernelBase!GetSystemTimeAsFileTime KernelBase!GetTickCount KernelBase!GetVersionExA KernelBase!GetWindowsDirectoryA - api-ms-win-core-heap-l2-1-0.dll:
KernelBase!GlobalAlloc KernelBase!GlobalFree KernelBase!LocalAlloc KernelBase!LocalFree KernelBase!LocalReAlloc - api-ms-win-core-handle-l1-1-0.dll:
KernelBase!CloseHandle KernelBase!DuplicateHandle - api-ms-win-core-path-l1-1-0.dll:
KernelBase!PathCchAddBackslash KernelBase!PathCchAppend KernelBase!PathCchCombine KernelBase!PathCchRemoveFileSpec - api-ms-win-core-string-l2-1-0.dll:
KernelBase!CharLowerBuffW KernelBase!CharLowerW KernelBase!CharNextW KernelBase!CharPrevW - api-ms-win-core-localization-l1-2-1.dll:
KernelBase!FormatMessageA KernelBase!FormatMessageW KernelBase!GetACP KernelBase!GetCPInfo KernelBase!GetLocaleInfoA KernelBase!GetSystemDefaultLCID KernelBase!GetThreadLocale KernelBase!GetUserDefaultLCID KernelBase!GetUserGeoID KernelBase!IdnToAscii KernelBase!IdnToUnicode KernelBase!IsDBCSLeadByte - api-ms-win-core-libraryloader-l1-2-1.dll:
KernelBase!LoadLibraryA KernelBase!LoadLibraryW - api-ms-win-core-util-l1-1-0.dll:
ntdll!RtlDecodePointer ntdll!RtlEncodePointer - api-ms-win-core-file-l1-2-1.dll:
KernelBase!CompareFileTime KernelBase!CreateDirectoryA KernelBase!CreateDirectoryW KernelBase!CreateFileA KernelBase!CreateFileW KernelBase!DeleteFileA KernelBase!DeleteFileW KernelBase!FileTimeToLocalFileTime KernelBase!FindClose KernelBase!FindFirstFileA KernelBase!FindFirstFileW KernelBase!FindNextFileA KernelBase!GetDriveTypeA KernelBase!GetDriveTypeW KernelBase!GetFileAttributesA KernelBase!GetFileAttributesExW KernelBase!GetFileAttributesW KernelBase!GetFileSize KernelBase!GetFileSizeEx KernelBase!GetFileTime KernelBase!GetFullPathNameA KernelBase!GetFullPathNameW KernelBase!GetLongPathNameA KernelBase!GetLongPathNameW KernelBase!GetShortPathNameW KernelBase!GetTempFileNameW KernelBase!GetTempPathW KernelBase!LocalFileTimeToFileTime KernelBase!QueryDosDeviceW KernelBase!ReadFile KernelBase!RemoveDirectoryA KernelBase!SetFileAttributesA KernelBase!SetFilePointer KernelBase!SetFileTime KernelBase!WriteFile - api-ms-win-core-file-l1-2-2.dll:
KernelBase!GetTempPathA - api-ms-win-core-version-l1-1-0.dll:
KernelBase!GetFileVersionInfoExW KernelBase!GetFileVersionInfoSizeExW KernelBase!VerQueryValueW - api-ms-win-core-timezone-l1-1-0.dll:
KernelBase!FileTimeToSystemTime KernelBase!SystemTimeToFileTime - api-ms-win-security-base-l1-2-0.dll:
KernelBase!CheckTokenMembership KernelBase!CreateWellKnownSid KernelBase!DuplicateToken KernelBase!GetTokenInformation - api-ms-win-core-processenvironment-l1-2-0.dll:
KernelBase!ExpandEnvironmentStringsA KernelBase!SearchPathA - api-ms-win-core-wow64-l1-1-0.dll:
KernelBase!IsWow64Process - api-ms-win-core-datetime-l1-1-1.dll:
KernelBase!GetDateFormatW KernelBase!GetTimeFormatA KernelBase!GetTimeFormatW - api-ms-win-core-debug-l1-1-1.dll:
KernelBase!OutputDebugStringW - api-ms-win-core-threadpool-l1-2-0.dll:
KernelBase!CreateThreadpoolTimer KernelBase!CreateThreadpoolWork ntdll!TpPostWork ntdll!TpReleaseTimer ntdll!TpReleaseWork ntdll!TpSetTimer ntdll!TpWaitForTimer ntdll!TpWaitForWork - api-ms-win-core-file-l2-1-1.dll:
KernelBase!MoveFileExW - CRYPTBASE.dll:
SystemFunction036 - api-ms-win-core-errorhandling-l1-1-3.dll:
KernelBase!RaiseFailFastException - api-ms-win-core-memory-l1-1-2.dll:
KernelBase!CreateFileMappingW KernelBase!MapViewOfFile KernelBase!OpenFileMappingW KernelBase!UnmapViewOfFile KernelBase!VirtualProtect KernelBase!VirtualQuery - api-ms-win-core-synch-l1-2-1.dll:
KernelBase!WaitForMultipleObjects - api-ms-win-core-registryuserspecific-l1-1-0.dll:
KernelBase!SHRegCloseUSKey KernelBase!SHRegCreateUSKeyW KernelBase!SHRegDeleteEmptyUSKeyW KernelBase!SHRegDeleteUSValueW KernelBase!SHRegEnumUSKeyW KernelBase!SHRegEnumUSValueW KernelBase!SHRegGetBoolUSValueA KernelBase!SHRegGetBoolUSValueW KernelBase!SHRegGetUSValueA KernelBase!SHRegGetUSValueW KernelBase!SHRegOpenUSKeyW KernelBase!SHRegQueryInfoUSKeyW KernelBase!SHRegQueryUSValueW KernelBase!SHRegWriteUSValueW - api-ms-win-core-atoms-l1-1-0.dll:
kernel32!AddAtomA kernel32!AddAtomW kernel32!DeleteAtom kernel32!FindAtomA kernel32!FindAtomW - api-ms-win-core-url-l1-1-0.dll:
KernelBase!HashData KernelBase!ParseURLA KernelBase!ParseURLW KernelBase!PathCreateFromUrlA KernelBase!PathCreateFromUrlW KernelBase!UrlCanonicalizeW KernelBase!UrlCombineW KernelBase!UrlCompareW KernelBase!UrlCreateFromPathW KernelBase!UrlEscapeW KernelBase!UrlGetLocationW KernelBase!UrlGetPartA KernelBase!UrlGetPartW KernelBase!UrlIsW KernelBase!UrlUnescapeW - api-ms-win-security-lsapolicy-l1-1-0.dll:
sechost!LsaClose sechost!LsaFreeMemory sechost!LsaOpenPolicy sechost!LsaQueryInformationPolicy - api-ms-win-core-sidebyside-l1-1-0.dll:
KernelBase!ActivateActCtx KernelBase!CreateActCtxW KernelBase!DeactivateActCtx KernelBase!ReleaseActCtx - api-ms-win-core-shlwapi-legacy-l1-1-0.dll:
KernelBase!PathFileExistsA KernelBase!PathFileExistsW KernelBase!PathFindExtensionA KernelBase!PathFindExtensionW KernelBase!PathFindFileNameW KernelBase!PathGetDriveNumberW KernelBase!PathIsPrefixA KernelBase!PathIsPrefixW KernelBase!PathIsRelativeW KernelBase!PathIsRootW KernelBase!PathIsUNCServerShareW KernelBase!PathIsUNCServerW KernelBase!PathIsUNCW KernelBase!PathRemoveExtensionW KernelBase!PathRemoveFileSpecW KernelBase!PathStripToRootW KernelBase!PathUnquoteSpacesW - api-ms-win-core-kernel32-legacy-l1-1-1.dll:
kernel32!CopyFileA kernel32!DosDateTimeToFileTime kernel32!GetShortPathNameA kernel32!VerifyVersionInfoW - api-ms-win-core-registry-l2-2-0.dll:
advapi32!RegQueryValueA advapi32!RegQueryValueW - api-ms-win-core-shlwapi-obsolete-l1-2-0.dll:
KernelBase!QISearch KernelBase!StrChrA KernelBase!StrChrIW KernelBase!StrChrNW KernelBase!StrChrW KernelBase!StrCmpCA KernelBase!StrCmpCW KernelBase!StrCmpICA KernelBase!StrCmpICW KernelBase!StrCmpIW KernelBase!StrCmpNA KernelBase!StrCmpNCA KernelBase!StrCmpNCW KernelBase!StrCmpNIA KernelBase!StrCmpNICA KernelBase!StrCmpNICW KernelBase!StrCmpNW KernelBase!StrCmpW KernelBase!StrDupA KernelBase!StrDupW KernelBase!StrRChrW KernelBase!StrStrA KernelBase!StrStrIA KernelBase!StrStrIW KernelBase!StrStrW KernelBase!StrToInt64ExW KernelBase!StrToIntA KernelBase!StrToIntExW KernelBase!StrToIntW KernelBase!StrTrimW - api-ms-win-eventing-obsolete-l1-1-0.dll:
ntdll!EtwRegisterTraceGuidsA - api-ms-win-core-string-obsolete-l1-1-0.dll:
kernel32!lstrcmp kernel32!lstrcmpW - api-ms-win-core-stringansi-l1-1-0.dll:
KernelBase!CharLowerA KernelBase!CharNextA KernelBase!CharPrevA KernelBase!CharUpperBuffA - api-ms-win-core-privateprofile-l1-1-1.dll:
kernel32!GetPrivateProfileIntA kernel32!GetPrivateProfileIntW kernel32!GetPrivateProfileStringA kernel32!GetPrivateProfileStringW kernel32!WritePrivateProfileStringW - api-ms-win-core-heap-obsolete-l1-1-0.dll:
kernel32!GlobalLock kernel32!GlobalSize kernel32!GlobalUnlock - api-ms-win-core-localization-obsolete-l1-3-0.dll:
KernelBase!CompareStringA - api-ms-win-downlevel-shlwapi-l2-1-1.dll:
SHCore!IStream_Read SHCore!IStream_ReadStr SHCore!IStream_Reset SHCore!IStream_Size SHCore!IStream_Write SHCore!IStream_WriteStr SHCore!IUnknown_QueryService SHCore!SHAnsiToUnicode SHCore!SHCreateMemStream SHCore!SHCreateStreamOnFileW SHCore!SHDeleteKeyW SHCore!SHOpenRegStream2W SHCore!SHRegGetValueW SHCore!SHSetValueA - api-ms-win-shlwapi-winrt-storage-l1-1-1.dll:
- api-ms-win-core-io-l1-1-1.dll:
kernel32!DeviceIoControl - api-ms-win-core-apiquery-l1-1-0.dll:
ntdll!ApiSetQueryApiSetPresence