File details
File name: workfolderssvc.dll
Name: Microsoft® Work Folders Service
Description: Microsoft® Windows® Operating System
Version: 6.3.9431.0 (winmain_bluemp.130615-1214)
Product version: 6.3.9431.0
Size: 1.23 MB
Original file name: workfolderssvc.dll.mui
Windows file protection:
Yes
Hosted service details
Name: d9f8fa4911fbf85919ba17ffe5b34430
Command: workfolderssvc
Image hashes
MD5: 8187f88da198f8dbb27097ae4c98e07d
SHA-1: 2de95c91e279be748e4bf6850eeef2fec1c6dc64
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File packed: No
Import Table
advapi32.dll

EventActivityIdControl
GetTokenInformation
CryptReleaseContext
CryptAcquireContextW
DecryptFileW
SetNamedSecurityInfoW
SetEntriesInAclW
GetNamedSecurityInfoW
IsValidSid
CredUnprotectW
CredProtectW
ImpersonateLoggedOnUser
CryptGetHashParam
CryptHashData
CryptCreateHash
CredFree
CredReadW
CredWriteW
EventUnregister
EventRegister
SetServiceStatus
RegisterServiceCtrlHandlerExW
RegDeleteValueW
RegCreateKeyExW
RegSetValueExW
RegOpenKeyExW
RegEnumKeyExW
RegQueryInfoKeyW
RegCloseKey
CryptDestroyHash
CreateWellKnownSid
OpenProcessToken
RegOpenCurrentUser
OpenThreadToken
RevertToSelf
SetThreadToken
RegGetValueW
EventWrite
TraceMessage
UnregisterTraceGuids
RegisterTraceGuidsW
GetTraceEnableFlags
GetTraceEnableLevel
GetTraceLoggerHandle
ConvertSidToStringSidW
RegDeleteTreeW
api-ms-win-core-com-l1-1-1.dll

CoTaskMemAlloc
CoAllowUnmarshalerCLSID
GetHGlobalFromStream
CreateStreamOnHGlobal
StringFromCLSID
CoRevokeClassObject
CoDisconnectContext
CoImpersonateClient
CoSetProxyBlanket
IIDFromString
CoTaskMemRealloc
CoCreateInstance
CoCreateGuid
StringFromGUID2
CoGetMalloc
CoRegisterClassObject
api-ms-win-core-path-l1-1-0.dll

PathCchCombineEx
PathCchAppendEx
PathCchFindExtension
api-ms-win-core-winrt-l1-1-0.dll

api-ms-win-core-winrt-string-l1-1-0.dll

WindowsCreateStringReference
efswrt.dll

EnterpriseDataGetStatus
EnterpriseDataProtect
esent.dll

JetRenameTableW
JetDeleteTableW
JetCreateIndex3W
JetGetSystemParameterW
JetAddColumnW
JetTerm2
JetBeginSessionW
JetInit3W
JetGetErrorInfoW
JetRollback
JetBeginTransaction2
JetGetDatabaseFileInfoW
JetOpenDatabaseW
JetAttachDatabase2W
JetCreateDatabase2W
JetCreateInstance2W
JetSetSystemParameterW
JetMove
JetDelete
JetRetrieveColumn
JetSeek
JetMakeKey
JetSetCurrentIndex4W
JetCloseTable
JetOpenTableW
JetEndSession
JetCommitTransaction
JetCloseDatabase
JetCreateTableColumnIndex3W
JetGetTableColumnInfoW
JetPrepareUpdate
JetSetColumn
JetStopServiceInstance
JetUpdate2
ext-ms-win-ntuser-powermanagement-l1-1-0.dll

RegisterPowerSettingNotification
ext-ms-win-session-wtsapi32-l1-1-0.dll

WTSQuerySessionInformationW
WTSFreeMemory
kernel32.dll

TerminateProcess
SetUnhandledExceptionFilter
UnhandledExceptionFilter
GetTickCount
GetCurrentProcessId
QueryPerformanceCounter
GetFileAttributesW
GetCurrentProcess
GetCurrentThread
GetTickCount64
ResetEvent
TrySubmitThreadpoolCallback
GetSystemTimeAsFileTime
CompareFileTime
Sleep
SetEvent
WaitForSingleObject
DecodePointer
EncodePointer
GetStringTypeW
GetFinalPathNameByHandleW
GetOverlappedResult
ReadFile
GetFileSizeEx
SetLastError
DeviceIoControl
GetDiskFreeSpaceExW
GlobalUnlock
GlobalLock
WriteFile
GetComputerNameW
GetVersionExW
CreateFileW
ReleaseSemaphore
CreateSemaphoreW
ReleaseMutex
FileTimeToSystemTime
CreateMutexW
InitOnceExecuteOnce
InitializeCriticalSectionEx
OutputDebugStringA
WideCharToMultiByte
SetFileInformationByHandle
CreateDirectoryW
RemoveDirectoryW
DeleteFileW
FindFirstFileExW
CloseThreadpoolTimer
CreateThread
WaitForThreadpoolTimerCallbacks
SetThreadpoolTimer
CreateThreadpoolTimer
CloseThreadpoolWait
SetThreadpoolWait
WaitForThreadpoolWaitCallbacks
CreateThreadpoolWait
CloseThreadpoolWork
CloseThreadpoolCleanupGroup
CloseThreadpoolCleanupGroupMembers
WaitForMultipleObjects
CreateThreadpoolCleanupGroup
SubmitThreadpoolWork
CreateThreadpoolWork
GetModuleFileNameW
FindResourceExW
LoadResource
SizeofResource
MultiByteToWideChar
RaiseException
lstrcmpiW
GetModuleHandleW
GetProcAddress
LoadLibraryExW
FreeLibrary
GetComputerNameExW
GetCurrentThreadId
CreateEventW
CloseHandle
CloseThreadpool
SetThreadpoolThreadMaximum
SetThreadpoolThreadMinimum
CreateThreadpool
GetLastError
LeaveCriticalSection
EnterCriticalSection
DeleteCriticalSection
InitializeCriticalSection
ReleaseSRWLockExclusive
ReleaseSRWLockShared
AcquireSRWLockExclusive
AcquireSRWLockShared
FindClose
InitializeSRWLock
CompareStringOrdinal
HeapFree
LocalFree
GetProcessHeap
LocalAlloc
DisableThreadLibraryCalls
FindNextFileW
FindFirstFileW
HeapAlloc
kernelbase.dll

LocalReAlloc
ReplaceFileExInternal
msvcrt.dll
ntdll.dll

RtlGetFullPathName_UEx
WinSqmSetDWORD64
WinSqmAddToAverageDWORD
WinSqmSetIfMaxDWORD
WinSqmIncrementDWORD
WinSqmSetDWORD
WinSqmEndSession
WinSqmStartSession
WinSqmIsOptedIn
NtPowerInformation
NtQueryDirectoryFile
RtlInitUnicodeStringEx
RtlFreeUnicodeString
RtlDosPathNameToRelativeNtPathName_U
RtlNtStatusToDosError
RtlFreeHeap
NtOpenFile
RtlDosPathNameToNtPathName_U_WithStatus
NtSetInformationFile
NtFsControlFile
NtCreateFile
RtlInitUnicodeString
NtQueryInformationFile
NtClose
RtlDetermineDosPathNameType_U
ole32.dll

CoTaskMemFree
CLSIDFromString
powrprof.dll

PowerSettingUnregisterNotification
shlwapi.dll

SHStrDupW
PathFindFileNameW
PathMatchSpecExW
user32.dll

CharNextW
UnregisterClassA
userenv.dll

GetUserProfileDirectoryW
ExpandEnvironmentStringsForUserW
winhttp.dll

WinHttpQueryHeaders
WinHttpAddRequestHeaders
WinHttpCreateUrl
WinHttpOpen
WinHttpCloseHandle
WinHttpSetCredentials
WinHttpSendRequest
WinHttpReceiveResponse
WinHttpQueryDataAvailable
WinHttpReadData
WinHttpOpenRequest
WinHttpSetOption
WinHttpSetTimeouts
WinHttpConnect
WinHttpCrackUrl
Export Table
clientinitecslib
clientuninitecslib
createsyncclientcoreinstance
createsyncservicecoreinstance
dllcanunloadnow
servicemain
syncchangebatchenumcreateinstance