Creates a new access token that duplicates an existing token. This function can create either a primary token or an impersonation token.

More info on DuplicateTokenEx in Windows Dev Center

Exported by

sizefilenameversion
274944KernelBase.dll6.1.7601.17965 (win7sp1_gdr.121004-0333)
2177536KernelBase.dll10.0.19041.329 (WinBuild.160101.0800)
6144api-ms-win-security-base-l1-1-0.dll6.1.7601.17965 (win7sp1_gdr.121004-0333)
640512module.284.3eefdd40.76fd0000.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
274944KernelBase.dll6.1.7601.18409 (win7sp1_gdr.140303-2144)
640512module.600.3f5a5a88.755e0000.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
272384KernelBase.dll6.1.7601.17651 (win7sp1_gdr.110715-1504)
878080advapi32.dll6.1.7601.18247 (win7sp1_gdr.130828-1532)
2081464KernelBase.dll10.0.18362.145 (WinBuild.160101.0800)
3041520KernelBase.dll10.0.19645.1 (WinBuild.160101.0800)
835584KernelBase.dll6.3.9600.16496 (winblue_gdr.131219-1505)
640512advapi32.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
424960x64_KernelBase.dll6.1.7601.19018 (win7sp1_gdr.150928-1507)
288256KernelBase.dll6.1.7600.16385 (win7_rtm.090713-1255)
274944x86_KernelBase.dll6.1.7601.19018 (win7sp1_gdr.150928-1507)
6144api-ms-win-security-base-l1-1-0.dll6.1.7601.21772 (win7sp1_ldr.110715-1506)
640512advapi32.dll6.1.7601.18247 (win7sp1_gdr.130828-1532)
655360advapi32.dl_5.1.2600.5755 (xpsp_sp3_gdr.090206-1234)
640512module.1784.3ee63380.755e0000.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
10752api-ms-win-downlevel-advapi32-l1-1-0.dll6.2.9200.16492 (win8_gdr_oobssr.130113-0015)
640512module.3656.3effe720.755e0000.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)

Imported by

sizefilename
1588736gimp_958.exe-0-1588736.exe
739181Virus.Win32.Trojan.Ransom.Autoit.h.c7564.unpacked.exe
1278910158931.exe
18476504DisplayLink_7.0M3.exe
6571520bowery.exe
2708480procexp.exe
2801952CbsCore.dll
5963281bbf6108505884106877824e403def3f6162d63f.bin
2919936remote.unpacked.exe
956376ftrScanAPI.dll
162816photronlamp.com_m39ska.mal
9743360c3ec04430e044b2777eca77eeebbce2
312883240e2ff36b0857fccf610d15f6a16569f7d78a838
131174419.exe
8104476brt2.exe.exe
742400executable.3376.exe
50688DUPrinter.dll
1397608video_2019-03-05_21-27-33.mp4.scr
347424MicrosoftFixit.WinSecurity.Run.exe
773624AA_v3.exe
5334936CovenantEyesProxy.exe
768512localspl.dll
1155076vrs - Copy.exe
349334D0110109.PDF.exe
84853904WeMod.exe
1561248360Se.exe
9941504wmp.dll
1973168MyCleanPC april 14 2012 v3.exe
787456mimikatz - Copy.exe
859136winlogon.unpacked.exe
811848chrome.exe
7318992qip.exe
1127424wininet.dll
1493784Wintab32.dll
14309376mshtml.dll
868352tcnative-1.dll
2382848manager.exe
394520PackageI2.exe
1187342bbb.exe
1807800FlashPlayerPlugin_11_5_502_135.exe
787125Auto Keybot Trial.unpacked.exe
28418232magent.exe
3454464FlashPlayerPlugin_31_0_0_153.exe
15643542b84c8226d4acaa8afb80995d047dcb6
857088Extrato.unpacked.exe
393216OSVolOSVol--Windows--System32--winlogon.exe.fullextract
916480wininet.dll
20661216awesomium.dll
1081080AsusUpdateCheck.exe
16117982faef876504495530b64256b5c1d4863