Creates a new process and its primary thread. The new process runs in the security context of the user represented by the specified token.

More info on CreateProcessAsUserW in Windows Dev Center

Exported by

sizefilenameversion
1011712x32_kernel32.dll6.2.9200.16859 (win8_gdr.140228-1809)
1040384kernel32.dll6.3.9600.17415 (winblue_r4.141028-1500)
702512kernel32.dll10.0.10240.16384 (th1.150709-1700)
1162752kernel32.dll6.1.7601.24475 (win7sp1_ldr.190516-0600)
1287064kernel32.dll6.3.9600.16441 (winblue_gdr.131021-1506)
2177536KernelBase.dll10.0.19041.329 (WinBuild.160101.0800)
974848kernel32.dll6.2.9200.16384 (win8_rtm.120725-1247)
702568kernel32.dll10.0.16299.15 (WinBuild.160101.0800)
815464kernel32.dll10.0.22621.1906 (WinBuild.160101.0800)
620312kernel32.dll10.0.10565.0 (th2_release.151006-2014)
1114112kernel32.dll6.1.7601.18229 (win7sp1_gdr.130801-1533)
764456kernel32.dll10.0.19041.292 (WinBuild.160101.0800)
640512module.284.3eefdd40.76fd0000.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
857088kernel32.dll6.1.7600.16385 (win7_rtm.090713-1255)
640512module.600.3f5a5a88.755e0000.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
726416kernel32.dll10.0.17763.379 (WinBuild.160101.0800)
857600kernel32.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
1036288kernel32.dll6.3.9600.17056 (winblue_gdr.140319-1520)
878080advapi32.dll6.1.7601.18247 (win7sp1_gdr.130828-1532)
1161216kernel32.dll6.1.7601.18015 (win7sp1_gdr.121129-1432)
868352w7.x86.kernel32.dll6.1.7601.18229 (win7sp1_gdr.130801-1533)
699880kernel32.dll10.0.14393.0 (rs1_release.160715-1616)
1036288kernel32.dll6.3.9600.16520 (winblue_gdr.140127-0329)
1567232steam_api.dll
1114112kernel32.dll6.1.7601.18409 (win7sp1_gdr.140303-2144)
1114112kernel32.dll6.1.7601.24384 (win7sp1_ldr_escrow.190220-1800)
2081464KernelBase.dll10.0.18362.145 (WinBuild.160101.0800)
3041520KernelBase.dll10.0.19645.1 (WinBuild.160101.0800)
1040384kernel32.dll6.3.9600.16389 (winblue_gdr.130827-1924)
835584KernelBase.dll6.3.9600.16496 (winblue_gdr.131219-1505)
616048kernel32.dll10.0.14393.0 (rs1_release.160715-1616)
640512advapi32.dll6.1.7601.17514 (win7sp1_rtm.101119-1850)
777184kernel32.dll10.0.19645.1 (WinBuild.160101.0800)
1114112kernel32.dll6.1.7601.17651 (win7sp1_gdr.110715-1504)
1114112kernel32.dll6.1.7601.17932 (win7sp1_gdr.120820-0419)
628616kernel32.dll10.0.18362.86 (WinBuild.160101.0800)
1036288kernel32.dll6.3.9600.17031 (winblue_gdr.140221-1952)
857600module.1632.3ee0c030.75b20000.dll
720632kernel32.dll10.0.17134.1 (WinBuild.160101.0800)
4608api-ms-win-core-processthreads-l1-1-0.dll6.1.7601.17617 (win7sp1_gdr.110513-1659)
1114112kernel32.dll6.1.7601.18015 (win7sp1_gdr.121129-1432)
1037504kernel32.dll6.3.9600.17019 (winblue_gdr.140205-2003)
868352kernel32.dll6.1.7601.18015 (win7sp1_gdr.121129-1432)
722072kernel32.dll10.0.18362.86 (WinBuild.160101.0800)
764976kernel32.dll10.0.19041.804 (WinBuild.160101.0800)
872448kernel32.dll6.1.7601.24291 (win7sp1_ldr_escrow.181110-1429)
1114112kernel32.dll6.1.7601.24475 (win7sp1_ldr.190516-0600)

Imported by

sizefilename
1011712x32_kernel32.dll
1040384kernel32.dll
39936cmmon32.exe
328704services.exe
739181Virus.Win32.Trojan.Ransom.Autoit.h.c7564.unpacked.exe
702512kernel32.dll
1278910158931.exe
18476504DisplayLink_7.0M3.exe
6571520bowery.exe
407016services.exe
2708480procexp.exe
5963281bbf6108505884106877824e403def3f6162d63f.bin
2799296procexp.exe
2919936remote.unpacked.exe
162816photronlamp.com_m39ska.mal
9743360c3ec04430e044b2777eca77eeebbce2
312883240e2ff36b0857fccf610d15f6a16569f7d78a838
12069520WindowsAzureTools.VS100.exe
131174419.exe
8104476brt2.exe.exe
30082888chrome.dll
108544services_xp.exe
742400executable.3376.exe
50688DUPrinter.dll
1397608video_2019-03-05_21-27-33.mp4.scr
347424MicrosoftFixit.WinSecurity.Run.exe
773624AA_v3.exe
226304soft.exe
2243072k-meleon.exe
1287064kernel32.dll
84853904WeMod.exe
1561248360Se.exe
9941504wmp.dll
35570176op_srv.exe
1162752WIL.dll
1973168MyCleanPC april 14 2012 v3.exe
787456mimikatz - Copy.exe
859136winlogon.unpacked.exe
974848kernel32.dll
811848chrome.exe
7318992qip.exe
1127424wininet.dll
14309376mshtml.dll
868352tcnative-1.dll
702568kernel32.dll
2756800procexp.exe
17459223f0a722461d5c4b5bd8d292d42ce372.exe
328704services.exe
2382848manager.exe
1187342bbb.exe