keymgr.dll

Description: Stored User Names and Passwords

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 32-bit

Operating System: Windows NT

SHA256: c3918b7a89c3de42548e842c8494ffb8

File Size: 45.0 KB

Uploaded At: Dec. 1, 2025, 7:59 a.m.

Views: 13

Exported Functions

  • CPlApplet (Ordinal: 1, Address: 0x35a0)
  • DllCanUnloadNow (Ordinal: 2, Address: 0x2740)
  • DllGetClassObject (Ordinal: 3, Address: 0x2760)
  • DllMain (Ordinal: 4, Address: 0x3640)
  • KRShowKeyMgr (Ordinal: 5, Address: 0x36b0)
  • PRShowRestoreFromMsginaW (Ordinal: 6, Address: 0x71e0)
  • PRShowRestoreWizardExW (Ordinal: 7, Address: 0x71e0)
  • PRShowRestoreWizardW (Ordinal: 8, Address: 0x6f00)
  • PRShowSaveFromMsginaW (Ordinal: 9, Address: 0x71b0)
  • PRShowSaveWizardExW (Ordinal: 10, Address: 0x7150)

Imported DLLs & Functions

ADVAPI32.dll
  • CredRenameW (Address: 0x1000b028)
  • CryptAcquireContextW (Address: 0x1000b00c)
  • CryptDestroyKey (Address: 0x1000b008)
  • CryptExportKey (Address: 0x1000b010)
  • CryptGenKey (Address: 0x1000b000)
  • CryptReleaseContext (Address: 0x1000b01c)
  • GetLengthSid (Address: 0x1000b014)
  • GetUserNameW (Address: 0x1000b024)
  • LogonUserW (Address: 0x1000b020)
  • LookupAccountNameW (Address: 0x1000b018)
  • LsaClose (Address: 0x1000b034)
  • LsaFreeMemory (Address: 0x1000b030)
  • LsaOpenPolicy (Address: 0x1000b004)
  • LsaQueryInformationPolicy (Address: 0x1000b02c)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x1000b158)
api-ms-win-core-debug-l1-1-0.dll
  • OutputDebugStringW (Address: 0x1000b160)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1000b168)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1000b170)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1000b188)
  • SetErrorMode (Address: 0x1000b178)
  • SetLastError (Address: 0x1000b180)
  • SetUnhandledExceptionFilter (Address: 0x1000b17c)
  • UnhandledExceptionFilter (Address: 0x1000b184)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x1000b1b0)
  • DeleteFileW (Address: 0x1000b1a8)
  • GetDiskFreeSpaceW (Address: 0x1000b1a0)
  • GetDriveTypeW (Address: 0x1000b1b4)
  • GetFileAttributesExW (Address: 0x1000b190)
  • GetLogicalDriveStringsW (Address: 0x1000b19c)
  • ReadFile (Address: 0x1000b1ac)
  • SetFileAttributesW (Address: 0x1000b194)
  • SetFilePointer (Address: 0x1000b198)
  • WriteFile (Address: 0x1000b1a4)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1000b1bc)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x1000b1c4)
  • LocalFree (Address: 0x1000b1c8)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x1000b1d0)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x1000b1ec)
  • GetModuleFileNameW (Address: 0x1000b1e4)
  • GetModuleHandleW (Address: 0x1000b1e0)
  • GetProcAddress (Address: 0x1000b1e8)
  • LoadLibraryExW (Address: 0x1000b1d8)
  • LoadStringW (Address: 0x1000b1dc)
api-ms-win-core-memory-l1-1-0.dll
  • VirtualAlloc (Address: 0x1000b1f8)
  • VirtualFree (Address: 0x1000b1f4)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessW (Address: 0x1000b204)
  • CreateThread (Address: 0x1000b20c)
  • GetCurrentProcess (Address: 0x1000b208)
  • GetCurrentProcessId (Address: 0x1000b210)
  • GetCurrentThreadId (Address: 0x1000b214)
  • TerminateProcess (Address: 0x1000b200)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1000b21c)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1000b234)
  • RegOpenKeyExA (Address: 0x1000b228)
  • RegOpenKeyExW (Address: 0x1000b230)
  • RegQueryValueExA (Address: 0x1000b224)
  • RegQueryValueExW (Address: 0x1000b22c)
api-ms-win-core-synch-l1-1-0.dll
  • CreateMutexW (Address: 0x1000b240)
  • WaitForSingleObject (Address: 0x1000b23c)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1000b248)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetComputerNameExW (Address: 0x1000b260)
  • GetSystemDirectoryW (Address: 0x1000b258)
  • GetSystemTimeAsFileTime (Address: 0x1000b25c)
  • GetTickCount (Address: 0x1000b254)
  • GetVersionExW (Address: 0x1000b250)
api-ms-win-security-credentials-l1-1-0.dll
  • CredDeleteW (Address: 0x1000b274)
  • CredEnumerateW (Address: 0x1000b280)
  • CredFree (Address: 0x1000b270)
  • CredGetSessionTypes (Address: 0x1000b26c)
  • CredIsMarshaledCredentialW (Address: 0x1000b27c)
  • CredReadW (Address: 0x1000b268)
  • CredWriteW (Address: 0x1000b278)
CRYPT32.dll
  • CertCreateCertificateContext (Address: 0x1000b040)
  • CertFreeCertificateContext (Address: 0x1000b048)
  • CryptEncodeObject (Address: 0x1000b04c)
  • CryptExportPublicKeyInfo (Address: 0x1000b044)
  • CryptSignAndEncodeCertificate (Address: 0x1000b03c)
GDI32.dll
  • CreateFontIndirectW (Address: 0x1000b058)
  • DeleteObject (Address: 0x1000b054)
  • GetDeviceCaps (Address: 0x1000b05c)
KERNEL32.dll
  • ActivateActCtx (Address: 0x1000b068)
  • CreateActCtxW (Address: 0x1000b064)
  • DeactivateActCtx (Address: 0x1000b070)
  • ExpandEnvironmentStringsA (Address: 0x1000b074)
  • GetComputerNameW (Address: 0x1000b078)
  • LoadLibraryExA (Address: 0x1000b06c)
  • ReleaseActCtx (Address: 0x1000b07c)
msvcrt.dll
  • _amsg_exit (Address: 0x1000b2b4)
  • _callnewh (Address: 0x1000b2a8)
  • _except_handler4_common (Address: 0x1000b2c0)
  • _initterm (Address: 0x1000b288)
  • _vsnwprintf (Address: 0x1000b298)
  • _waccess (Address: 0x1000b2ac)
  • _wcsicmp (Address: 0x1000b2bc)
  • _wcsnicmp (Address: 0x1000b294)
  • _XcptFilter (Address: 0x1000b2b0)
  • free (Address: 0x1000b290)
  • malloc (Address: 0x1000b29c)
  • memcpy (Address: 0x1000b2b8)
  • memset (Address: 0x1000b2c4)
  • wcschr (Address: 0x1000b28c)
  • wcsncmp (Address: 0x1000b2a4)
  • wcstol (Address: 0x1000b2a0)
netutils.dll
  • NetApiBufferAllocate (Address: 0x1000b2d0)
  • NetApiBufferFree (Address: 0x1000b2cc)
ntdll.dll
  • NtClose (Address: 0x1000b2e0)
  • NtOpenFile (Address: 0x1000b2e4)
  • NtOpenSymbolicLinkObject (Address: 0x1000b2f0)
  • NtQuerySymbolicLinkObject (Address: 0x1000b2e8)
  • NtQueryVolumeInformationFile (Address: 0x1000b2d8)
  • RtlInitUnicodeString (Address: 0x1000b2fc)
  • WinSqmAddToStream (Address: 0x1000b2ec)
  • WinSqmEndSession (Address: 0x1000b2f8)
  • WinSqmIsOptedIn (Address: 0x1000b2dc)
  • WinSqmSetString (Address: 0x1000b2f4)
  • WinSqmStartSession (Address: 0x1000b300)
ole32.dll
  • OleInitialize (Address: 0x1000b30c)
  • OleUninitialize (Address: 0x1000b308)
RPCRT4.dll
  • NdrClientCall4 (Address: 0x1000b084)
  • RpcBindingFree (Address: 0x1000b09c)
  • RpcBindingFromStringBindingW (Address: 0x1000b090)
  • RpcEpResolveBinding (Address: 0x1000b094)
  • RpcStringBindingComposeW (Address: 0x1000b08c)
  • RpcStringFreeW (Address: 0x1000b088)
  • UuidCreate (Address: 0x1000b098)
SHELL32.dll
  • ShellExecuteW (Address: 0x1000b0a8)
  • SHFormatDrive (Address: 0x1000b0ac)
  • SHGetFileInfoW (Address: 0x1000b0a4)
SHLWAPI.dll
  • (Address: 0x1000b0b8)
  • PathAppendW (Address: 0x1000b0b4)
  • PathGetDriveNumberW (Address: 0x1000b0bc)
  • UrlCanonicalizeW (Address: 0x1000b0c0)
  • UrlGetPartW (Address: 0x1000b0c8)
  • UrlIsW (Address: 0x1000b0c4)
USER32.dll
  • CallWindowProcW (Address: 0x1000b11c)
  • CreateWindowExW (Address: 0x1000b150)
  • DialogBoxParamW (Address: 0x1000b10c)
  • EnableWindow (Address: 0x1000b0e0)
  • EndDialog (Address: 0x1000b0f4)
  • FindWindowW (Address: 0x1000b138)
  • GetActiveWindow (Address: 0x1000b148)
  • GetClientRect (Address: 0x1000b100)
  • GetDC (Address: 0x1000b14c)
  • GetDlgItem (Address: 0x1000b0e4)
  • GetForegroundWindow (Address: 0x1000b140)
  • GetParent (Address: 0x1000b124)
  • GetPropW (Address: 0x1000b0dc)
  • GetWindowRect (Address: 0x1000b0fc)
  • IsDlgButtonChecked (Address: 0x1000b0ec)
  • IsWindow (Address: 0x1000b0d8)
  • KillTimer (Address: 0x1000b12c)
  • LoadCursorW (Address: 0x1000b134)
  • LoadIconW (Address: 0x1000b108)
  • MessageBoxW (Address: 0x1000b0d0)
  • MoveWindow (Address: 0x1000b13c)
  • PostMessageW (Address: 0x1000b118)
  • ReleaseDC (Address: 0x1000b120)
  • SendDlgItemMessageW (Address: 0x1000b110)
  • SendMessageW (Address: 0x1000b0f8)
  • SetCursor (Address: 0x1000b130)
  • SetFocus (Address: 0x1000b0e8)
  • SetPropW (Address: 0x1000b0d4)
  • SetTimer (Address: 0x1000b144)
  • SetWindowLongW (Address: 0x1000b104)
  • SetWindowPos (Address: 0x1000b114)
  • ShowWindow (Address: 0x1000b0f0)
  • SystemParametersInfoW (Address: 0x1000b128)