keymgr.dll
Description: Stored User Names and Passwords
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 32-bit
Operating System: Windows NT
SHA256: c3918b7a89c3de42548e842c8494ffb8
File Size: 45.0 KB
Uploaded At: Dec. 1, 2025, 7:59 a.m.
Views: 13
Exported Functions
- CPlApplet (Ordinal: 1, Address: 0x35a0)
- DllCanUnloadNow (Ordinal: 2, Address: 0x2740)
- DllGetClassObject (Ordinal: 3, Address: 0x2760)
- DllMain (Ordinal: 4, Address: 0x3640)
- KRShowKeyMgr (Ordinal: 5, Address: 0x36b0)
- PRShowRestoreFromMsginaW (Ordinal: 6, Address: 0x71e0)
- PRShowRestoreWizardExW (Ordinal: 7, Address: 0x71e0)
- PRShowRestoreWizardW (Ordinal: 8, Address: 0x6f00)
- PRShowSaveFromMsginaW (Ordinal: 9, Address: 0x71b0)
- PRShowSaveWizardExW (Ordinal: 10, Address: 0x7150)
Imported DLLs & Functions
ADVAPI32.dll
- CredRenameW (Address: 0x1000b028)
- CryptAcquireContextW (Address: 0x1000b00c)
- CryptDestroyKey (Address: 0x1000b008)
- CryptExportKey (Address: 0x1000b010)
- CryptGenKey (Address: 0x1000b000)
- CryptReleaseContext (Address: 0x1000b01c)
- GetLengthSid (Address: 0x1000b014)
- GetUserNameW (Address: 0x1000b024)
- LogonUserW (Address: 0x1000b020)
- LookupAccountNameW (Address: 0x1000b018)
- LsaClose (Address: 0x1000b034)
- LsaFreeMemory (Address: 0x1000b030)
- LsaOpenPolicy (Address: 0x1000b004)
- LsaQueryInformationPolicy (Address: 0x1000b02c)
api-ms-win-core-com-l1-1-0.dll
- CoCreateInstance (Address: 0x1000b158)
api-ms-win-core-debug-l1-1-0.dll
- OutputDebugStringW (Address: 0x1000b160)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1000b168)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1000b170)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x1000b188)
- SetErrorMode (Address: 0x1000b178)
- SetLastError (Address: 0x1000b180)
- SetUnhandledExceptionFilter (Address: 0x1000b17c)
- UnhandledExceptionFilter (Address: 0x1000b184)
api-ms-win-core-file-l1-1-0.dll
- CreateFileW (Address: 0x1000b1b0)
- DeleteFileW (Address: 0x1000b1a8)
- GetDiskFreeSpaceW (Address: 0x1000b1a0)
- GetDriveTypeW (Address: 0x1000b1b4)
- GetFileAttributesExW (Address: 0x1000b190)
- GetLogicalDriveStringsW (Address: 0x1000b19c)
- ReadFile (Address: 0x1000b1ac)
- SetFileAttributesW (Address: 0x1000b194)
- SetFilePointer (Address: 0x1000b198)
- WriteFile (Address: 0x1000b1a4)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1000b1bc)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x1000b1c4)
- LocalFree (Address: 0x1000b1c8)
api-ms-win-core-io-l1-1-0.dll
- DeviceIoControl (Address: 0x1000b1d0)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x1000b1ec)
- GetModuleFileNameW (Address: 0x1000b1e4)
- GetModuleHandleW (Address: 0x1000b1e0)
- GetProcAddress (Address: 0x1000b1e8)
- LoadLibraryExW (Address: 0x1000b1d8)
- LoadStringW (Address: 0x1000b1dc)
api-ms-win-core-memory-l1-1-0.dll
- VirtualAlloc (Address: 0x1000b1f8)
- VirtualFree (Address: 0x1000b1f4)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateProcessW (Address: 0x1000b204)
- CreateThread (Address: 0x1000b20c)
- GetCurrentProcess (Address: 0x1000b208)
- GetCurrentProcessId (Address: 0x1000b210)
- GetCurrentThreadId (Address: 0x1000b214)
- TerminateProcess (Address: 0x1000b200)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1000b21c)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x1000b234)
- RegOpenKeyExA (Address: 0x1000b228)
- RegOpenKeyExW (Address: 0x1000b230)
- RegQueryValueExA (Address: 0x1000b224)
- RegQueryValueExW (Address: 0x1000b22c)
api-ms-win-core-synch-l1-1-0.dll
- CreateMutexW (Address: 0x1000b240)
- WaitForSingleObject (Address: 0x1000b23c)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x1000b248)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetComputerNameExW (Address: 0x1000b260)
- GetSystemDirectoryW (Address: 0x1000b258)
- GetSystemTimeAsFileTime (Address: 0x1000b25c)
- GetTickCount (Address: 0x1000b254)
- GetVersionExW (Address: 0x1000b250)
api-ms-win-security-credentials-l1-1-0.dll
- CredDeleteW (Address: 0x1000b274)
- CredEnumerateW (Address: 0x1000b280)
- CredFree (Address: 0x1000b270)
- CredGetSessionTypes (Address: 0x1000b26c)
- CredIsMarshaledCredentialW (Address: 0x1000b27c)
- CredReadW (Address: 0x1000b268)
- CredWriteW (Address: 0x1000b278)
CRYPT32.dll
- CertCreateCertificateContext (Address: 0x1000b040)
- CertFreeCertificateContext (Address: 0x1000b048)
- CryptEncodeObject (Address: 0x1000b04c)
- CryptExportPublicKeyInfo (Address: 0x1000b044)
- CryptSignAndEncodeCertificate (Address: 0x1000b03c)
GDI32.dll
- CreateFontIndirectW (Address: 0x1000b058)
- DeleteObject (Address: 0x1000b054)
- GetDeviceCaps (Address: 0x1000b05c)
KERNEL32.dll
- ActivateActCtx (Address: 0x1000b068)
- CreateActCtxW (Address: 0x1000b064)
- DeactivateActCtx (Address: 0x1000b070)
- ExpandEnvironmentStringsA (Address: 0x1000b074)
- GetComputerNameW (Address: 0x1000b078)
- LoadLibraryExA (Address: 0x1000b06c)
- ReleaseActCtx (Address: 0x1000b07c)
msvcrt.dll
- _amsg_exit (Address: 0x1000b2b4)
- _callnewh (Address: 0x1000b2a8)
- _except_handler4_common (Address: 0x1000b2c0)
- _initterm (Address: 0x1000b288)
- _vsnwprintf (Address: 0x1000b298)
- _waccess (Address: 0x1000b2ac)
- _wcsicmp (Address: 0x1000b2bc)
- _wcsnicmp (Address: 0x1000b294)
- _XcptFilter (Address: 0x1000b2b0)
- free (Address: 0x1000b290)
- malloc (Address: 0x1000b29c)
- memcpy (Address: 0x1000b2b8)
- memset (Address: 0x1000b2c4)
- wcschr (Address: 0x1000b28c)
- wcsncmp (Address: 0x1000b2a4)
- wcstol (Address: 0x1000b2a0)
netutils.dll
- NetApiBufferAllocate (Address: 0x1000b2d0)
- NetApiBufferFree (Address: 0x1000b2cc)
ntdll.dll
- NtClose (Address: 0x1000b2e0)
- NtOpenFile (Address: 0x1000b2e4)
- NtOpenSymbolicLinkObject (Address: 0x1000b2f0)
- NtQuerySymbolicLinkObject (Address: 0x1000b2e8)
- NtQueryVolumeInformationFile (Address: 0x1000b2d8)
- RtlInitUnicodeString (Address: 0x1000b2fc)
- WinSqmAddToStream (Address: 0x1000b2ec)
- WinSqmEndSession (Address: 0x1000b2f8)
- WinSqmIsOptedIn (Address: 0x1000b2dc)
- WinSqmSetString (Address: 0x1000b2f4)
- WinSqmStartSession (Address: 0x1000b300)
ole32.dll
- OleInitialize (Address: 0x1000b30c)
- OleUninitialize (Address: 0x1000b308)
RPCRT4.dll
- NdrClientCall4 (Address: 0x1000b084)
- RpcBindingFree (Address: 0x1000b09c)
- RpcBindingFromStringBindingW (Address: 0x1000b090)
- RpcEpResolveBinding (Address: 0x1000b094)
- RpcStringBindingComposeW (Address: 0x1000b08c)
- RpcStringFreeW (Address: 0x1000b088)
- UuidCreate (Address: 0x1000b098)
SHELL32.dll
- ShellExecuteW (Address: 0x1000b0a8)
- SHFormatDrive (Address: 0x1000b0ac)
- SHGetFileInfoW (Address: 0x1000b0a4)
SHLWAPI.dll
- (Address: 0x1000b0b8)
- PathAppendW (Address: 0x1000b0b4)
- PathGetDriveNumberW (Address: 0x1000b0bc)
- UrlCanonicalizeW (Address: 0x1000b0c0)
- UrlGetPartW (Address: 0x1000b0c8)
- UrlIsW (Address: 0x1000b0c4)
USER32.dll
- CallWindowProcW (Address: 0x1000b11c)
- CreateWindowExW (Address: 0x1000b150)
- DialogBoxParamW (Address: 0x1000b10c)
- EnableWindow (Address: 0x1000b0e0)
- EndDialog (Address: 0x1000b0f4)
- FindWindowW (Address: 0x1000b138)
- GetActiveWindow (Address: 0x1000b148)
- GetClientRect (Address: 0x1000b100)
- GetDC (Address: 0x1000b14c)
- GetDlgItem (Address: 0x1000b0e4)
- GetForegroundWindow (Address: 0x1000b140)
- GetParent (Address: 0x1000b124)
- GetPropW (Address: 0x1000b0dc)
- GetWindowRect (Address: 0x1000b0fc)
- IsDlgButtonChecked (Address: 0x1000b0ec)
- IsWindow (Address: 0x1000b0d8)
- KillTimer (Address: 0x1000b12c)
- LoadCursorW (Address: 0x1000b134)
- LoadIconW (Address: 0x1000b108)
- MessageBoxW (Address: 0x1000b0d0)
- MoveWindow (Address: 0x1000b13c)
- PostMessageW (Address: 0x1000b118)
- ReleaseDC (Address: 0x1000b120)
- SendDlgItemMessageW (Address: 0x1000b110)
- SendMessageW (Address: 0x1000b0f8)
- SetCursor (Address: 0x1000b130)
- SetFocus (Address: 0x1000b0e8)
- SetPropW (Address: 0x1000b0d4)
- SetTimer (Address: 0x1000b144)
- SetWindowLongW (Address: 0x1000b104)
- SetWindowPos (Address: 0x1000b114)
- ShowWindow (Address: 0x1000b0f0)
- SystemParametersInfoW (Address: 0x1000b128)