KdsCli.dll

Description: Microsoft Key Distribution Service Provider

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3996

Architecture: 64-bit

Operating System: Windows NT

SHA256: af1aa0a99ce301976eb1e1fd4fbecb0e

File Size: 87.5 KB

Uploaded At: Dec. 1, 2025, 7:31 a.m.

Views: 6

Exported Functions

  • CreateRootKey (Ordinal: 1, Address: 0x3570)
  • DeleteAllCachedKeys (Ordinal: 2, Address: 0x82a0)
  • FindAndReadSIDKeyInCache (Ordinal: 3, Address: 0x7930)
  • FindKeyForOfflineUsage (Ordinal: 4, Address: 0x7d70)
  • FreeRootKey (Ordinal: 5, Address: 0x32f0)
  • FreeRootKeyConfig (Ordinal: 6, Address: 0x3270)
  • FreeRootKeyMetaDataList (Ordinal: 7, Address: 0x5040)
  • FreeServerConfig (Ordinal: 8, Address: 0x5410)
  • GenerateDerivedKey (Ordinal: 9, Address: 0x87c0)
  • GenerateEphemeralKeyPair (Ordinal: 10, Address: 0x9360)
  • GenerateKDFContext (Ordinal: 11, Address: 0x86e0)
  • GenerateSIDPublicKeyBlob (Ordinal: 12, Address: 0x96a0)
  • GenerateSecretAgreementPrivateKey (Ordinal: 13, Address: 0x8d30)
  • GetAllRootKeys (Ordinal: 14, Address: 0x4e70)
  • GetAllRootKeysMetaData (Ordinal: 15, Address: 0x5180)
  • GetAndLockCachedRPCBinding (Ordinal: 16, Address: 0xac70)
  • GetCachedMachineDomainInfo (Ordinal: 17, Address: 0xba00)
  • GetCurrentIntervalID (Ordinal: 18, Address: 0xb4d0)
  • GetCurrentL0ID (Ordinal: 19, Address: 0xb480)
  • GetCurrentTimeInULL (Ordinal: 20, Address: 0xb420)
  • GetDCInfo (Ordinal: 21, Address: 0x1700)
  • GetDCInfoBySamAccountName (Ordinal: 22, Address: 0x1cc0)
  • GetDefaultServerConfig (Ordinal: 23, Address: 0x5e40)
  • GetFullDCName (Ordinal: 24, Address: 0xbbf0)
  • GetIntervalStartTime (Ordinal: 25, Address: 0xb540)
  • GetKDSSrvConfigPath (Ordinal: 26, Address: 0x26d0)
  • GetKdsKeyCycleDuration (Ordinal: 27, Address: 0xbcf0)
  • GetKey (Ordinal: 28, Address: 0xbe00)
  • GetLdapBinding (Ordinal: 29, Address: 0x1230)
  • GetMRKPath (Ordinal: 30, Address: 0x27c0)
  • GetRootKey (Ordinal: 31, Address: 0x4dd0)
  • GetSIDKeyCacheFolder (Ordinal: 32, Address: 0x67e0)
  • GetSIDKeyFileName (Ordinal: 33, Address: 0x6b60)
  • GetServerConfig (Ordinal: 34, Address: 0x5ef0)
  • GetUserSidStr (Ordinal: 35, Address: 0xb2e0)
  • KdsCreateClientBinding (Ordinal: 36, Address: 0xa120)
  • KdsGetEpochLength (Ordinal: 37, Address: 0xc2d0)
  • KdsGetGmsaPasswordBasedOnKeyId (Ordinal: 38, Address: 0xcad0)
  • KdsGetGmsaPasswordBasedOnTimestamp (Ordinal: 39, Address: 0xcac0)
  • KdsGetKeyStartTime (Ordinal: 40, Address: 0xc250)
  • SIDKeyProtect (Ordinal: 41, Address: 0xcfb0)
  • SIDKeyProvAlloc (Ordinal: 42, Address: 0xadc0)
  • SIDKeyProvFree (Ordinal: 43, Address: 0xae00)
  • SIDKeyUnprotect (Ordinal: 44, Address: 0xd550)
  • SetServerConfig (Ordinal: 45, Address: 0x6320)
  • TestServerConfig (Ordinal: 46, Address: 0x8b20)
  • UnlockRpcCache (Ordinal: 47, Address: 0xad70)
  • ValidateSrvConfig (Ordinal: 48, Address: 0x5fe0)
  • WriteSIDKeyInCache (Ordinal: 49, Address: 0x6ec0)

Imported DLLs & Functions

api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180011548)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180011558)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180011578)
  • SetUnhandledExceptionFilter (Address: 0x180011568)
  • UnhandledExceptionFilter (Address: 0x180011570)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x180011598)
  • CreateFileW (Address: 0x1800115c0)
  • DeleteFileW (Address: 0x1800115c8)
  • FindClose (Address: 0x1800115b8)
  • FindFirstFileExW (Address: 0x1800115d0)
  • FindNextFileW (Address: 0x1800115a0)
  • GetFileSize (Address: 0x180011590)
  • ReadFile (Address: 0x180011588)
  • RemoveDirectoryW (Address: 0x1800115b0)
  • WriteFile (Address: 0x1800115a8)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1800115e0)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180011600)
  • HeapAlloc (Address: 0x1800115f0)
  • HeapFree (Address: 0x1800115f8)
api-ms-win-core-heap-l2-1-0.dll
  • LocalFree (Address: 0x180011610)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • CreateFileTransactedW (Address: 0x180011620)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180011630)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180011648)
  • GetCurrentProcessId (Address: 0x180011668)
  • GetCurrentThread (Address: 0x180011660)
  • GetCurrentThreadId (Address: 0x180011670)
  • OpenProcessToken (Address: 0x180011640)
  • OpenThreadToken (Address: 0x180011658)
  • TerminateProcess (Address: 0x180011650)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180011680)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180011690)
  • RtlLookupFunctionEntry (Address: 0x180011698)
  • RtlVirtualUnwind (Address: 0x1800116a0)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringW (Address: 0x1800116b0)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1800116c8)
  • AcquireSRWLockShared (Address: 0x1800116d0)
  • InitializeSRWLock (Address: 0x1800116d8)
  • ReleaseSRWLockExclusive (Address: 0x1800116c0)
  • ReleaseSRWLockShared (Address: 0x1800116e0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTime (Address: 0x180011700)
  • GetSystemTimeAsFileTime (Address: 0x1800116f8)
  • GetTickCount (Address: 0x1800116f0)
api-ms-win-core-timezone-l1-1-0.dll
  • SystemTimeToFileTime (Address: 0x180011710)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAce (Address: 0x180011750)
  • CopySid (Address: 0x180011758)
  • GetLengthSid (Address: 0x180011760)
  • GetSecurityDescriptorLength (Address: 0x180011748)
  • GetTokenInformation (Address: 0x180011768)
  • InitializeAcl (Address: 0x180011740)
  • InitializeSecurityDescriptor (Address: 0x180011720)
  • IsValidSecurityDescriptor (Address: 0x180011770)
  • IsValidSid (Address: 0x180011738)
  • SetSecurityDescriptorDacl (Address: 0x180011730)
  • SetSecurityDescriptorGroup (Address: 0x180011778)
  • SetSecurityDescriptorOwner (Address: 0x180011728)
api-ms-win-security-base-private-l1-1-0.dll
  • IsValidRelativeSecurityDescriptor (Address: 0x180011788)
api-ms-win-security-lsalookup-l1-1-2.dll
  • LsaLookupUserAccountType (Address: 0x180011798)
api-ms-win-security-lsapolicy-l1-1-0.dll
  • LsaClose (Address: 0x1800117a8)
  • LsaFreeMemory (Address: 0x1800117c0)
  • LsaOpenPolicy (Address: 0x1800117b0)
  • LsaQueryInformationPolicy (Address: 0x1800117b8)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x1800117d8)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x1800117d0)
  • ConvertStringSidToSidW (Address: 0x1800117e0)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x1800117f8)
  • BCryptCreateHash (Address: 0x180011860)
  • BCryptDeriveKey (Address: 0x180011838)
  • BCryptDestroyHash (Address: 0x180011850)
  • BCryptDestroyKey (Address: 0x180011868)
  • BCryptDestroySecret (Address: 0x180011830)
  • BCryptExportKey (Address: 0x180011840)
  • BCryptFinalizeKeyPair (Address: 0x180011880)
  • BCryptFinishHash (Address: 0x180011818)
  • BCryptGenerateKeyPair (Address: 0x180011848)
  • BCryptGenerateSymmetricKey (Address: 0x180011878)
  • BCryptGenRandom (Address: 0x180011888)
  • BCryptGetProperty (Address: 0x1800117f0)
  • BCryptHashData (Address: 0x180011858)
  • BCryptImportKey (Address: 0x180011808)
  • BCryptImportKeyPair (Address: 0x180011828)
  • BCryptKeyDerivation (Address: 0x180011870)
  • BCryptOpenAlgorithmProvider (Address: 0x180011800)
  • BCryptSecretAgreement (Address: 0x180011810)
  • BCryptSetProperty (Address: 0x180011820)
CRYPT32.dll
  • CryptBinaryToStringW (Address: 0x180011468)
  • CryptProtectData (Address: 0x180011458)
  • CryptUnprotectData (Address: 0x180011460)
NTASN1.dll
  • (Address: 0x180011478)
  • (Address: 0x180011480)
  • (Address: 0x180011488)
ntdll.dll
  • __C_specific_handler (Address: 0x180011908)
  • _ui64tow_s (Address: 0x1800118b8)
  • _ultow_s (Address: 0x180011898)
  • _wtoi64 (Address: 0x1800118a8)
  • EtwEventRegister (Address: 0x180011920)
  • EtwEventUnregister (Address: 0x180011928)
  • EtwEventWriteTransfer (Address: 0x1800118b0)
  • EtwGetTraceEnableFlags (Address: 0x180011930)
  • EtwGetTraceEnableLevel (Address: 0x180011940)
  • EtwGetTraceLoggerHandle (Address: 0x180011938)
  • EtwRegisterTraceGuidsW (Address: 0x180011948)
  • EtwTraceMessage (Address: 0x180011958)
  • EtwUnregisterTraceGuids (Address: 0x180011970)
  • memcpy (Address: 0x180011960)
  • memset (Address: 0x180011968)
  • NtCommitTransaction (Address: 0x1800118e0)
  • NtCreateTransaction (Address: 0x1800118c0)
  • NtRollbackTransaction (Address: 0x1800118c8)
  • NtSetInformationThread (Address: 0x1800118e8)
  • RtlImageNtHeader (Address: 0x180011918)
  • RtlInitUnicodeString (Address: 0x1800118f8)
  • RtlMakeSelfRelativeSD (Address: 0x180011910)
  • RtlNtStatusToDosError (Address: 0x1800118f0)
  • RtlUnicodeStringToInteger (Address: 0x180011900)
  • swprintf_s (Address: 0x180011950)
  • wcscat_s (Address: 0x1800118d0)
  • wcschr (Address: 0x1800118d8)
  • wcscmp (Address: 0x180011978)
  • wcscpy_s (Address: 0x1800118a0)
profapi.dll
  • (Address: 0x180011988)
WLDAP32.dll
  • (Address: 0x180011498)
  • (Address: 0x1800114a0)
  • (Address: 0x1800114a8)
  • (Address: 0x1800114b0)
  • (Address: 0x1800114b8)
  • (Address: 0x1800114c0)
  • (Address: 0x1800114c8)
  • (Address: 0x1800114d0)
  • (Address: 0x1800114d8)
  • (Address: 0x1800114e0)
  • (Address: 0x1800114e8)
  • (Address: 0x1800114f0)
  • (Address: 0x1800114f8)
  • (Address: 0x180011500)
  • (Address: 0x180011508)
  • (Address: 0x180011510)
  • (Address: 0x180011518)
  • (Address: 0x180011520)
  • (Address: 0x180011528)
  • (Address: 0x180011530)
  • (Address: 0x180011538)