keymgr.dll

Description: Stored User Names and Passwords

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: 6c0fca174fbf27013053111a16b9e2f2

File Size: 58.5 KB

Uploaded At: Dec. 1, 2025, 7:31 a.m.

Views: 4

Exported Functions

  • CPlApplet (Ordinal: 1, Address: 0x2c80)
  • DllCanUnloadNow (Ordinal: 2, Address: 0x1b30)
  • DllGetClassObject (Ordinal: 3, Address: 0x1b50)
  • DllMain (Ordinal: 4, Address: 0x2d40)
  • KRShowKeyMgr (Ordinal: 5, Address: 0x2dc0)
  • PRShowRestoreFromMsginaW (Ordinal: 6, Address: 0x7ee0)
  • PRShowRestoreWizardExW (Ordinal: 7, Address: 0x7ee0)
  • PRShowRestoreWizardW (Ordinal: 8, Address: 0x7ab0)
  • PRShowSaveFromMsginaW (Ordinal: 9, Address: 0x7e90)
  • PRShowSaveWizardExW (Ordinal: 10, Address: 0x7e00)

Imported DLLs & Functions

ADVAPI32.dll
  • CredRenameW (Address: 0x18000b668)
  • CryptAcquireContextW (Address: 0x18000b6a0)
  • CryptDestroyKey (Address: 0x18000b6a8)
  • CryptExportKey (Address: 0x18000b698)
  • CryptGenKey (Address: 0x18000b688)
  • CryptReleaseContext (Address: 0x18000b648)
  • GetLengthSid (Address: 0x18000b690)
  • GetUserNameW (Address: 0x18000b670)
  • LogonUserW (Address: 0x18000b678)
  • LookupAccountNameW (Address: 0x18000b680)
  • LsaClose (Address: 0x18000b650)
  • LsaFreeMemory (Address: 0x18000b658)
  • LsaOpenPolicy (Address: 0x18000b6b0)
  • LsaQueryInformationPolicy (Address: 0x18000b660)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x18000b900)
api-ms-win-core-debug-l1-1-0.dll
  • OutputDebugStringW (Address: 0x18000b910)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x18000b920)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x18000b930)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x18000b960)
  • SetErrorMode (Address: 0x18000b958)
  • SetLastError (Address: 0x18000b950)
  • SetUnhandledExceptionFilter (Address: 0x18000b940)
  • UnhandledExceptionFilter (Address: 0x18000b948)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x18000b9b8)
  • DeleteFileW (Address: 0x18000b978)
  • GetDiskFreeSpaceW (Address: 0x18000b990)
  • GetDriveTypeW (Address: 0x18000b998)
  • GetFileAttributesExW (Address: 0x18000b9a0)
  • GetLogicalDriveStringsW (Address: 0x18000b970)
  • ReadFile (Address: 0x18000b988)
  • SetFileAttributesW (Address: 0x18000b9b0)
  • SetFilePointer (Address: 0x18000b9a8)
  • WriteFile (Address: 0x18000b980)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x18000b9c8)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x18000b9d8)
  • LocalFree (Address: 0x18000b9e0)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x18000b9f0)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x18000ba00)
  • GetModuleFileNameW (Address: 0x18000ba08)
  • GetModuleHandleW (Address: 0x18000ba20)
  • GetProcAddress (Address: 0x18000ba28)
  • LoadLibraryExW (Address: 0x18000ba10)
  • LoadStringW (Address: 0x18000ba18)
api-ms-win-core-memory-l1-1-0.dll
  • VirtualAlloc (Address: 0x18000ba40)
  • VirtualFree (Address: 0x18000ba38)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateProcessW (Address: 0x18000ba68)
  • CreateThread (Address: 0x18000ba78)
  • GetCurrentProcess (Address: 0x18000ba50)
  • GetCurrentProcessId (Address: 0x18000ba60)
  • GetCurrentThreadId (Address: 0x18000ba58)
  • TerminateProcess (Address: 0x18000ba70)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x18000ba88)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x18000bab8)
  • RegOpenKeyExA (Address: 0x18000baa0)
  • RegOpenKeyExW (Address: 0x18000ba98)
  • RegQueryValueExA (Address: 0x18000baa8)
  • RegQueryValueExW (Address: 0x18000bab0)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x18000bad0)
  • RtlLookupFunctionEntry (Address: 0x18000bad8)
  • RtlVirtualUnwind (Address: 0x18000bac8)
api-ms-win-core-synch-l1-1-0.dll
  • CreateMutexW (Address: 0x18000baf0)
  • WaitForSingleObject (Address: 0x18000bae8)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x18000bb00)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetComputerNameExW (Address: 0x18000bb18)
  • GetSystemDirectoryW (Address: 0x18000bb10)
  • GetSystemTimeAsFileTime (Address: 0x18000bb20)
  • GetTickCount (Address: 0x18000bb28)
  • GetVersionExW (Address: 0x18000bb30)
api-ms-win-security-credentials-l1-1-0.dll
  • CredDeleteW (Address: 0x18000bb58)
  • CredEnumerateW (Address: 0x18000bb48)
  • CredFree (Address: 0x18000bb70)
  • CredGetSessionTypes (Address: 0x18000bb40)
  • CredIsMarshaledCredentialW (Address: 0x18000bb60)
  • CredReadW (Address: 0x18000bb50)
  • CredWriteW (Address: 0x18000bb68)
CRYPT32.dll
  • CertCreateCertificateContext (Address: 0x18000b6c0)
  • CertFreeCertificateContext (Address: 0x18000b6d0)
  • CryptEncodeObject (Address: 0x18000b6e0)
  • CryptExportPublicKeyInfo (Address: 0x18000b6c8)
  • CryptSignAndEncodeCertificate (Address: 0x18000b6d8)
GDI32.dll
  • CreateFontIndirectW (Address: 0x18000b700)
  • DeleteObject (Address: 0x18000b6f0)
  • GetDeviceCaps (Address: 0x18000b6f8)
KERNEL32.dll
  • ActivateActCtx (Address: 0x18000b740)
  • CreateActCtxW (Address: 0x18000b720)
  • DeactivateActCtx (Address: 0x18000b738)
  • ExpandEnvironmentStringsA (Address: 0x18000b710)
  • GetComputerNameW (Address: 0x18000b730)
  • LoadLibraryExA (Address: 0x18000b728)
  • ReleaseActCtx (Address: 0x18000b718)
msvcrt.dll
  • __C_specific_handler (Address: 0x18000bba0)
  • _amsg_exit (Address: 0x18000bb98)
  • _callnewh (Address: 0x18000bb80)
  • _initterm (Address: 0x18000bb88)
  • _vsnwprintf (Address: 0x18000bbc0)
  • _waccess (Address: 0x18000bbe0)
  • _wcsicmp (Address: 0x18000bbe8)
  • _wcsnicmp (Address: 0x18000bbc8)
  • _XcptFilter (Address: 0x18000bb90)
  • free (Address: 0x18000bbd0)
  • malloc (Address: 0x18000bbb8)
  • memcpy (Address: 0x18000bbb0)
  • memset (Address: 0x18000bbf8)
  • wcschr (Address: 0x18000bbd8)
  • wcsncmp (Address: 0x18000bbf0)
  • wcstol (Address: 0x18000bba8)
netutils.dll
  • NetApiBufferAllocate (Address: 0x18000bc10)
  • NetApiBufferFree (Address: 0x18000bc08)
ntdll.dll
  • NtClose (Address: 0x18000bc30)
  • NtOpenFile (Address: 0x18000bc38)
  • NtOpenSymbolicLinkObject (Address: 0x18000bc50)
  • NtQuerySymbolicLinkObject (Address: 0x18000bc40)
  • NtQueryVolumeInformationFile (Address: 0x18000bc20)
  • RtlInitUnicodeString (Address: 0x18000bc68)
  • WinSqmAddToStream (Address: 0x18000bc48)
  • WinSqmEndSession (Address: 0x18000bc60)
  • WinSqmIsOptedIn (Address: 0x18000bc28)
  • WinSqmSetString (Address: 0x18000bc58)
  • WinSqmStartSession (Address: 0x18000bc70)
ole32.dll
  • OleInitialize (Address: 0x18000bc88)
  • OleUninitialize (Address: 0x18000bc80)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x18000b760)
  • RpcBindingFree (Address: 0x18000b750)
  • RpcBindingFromStringBindingW (Address: 0x18000b780)
  • RpcEpResolveBinding (Address: 0x18000b770)
  • RpcStringBindingComposeW (Address: 0x18000b778)
  • RpcStringFreeW (Address: 0x18000b768)
  • UuidCreate (Address: 0x18000b758)
SHELL32.dll
  • ShellExecuteW (Address: 0x18000b798)
  • SHFormatDrive (Address: 0x18000b790)
  • SHGetFileInfoW (Address: 0x18000b7a0)
SHLWAPI.dll
  • (Address: 0x18000b7d8)
  • PathAppendW (Address: 0x18000b7c8)
  • PathGetDriveNumberW (Address: 0x18000b7b8)
  • UrlCanonicalizeW (Address: 0x18000b7d0)
  • UrlGetPartW (Address: 0x18000b7c0)
  • UrlIsW (Address: 0x18000b7b0)
USER32.dll
  • CallWindowProcW (Address: 0x18000b858)
  • CreateWindowExW (Address: 0x18000b7e8)
  • DialogBoxParamW (Address: 0x18000b8f0)
  • EnableWindow (Address: 0x18000b8c8)
  • EndDialog (Address: 0x18000b8a0)
  • FindWindowW (Address: 0x18000b818)
  • GetActiveWindow (Address: 0x18000b7f8)
  • GetClientRect (Address: 0x18000b888)
  • GetDC (Address: 0x18000b7f0)
  • GetDlgItem (Address: 0x18000b8c0)
  • GetForegroundWindow (Address: 0x18000b808)
  • GetParent (Address: 0x18000b848)
  • GetPropW (Address: 0x18000b8d0)
  • GetWindowRect (Address: 0x18000b890)
  • IsDlgButtonChecked (Address: 0x18000b8b0)
  • IsWindow (Address: 0x18000b8d8)
  • KillTimer (Address: 0x18000b838)
  • LoadCursorW (Address: 0x18000b820)
  • LoadIconW (Address: 0x18000b880)
  • MessageBoxW (Address: 0x18000b8e8)
  • MoveWindow (Address: 0x18000b810)
  • PostMessageW (Address: 0x18000b860)
  • ReleaseDC (Address: 0x18000b850)
  • SendDlgItemMessageW (Address: 0x18000b878)
  • SendMessageW (Address: 0x18000b898)
  • SetCursor (Address: 0x18000b828)
  • SetFocus (Address: 0x18000b8b8)
  • SetPropW (Address: 0x18000b8e0)
  • SetTimer (Address: 0x18000b800)
  • SetWindowLongPtrW (Address: 0x18000b870)
  • SetWindowLongW (Address: 0x18000b830)
  • SetWindowPos (Address: 0x18000b868)
  • ShowWindow (Address: 0x18000b8a8)
  • SystemParametersInfoW (Address: 0x18000b840)