ureg.dll
Description: Registry Utility DLL
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 64-bit
Operating System: Windows NT
SHA256: ba2ce11ae73c7d95f2d40c4b4c185a38
File Size: 32.0 KB
Uploaded At: Dec. 1, 2025, 7:41 a.m.
Views: 2
Exported Functions
- ??0REGISTRY@@QEAA@XZ (Ordinal: 1, Address: 0x18f0)
- ??0REGISTRY_KEY_INFO@@QEAA@XZ (Ordinal: 2, Address: 0x13f0)
- ??0REGISTRY_VALUE_ENTRY@@QEAA@XZ (Ordinal: 3, Address: 0x10e0)
- ??1REGISTRY@@UEAA@XZ (Ordinal: 4, Address: 0x1950)
- ??1REGISTRY_KEY_INFO@@UEAA@XZ (Ordinal: 5, Address: 0x1490)
- ??1REGISTRY_VALUE_ENTRY@@UEAA@XZ (Ordinal: 6, Address: 0x1140)
- ?AddValueEntry@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEBVREGISTRY_VALUE_ENTRY@@EPEAK@Z (Ordinal: 7, Address: 0x1df0)
- ?CreateKey@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@1PEAKE@Z (Ordinal: 8, Address: 0x2400)
- ?DeleteKey@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEBVWSTRING@@PEAK@Z (Ordinal: 9, Address: 0x26c0)
- ?DeleteValueEntry@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEBVWSTRING@@PEAK@Z (Ordinal: 10, Address: 0x2790)
- ?DoesKeyExist@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEBVWSTRING@@1PEAK@Z (Ordinal: 11, Address: 0x2940)
- ?DoesValueExist@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEBVWSTRING@@11PEAK@Z (Ordinal: 12, Address: 0x29b0)
- ?EnableRootNotification@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAXKE@Z (Ordinal: 13, Address: 0x46a0)
- ?Initialize@REGISTRY@@QEAAEPEBVWSTRING@@PEAK@Z (Ordinal: 14, Address: 0x19f0)
- ?Initialize@REGISTRY_KEY_INFO@@QEAAEPEBVWSTRING@@0K0PEAU_SECURITY_ATTRIBUTES@@@Z (Ordinal: 15, Address: 0x1580)
- ?Initialize@REGISTRY_VALUE_ENTRY@@QEAAEPEBVWSTRING@@KW4_REG_TYPE@@PEBEK@Z (Ordinal: 16, Address: 0x11e0)
- ?IsAccessAllowed@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@KPEAK@Z (Ordinal: 17, Address: 0x5030)
- ?LoadHive@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEBVWSTRING@@PEAK@Z (Ordinal: 18, Address: 0x4ac0)
- ?QueryKeyInfo@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEBVWSTRING@@1PEAVREGISTRY_KEY_INFO@@PEAK@Z (Ordinal: 19, Address: 0x2b00)
- ?QueryKeySecurity@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEBVREGISTRY_KEY_INFO@@KPEAPEAXPEAK@Z (Ordinal: 20, Address: 0x2f60)
- ?QuerySubKeysInfo@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEBVWSTRING@@1PEAVARRAY@@PEAK@Z (Ordinal: 21, Address: 0x3110)
- ?QueryValues@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEBVWSTRING@@1PEAVARRAY@@PEAK@Z (Ordinal: 22, Address: 0x3670)
- ?RestoreKeyFromFile@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEBVWSTRING@@EPEAK@Z (Ordinal: 23, Address: 0x4ed0)
- ?SaveKeyToFile@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEBVWSTRING@@PEAK@Z (Ordinal: 24, Address: 0x4da0)
- ?SetKeySecurity@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@KPEAXPEAKE@Z (Ordinal: 25, Address: 0x3d20)
- ?UnLoadHive@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEAK@Z (Ordinal: 26, Address: 0x4c70)
- ?UpdateKeyInfo@REGISTRY@@QEAAEW4_PREDEFINED_KEY@@PEAVREGISTRY_KEY_INFO@@PEAK@Z (Ordinal: 27, Address: 0x3e80)
Imported DLLs & Functions
ADVAPI32.dll
- GetSecurityDescriptorLength (Address: 0x180007248)
- InitializeSecurityDescriptor (Address: 0x180007240)
- RegCloseKey (Address: 0x180007210)
- RegConnectRegistryW (Address: 0x1800071f0)
- RegCreateKeyExW (Address: 0x1800071b0)
- RegDeleteKeyW (Address: 0x180007228)
- RegDeleteValueW (Address: 0x1800071f8)
- RegEnumKeyExW (Address: 0x1800071c0)
- RegEnumKeyW (Address: 0x180007218)
- RegEnumValueW (Address: 0x180007230)
- RegFlushKey (Address: 0x180007250)
- RegGetKeySecurity (Address: 0x180007208)
- RegLoadKeyW (Address: 0x1800071d8)
- RegNotifyChangeKeyValue (Address: 0x180007200)
- RegOpenKeyExW (Address: 0x1800071e0)
- RegQueryInfoKeyW (Address: 0x180007220)
- RegQueryValueExW (Address: 0x180007238)
- RegRestoreKeyW (Address: 0x1800071e8)
- RegSaveKeyW (Address: 0x1800071b8)
- RegSetKeySecurity (Address: 0x1800071c8)
- RegSetValueExW (Address: 0x1800071a8)
- RegUnLoadKeyW (Address: 0x1800071d0)
KERNEL32.dll
- GetComputerNameW (Address: 0x1800072a8)
- GetCurrentProcess (Address: 0x180007278)
- GetCurrentProcessId (Address: 0x180007290)
- GetCurrentThreadId (Address: 0x180007288)
- GetSystemTimeAsFileTime (Address: 0x1800072b0)
- GetTickCount (Address: 0x180007260)
- QueryPerformanceCounter (Address: 0x180007298)
- SetUnhandledExceptionFilter (Address: 0x180007270)
- Sleep (Address: 0x1800072a0)
- TerminateProcess (Address: 0x180007280)
- UnhandledExceptionFilter (Address: 0x180007268)
msvcrt.dll
- __C_specific_handler (Address: 0x1800072c0)
- _amsg_exit (Address: 0x1800072e0)
- _initterm (Address: 0x1800072c8)
- _XcptFilter (Address: 0x1800072e8)
- free (Address: 0x1800072d8)
- malloc (Address: 0x1800072d0)
- memcpy (Address: 0x1800072f0)
ntdll.dll
- RtlAllocateHeap (Address: 0x180007310)
- RtlCaptureContext (Address: 0x180007300)
- RtlFreeHeap (Address: 0x180007308)
- RtlLookupFunctionEntry (Address: 0x180007318)
- RtlVirtualUnwind (Address: 0x180007320)
ulib.dll
- ??0CLASS_DESCRIPTOR@@QEAA@XZ (Address: 0x1800073c8)
- ??0DSTRING@@QEAA@XZ (Address: 0x180007330)
- ??0OBJECT@@IEAA@XZ (Address: 0x180007338)
- ??0TIMEINFO@@QEAA@XZ (Address: 0x180007360)
- ??1DSTRING@@UEAA@XZ (Address: 0x180007368)
- ??1OBJECT@@UEAA@XZ (Address: 0x180007350)
- ?Compare@OBJECT@@UEBAJPEBV1@@Z (Address: 0x180007348)
- ?DebugDump@OBJECT@@UEBAXE@Z (Address: 0x180007340)
- ?Initialize@CLASS_DESCRIPTOR@@QEAAEPEBD@Z (Address: 0x1800073c0)
- ?Initialize@TIMEINFO@@QEAAEPEAU_FILETIME@@@Z (Address: 0x180007398)
- ?Initialize@TIMEINFO@@QEAAXPEBV1@@Z (Address: 0x1800073a0)
- ?Initialize@WSTRING@@QEAAEPEBDK@Z (Address: 0x1800073d0)
- ?Initialize@WSTRING@@QEAAEPEBGK@Z (Address: 0x1800073b8)
- ?Initialize@WSTRING@@QEAAEPEBV1@KK@Z (Address: 0x180007358)
- ?NewBuf@DSTRING@@UEAAEK@Z (Address: 0x180007388)
- ?QueryWSTR@WSTRING@@QEBAPEAGKKPEAGKE@Z (Address: 0x1800073b0)
- ?Resize@DSTRING@@UEAAEK@Z (Address: 0x180007390)
- ?SPrintf@DSTRING@@UEAAEPEBGZZ (Address: 0x180007380)
- ?SPrintfAppend@DSTRING@@UEAAEPEBGZZ (Address: 0x180007378)
- ?Strcat@WSTRING@@QEAAEPEBV1@@Z (Address: 0x1800073a8)
- ?Strrchr@WSTRING@@QEBAKGK@Z (Address: 0x180007370)