DaOtpCredentialProvider.dll
Description: DirectAccess One-Time Password Credential Provider
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.1
Architecture: 32-bit
Operating System: Windows NT
SHA256: 25166f8abf5a4f366d6127114a00ca67
File Size: 259.0 KB
Uploaded At: Dec. 1, 2025, 7:54 a.m.
Views: 5
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x4770)
- DllGetClassObject (Ordinal: 2, Address: 0x4790)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CoCreateGuid (Address: 0x100300b0)
- CoCreateInstance (Address: 0x100300b8)
- CoInitializeEx (Address: 0x100300c4)
- CoInitializeSecurity (Address: 0x100300c0)
- CoSetProxyBlanket (Address: 0x100300bc)
- CoTaskMemAlloc (Address: 0x100300ac)
- CoTaskMemFree (Address: 0x100300cc)
- CoUninitialize (Address: 0x100300c8)
- StringFromCLSID (Address: 0x100300b4)
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x100300d4)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x100300dc)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x100300e8)
- SetUnhandledExceptionFilter (Address: 0x100300ec)
- UnhandledExceptionFilter (Address: 0x100300e4)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x100300f4)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x10030110)
- HeapAlloc (Address: 0x10030108)
- HeapCreate (Address: 0x100300fc)
- HeapDestroy (Address: 0x1003010c)
- HeapFree (Address: 0x10030104)
- HeapReAlloc (Address: 0x10030100)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x10030118)
- FindResourceExW (Address: 0x10030128)
- LoadResource (Address: 0x1003011c)
- LoadStringW (Address: 0x10030120)
- LockResource (Address: 0x10030124)
api-ms-win-core-processenvironment-l1-1-0.dll
- ExpandEnvironmentStringsW (Address: 0x10030130)
api-ms-win-core-processthreads-l1-1-0.dll
- CreateThread (Address: 0x10030140)
- GetCurrentProcess (Address: 0x10030148)
- GetCurrentProcessId (Address: 0x10030144)
- GetCurrentThreadId (Address: 0x1003014c)
- TerminateProcess (Address: 0x1003013c)
- TerminateThread (Address: 0x10030138)
api-ms-win-core-processthreads-l1-1-1.dll
- OpenProcess (Address: 0x10030154)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x1003015c)
api-ms-win-core-psapi-l1-1-0.dll
- QueryFullProcessImageNameW (Address: 0x10030164)
api-ms-win-core-string-l1-1-0.dll
- MultiByteToWideChar (Address: 0x1003016c)
api-ms-win-core-synch-l1-1-0.dll
- CreateEventW (Address: 0x10030178)
- DeleteCriticalSection (Address: 0x10030180)
- EnterCriticalSection (Address: 0x10030190)
- InitializeCriticalSection (Address: 0x10030174)
- InitializeCriticalSectionAndSpinCount (Address: 0x10030184)
- LeaveCriticalSection (Address: 0x10030188)
- ResetEvent (Address: 0x1003018c)
- SetEvent (Address: 0x10030194)
- WaitForSingleObject (Address: 0x1003017c)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x1003019c)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x100301ac)
- GetTickCount (Address: 0x100301a8)
- GetTickCount64 (Address: 0x100301a4)
api-ms-win-core-util-l1-1-0.dll
- DecodePointer (Address: 0x100301b4)
- EncodePointer (Address: 0x100301b8)
DSPARSE.dll
- DsGetRdnW (Address: 0x10030004)
- DsUnquoteRdnValueW (Address: 0x10030000)
KERNEL32.dll
- FindResourceW (Address: 0x10030020)
- FormatMessageW (Address: 0x1003001c)
- FreeLibrary (Address: 0x10030028)
- GetModuleHandleExW (Address: 0x10030024)
- GlobalFree (Address: 0x1003002c)
- LocalAlloc (Address: 0x10030014)
- LocalFree (Address: 0x10030018)
- RegCreateKeyExW (Address: 0x1003000c)
- RegSetValueExW (Address: 0x10030010)
- SizeofResource (Address: 0x10030030)
msvcrt.dll
- ___lc_codepage_func (Address: 0x100301d0)
- ___lc_handle_func (Address: 0x100301cc)
- __crtLCMapStringA (Address: 0x100301d4)
- __CxxFrameHandler3 (Address: 0x100301f0)
- __dllonexit (Address: 0x100301fc)
- __pctype_func (Address: 0x100301c4)
- __uncaught_exception (Address: 0x100301ec)
- _amsg_exit (Address: 0x1003021c)
- _CxxThrowException (Address: 0x10030224)
- _except_handler4_common (Address: 0x1003020c)
- _initterm (Address: 0x10030214)
- _lock (Address: 0x10030204)
- _ltow_s (Address: 0x10030280)
- _onexit (Address: 0x10030258)
- _stricmp (Address: 0x1003026c)
- _ultow_s (Address: 0x1003023c)
- _unlock (Address: 0x10030200)
- _vsnwprintf (Address: 0x1003027c)
- _wcsicmp (Address: 0x10030228)
- _wcsnicmp (Address: 0x10030248)
- _XcptFilter (Address: 0x10030220)
- ??0bad_cast@@QAE@ABV0@@Z (Address: 0x10030254)
- ??0exception@@QAE@ABQBD@Z (Address: 0x10030264)
- ??0exception@@QAE@ABV0@@Z (Address: 0x10030244)
- ??0exception@@QAE@XZ (Address: 0x10030274)
- ??1bad_cast@@UAE@XZ (Address: 0x1003024c)
- ??1exception@@UAE@XZ (Address: 0x10030260)
- ??1type_info@@UAE@XZ (Address: 0x10030208)
- ?terminate@@YAXXZ (Address: 0x10030210)
- ?what@exception@@UBEPBDXZ (Address: 0x1003022c)
- abort (Address: 0x100301e0)
- calloc (Address: 0x100301d8)
- free (Address: 0x10030268)
- islower (Address: 0x100301dc)
- isupper (Address: 0x100301c8)
- localeconv (Address: 0x10030238)
- malloc (Address: 0x10030218)
- memchr (Address: 0x100301f4)
- memcpy (Address: 0x10030230)
- memcpy_s (Address: 0x10030250)
- memmove (Address: 0x100301f8)
- memmove_s (Address: 0x100301e4)
- memset (Address: 0x10030284)
- setlocale (Address: 0x100301c0)
- sprintf_s (Address: 0x100301e8)
- strcspn (Address: 0x1003025c)
- strerror (Address: 0x10030234)
- swscanf_s (Address: 0x10030278)
- wcscpy_s (Address: 0x10030240)
- wcsstr (Address: 0x10030270)
ntdll.dll
- EtwEventRegister (Address: 0x100302a0)
- EtwEventUnregister (Address: 0x1003029c)
- EtwEventWriteTransfer (Address: 0x10030294)
- EtwGetTraceEnableFlags (Address: 0x100302ac)
- EtwGetTraceEnableLevel (Address: 0x100302b0)
- EtwGetTraceLoggerHandle (Address: 0x100302b4)
- EtwRegisterTraceGuidsW (Address: 0x100302a8)
- EtwTraceMessage (Address: 0x10030298)
- EtwUnregisterTraceGuids (Address: 0x100302a4)
- RtlInitString (Address: 0x1003028c)
- RtlNtStatusToDosError (Address: 0x10030290)
OLEAUT32.dll
- GetErrorInfo (Address: 0x10030038)
- SysAllocString (Address: 0x10030058)
- SysAllocStringByteLen (Address: 0x10030048)
- SysAllocStringLen (Address: 0x10030040)
- SysFreeString (Address: 0x1003003c)
- SysStringByteLen (Address: 0x10030054)
- SysStringLen (Address: 0x10030044)
- VariantClear (Address: 0x1003004c)
- VariantInit (Address: 0x10030050)
SHLWAPI.dll
- (Address: 0x10030060)
USER32.dll
- LoadImageW (Address: 0x1003006c)
- wsprintfW (Address: 0x10030068)
WINHTTP.dll
- WinHttpAddRequestHeaders (Address: 0x10030098)
- WinHttpCloseHandle (Address: 0x10030084)
- WinHttpConnect (Address: 0x10030094)
- WinHttpOpen (Address: 0x10030080)
- WinHttpOpenRequest (Address: 0x100300a4)
- WinHttpQueryHeaders (Address: 0x10030078)
- WinHttpQueryOption (Address: 0x10030090)
- WinHttpReadData (Address: 0x10030074)
- WinHttpReceiveResponse (Address: 0x100300a0)
- WinHttpSendRequest (Address: 0x1003009c)
- WinHttpSetOption (Address: 0x1003008c)
- WinHttpSetStatusCallback (Address: 0x10030088)
- WinHttpSetTimeouts (Address: 0x1003007c)