ntmarta.dll

Description: Windows NT MARTA provider

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 32-bit

Operating System: Windows NT

SHA256: 64e9010806523e09989fb879c4210ace

File Size: 150.5 KB

Uploaded At: Dec. 1, 2025, 8:02 a.m.

Views: 8

Exported Functions

  • AccProvHandleGrantAccessRights (Ordinal: 1, Address: 0x18190)
  • GetMartaExtensionInterface (Ordinal: 2, Address: 0x7600)
  • AccConvertAccessMaskToActrlAccess (Ordinal: 3, Address: 0x118a0)
  • AccConvertAccessToSD (Ordinal: 4, Address: 0x11a10)
  • AccConvertAccessToSecurityDescriptor (Ordinal: 5, Address: 0x11b70)
  • AccConvertAclToAccess (Ordinal: 6, Address: 0x11c80)
  • AccConvertSDToAccess (Ordinal: 7, Address: 0x11cf0)
  • AccFreeIndexArray (Ordinal: 8, Address: 0x1cb50)
  • AccGetAccessForTrustee (Ordinal: 9, Address: 0x11f70)
  • AccGetExplicitEntries (Ordinal: 10, Address: 0x12000)
  • AccGetInheritanceSource (Ordinal: 11, Address: 0x1cc50)
  • AccLookupAccountName (Ordinal: 12, Address: 0x12070)
  • AccLookupAccountSid (Ordinal: 13, Address: 0x123d0)
  • AccLookupAccountTrustee (Ordinal: 14, Address: 0x12770)
  • AccProvCancelOperation (Ordinal: 15, Address: 0x186d0)
  • AccProvGetAccessInfoPerObjectType (Ordinal: 16, Address: 0x18730)
  • AccProvGetAllRights (Ordinal: 17, Address: 0x18780)
  • AccProvGetCapabilities (Ordinal: 18, Address: 0x7a60)
  • AccProvGetOperationResults (Ordinal: 19, Address: 0x18910)
  • AccProvGetTrusteesAccess (Ordinal: 20, Address: 0x18a10)
  • AccProvGrantAccessRights (Ordinal: 21, Address: 0x18ac0)
  • AccProvHandleGetAccessInfoPerObjectType (Ordinal: 22, Address: 0x18bd0)
  • AccProvHandleGetAllRights (Ordinal: 23, Address: 0x18c80)
  • AccProvHandleGetTrusteesAccess (Ordinal: 24, Address: 0x18db0)
  • AccProvHandleIsAccessAudited (Ordinal: 25, Address: 0x18e10)
  • AccProvHandleIsObjectAccessible (Ordinal: 26, Address: 0x18e80)
  • AccProvHandleRevokeAccessRights (Ordinal: 27, Address: 0x18f70)
  • AccProvHandleRevokeAuditRights (Ordinal: 28, Address: 0x19020)
  • AccProvHandleSetAccessRights (Ordinal: 29, Address: 0x190d0)
  • AccProvIsAccessAudited (Ordinal: 30, Address: 0x19180)
  • AccProvIsObjectAccessible (Ordinal: 31, Address: 0x19240)
  • AccProvRevokeAccessRights (Ordinal: 32, Address: 0x19630)
  • AccProvRevokeAuditRights (Ordinal: 33, Address: 0x19740)
  • AccProvSetAccessRights (Ordinal: 34, Address: 0x19850)
  • AccRewriteGetExplicitEntriesFromAcl (Ordinal: 35, Address: 0x16ae0)
  • AccRewriteGetHandleRights (Ordinal: 36, Address: 0x1d160)
  • AccRewriteGetNamedRights (Ordinal: 37, Address: 0x1d230)
  • AccRewriteSetEntriesInAcl (Ordinal: 38, Address: 0x6c50)
  • AccRewriteSetHandleRights (Ordinal: 39, Address: 0x34c0)
  • AccRewriteSetNamedRights (Ordinal: 40, Address: 0x3bb0)
  • AccSetEntriesInAList (Ordinal: 41, Address: 0x12860)
  • AccTreeResetNamedSecurityInfo (Ordinal: 42, Address: 0x2c60)
  • EventGuidToName (Ordinal: 43, Address: 0xc250)
  • EventNameFree (Ordinal: 44, Address: 0xc2d0)
  • GetExplicitEntriesFromAclW (Ordinal: 45, Address: 0x10f30)
  • GetNamedSecurityInfoW (Ordinal: 46, Address: 0x38a0)
  • GetSecurityInfo (Ordinal: 47, Address: 0x3ee0)
  • SetEntriesInAclW (Ordinal: 48, Address: 0x6c40)
  • SetNamedSecurityInfoW (Ordinal: 49, Address: 0x3a90)
  • SetSecurityInfo (Ordinal: 50, Address: 0x3460)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x58fa3000)
api-ms-win-core-debug-l1-1-0.dll
  • IsDebuggerPresent (Address: 0x58fa3008)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x58fa3010)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x58fa3018)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x58fa3020)
  • SetLastError (Address: 0x58fa3024)
  • SetUnhandledExceptionFilter (Address: 0x58fa3028)
  • UnhandledExceptionFilter (Address: 0x58fa302c)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x58fa3040)
  • FindClose (Address: 0x58fa3050)
  • FindFirstFileW (Address: 0x58fa303c)
  • FindNextFileW (Address: 0x58fa3048)
  • GetDriveTypeW (Address: 0x58fa3038)
  • GetFileAttributesW (Address: 0x58fa304c)
  • GetFileInformationByHandle (Address: 0x58fa3034)
  • GetFileSize (Address: 0x58fa3054)
  • GetFullPathNameW (Address: 0x58fa3044)
api-ms-win-core-file-l2-1-0.dll
  • GetFileInformationByHandleEx (Address: 0x58fa305c)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x58fa3068)
  • DuplicateHandle (Address: 0x58fa3064)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x58fa3070)
  • LocalFree (Address: 0x58fa3074)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x58fa307c)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x58fa3088)
  • GetOverlappedResult (Address: 0x58fa3084)
api-ms-win-core-job-l2-1-0.dll
  • OpenJobObjectW (Address: 0x58fa3090)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x58fa3098)
  • LoadStringW (Address: 0x58fa309c)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x58fa30a4)
api-ms-win-core-memory-l1-1-0.dll
  • OpenFileMappingW (Address: 0x58fa30ac)
api-ms-win-core-processthreads-l1-1-0.dll
  • CreateThread (Address: 0x58fa30d0)
  • ExitThread (Address: 0x58fa30c0)
  • GetCurrentProcess (Address: 0x58fa30d4)
  • GetCurrentProcessId (Address: 0x58fa30bc)
  • GetCurrentThread (Address: 0x58fa30e0)
  • GetCurrentThreadId (Address: 0x58fa30b4)
  • GetExitCodeThread (Address: 0x58fa30cc)
  • OpenProcessToken (Address: 0x58fa30b8)
  • OpenThreadToken (Address: 0x58fa30c4)
  • ResumeThread (Address: 0x58fa30dc)
  • SetThreadToken (Address: 0x58fa30d8)
  • TerminateProcess (Address: 0x58fa30e4)
  • TerminateThread (Address: 0x58fa30c8)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x58fa30ec)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x58fa30f4)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x58fa3100)
  • RegCreateKeyExW (Address: 0x58fa30fc)
  • RegEnumKeyExW (Address: 0x58fa3114)
  • RegGetKeySecurity (Address: 0x58fa3110)
  • RegOpenKeyExW (Address: 0x58fa3118)
  • RegQueryInfoKeyW (Address: 0x58fa3108)
  • RegSetKeySecurity (Address: 0x58fa310c)
  • RegSetValueExW (Address: 0x58fa3104)
api-ms-win-core-synch-l1-1-0.dll
  • CreateEventW (Address: 0x58fa3124)
  • OpenEventW (Address: 0x58fa3130)
  • OpenMutexW (Address: 0x58fa3134)
  • OpenSemaphoreW (Address: 0x58fa312c)
  • OpenWaitableTimerW (Address: 0x58fa3128)
  • SetEvent (Address: 0x58fa3138)
  • WaitForSingleObject (Address: 0x58fa3120)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetComputerNameExW (Address: 0x58fa3144)
  • GetSystemTimeAsFileTime (Address: 0x58fa3140)
  • GetTickCount (Address: 0x58fa3148)
api-ms-win-core-url-l1-1-0.dll
  • UrlUnescapeW (Address: 0x58fa3150)
api-ms-win-crt-private-l1-1-0.dll
  • _except_handler4_common (Address: 0x58fa31b8)
  • _o___std_type_info_destroy_list (Address: 0x58fa31c8)
  • _o___stdio_common_vswprintf_s (Address: 0x58fa317c)
  • _o__callnewh (Address: 0x58fa3158)
  • _o__cexit (Address: 0x58fa315c)
  • _o__configure_narrow_argv (Address: 0x58fa3160)
  • _o__crt_atexit (Address: 0x58fa3164)
  • _o__execute_onexit_table (Address: 0x58fa3168)
  • _o__initialize_narrow_environment (Address: 0x58fa316c)
  • _o__initialize_onexit_table (Address: 0x58fa3170)
  • _o__register_onexit_function (Address: 0x58fa3174)
  • _o__seh_filter_dll (Address: 0x58fa3178)
  • _o__wcsicmp (Address: 0x58fa3184)
  • _o__wcsnicmp (Address: 0x58fa3188)
  • _o__wtol (Address: 0x58fa318c)
  • _o_free (Address: 0x58fa3190)
  • _o_malloc (Address: 0x58fa3194)
  • _o_qsort (Address: 0x58fa3198)
  • _o_tolower (Address: 0x58fa319c)
  • _o_towlower (Address: 0x58fa31a0)
  • _o_wcscat_s (Address: 0x58fa31a4)
  • _o_wcscpy_s (Address: 0x58fa31a8)
  • _o_wcsncpy_s (Address: 0x58fa31ac)
  • _o_wcstol (Address: 0x58fa31b0)
  • _o_wcstoul (Address: 0x58fa31b4)
  • memcmp (Address: 0x58fa31cc)
  • memcpy (Address: 0x58fa3180)
  • wcschr (Address: 0x58fa31c4)
  • wcsrchr (Address: 0x58fa31bc)
  • wcsstr (Address: 0x58fa31c0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x58fa31d8)
  • _initterm_e (Address: 0x58fa31d4)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x58fa31e4)
  • wcsncmp (Address: 0x58fa31e0)
api-ms-win-security-activedirectoryclient-l1-1-0.dll
  • DsBindWithSpnExW (Address: 0x58fa31f4)
  • DsCrackNamesW (Address: 0x58fa31f0)
  • DsFreeNameResultW (Address: 0x58fa31ec)
  • DsUnBindW (Address: 0x58fa31f8)
api-ms-win-security-base-l1-1-0.dll
  • AddAccessAllowedAceEx (Address: 0x58fa3274)
  • AddAccessAllowedObjectAce (Address: 0x58fa3228)
  • AddAccessDeniedAceEx (Address: 0x58fa321c)
  • AddAccessDeniedObjectAce (Address: 0x58fa3258)
  • AddAuditAccessAceEx (Address: 0x58fa3214)
  • AddAuditAccessObjectAce (Address: 0x58fa3218)
  • ConvertToAutoInheritPrivateObjectSecurity (Address: 0x58fa3240)
  • CopySid (Address: 0x58fa3204)
  • CreatePrivateObjectSecurityEx (Address: 0x58fa3208)
  • CreatePrivateObjectSecurityWithMultipleInheritance (Address: 0x58fa327c)
  • DestroyPrivateObjectSecurity (Address: 0x58fa3224)
  • EqualDomainSid (Address: 0x58fa3264)
  • GetKernelObjectSecurity (Address: 0x58fa325c)
  • GetLengthSid (Address: 0x58fa320c)
  • GetPrivateObjectSecurity (Address: 0x58fa3250)
  • GetSecurityDescriptorDacl (Address: 0x58fa3244)
  • GetSecurityDescriptorGroup (Address: 0x58fa3268)
  • GetSecurityDescriptorLength (Address: 0x58fa3278)
  • GetSecurityDescriptorOwner (Address: 0x58fa324c)
  • GetSecurityDescriptorSacl (Address: 0x58fa3248)
  • GetTokenInformation (Address: 0x58fa3200)
  • InitializeAcl (Address: 0x58fa3270)
  • InitializeSecurityDescriptor (Address: 0x58fa323c)
  • MakeSelfRelativeSD (Address: 0x58fa3260)
  • MapGenericMask (Address: 0x58fa3220)
  • RevertToSelf (Address: 0x58fa326c)
  • SetKernelObjectSecurity (Address: 0x58fa3254)
  • SetSecurityDescriptorControl (Address: 0x58fa3210)
  • SetSecurityDescriptorDacl (Address: 0x58fa3230)
  • SetSecurityDescriptorGroup (Address: 0x58fa3234)
  • SetSecurityDescriptorOwner (Address: 0x58fa3238)
  • SetSecurityDescriptorSacl (Address: 0x58fa322c)
ntdll.dll
  • NtClose (Address: 0x58fa3314)
  • NtCreateFile (Address: 0x58fa32cc)
  • NtOpenDirectoryObject (Address: 0x58fa32b4)
  • NtOpenEvent (Address: 0x58fa32e8)
  • NtOpenFile (Address: 0x58fa3320)
  • NtOpenJobObject (Address: 0x58fa3304)
  • NtOpenMutant (Address: 0x58fa32ec)
  • NtOpenProcess (Address: 0x58fa32f0)
  • NtOpenSection (Address: 0x58fa32f4)
  • NtOpenSemaphore (Address: 0x58fa32f8)
  • NtOpenSymbolicLinkObject (Address: 0x58fa32bc)
  • NtOpenThread (Address: 0x58fa32fc)
  • NtOpenTimer (Address: 0x58fa3300)
  • NtQueryDirectoryFile (Address: 0x58fa328c)
  • NtQueryDirectoryObject (Address: 0x58fa32b8)
  • NtQueryInformationFile (Address: 0x58fa3328)
  • NtQueryObject (Address: 0x58fa3334)
  • NtQuerySecurityObject (Address: 0x58fa32c4)
  • NtQuerySymbolicLinkObject (Address: 0x58fa32c0)
  • NtQueryVolumeInformationFile (Address: 0x58fa3288)
  • NtSetSecurityObject (Address: 0x58fa32d4)
  • RtlAcquireResourceExclusive (Address: 0x58fa3308)
  • RtlAcquireResourceShared (Address: 0x58fa32dc)
  • RtlConvertSharedToExclusive (Address: 0x58fa32e0)
  • RtlConvertSidToUnicodeString (Address: 0x58fa32a0)
  • RtlCopySid (Address: 0x58fa329c)
  • RtlDeleteResource (Address: 0x58fa3330)
  • RtlDosPathNameToNtPathName_U (Address: 0x58fa32c8)
  • RtlDosPathNameToRelativeNtPathName_U (Address: 0x58fa331c)
  • RtlEqualSid (Address: 0x58fa32b0)
  • RtlFreeHeap (Address: 0x58fa3290)
  • RtlGetDaclSecurityDescriptor (Address: 0x58fa32a4)
  • RtlGetFullPathName_U (Address: 0x58fa32d0)
  • RtlGetSaclSecurityDescriptor (Address: 0x58fa32a8)
  • RtlInitializeResource (Address: 0x58fa332c)
  • RtlInitUnicodeString (Address: 0x58fa3284)
  • RtlLengthSecurityDescriptor (Address: 0x58fa32ac)
  • RtlLengthSid (Address: 0x58fa3298)
  • RtlNtStatusToDosError (Address: 0x58fa3324)
  • RtlReleaseRelativeName (Address: 0x58fa3318)
  • RtlReleaseResource (Address: 0x58fa32e4)
  • RtlSubAuthorityCountSid (Address: 0x58fa3310)
  • RtlSubAuthoritySid (Address: 0x58fa330c)
  • RtlValidAcl (Address: 0x58fa32d8)
  • RtlValidSid (Address: 0x58fa3294)