CredProv2faHelper.dll

Description: Credential Provider 2FA Helper

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.4355

Architecture: 64-bit

Operating System: Windows NT

SHA256: 9b79b407f1070fb165e0a4e81eda8653

File Size: 104.5 KB

Uploaded At: Dec. 1, 2025, 7:24 a.m.

Views: 9

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x5f30)
  • DllGetClassObject (Ordinal: 2, Address: 0x5ca0)

Imported DLLs & Functions

api-ms-win-core-apiquery-l1-1-0.dll
  • ApiSetQueryApiSetPresence (Address: 0x180013480)
api-ms-win-core-com-l1-1-0.dll
  • CLSIDFromString (Address: 0x180013498)
  • CoTaskMemAlloc (Address: 0x1800134a0)
  • CoTaskMemFree (Address: 0x180013490)
  • CoTaskMemRealloc (Address: 0x1800134b0)
  • StringFromCLSID (Address: 0x1800134a8)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1800134c0)
  • IsDebuggerPresent (Address: 0x1800134c8)
  • OutputDebugStringW (Address: 0x1800134d0)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1800134e0)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1800134f0)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180013508)
  • SetLastError (Address: 0x180013500)
  • SetUnhandledExceptionFilter (Address: 0x180013510)
  • UnhandledExceptionFilter (Address: 0x180013518)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180013528)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180013538)
  • HeapAlloc (Address: 0x180013540)
  • HeapFree (Address: 0x180013548)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180013558)
  • LocalFree (Address: 0x180013560)
api-ms-win-core-interlocked-l1-1-0.dll
  • InitializeSListHead (Address: 0x180013570)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180013580)
  • GetModuleFileNameA (Address: 0x180013588)
  • GetModuleHandleExW (Address: 0x180013598)
  • GetModuleHandleW (Address: 0x180013590)
  • GetProcAddress (Address: 0x1800135a8)
  • LoadStringW (Address: 0x1800135a0)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1800135b8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcessId (Address: 0x1800135d0)
  • GetCurrentThreadId (Address: 0x1800135c8)
api-ms-win-core-processthreads-l1-1-1.dll
  • IsProcessorFeaturePresent (Address: 0x1800135e0)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1800135f0)
  • RegCreateKeyExW (Address: 0x180013608)
  • RegGetValueW (Address: 0x180013600)
  • RegOpenKeyExW (Address: 0x1800135f8)
  • RegSetValueExW (Address: 0x180013610)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180013620)
  • RtlLookupFunctionEntry (Address: 0x180013630)
  • RtlVirtualUnwind (Address: 0x180013628)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x180013640)
  • AcquireSRWLockShared (Address: 0x180013650)
  • CreateMutexExW (Address: 0x180013658)
  • CreateSemaphoreExW (Address: 0x180013670)
  • OpenSemaphoreW (Address: 0x180013678)
  • ReleaseMutex (Address: 0x180013690)
  • ReleaseSemaphore (Address: 0x180013648)
  • ReleaseSRWLockExclusive (Address: 0x180013688)
  • ReleaseSRWLockShared (Address: 0x180013668)
  • WaitForSingleObject (Address: 0x180013660)
  • WaitForSingleObjectEx (Address: 0x180013680)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1800136b0)
  • InitOnceComplete (Address: 0x1800136a8)
  • InitOnceExecuteOnce (Address: 0x1800136a0)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1800136c8)
  • EncodePointer (Address: 0x1800136c0)
api-ms-win-core-winrt-error-l1-1-0.dll
  • RoOriginateError (Address: 0x1800136d8)
api-ms-win-crt-math-l1-1-0.dll
  • ceilf (Address: 0x1800136e8)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x1800137a0)
  • __CxxFrameHandler3 (Address: 0x1800137a8)
  • __CxxFrameHandler4 (Address: 0x1800137f0)
  • __std_terminate (Address: 0x1800137e8)
  • _CxxThrowException (Address: 0x1800137b0)
  • _o___std_exception_copy (Address: 0x1800137d8)
  • _o___std_exception_destroy (Address: 0x1800137d0)
  • _o___std_type_info_destroy_list (Address: 0x1800137c8)
  • _o___stdio_common_vsnprintf_s (Address: 0x1800137c0)
  • _o___stdio_common_vsprintf_s (Address: 0x1800137b8)
  • _o___stdio_common_vswprintf (Address: 0x180013758)
  • _o__callnewh (Address: 0x1800136f8)
  • _o__cexit (Address: 0x180013700)
  • _o__configure_narrow_argv (Address: 0x180013708)
  • _o__crt_atexit (Address: 0x180013710)
  • _o__errno (Address: 0x180013718)
  • _o__execute_onexit_table (Address: 0x180013720)
  • _o__get_errno (Address: 0x180013728)
  • _o__initialize_narrow_environment (Address: 0x180013730)
  • _o__initialize_onexit_table (Address: 0x180013738)
  • _o__invalid_parameter_noinfo (Address: 0x180013740)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x180013748)
  • _o__purecall (Address: 0x180013750)
  • _o__register_onexit_function (Address: 0x180013760)
  • _o__seh_filter_dll (Address: 0x180013768)
  • _o__set_errno (Address: 0x180013770)
  • _o_free (Address: 0x180013780)
  • _o_malloc (Address: 0x180013788)
  • _o_strncpy_s (Address: 0x180013790)
  • _o_strtol (Address: 0x180013798)
  • memcpy (Address: 0x1800137f8)
  • memmove (Address: 0x180013778)
  • strchr (Address: 0x1800137e0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x180013810)
  • _initterm_e (Address: 0x180013808)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x180013820)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • TraceMessage (Address: 0x180013830)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x180013850)
  • EventRegister (Address: 0x180013858)
  • EventSetInformation (Address: 0x180013860)
  • EventUnregister (Address: 0x180013840)
  • EventWriteTransfer (Address: 0x180013848)
api-ms-win-security-base-l1-1-0.dll
  • GetTokenInformation (Address: 0x180013870)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x180013880)
api-ms-win-stateseparation-helpers-l1-1-0.dll
  • GetPersistedRegistryLocationW (Address: 0x180013890)
msvcp_win.dll
  • _Query_perf_counter (Address: 0x180013950)
  • _Query_perf_frequency (Address: 0x180013958)
  • ?_Ipfx@?$basic_istream@GU?$char_traits@G@std@@@std@@QEAA_N_N@Z (Address: 0x180013980)
  • ?_Lock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800138c0)
  • ?_Osfx@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAXXZ (Address: 0x1800138f0)
  • ?_Pninc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAPEAGXZ (Address: 0x180013910)
  • ?_Unlock@?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAAXXZ (Address: 0x1800138d8)
  • ?_Xbad_alloc@std@@YAXXZ (Address: 0x1800138a8)
  • ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x1800138d0)
  • ?_Xout_of_range@std@@YAXPEBD@Z (Address: 0x180013960)
  • ??0?$basic_ios@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x180013948)
  • ??0?$basic_iostream@GU?$char_traits@G@std@@@std@@QEAA@PEAV?$basic_streambuf@GU?$char_traits@G@std@@@1@@Z (Address: 0x180013940)
  • ??0?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAA@XZ (Address: 0x180013938)
  • ??1?$basic_ios@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800138b8)
  • ??1?$basic_iostream@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x180013930)
  • ??1?$basic_streambuf@GU?$char_traits@G@std@@@std@@UEAA@XZ (Address: 0x1800138b0)
  • ?flush@?$basic_ostream@GU?$char_traits@G@std@@@std@@QEAAAEAV12@XZ (Address: 0x1800138c8)
  • ?gbump@?$basic_streambuf@GU?$char_traits@G@std@@@std@@IEAAXH@Z (Address: 0x180013900)
  • ?imbue@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x1800138a0)
  • ?sbumpc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGXZ (Address: 0x180013988)
  • ?setbuf@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAPEAV12@PEAG_J@Z (Address: 0x180013928)
  • ?setstate@?$basic_ios@GU?$char_traits@G@std@@@std@@QEAAXH_N@Z (Address: 0x180013998)
  • ?sgetc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGXZ (Address: 0x180013990)
  • ?showmanyc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JXZ (Address: 0x180013920)
  • ?snextc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGXZ (Address: 0x180013978)
  • ?sputc@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAAGG@Z (Address: 0x180013918)
  • ?sputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@QEAA_JPEBG_J@Z (Address: 0x180013908)
  • ?sync@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAHXZ (Address: 0x1800138e8)
  • ?uflow@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAAGXZ (Address: 0x180013968)
  • ?uncaught_exception@std@@YA_NXZ (Address: 0x1800138e0)
  • ?xsgetn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEAG_J@Z (Address: 0x180013970)
  • ?xsputn@?$basic_streambuf@GU?$char_traits@G@std@@@std@@MEAA_JPEBG_J@Z (Address: 0x1800138f8)
ntdll.dll
  • NtAllocateLocallyUniqueId (Address: 0x1800139a8)
  • NtTerminateProcess (Address: 0x1800139b8)
  • RtlInitString (Address: 0x1800139b0)
  • RtlIsMultiSessionSku (Address: 0x1800139c8)
  • RtlUnhandledExceptionFilter (Address: 0x1800139c0)
RPCRT4.dll
  • UuidCreate (Address: 0x180013448)
SspiCli.dll
  • LsaConnectUntrusted (Address: 0x180013468)
  • LsaDeregisterLogonProcess (Address: 0x180013470)
  • LsaFreeReturnBuffer (Address: 0x180013458)
  • LsaLogonUser (Address: 0x180013460)