dpapi.dll
Description: Data Protection API
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 64-bit
Operating System: Windows NT
SHA256: 555b16ffd205f9b78a473220f1702fdb
File Size: 16.0 KB
Uploaded At: Dec. 1, 2025, 7:26 a.m.
Views: 15
Exported Functions
- CryptProtectDataNoUI (Ordinal: 1, Address: 0x1010)
- CryptProtectMemory (Ordinal: 2, Address: 0x1700)
- CryptResetMachineCredentials (Ordinal: 3, Address: 0x2370)
- CryptUnprotectDataNoUI (Ordinal: 4, Address: 0x1360)
- CryptUnprotectMemory (Ordinal: 5, Address: 0x16d0)
- CryptUpdateProtectedState (Ordinal: 6, Address: 0x2120)
- iCryptIdentifyProtection (Ordinal: 7, Address: 0x1730)
Imported DLLs & Functions
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x1800036d0)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x1800036e0)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180003700)
- SetLastError (Address: 0x180003708)
- SetUnhandledExceptionFilter (Address: 0x1800036f0)
- UnhandledExceptionFilter (Address: 0x1800036f8)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180003720)
- LocalFree (Address: 0x180003718)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x180003730)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x180003758)
- GetCurrentProcessId (Address: 0x180003748)
- GetCurrentThreadId (Address: 0x180003740)
- TerminateProcess (Address: 0x180003750)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180003768)
api-ms-win-core-registry-l1-1-0.dll
- RegFlushKey (Address: 0x180003778)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x180003788)
- GetTickCount (Address: 0x180003790)
api-ms-win-security-base-l1-1-0.dll
- IsValidSid (Address: 0x1800037a0)
ntdll.dll
- __C_specific_handler (Address: 0x1800037d8)
- memcpy (Address: 0x1800037b0)
- memset (Address: 0x1800037e0)
- RtlCaptureContext (Address: 0x1800037c0)
- RtlLookupFunctionEntry (Address: 0x1800037b8)
- RtlNtStatusToDosError (Address: 0x1800037c8)
- RtlVirtualUnwind (Address: 0x1800037d0)