dpapi.dll

Description: Data Protection API

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: 555b16ffd205f9b78a473220f1702fdb

File Size: 16.0 KB

Uploaded At: Dec. 1, 2025, 7:26 a.m.

Views: 15

Exported Functions

  • CryptProtectDataNoUI (Ordinal: 1, Address: 0x1010)
  • CryptProtectMemory (Ordinal: 2, Address: 0x1700)
  • CryptResetMachineCredentials (Ordinal: 3, Address: 0x2370)
  • CryptUnprotectDataNoUI (Ordinal: 4, Address: 0x1360)
  • CryptUnprotectMemory (Ordinal: 5, Address: 0x16d0)
  • CryptUpdateProtectedState (Ordinal: 6, Address: 0x2120)
  • iCryptIdentifyProtection (Ordinal: 7, Address: 0x1730)

Imported DLLs & Functions

api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1800036d0)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1800036e0)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180003700)
  • SetLastError (Address: 0x180003708)
  • SetUnhandledExceptionFilter (Address: 0x1800036f0)
  • UnhandledExceptionFilter (Address: 0x1800036f8)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180003720)
  • LocalFree (Address: 0x180003718)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180003730)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180003758)
  • GetCurrentProcessId (Address: 0x180003748)
  • GetCurrentThreadId (Address: 0x180003740)
  • TerminateProcess (Address: 0x180003750)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180003768)
api-ms-win-core-registry-l1-1-0.dll
  • RegFlushKey (Address: 0x180003778)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x180003788)
  • GetTickCount (Address: 0x180003790)
api-ms-win-security-base-l1-1-0.dll
  • IsValidSid (Address: 0x1800037a0)
ntdll.dll
  • __C_specific_handler (Address: 0x1800037d8)
  • memcpy (Address: 0x1800037b0)
  • memset (Address: 0x1800037e0)
  • RtlCaptureContext (Address: 0x1800037c0)
  • RtlLookupFunctionEntry (Address: 0x1800037b8)
  • RtlNtStatusToDosError (Address: 0x1800037c8)
  • RtlVirtualUnwind (Address: 0x1800037d0)