Generated by JEB on 2019/08/01

PE: C:\Windows\System32\dssenh.dll Base=0x168100000 SHA-256=80E58D478BD48E7E8558CABB0FA337405128612FD983EAB41C0925AABA995A8E
PDB: dssenh.pdb GUID={A40021A3-3832-0867-3AD9AF6573D349C0} Age=1

718 located named symbols:
0x168119700: "Failed to delete key container. " ??_C@_1FO@KILNKPNK@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAk?$AAe?$AAy?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?4?$AA?5@
0x16810D240: CPVerifySignature
0x168118B30: "__cdecl _sz_SspiCli_dll" __sz_SspiCli_dll
0x168119680: "Failed to delete key container d" ??_C@_1HC@DIEJOLLG@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAk?$AAe?$AAy?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAd@
0x168118498: api-ms-win-core-file-l1-1-0_NULL_THUNK_DATA
0x168118748: "__cdecl _imp_GetSecurityDescriptorOwner" __imp_GetSecurityDescriptorOwner
0x168118690: "__cdecl _imp_EventRegister" __imp_EventRegister
0x168106168: GetUserDirectory
0x168105EAC: GetTextualSidW
0x168118728: "__cdecl _imp_AllocateAndInitializeSid" __imp_AllocateAndInitializeSid
0x1681188C0: "__cdecl _imp_RtlReleaseRelativeName" __imp_RtlReleaseRelativeName
0x168117E70: "__cdecl _delayLoadHelper2" __delayLoadHelper2
0x168118C50: "SHA384" ??_C@_1O@KOBLHLEG@?$AAS?$AAH?$AAA?$AA3?$AA8?$AA4?$AA?$AA@
0x168119300: "Failed to open file in storage a" ??_C@_1II@NECDDFBO@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAo?$AAp?$AAe?$AAn?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa@
0x16811CB4C: "__cdecl _IMPORT_DESCRIPTOR_ntdll" __IMPORT_DESCRIPTOR_ntdll
0x168118788: "__cdecl _imp_BCryptVerifySignature" __imp_BCryptVerifySignature
0x168102130: allocContext
0x168118C80: "MD2" ??_C@_17OGKOIPPK@?$AAM?$AAD?$AA2?$AA?$AA@
0x168118FB8: ETW_LOG_DSSENH_CONTMAN_OPERATION_FAILED
0x168118550: "__cdecl _imp_VirtualProtect" __imp_VirtualProtect
0x168118D00: "%08lx%08lx%08lx%08lx" ??_C@_1CK@FLNECPEL@?$AA?$CF?$AA0?$AA8?$AAl?$AAx?$AA?$CF?$AA0?$AA8?$AAl?$AAx?$AA?$CF?$AA0?$AA8?$AAl?$AAx?$AA?$CF?$AA0?$AA8?$AAl?$AAx?$AA?$AA@
0x168119CF0: "Microsoft Enhanced DSS and Diffi" ??_C@_0EB@LCOMGMIB@Microsoft?5Enhanced?5DSS?5and?5Diffi@
0x16811E058: "__cdecl _security_cookie_complement" __security_cookie_complement
0x168119530: "Failed to delete file in storage" ??_C@_1KE@PPINCFL@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe@
0x1681188E8: "__cdecl _imp_wcsncpy_s" __imp_wcsncpy_s
0x168116DCC: DesParityOnKey
0x168116154: TLSDeriveExportableRCKey
0x168120028: "__cdecl _imp_SystemFunction036" __imp_SystemFunction036
0x168118B00: "__cdecl _sz_CRYPTBASE_dll" __sz_CRYPTBASE_dll
0x168112844: FinalizeAndExportBCryptDssOrDhKey
0x1681097A4: EtwLogContmanOpenFileInStorageArea
0x1681187A8: "__cdecl _imp_BCryptSignHash" __imp_BCryptSignHash
0x16810ABF0: CPDecrypt
0x168119800: "Failed to delete key container." ??_C@_1EA@EIIEIOCD@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAk?$AAe?$AAy?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?4?$AA?$AA@
0x1681193E0: "Deleted file in storage area suc" ??_C@_1FG@MONDMHDH@?$AAD?$AAe?$AAl?$AAe?$AAt?$AAe?$AAd?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa?$AAr?$AAe?$AAa?$AA?5?$AAs?$AAu?$AAc@
0x168102CB0: "__cdecl guard_dispatch_icall_nop" _guard_dispatch_icall_nop
0x168118FC8: ETW_LOG_DSSENH_CONTMAN_CREATE_FILE_W
0x16810B560: CPExportKey
0x16811C678: USERENV_NULL_THUNK_DATA_DLN
0x168118478: "__cdecl _imp_CreateFileW" __imp_CreateFileW
0x168117920: NtStatusToSpecificDosError
0x168118540: "__cdecl _imp_CompareStringA" __imp_CompareStringA
0x168118B50: "__cdecl _sz_api_ms_win_security_provider_l1_1_0_dll" __sz_api_ms_win_security_provider_l1_1_0_dll
0x1681139FC: exportKey
0x16810E1D8: DecryptPrivateKeyInMemory
0x1681086A8: ReadContainerNameFromFile
0x168118D78: "Export Flag" ??_C@_1BI@NMFPHONN@?$AAE?$AAx?$AAp?$AAo?$AAr?$AAt?$AA?5?$AAF?$AAl?$AAa?$AAg?$AA?$AA@
0x168118708: "__cdecl _imp_GetSidIdentifierAuthority" __imp_GetSidIdentifierAuthority
0x168118490: "__cdecl _imp_RemoveDirectoryW" __imp_RemoveDirectoryW
0x16810B460: CPDuplicateKey
0x168118D30: "Software\Microsoft\Cryptography" ??_C@_0CA@DMNKBPBF@Software?2Microsoft?2Cryptography?$AA@
0x168108CC8: UnloadStrings
0x16811E818: g_ulAdditionalProbeSize
0x16810AB6C: freeContext
0x168118800: "__cdecl _imp_BCryptDestroyKey" __imp_BCryptDestroyKey
0x168118630: "__cdecl _imp_AcquireSRWLockShared" __imp_AcquireSRWLockShared
0x16811AFC0: "__cdecl _pfnDliFailureHook2" __pfnDliFailureHook2
0x16810A6EC: McTemplateU0zzstqz
0x16811E7E0: "__cdecl _hmod__USERENV_dll" __hmod__USERENV_dll
0x168118A78: "PrivKeyCacheMaxItems" ??_C@_0BF@EBIAOOOI@PrivKeyCacheMaxItems?$AA@
0x1681043F4: CreateSystemDirectory
0x16811CBEC: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-file-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-file-l1-2-0
0x16811CB74: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-file-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-file-l1-1-0
0x168118E70: "\Microsoft\Crypto\RSA\" ??_C@_1CO@EEIHOJLM@?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAC?$AAr?$AAy?$AAp?$AAt?$AAo?$AA?2?$AAR?$AAS?$AAA?$AA?2?$AA?$AA@
0x168118820: bcrypt_NULL_THUNK_DATA
0x168112540: ExpandHashToKeySize
0x168118C90: "3DES_112" ??_C@_1BC@OBELMIOB@?$AA3?$AAD?$AAE?$AAS?$AA_?$AA1?$AA1?$AA2?$AA?$AA@
0x168118500: api-ms-win-core-heap-l2-1-0_NULL_THUNK_DATA
0x168118A08: "Software\Microsoft\Cryptography\" ??_C@_0CI@FHKKDMLA@Software?2Microsoft?2Cryptography?2@
0x168118720: "__cdecl _imp_GetAce" __imp_GetAce
0x16811E880: g_pPrivKeyCache
0x16811C7F0: api-ms-win-security-sddl-l1-1-0_NULL_THUNK_DATA_DLB
0x168107148: MyCryptProtectData
0x1681113F0: InitialHMACCalc
0x16810E970: freeKeyDH
0x168109DD4: McTemplateU0zqsttqz
0x168118758: "__cdecl _imp_PrivilegeCheck" __imp_PrivilegeCheck
0x16811628C: TLSDeriveKey
0x16810F610: ConvertToCngDssBlob
0x168118920: "__cdecl _guard_dispatch_icall_fptr" __guard_dispatch_icall_fptr
0x16811CC8C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-file-l2-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-file-l2-1-0
0x1681178A4: LookupAlgidIndex
0x168115198: SCHSetKeyParam
0x168118628: "__cdecl _imp_InitializeCriticalSection" __imp_InitializeCriticalSection
0x168119F50: "DSAPRIVATEBLOB" ??_C@_1BO@DPNHNIIM@?$AAD?$AAS?$AAA?$AAP?$AAR?$AAI?$AAV?$AAA?$AAT?$AAE?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x16810F778: ExportDSSPrivBlob3
0x1681077B0: PrivKeyCacheIsKeyValid
0x16811CCC8: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-string-obsolete-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-string-obsolete-l1-1-0
0x168114334: initKey
0x168118750: "__cdecl _imp_GetSecurityDescriptorControl" __imp_GetSecurityDescriptorControl
0x16811AAF0: g_DssDhBasePolicy
0x1681174C8: LocalInflateBCryptKey
0x168118D50: "MachineGuid" ??_C@_0M@NKGGMCID@MachineGuid?$AA@
0x168111504: LocalFinishHash
0x168119880: "MyCreateFile failed due to shari" ??_C@_1FM@BHABAHJA@?$AAM?$AAy?$AAC?$AAr?$AAe?$AAa?$AAt?$AAe?$AAF?$AAi?$AAl?$AAe?$AA?5?$AAf?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAd?$AAu?$AAe?$AA?5?$AAt?$AAo?$AA?5?$AAs?$AAh?$AAa?$AAr?$AAi@
0x1681186F8: "__cdecl _imp_MakeSelfRelativeSD" __imp_MakeSelfRelativeSD
0x16810DF6C: CreateDhBCryptPublicKey
0x168115FDC: TLSDeriveExportableEncKey
0x168104150: CreateNestedDirectories
0x168103D74: AllocFindState
0x1681026F3: "__cdecl _imp_load_SystemFunction036" __imp_load_SystemFunction036
0x168118FA8: ETW_LOG_DSSENH_CONTMAN_DELETE_KEY_CONTAINER
0x16810B400: CPDestroyKey
0x1681187E0: "__cdecl _imp_BCryptCreateHash" __imp_BCryptCreateHash
0x1681114AC: LocalFeedHashData
0x168106998: I_PrivKeyCachePurgeOldestItem
0x168118470: "__cdecl _imp_FindClose" __imp_FindClose
0x168106C28: IsUniqueKeyFileName
0x168118C20: "AES" ??_C@_17PJMHNJHG@?$AAA?$AAE?$AAS?$AA?$AA@
0x168118DF8: "S-%lu-" ??_C@_1O@NEDHCEJJ@?$AAS?$AA?9?$AA?$CF?$AAl?$AAu?$AA?9?$AA?$AA@
0x168112018: DuplicateKey
0x16811AF38: "ChainingModeCBC" ??_C@_1CA@NDPDKCGP@?$AAC?$AAh?$AAa?$AAi?$AAn?$AAi?$AAn?$AAg?$AAM?$AAo?$AAd?$AAe?$AAC?$AAB?$AAC?$AA?$AA@
0x1681184F0: api-ms-win-core-heap-l1-1-0_NULL_THUNK_DATA
0x168120088: api-ms-win-security-sddl-l1-1-0_NULL_THUNK_DATA_DLA
0x168119930: "MyCreateFile failed to open file" ??_C@_1IC@BKFODJPC@?$AAM?$AAy?$AAC?$AAr?$AAe?$AAa?$AAt?$AAe?$AAF?$AAi?$AAl?$AAe?$AA?5?$AAf?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAo?$AAp?$AAe?$AAn?$AA?5?$AAf?$AAi?$AAl?$AAe@
0x16810DB40: CPGenRandom
0x168117740: LocalSetBCryptKeyParams
0x168106844: I_PrivKeyCacheLookupItem
0x16811E950: g_wsProcessFileName
0x168118448: "__cdecl _imp_DeleteFileW" __imp_DeleteFileW
0x1681189D4: "__cdecl _guard_iat_table" __guard_iat_table
0x168118EF8: "\\?\" ??_C@_19MJCDBCKE@?$AA?2?$AA?2?$AA?$DP?$AA?2?$AA?$AA@
0x1681066CC: I_PrivKeyCacheGetCurrentLuid
0x168118A30: "PrivateKeyLifetimeSeconds" ??_C@_0BK@PECIEKGK@PrivateKeyLifetimeSeconds?$AA@
0x168102C73: memcpy
0x16811E890: g_Strings
0x168106698: I_PrivKeyCacheDeleteItem
0x168118798: "__cdecl _imp_BCryptDecrypt" __imp_BCryptDecrypt
0x16810257C: "__cdecl _security_init_cookie_ex" __security_init_cookie_ex
0x168119F70: "DhQParameter" ??_C@_1BK@GEFOMDOG@?$AAD?$AAh?$AAQ?$AAP?$AAa?$AAr?$AAa?$AAm?$AAe?$AAt?$AAe?$AAr?$AA?$AA@
0x1681187D8: "__cdecl _imp_BCryptDeriveKey" __imp_BCryptDeriveKey
0x168118688: "__cdecl _imp_EventWriteTransfer" __imp_EventWriteTransfer
0x1681173F4: LocalCreateBCryptKey
0x168118488: "__cdecl _imp_GetTempFileNameW" __imp_GetTempFileNameW
0x168118878: "__cdecl _imp_memset" __imp_memset
0x1681184A8: api-ms-win-core-file-l1-2-0_NULL_THUNK_DATA
0x1681184B8: api-ms-win-core-file-l2-1-0_NULL_THUNK_DATA
0x168118770: "__cdecl _imp_BCryptDuplicateHash" __imp_BCryptDuplicateHash
0x1681195E0: "Failed to delete file in storage" ??_C@_1EO@EBCGKHAI@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe@
0x16811CC00: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-sysinfo-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-sysinfo-l1-1-0
0x168118658: "__cdecl _imp_Sleep" __imp_Sleep
0x168117D18: "__cdecl resetstkoflw_static" _resetstkoflw_static
0x16810B810: CPGenKey
0x168102967: "__cdecl _imp_load_GetBasicProfileFolderPath" __imp_load_GetBasicProfileFolderPath
0x168117954: PrepareBCryptBlockCipher
0x16810264A: RtlUnhandledExceptionFilter
0x168109584: EtwLogContmanDeleteKeyContainer
0x16811CCDC: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-localization-obsolete-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-localization-obsolete-l1-2-0
0x168118908: "__cdecl _imp_wcscmp" __imp_wcscmp
0x168120010: "__cdecl _imp_CryptUnprotectData" __imp_CryptUnprotectData
0x16810260E: "__cdecl _C_specific_handler" __C_specific_handler
0x1681185F8: "__cdecl _imp_lstrlenW" __imp_lstrlenW
0x168118610: "__cdecl _imp_ReleaseSRWLockExclusive" __imp_ReleaseSRWLockExclusive
0x168105D48: GetSecurityOnContainer
0x168102626: RtlCaptureContext
0x168108DD0: WriteContainerInfo
0x168101010: CPCreateHash
0x168120040: "__cdecl _imp_GetUserNameExA" __imp_GetUserNameExA
0x1681186E8: "__cdecl _imp_AddAccessAllowedAce" __imp_AddAccessAllowedAce
0x168108868: SetSecurityOnContainer
0x168109524: EtwLogContmanDeleteFileW
0x168118F10: "*" ??_C@_13BBDEGPLJ@?$AA?$CK?$AA?$AA@
0x1681184E8: "__cdecl _imp_HeapFree" __imp_HeapFree
0x168103FBC: CleanupFindState
0x168102656: "__cdecl _imp_load_ConvertStringSecurityDescriptorToSecurityDescriptorW" __imp_load_ConvertStringSecurityDescriptorToSecurityDescriptorW
0x168118C78: "MD4" ??_C@_17MDMFNACG@?$AAM?$AAD?$AA4?$AA?$AA@
0x1681184C8: api-ms-win-core-handle-l1-1-0_NULL_THUNK_DATA
0x16811177C: getHashVal
0x1681185C0: "__cdecl _imp_RegCloseKey" __imp_RegCloseKey
0x1681188B8: "__cdecl _imp_NtQueryInformationToken" __imp_NtQueryInformationToken
0x1681199F0: "Successfully set security on con" ??_C@_1FA@GHCBFGNG@?$AAS?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl?$AAl?$AAy?$AA?5?$AAs?$AAe?$AAt?$AA?5?$AAs?$AAe?$AAc?$AAu?$AAr?$AAi?$AAt?$AAy?$AA?5?$AAo?$AAn?$AA?5?$AAc?$AAo?$AAn@
0x168102B6C: "__cdecl _GSHandlerCheckCommon" __GSHandlerCheckCommon
0x16811C690: api-ms-win-security-provider-l1-1-0_NULL_THUNK_DATA_DLN
0x1681164B0: ProtectPrivKey
0x168114A44: CalculatePRF
0x1681150D4: RCDeriveSChKey
0x168118870: "__cdecl _imp__strlwr" __imp__strlwr
0x168119DE8: "DHPRIVATEBLOB" ??_C@_1BM@PLIDECBB@?$AAD?$AAH?$AAP?$AAR?$AAI?$AAV?$AAA?$AAT?$AAE?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x1681183F0: g_AlgTables
0x1681153C0: SChGenMasterKey
0x168118AC0: ETW_LOG_DSSENH_CONTMAN_PROVIDER
0x168117CB0: SafeAllocaFreeToHeap
0x16811E7D8: "__cdecl _hmod__CRYPTBASE_dll" __hmod__CRYPTBASE_dll
0x168113814: allocKey
0x168118890: "__cdecl _imp_RtlAllocateHeap" __imp_RtlAllocateHeap
0x16811C638: CRYPT32_NULL_THUNK_DATA_DLN
0x1681185E8: api-ms-win-core-string-l1-1-0_NULL_THUNK_DATA
0x168101750: feedHashData
0x168118E60: "-%lu" ??_C@_19DEJHOMFE@?$AA?9?$AA?$CF?$AAl?$AAu?$AA?$AA@
0x16811CB60: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-security-base-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-security-base-l1-1-0
0x168119E30: "DSAParameters" ??_C@_1BM@IOFBPIPM@?$AAD?$AAS?$AAA?$AAP?$AAa?$AAr?$AAa?$AAm?$AAe?$AAt?$AAe?$AAr?$AAs?$AA?$AA@
0x1681117E0: initHash
0x1681168E8: UnprotectPrivKey
0x168107410: OpenFileInStorageArea
0x168113D54: feedPlainText
0x168118CE8: "ForceKeyProtection" ??_C@_0BD@BFDEEMJE@ForceKeyProtection?$AA@
0x16811AFB8: "__cdecl _DefaultResolveDelayLoadedAPIFlags" __DefaultResolveDelayLoadedAPIFlags
0x16810C090: CPImportKey
0x168104A8C: DeleteKeyContainer
0x168120090: "__cdecl _imp_GetBasicProfileFolderPath" __imp_GetBasicProfileFolderPath
0x168119CB4: "IV" ??_C@_15IIAMFFIG@?$AAI?$AAV?$AA?$AA@
0x1681028B8: "__cdecl _imp_load_SystemFunction040" __imp_load_SystemFunction040
0x168118E10: "0x%02hx%02hx%02hx%02hx%02hx%02hx" ??_C@_1EC@MPDKEHCN@?$AA0?$AAx?$AA?$CF?$AA0?$AA2?$AAh?$AAx?$AA?$CF?$AA0?$AA2?$AAh?$AAx?$AA?$CF?$AA0?$AA2?$AAh?$AAx?$AA?$CF?$AA0?$AA2?$AAh?$AAx?$AA?$CF?$AA0?$AA2?$AAh?$AAx?$AA?$CF?$AA0?$AA2?$AAh?$AAx@
0x168119E08: "CAPIDHPRIVATEBLOB" ??_C@_1CE@IAPDJAJG@?$AAC?$AAA?$AAP?$AAI?$AAD?$AAH?$AAP?$AAR?$AAI?$AAV?$AAA?$AAT?$AAE?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x168117AC8: addEntryToCache
0x168118850: "__cdecl _imp_NtTerminateProcess" __imp_NtTerminateProcess
0x16811CCB4: "__cdecl _IMPORT_DESCRIPTOR_bcrypt" __IMPORT_DESCRIPTOR_bcrypt
0x16811E7D0: "__cdecl _hmod__api_ms_win_security_sddl_l1_1_0_dll" __hmod__api_ms_win_security_sddl_l1_1_0_dll
0x168107390: OpenCallerToken
0x168117694: LocalSetBCryptChainingMode
0x168111608: checkHash
0x168114B98: MakeNewKey
0x16811E7E8: "__cdecl _hmod__CRYPT32_dll" __hmod__CRYPT32_dll
0x1681185D8: "__cdecl _imp_WideCharToMultiByte" __imp_WideCharToMultiByte
0x16810E0B4: DHPrivBlobToKey
0x168106AB4: IsThreadLocalSystem
0x168117CD0: VerifyStackAvailable
0x168118CC8: Microsoft_Windows_Crypto_DSSEnhKeywords
0x1681100B8: dssGenerateSignature
0x16810AFE0: CPHashSessionKey
0x168118510: "__cdecl _imp_LoadLibraryExA" __imp_LoadLibraryExA
0x1681072F4: MyGetTokenInformation
0x168118648: "__cdecl _imp_EnterCriticalSection" __imp_EnterCriticalSection
0x168118608: "__cdecl _imp_ReleaseSRWLockShared" __imp_ReleaseSRWLockShared
0x16811AEB0: "IV block" ??_C@_08IBBAIJIN@IV?5block?$AA@
0x168112C94: GetSymParams
0x1681185D0: api-ms-win-core-registry-l1-1-0_NULL_THUNK_DATA
0x1681186D0: "__cdecl _imp_GetSecurityDescriptorLength" __imp_GetSecurityDescriptorLength
0x1681059D4: GetNextContainer
0x1681022F0: initBCryptAlgorithmProviderCache
0x168118440: api-ms-win-core-errorhandling-l1-1-0_NULL_THUNK_DATA
0x168118DB0: "D:P(A;OICI;FA;;;SY)(A;OICI;FA;;;" ??_C@_1EI@HLMMPNC@?$AAD?$AA?3?$AAP?$AA?$CI?$AAA?$AA?$DL?$AAO?$AAI?$AAC?$AAI?$AA?$DL?$AAF?$AAA?$AA?$DL?$AA?$DL?$AA?$DL?$AAS?$AAY?$AA?$CJ?$AA?$CI?$AAA?$AA?$DL?$AAO?$AAI?$AAC?$AAI?$AA?$DL?$AAF?$AAA?$AA?$DL?$AA?$DL?$AA?$DL@
0x16810CBD4: FIsValidKey
0x168111E78: CopyAndPopulateBCryptDssOrDhKey
0x16810E484: SetBCryptDhKeyParameters
0x1681096D4: EtwLogContmanMyCreateFile
0x168118C88: "DSA" ??_C@_17JOLIKJIA@?$AAD?$AAS?$AAA?$AA?$AA@
0x168118668: "__cdecl _imp_GetSystemInfo" __imp_GetSystemInfo
0x168118598: "__cdecl _imp_GetCurrentProcess" __imp_GetCurrentProcess
0x1681079C8: ProtectExportabilityFlag
0x1681185F0: "__cdecl _imp_lstrlenA" __imp_lstrlenA
0x168105CB4: GetNextEnumedOldMachKeys
0x16811C55C: "__cdecl _DELAY_IMPORT_DESCRIPTOR_USERENV_dll" __DELAY_IMPORT_DESCRIPTOR_USERENV_dll
0x16811AF00: "*DEFAULT*" ??_C@_09GADJOOOC@?$CKDEFAULT?$CK?$AA@
0x168101400: finishHash
0x168118810: "__cdecl _imp_BCryptHashData" __imp_BCryptHashData
0x168102A90: DllMain
0x16811240C: ExpandAndSetBCryptKeyParams
0x16810277E: "__cdecl _imp_load_SystemFunction041" __imp_load_SystemFunction041
0x16810A5D8: McTemplateU0zzqz
0x16811E870: g_pBCryptProvHandleCacheLock
0x168115B78: SSL3HashPreMaster
0x168120048: SspiCli_NULL_THUNK_DATA_DLA
0x16810406C: ConvertContainerSecurityDescriptor
0x16811AF78: "ChainingModeECB" ??_C@_1CA@GGHMBPCI@?$AAC?$AAh?$AAa?$AAi?$AAn?$AAi?$AAn?$AAg?$AAM?$AAo?$AAd?$AAe?$AAE?$AAC?$AAB?$AA?$AA@
0x168109AE4: McTemplateU0qzd
0x16811AF10: "EffectiveKeyLength" ??_C@_1CG@JKHJNPKD@?$AAE?$AAf?$AAf?$AAe?$AAc?$AAt?$AAi?$AAv?$AAe?$AAK?$AAe?$AAy?$AAL?$AAe?$AAn?$AAg?$AAt?$AAh?$AA?$AA@
0x168102BD0: "__cdecl _GSHandlerCheck_SEH" __GSHandlerCheck_SEH
0x16811CC28: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-string-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-string-l1-1-0
0x1681188C8: "__cdecl _imp_wcscat_s" __imp_wcscat_s
0x168118740: "__cdecl _imp_IsValidSid" __imp_IsValidSid
0x1681188B0: "__cdecl _imp___C_specific_handler" __imp___C_specific_handler
0x168119E50: "DSAPUBLICBLOB" ??_C@_1BM@HHFLMOJ@?$AAD?$AAS?$AAA?$AAP?$AAU?$AAB?$AAL?$AAI?$AAC?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x168119AC8: "Failed to delete file." ??_C@_1CO@PLEJFKFL@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?4?$AA?$AA@
0x168118830: "__cdecl _imp_RtlCaptureContext" __imp_RtlCaptureContext
0x168118F38: "crypt32.dll" ??_C@_0M@DNEEGAAA@crypt32?4dll?$AA@
0x168118538: api-ms-win-core-libraryloader-l1-2-0_NULL_THUNK_DATA
0x168105064: FindClosestFileInStorageArea
0x16811CCA0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-eventing-provider-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-eventing-provider-l1-1-0
0x16811C808: CRYPTBASE_NULL_THUNK_DATA_DLB
0x16810603C: GetUniqueContainerName
0x168118430: "__cdecl _imp_GetLastError" __imp_GetLastError
0x168119A90: "Successfully deleted file." ??_C@_1DG@PBIKJFKN@?$AAS?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl?$AAl?$AAy?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AAd?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?4?$AA?$AA@
0x168120078: "__cdecl _imp_ConvertSidToStringSidW" __imp_ConvertSidToStringSidW
0x1681186A0: api-ms-win-eventing-provider-l1-1-0_NULL_THUNK_DATA
0x1681055B4: GetHashOfContainer
0x168102B48: "__cdecl _GSHandlerCheck" __GSHandlerCheck
0x16810E360: GetEncryptedXSize
0x168114E38: PRF
0x168118888: "__cdecl _imp_EtwTraceMessage" __imp_EtwTraceMessage
0x168119E98: "V2CAPIDSAPRIVATEBLOB" ??_C@_1CK@DDGGFHHM@?$AAV?$AA2?$AAC?$AAA?$AAP?$AAI?$AAD?$AAS?$AAA?$AAP?$AAR?$AAI?$AAV?$AAA?$AAT?$AAE?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x1681188F8: "__cdecl _imp_memcmp" __imp_memcmp
0x168119CC0: "Microsoft Base DSS Cryptographic" ??_C@_0CK@BALBALMG@Microsoft?5Base?5DSS?5Cryptographic@
0x1681185A0: "__cdecl _imp_SetThreadStackGuarantee" __imp_SetThreadStackGuarantee
0x168118828: "__cdecl _imp_strchr" __imp_strchr
0x168113FE4: generateKey
0x1681187D0: "__cdecl _imp_BCryptCloseAlgorithmProvider" __imp_BCryptCloseAlgorithmProvider
0x168119DB0: "DHPUBLICBLOB" ??_C@_1BK@GCPILPMB@?$AAD?$AAH?$AAP?$AAU?$AAB?$AAL?$AAI?$AAC?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x1681186E0: "__cdecl _imp_EqualSid" __imp_EqualSid
0x168118C10: "SHA1" ??_C@_19DILNDFJH@?$AAS?$AAH?$AAA?$AA1?$AA?$AA@
0x168119028: "NULL" ??_C@_19CIJIHAKK@?$AAN?$AAU?$AAL?$AAL?$AA?$AA@
0x16811CD04: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-0
0x168118FF8: ETW_LOG_DSSENH_CONTMAN_GET_USER_STORAGE_AREA_FAILED
0x168118880: "__cdecl _imp_swprintf_s" __imp_swprintf_s
0x16810544C: GetFileNameType
0x168107884: PrivKeyCacheLookupItem
0x16811AFB8: "__cdecl _ResolveDelayLoadedAPIFlags" __ResolveDelayLoadedAPIFlags
0x1681187B8: "__cdecl _imp_BCryptSecretAgreement" __imp_BCryptSecretAgreement
0x168118F18: "ExpoOffload" ??_C@_0M@KMONLGFP@ExpoOffload?$AA@
0x16811C850: SspiCli_NULL_THUNK_DATA_DLB
0x1681028D6: "__cdecl _tailMerge_sspicli_dll" __tailMerge_sspicli_dll
0x168101C20: logonUser
0x168112B10: GenerateBCryptEmptyKeyPair
0x168118848: "__cdecl _imp_RtlFreeHeap" __imp_RtlFreeHeap
0x168118B90: "dwReturn" ??_C@_08KOCHCJLB@dwReturn?$AA@
0x168101F40: InitExpOffloadInfo
0x168118C40: "SHA512" ??_C@_1O@GKBAHMNF@?$AAS?$AAH?$AAA?$AA5?$AA1?$AA2?$AA?$AA@
0x16811CBC4: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-libraryloader-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-libraryloader-l1-2-0
0x168120038: CRYPTBASE_NULL_THUNK_DATA_DLA
0x168119DD0: "TRUNCATE" ??_C@_1BC@JJAOHLOL@?$AAT?$AAR?$AAU?$AAN?$AAC?$AAA?$AAT?$AAE?$AA?$AA@
0x168118CE0: "\" ??_C@_13FPGAJAPJ@?$AA?2?$AA?$AA@
0x1681184A0: "__cdecl _imp_GetTempPathW" __imp_GetTempPathW
0x1681184D0: "__cdecl _imp_HeapAlloc" __imp_HeapAlloc
0x168111F88: CopyPubKey
0x168118520: "__cdecl _imp_FreeLibrary" __imp_FreeLibrary
0x168105838: GetMachineKeysetDirDACL
0x16810FCE4: ImportDSSPrivBlob3
0x16811C6B8: profapi_NULL_THUNK_DATA_DLN
0x168118638: "__cdecl _imp_AcquireSRWLockExclusive" __imp_AcquireSRWLockExclusive
0x16811C5FC: "__cdecl _NULL_DELAY_IMPORT_DESCRIPTOR" __NULL_DELAY_IMPORT_DESCRIPTOR
0x16810A9F8: LocateAlgorithm
0x168118600: api-ms-win-core-string-obsolete-l1-1-0_NULL_THUNK_DATA
0x168118738: "__cdecl _imp_GetSidSubAuthority" __imp_GetSidSubAuthority
0x168119D68: "System\ControlSet001\Control\Min" ??_C@_0CE@ENJIIOIF@System?2ControlSet001?2Control?2Min@
0x168103EF4: CheckAndChangeAccessMasks
0x168119440: "Failed to delete file in storage" ??_C@_1IA@OAOAIEIH@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe@
0x168102973: "__cdecl _tailMerge_profapi_dll" __tailMerge_profapi_dll
0x168118438: "__cdecl _imp_SetLastError" __imp_SetLastError
0x168118CB8: "RC4" ??_C@_17HLFLMDBJ@?$AAR?$AAC?$AA4?$AA?$AA@
0x16811CCF0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-1" __IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-1
0x16811E800: "__cdecl _hmod__api_ms_win_security_provider_l1_1_0_dll" __hmod__api_ms_win_security_provider_l1_1_0_dll
0x16810678C: I_PrivKeyCacheIsKeyValid
0x168118518: "__cdecl _imp_GetModuleFileNameW" __imp_GetModuleFileNameW
0x16810963C: EtwLogContmanGetUserStorageAreaFailed
0x168115F88: SetPRFHashParam
0x168118A50: "PrivKeyCachePurgeIntervalSeconds" ??_C@_0CB@HKFEIEFA@PrivKeyCachePurgeIntervalSeconds@
0x1681148AC: OpenUserKeyGroup
0x16811CBD8: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-registry-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-registry-l1-1-0
0x1681184B0: "__cdecl _imp_MoveFileExW" __imp_MoveFileExW
0x168108AAC: StringCchPrintfW
0x168118700: "__cdecl _imp_InitializeSecurityDescriptor" __imp_InitializeSecurityDescriptor
0x168120020: "__cdecl _imp_SystemFunction041" __imp_SystemFunction041
0x168119C70: "Failed to delete container info." ??_C@_1EC@PGBLCHEH@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAi?$AAn?$AAf?$AAo?$AA?4@
0x168120030: "__cdecl _imp_SystemFunction040" __imp_SystemFunction040
0x168118838: "__cdecl _imp_NtCreateFile" __imp_NtCreateFile
0x1681187F8: "__cdecl _imp_BCryptSetProperty" __imp_BCryptSetProperty
0x168118918: "__cdecl _guard_check_icall_fptr" __guard_check_icall_fptr
0x168102632: RtlLookupFunctionEntry
0x168118780: "__cdecl _imp_BCryptGetProperty" __imp_BCryptGetProperty
0x168107720: PrivKeyCacheDeleteItem
0x168119034: "NULL" ??_C@_04HIBGFPH@NULL?$AA@
0x168118778: "__cdecl _imp_BCryptEncrypt" __imp_BCryptEncrypt
0x1681029FE: "__cdecl _tailMerge_api_ms_win_security_provider_l1_1_0_dll" __tailMerge_api_ms_win_security_provider_l1_1_0_dll
0x168114700: verifySignature
0x168118ED0: "\AppData\Roaming" ??_C@_1CC@LGPIBLKE@?$AA?2?$AAA?$AAp?$AAp?$AAD?$AAa?$AAt?$AAa?$AA?2?$AAR?$AAo?$AAa?$AAm?$AAi?$AAn?$AAg?$AA?$AA@
0x168120098: profapi_NULL_THUNK_DATA_DLA
0x16810AEE0: CPDuplicateHash
0x16811E868: Microsoft_Windows_Crypto_DSSEnhEnableBits
0x1681186A8: "__cdecl _imp_GetTokenInformation" __imp_GetTokenInformation
0x16811C830: CRYPT32_NULL_THUNK_DATA_DLB
0x16810261A: NtTerminateProcess
0x16811AF58: "ChainingMode" ??_C@_1BK@BCJKEJJO@?$AAC?$AAh?$AAa?$AAi?$AAn?$AAi?$AAn?$AAg?$AAM?$AAo?$AAd?$AAe?$AA?$AA@
0x16811AF98: "ChainingModeCFB" ??_C@_1CA@PANOIHBM@?$AAC?$AAh?$AAa?$AAi?$AAn?$AAi?$AAn?$AAg?$AAM?$AAo?$AAd?$AAe?$AAC?$AAF?$AAB?$AA?$AA@
0x16811E7F8: "__cdecl _hmod__profapi_dll" __hmod__profapi_dll
0x168118840: "__cdecl _imp_RtlNtStatusToDosError" __imp_RtlNtStatusToDosError
0x168118768: "__cdecl _imp_BCryptDestroyHash" __imp_BCryptDestroyHash
0x168119018: ETW_LOG_DSSENH_CONTMAN_WRITE_CONTAINER_INFO
0x168118680: api-ms-win-core-sysinfo-l1-1-0_NULL_THUNK_DATA
0x168118F98: ETW_LOG_DSSENH_CONTMAN_DELETE_FILE_IN_STORAGE_AREA
0x168119B00: "Successfully read container info" ??_C@_1EE@MHOBAMNO@?$AAS?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl?$AAl?$AAy?$AA?5?$AAr?$AAe?$AAa?$AAd?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAi?$AAn?$AAf?$AAo@
0x168118678: "__cdecl _imp_GetTickCount" __imp_GetTickCount
0x168111BA4: ConvertAgreedKey
0x168118420: "__cdecl _imp_ResolveDelayLoadedAPI" __imp_ResolveDelayLoadedAPI
0x168120068: "__cdecl _imp_SetNamedSecurityInfoW" __imp_SetNamedSecurityInfoW
0x168118F48: ETW_LOG_DSSENH_CONTMAN_MY_CREATE_FILE
0x1681199B8: "Failed to create file." ??_C@_1CO@INHPMAKO@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAc?$AAr?$AAe?$AAa?$AAt?$AAe?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?4?$AA?$AA@
0x168118760: api-ms-win-security-base-l1-1-0_NULL_THUNK_DATA
0x16810E630: exportDHKey
0x16810E9A0: getDHParams
0x16810F124: setDHParams
0x168117A48: WPP_SF_Ds
0x16810FBA0: GetYValueFromCngDssOrDhKey
0x168112E98: ImportOpaqueBlob
0x16811577C: SSL3DeriveWriteKey
0x168109A88: McGenEventWrite
0x16811E048: WPP_GLOBAL_Control
0x168111584: LocalInitHash
0x16811CBB0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-processthreads-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-processthreads-l1-1-0
0x168111624: freeHash
0x168118580: api-ms-win-core-memory-l1-1-0_NULL_THUNK_DATA
0x16810DC3C: desDeriveKey
0x1681061D0: GetUserStorageArea
0x168118C38: "DES" ??_C@_17LBCHNHBC@?$AAD?$AAE?$AAS?$AA?$AA@
0x16810DC30: DllUnregisterServer
0x16810AA18: GetCallerUserName
0x168118FE8: ETW_LOG_DSSENH_CONTMAN_READ_CONTAINER_INFO
0x168119160: "Failed to get user storage area." ??_C@_1EC@DNPLAGCG@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAg?$AAe?$AAt?$AA?5?$AAu?$AAs?$AAe?$AAr?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa?$AAr?$AAe?$AAa?$AA?4@
0x16810D0E0: CPSignHash
0x168119210: "Failed to open file in storage a" ??_C@_1HM@GIONGMKK@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAo?$AAp?$AAe?$AAn?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa@
0x168114558: setKeyParams
0x168108D04: UnprotectExportabilityFlag
0x1681056A8: GetMachineGUID
0x1681198E0: "MyCreateFile failed. Access deni" ??_C@_1EI@PMDHGHAI@?$AAM?$AAy?$AAC?$AAr?$AAe?$AAa?$AAt?$AAe?$AAF?$AAi?$AAl?$AAe?$AA?5?$AAf?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?4?$AA?5?$AAA?$AAc?$AAc?$AAe?$AAs?$AAs?$AA?5?$AAd?$AAe?$AAn?$AAi@
0x16810BEF0: CPGetUserKey
0x168118730: "__cdecl _imp_GetSecurityDescriptorGroup" __imp_GetSecurityDescriptorGroup
0x1681141A0: getKeyParams
0x168110978: importDSSKey
0x16811CB88: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-heap-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-heap-l1-1-0
0x1681026E1: "__cdecl _imp_load_ConvertSidToStringSidW" __imp_load_ConvertSidToStringSidW
0x168118618: "__cdecl _imp_DeleteCriticalSection" __imp_DeleteCriticalSection
0x16810D980: CPSetProvParam
0x168113034: RCDeriveKey
0x168102390: "__cdecl _security_check_cookie" __security_check_cookie
0x16810AAF0: checkContext
0x168118808: "__cdecl _imp_BCryptExportKey" __imp_BCryptExportKey
0x16811CC78: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-heap-l2-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-heap-l2-1-0
0x1681185B0: api-ms-win-core-processthreads-l1-1-0_NULL_THUNK_DATA
0x16810BE70: CPGetKeyParam
0x168119840: "Successfully created file." ??_C@_1DG@IIJLIMDJ@?$AAS?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl?$AAl?$AAy?$AA?5?$AAc?$AAr?$AAe?$AAa?$AAt?$AAe?$AAd?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?4?$AA?$AA@
0x1681191B0: "Opened file in storage area succ" ??_C@_1FE@BHNIHKOL@?$AAO?$AAp?$AAe?$AAn?$AAe?$AAd?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa?$AAr?$AAe?$AAa?$AA?5?$AAs?$AAu?$AAc?$AAc@
0x168118528: "__cdecl _imp_GetProcAddress" __imp_GetProcAddress
0x16810403C: ContFree
0x1681029F2: "__cdecl _imp_load_GetNamedSecurityInfoW" __imp_load_GetNamedSecurityInfoW
0x168118C30: "RSA" ??_C@_17CEGMJBCM@?$AAR?$AAS?$AAA?$AA?$AA@
0x168115E34: SecureChannelDeriveKey
0x168106804: I_PrivKeyCacheLock
0x168117BDC: uninitBCryptAlgorithmProviderCache
0x16810A98C: GetDefaultLength
0x1681184E0: "__cdecl _imp_HeapReAlloc" __imp_HeapReAlloc
0x16810F744: DSSValueExists
0x16811E7F0: "__cdecl _hmod__SspiCli_dll" __hmod__SspiCli_dll
0x168118410: "__cdecl _imp_DelayLoadFailureHook" __imp_DelayLoadFailureHook
0x16810FA30: ExportDSSPubBlob3
0x1681184D8: "__cdecl _imp_GetProcessHeap" __imp_GetProcessHeap
0x168118CD0: Microsoft_Windows_Crypto_DSSEnhLevels
0x168102C5B: "__cdecl _chkstk" __chkstk
0x16811C5DC: "__cdecl _DELAY_IMPORT_DESCRIPTOR_api_ms_win_security_provider_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_api_ms_win_security_provider_l1_1_0_dll
0x16811C658: CRYPTBASE_NULL_THUNK_DATA_DLN
0x168118458: "__cdecl _imp_FindNextFileW" __imp_FindNextFileW
0x16811C53C: "__cdecl _DELAY_IMPORT_DESCRIPTOR_CRYPTBASE_dll" __DELAY_IMPORT_DESCRIPTOR_CRYPTBASE_dll
0x168118548: api-ms-win-core-localization-obsolete-l1-2-0_NULL_THUNK_DATA
0x168118570: "__cdecl _imp_UnmapViewOfFile" __imp_UnmapViewOfFile
0x16811E840: l_LoadStringCritSec
0x16811AE70: "key expansion" ??_C@_0O@EOHBJBLD@key?5expansion?$AA@
0x168105234: FreeContainerInfo
0x16810E264: EncryptPrivateKeyInMemory
0x16810AB14: checkContextHash
0x16810FF98: SetBCryptDssKeyParameters
0x168105390: GetDSSStringResource
0x168118B10: "__cdecl _sz_USERENV_dll" __sz_USERENV_dll
0x16810B200: CPDeriveKey
0x1681185E0: "__cdecl _imp_MultiByteToWideChar" __imp_MultiByteToWideChar
0x168118F28: "OffloadModExpo" ??_C@_0P@GJIHJPHL@OffloadModExpo?$AA@
0x168118EA0: "\Microsoft\Crypto\DSS\" ??_C@_1CO@CACJLLID@?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAC?$AAr?$AAy?$AAp?$AAt?$AAo?$AA?2?$AAD?$AAS?$AAS?$AA?2?$AA?$AA@
0x1681064DC: GetUserTextualSidW
0x168109C98: McTemplateU0zqstqz
0x168117B60: findEntryInCache
0x168118928: "__cdecl _guard_fids_table" __guard_fids_table
0x1681188D0: "__cdecl _imp_wcscpy_s" __imp_wcscpy_s
0x168104528: DeleteContainerInfo
0x16810A05C: McTemplateU0ztqzzqz
0x16811AE60: "master secret" ??_C@_0O@FEJGMKDJ@master?5secret?$AA@
0x168118010: "__cdecl load_config_used" _load_config_used
0x16810DD0C: desGetKeyLength
0x168120000: "__cdecl _imp_CryptEncodeObjectEx" __imp_CryptEncodeObjectEx
0x16811C668: SspiCli_NULL_THUNK_DATA_DLN
0x16811AE80: "server write key" ??_C@_0BB@HLBNJBJK@server?5write?5key?$AA@
0x16811C51C: "__cdecl _DELAY_IMPORT_DESCRIPTOR_api_ms_win_security_sddl_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_api_ms_win_security_sddl_l1_1_0_dll
0x168112BAC: GetRC4KeyForSymWrap
0x168109B90: McTemplateU0zqqtqz
0x168118428: api-ms-win-core-delayload-l1-1-1_NULL_THUNK_DATA
0x168118418: api-ms-win-core-delayload-l1-1-0_NULL_THUNK_DATA
0x168109A58: McGenEventUnregister
0x1681172EC: LocalCreateBCryptHash
0x168119760: "Failed to delete key container b" ??_C@_1JG@KKBLFBAC@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAk?$AAe?$AAy?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAb@
0x168114AB8: HelperHash
0x168120060: "__cdecl _imp_GetNamedSecurityInfoW" __imp_GetNamedSecurityInfoW
0x1681185C8: "__cdecl _imp_RegQueryValueExA" __imp_RegQueryValueExA
0x168118790: "__cdecl _imp_BCryptDuplicateKey" __imp_BCryptDuplicateKey
0x168120050: "__cdecl _imp_GetProfileType" __imp_GetProfileType
0x16811C868: profapi_NULL_THUNK_DATA_DLB
0x168119B90: "Successfully wrote container inf" ??_C@_1EG@GDLGDCOO@?$AAS?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl?$AAl?$AAy?$AA?5?$AAw?$AAr?$AAo?$AAt?$AAe?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAi?$AAn?$AAf@
0x168106C64: LoadDSSStrings
0x168120018: CRYPT32_NULL_THUNK_DATA_DLA
0x168108B8C: TryDPAPI
0x1681069E0: InitializeForceHighProtection
0x1681187B0: "__cdecl _imp_BCryptOpenAlgorithmProvider" __imp_BCryptOpenAlgorithmProvider
0x1681028A6: "__cdecl _imp_load_CryptProtectData" __imp_load_CryptProtectData
0x16810CCCC: UnWrapSymKey
0x168118508: "__cdecl _imp_DisableThreadLibraryCalls" __imp_DisableThreadLibraryCalls
0x168114F8C: P_Hash
0x1681188A8: "__cdecl _imp_NtClose" __imp_NtClose
0x168118530: "__cdecl _imp_LoadStringW" __imp_LoadStringW
0x1681111AC: DuplicateHash
0x168119040: "Failed to get user storage area " ??_C@_1IE@OLAKAANK@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAg?$AAe?$AAt?$AA?5?$AAu?$AAs?$AAe?$AAr?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa?$AAr?$AAe?$AAa?$AA?5@
0x1681026FF: "__cdecl _tailMerge_cryptbase_dll" __tailMerge_cryptbase_dll
0x168105318: FreeEnumOldMachKeyEntries
0x168118858: "__cdecl _imp_RtlLookupFunctionEntry" __imp_RtlLookupFunctionEntry
0x1681187E8: "__cdecl _imp_BCryptGenerateSymmetricKey" __imp_BCryptGenerateSymmetricKey
0x168113878: deriveKey
0x168119C20: "Successfully deleted container i" ??_C@_1EK@IOMBJHOK@?$AAS?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl?$AAl?$AAy?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AAd?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAi@
0x16810A1C0: McTemplateU0ztzqqqqqz
0x168118640: "__cdecl _imp_InitializeSRWLock" __imp_InitializeSRWLock
0x168118578: "__cdecl _imp_VirtualAlloc" __imp_VirtualAlloc
0x168107574: PrivKeyCacheAddItem
0x168101530: CPReleaseContext
0x1681186D8: "__cdecl _imp_GetSecurityDescriptorSacl" __imp_GetSecurityDescriptorSacl
0x16810DE78: ConvertToCngDhBlob
0x168109F20: McTemplateU0zqztqz
0x168102827: "__cdecl _tailMerge_crypt32_dll" __tailMerge_crypt32_dll
0x168118568: "__cdecl _imp_CreateFileMappingW" __imp_CreateFileMappingW
0x1681076FC: PrivKeyCacheCleanup
0x168101810: CPDestroyHash
0x168119D90: "DHParameters" ??_C@_1BK@OLNMPLNE@?$AAD?$AAH?$AAP?$AAa?$AAr?$AAa?$AAm?$AAe?$AAt?$AAe?$AAr?$AAs?$AA?$AA@
0x168118560: "__cdecl _imp_VirtualQuery" __imp_VirtualQuery
0x16811E000: ETW_LOG_DSSENH_CONTMAN_PROVIDER_Context
0x168118860: "__cdecl _imp_RtlVirtualUnwind" __imp_RtlVirtualUnwind
0x16811AEC0: "Microsoft Base DSS and Diffie-He" ??_C@_0DN@MNDAMAJA@Microsoft?5Base?5DSS?5and?5Diffie?9He@
0x16811AFC0: "__cdecl _pfnDefaultDliFailureHook2" __pfnDefaultDliFailureHook2
0x16810AD60: CPEncrypt
0x168118CC0: "RC2" ??_C@_17FODAJMMF@?$AAR?$AAC?$AA2?$AA?$AA@
0x16811C57C: "__cdecl _DELAY_IMPORT_DESCRIPTOR_CRYPT32_dll" __DELAY_IMPORT_DESCRIPTOR_CRYPT32_dll
0x16810CA70: CPSetKeyParam
0x168102662: "__cdecl _tailMerge_api_ms_win_security_sddl_l1_1_0_dll" __tailMerge_api_ms_win_security_sddl_l1_1_0_dll
0x16810D350: CPGetProvParam
0x16811A510: g_DssDhSchPolicy
0x168102B30: "__cdecl guard_check_icall_nop" _guard_check_icall_nop
0x168102C67: memcmp
0x168118670: "__cdecl _imp_GetSystemDirectoryW" __imp_GetSystemDirectoryW
0x168118F08: "csp" ??_C@_17CCDAFIDN@?$AAc?$AAs?$AAp?$AA?$AA@
0x168102955: "__cdecl _imp_load_CryptEncodeObjectEx" __imp_load_CryptEncodeObjectEx
0x168104010: ContAlloc
0x1681187A0: "__cdecl _imp_BCryptGenerateKeyPair" __imp_BCryptGenerateKeyPair
0x168103C30: AddMachineGuidAndAppContainerSidHashToContainerName
0x168119E70: "CAPIDSAPRIVATEBLOB" ??_C@_1CG@CDMIBOII@?$AAC?$AAA?$AAP?$AAI?$AAD?$AAS?$AAA?$AAP?$AAR?$AAI?$AAV?$AAA?$AAT?$AAE?$AAB?$AAL?$AAO?$AAB?$AA?$AA@
0x16810E560: copyDHKey
0x168120080: "__cdecl _imp_ConvertStringSecurityDescriptorToSecurityDescriptorW" __imp_ConvertStringSecurityDescriptorToSecurityDescriptorW
0x16810DD90: setDESParams
0x168116E50: GetHashValue
0x168110804: getDSSParams
0x16811E808: g_ulMaxStackAllocSize
0x16811CC64: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-handle-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-handle-l1-1-0
0x1681190D0: "Failed to get user storage area " ??_C@_1JA@FHMHCOMG@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAg?$AAe?$AAt?$AA?5?$AAu?$AAs?$AAe?$AAr?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa?$AAr?$AAe?$AAa?$AA?5@
0x1681103DC: exportDSSKey
0x1681187C8: "__cdecl _imp_BCryptDestroySecret" __imp_BCryptDestroySecret
0x168110FA0: setDSSParams
0x168109480: EtwLogContmanDeleteFileInStorageArea
0x16810AB40: checkContextKey
0x1681170C0: HashTwoValues
0x16811C59C: "__cdecl _DELAY_IMPORT_DESCRIPTOR_SspiCli_dll" __DELAY_IMPORT_DESCRIPTOR_SspiCli_dll
0x168106F64: MyCreateFile
0x168118898: "__cdecl _imp_RtlImageNtHeader" __imp_RtlImageNtHeader
0x168118D60: "Hj1diQ6kpUx7VC4m" ??_C@_0BB@IBKHNDLF@Hj1diQ6kpUx7VC4m?$AA@
0x168118868: "__cdecl _imp_RtlUnhandledExceptionFilter" __imp_RtlUnhandledExceptionFilter
0x16810E38C: PerformBCryptSecretAgreement
0x16810281B: "__cdecl _imp_load_CryptUnprotectData" __imp_load_CryptUnprotectData
0x168118910: ntdll_NULL_THUNK_DATA
0x168118900: "__cdecl _imp_memcpy" __imp_memcpy
0x168120008: "__cdecl _imp_CryptProtectData" __imp_CryptProtectData
0x1681186B0: "__cdecl _imp_GetSecurityDescriptorDacl" __imp_GetSecurityDescriptorDacl
0x168107B5C: ReadContainerInfo
0x168118C70: "MD5" ??_C@_17HLHJLHED@?$AAM?$AAD?$AA5?$AA?$AA@
0x168116C60: BCryptOpenAndCacheAlgorithmProvider
0x1681016B0: CPHashData
0x168113420: WrapSymKey
0x1681028CA: "__cdecl _imp_load_GetUserNameExA" __imp_load_GetUserNameExA
0x168118718: "__cdecl _imp_FreeSid" __imp_FreeSid
0x168118A90: "Software\Policies\Microsoft\Cryp" ??_C@_0CJ@HELPIGDA@Software?2Policies?2Microsoft?2Cryp@
0x16810FE44: ImportDSSPubBlob3
0x168118710: "__cdecl _imp_GetSidSubAuthorityCount" __imp_GetSidSubAuthorityCount
0x168119BE0: "Failed to write container info." ??_C@_1EA@OEJLDHEC@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAw?$AAr?$AAi?$AAt?$AAe?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAi?$AAn?$AAf?$AAo?$AA?4?$AA?$AA@
0x16811CB9C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-1-0
0x168120070: api-ms-win-security-provider-l1-1-0_NULL_THUNK_DATA_DLA
0x1681090F4: ZeroizeFile
0x16811E050: "__cdecl _security_cookie" __security_cookie
0x16811E810: g_pfnAllocate
0x16811C820: USERENV_NULL_THUNK_DATA_DLB
0x1681188A0: "__cdecl _imp_strcpy_s" __imp_strcpy_s
0x1681194C0: "Failed to delete file in storage" ??_C@_1GM@GNKNPGNL@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAd?$AAe?$AAl?$AAe?$AAt?$AAe?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe@
0x168104BE4: EnumOldMachineKeys
0x168104F20: FetchString
0x168113854: checkKey
0x1681184C0: "__cdecl _imp_CloseHandle" __imp_CloseHandle
0x1681184F8: "__cdecl _imp_LocalFree" __imp_LocalFree
0x1681054EC: GetFilePath
0x1681186B8: "__cdecl _imp_GetLengthSid" __imp_GetLengthSid
0x16811AFD0: "__stdcall _xmm" __xmm@36363636363636363636363636363636
0x16811AFE0: "__cdecl _xmm@5c5c5c5c5c5c5c5c5c5c5c5c5c5c5c5c" __xmm@5c5c5c5c5c5c5c5c5c5c5c5c5c5c5c5c
0x16811CC50: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-errorhandling-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-errorhandling-l1-1-0
0x168109950: McGenControlCallbackV2
0x168119390: "Failed to open file in storage a" ??_C@_1EK@EMMGFDNF@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAo?$AAp?$AAe?$AAn?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa@
0x168117A1C: ReverseMemCpy
0x168118468: "__cdecl _imp_FindFirstFileExW" __imp_FindFirstFileExW
0x16810F05C: initKeyDH
0x1681187C0: "__cdecl _imp_BCryptImportKeyPair" __imp_BCryptImportKeyPair
0x168102A7D: "__cdecl _imp_load_SetNamedSecurityInfoW" __imp_load_SetNamedSecurityInfoW
0x168118F68: ETW_LOG_DSSENH_CONTMAN_DELETE_CONTAINER_INFO
0x16810EB18: importDHKey
0x168118BA0: WPP_afe1e5f5a2923515a5b5050d21a5feac_Traceguids
0x168118D5C: "_" ??_C@_13ENNFDPBH@?$AA_?$AA?$AA@
0x1681087FC: SetContainerUserName
0x16810A9BC: IsLegalLength
0x1681188E0: "__cdecl _imp__vsnwprintf" __imp__vsnwprintf
0x168118B40: "__cdecl _sz_profapi_dll" __sz_profapi_dll
0x168119290: "Failed to open file in storage a" ??_C@_1GI@BBHCNNCD@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAo?$AAp?$AAe?$AAn?$AA?5?$AAf?$AAi?$AAl?$AAe?$AA?5?$AAi?$AAn?$AA?5?$AAs?$AAt?$AAo?$AAr?$AAa?$AAg?$AAe?$AA?5?$AAa@
0x168112714: ExportOpaqueBlob
0x168101360: CPGetHashParam
0x1681065D8: I_PrivKeyCacheCleanup
0x1681185A8: "__cdecl _imp_GetCurrentThread" __imp_GetCurrentThread
0x16811C6A8: api-ms-win-security-sddl-l1-1-0_NULL_THUNK_DATA_DLN
0x1681185B8: "__cdecl _imp_RegOpenKeyExA" __imp_RegOpenKeyExA
0x168118818: "__cdecl _imp_BCryptFinalizeKeyPair" __imp_BCryptFinalizeKeyPair
0x168114CA0: MyPrimitiveHMACParam
0x168102530: "__cdecl _security_init_cookie" __security_init_cookie
0x1681189E0: "HashDigestLength" ??_C@_1CC@DMMMEHOM@?$AAH?$AAa?$AAs?$AAh?$AAD?$AAi?$AAg?$AAe?$AAs?$AAt?$AAL?$AAe?$AAn?$AAg?$AAt?$AAh?$AA?$AA@
0x1681115C8: allocHash
0x168119F90: g_DssDhEnhPolicy
0x1681188F0: "__cdecl _imp___chkstk" __imp___chkstk
0x1681187F0: "__cdecl _imp_BCryptFinishHash" __imp_BCryptFinishHash
0x168119A40: "Failed to set security on contai" ??_C@_1EK@BPFEACJJ@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAs?$AAe?$AAt?$AA?5?$AAs?$AAe?$AAc?$AAu?$AAr?$AAi?$AAt?$AAy?$AA?5?$AAo?$AAn?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi@
0x16811E820: g_pfnFree
0x1681186C8: "__cdecl _imp_SetSecurityDescriptorDacl" __imp_SetSecurityDescriptorDacl
0x168102790: "__cdecl _imp_load_GetProfileType" __imp_load_GetProfileType
0x168102C8B: wcscmp
0x168119008: ETW_LOG_DSSENH_CONTMAN_SET_SECURITY_ON_CONTAINER
0x168110F2C: initKeyDSS
0x16811C5BC: "__cdecl _DELAY_IMPORT_DESCRIPTOR_profapi_dll" __DELAY_IMPORT_DESCRIPTOR_profapi_dll
0x168118CA8: "3DES" ??_C@_19LEELFJDG@?$AA3?$AAD?$AAE?$AAS?$AA?$AA@
0x16810234C: McGenEventRegister
0x16810720C: MyCryptUnprotectData
0x16810662C: I_PrivKeyCacheCleanupNode
0x168119D38: "Microsoft DH SChannel Cryptograp" ??_C@_0CN@FGBBEMFB@Microsoft?5DH?5SChannel?5Cryptograp@
0x168118F58: ETW_LOG_DSSENH_CONTMAN_DELETE_FILE_W
0x16810263E: RtlVirtualUnwind
0x1681131FC: RCExpandKey
0x168118698: "__cdecl _imp_EventUnregister" __imp_EventUnregister
0x168118450: "__cdecl _imp_WriteFile" __imp_WriteFile
0x168118C28: "DH" ??_C@_15IEFEGGPE@?$AAD?$AAH?$AA?$AA@
0x16811322C: SetSymKeyParam
0x168118460: "__cdecl _imp_GetFileSize" __imp_GetFileSize
0x168118B20: "__cdecl _sz_CRYPT32_dll" __sz_CRYPT32_dll
0x16811AE98: "client write key" ??_C@_0BB@DJIGDMHM@client?5write?5key?$AA@
0x168119B48: "Failed to read container info." ??_C@_1DO@JFJNDNKC@?$AAF?$AAa?$AAi?$AAl?$AAe?$AAd?$AA?5?$AAt?$AAo?$AA?5?$AAr?$AAe?$AAa?$AAd?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAi?$AAn?$AAf?$AAo?$AA?4?$AA?$AA@
0x1681023E0: "__cdecl _report_gsfailure" __report_gsfailure
0x168113E98: freeKey
0x168118620: "__cdecl _imp_LeaveCriticalSection" __imp_LeaveCriticalSection
0x1681116F8: getHashParams
0x16810279C: "__cdecl _tailMerge_userenv_dll" __tailMerge_userenv_dll
0x1681119DC: setHashParams
0x168118E58: "%lu" ??_C@_17IJMNDCL@?$AA?$CF?$AAl?$AAu?$AA?$AA@
0x1681021C0: SafeAllocaInitialize
0x168118D90: "MachineKeys" ??_C@_1BI@NNHJEFPI@?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AAK?$AAe?$AAy?$AAs?$AA?$AA@
0x168115C7C: SSL3SingleHash
0x168102280: PrivKeyCacheAllocate
0x16810B190: CPSetHashParam
0x168118C60: "SHA256" ??_C@_1O@HECGKAIN@?$AAS?$AAH?$AAA?$AA2?$AA5?$AA6?$AA?$AA@
0x168104948: DeleteFileInStorageArea
0x16811A3B0: g_DssBasePolicy
0x168118AD0: "__cdecl _sz_api_ms_win_security_sddl_l1_1_0_dll" __sz_api_ms_win_security_sddl_l1_1_0_dll
0x1681186F0: "__cdecl _imp_GetAclInformation" __imp_GetAclInformation
0x168117C34: InternalVerifyStackAvailable
0x16811CC14: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-memory-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-memory-l1-1-0
0x168117020: GetSymmetricKeyChecksum
0x168118588: "__cdecl _imp_OpenThreadToken" __imp_OpenThreadToken
0x168119630: "Deleted key container successful" ??_C@_1EI@GPFEFMJP@?$AAD?$AAe?$AAl?$AAe?$AAt?$AAe?$AAd?$AA?5?$AAk?$AAe?$AAy?$AA?5?$AAc?$AAo?$AAn?$AAt?$AAa?$AAi?$AAn?$AAe?$AAr?$AA?5?$AAs?$AAu?$AAc?$AAc?$AAe?$AAs?$AAs?$AAf?$AAu?$AAl@
0x16810DB90: DllRegisterServer
0x168118558: "__cdecl _imp_MapViewOfFile" __imp_MapViewOfFile
0x1681093E4: EtwLogContmanCreateFileW
0x168113C04: feedCypherText
0x1681186C0: "__cdecl _imp_InitializeAcl" __imp_InitializeAcl
0x168118FD8: ETW_LOG_DSSENH_CONTMAN_OPEN_FILE_IN_STORAGE_AREA
0x168118B78: "(DWORD)NTE_BAD_ALGID" ??_C@_0BF@CKGAJJHJ@?$CIDWORD?$CJNTE_BAD_ALGID?$AA@
0x168117C90: SafeAllocaAllocateFromHeap
0x16810A844: McTemplateU0zzzqz
0x168118660: api-ms-win-core-synch-l1-2-0_NULL_THUNK_DATA
0x16810A330: McTemplateU0zzqqqqqz
0x16810A484: McTemplateU0zzqtqtqz
0x168109860: EtwLogContmanOperationFailed
0x168118590: "__cdecl _imp_OpenProcessToken" __imp_OpenProcessToken
0x1681188D8: "__cdecl _imp_RtlDosPathNameToRelativeNtPathName_U" __imp_RtlDosPathNameToRelativeNtPathName_U
0x168106910: I_PrivKeyCachePurgeOldItems
0x168118650: api-ms-win-core-synch-l1-1-0_NULL_THUNK_DATA
0x16811CC3C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-2-0
0x1681023B4: "__cdecl DllMainCRTStartupForGS2" _DllMainCRTStartupForGS2
0x16811C878: api-ms-win-security-provider-l1-1-0_NULL_THUNK_DATA_DLB
0x168105360: FreeOffloadInfo
0x168102C7F: memset
0x16811CD18: "__cdecl _NULL_IMPORT_DESCRIPTOR" __NULL_IMPORT_DESCRIPTOR
0x168118480: "__cdecl _imp_ReadFile" __imp_ReadFile
0x168101900: CPAcquireContext
0x168120058: USERENV_NULL_THUNK_DATA_DLA

[JEB Decompiler by PNF Software]