securebootai.dll

Description: CSI Secure Boot Servicing Plugin

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3562

Architecture: 32-bit

Operating System: Windows NT

SHA256: 0fd4762315764809cc0d732dee9187dc

File Size: 70.5 KB

Uploaded At: Dec. 1, 2025, 8:40 a.m.

Views: 12

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x9090)
  • DllCsiGetHandler (Ordinal: 2, Address: 0x90b0)

Imported DLLs & Functions

api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1000f04c)
  • IsDebuggerPresent (Address: 0x1000f048)
  • OutputDebugStringW (Address: 0x1000f044)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1000f054)
  • SetLastError (Address: 0x1000f060)
  • SetUnhandledExceptionFilter (Address: 0x1000f058)
  • UnhandledExceptionFilter (Address: 0x1000f05c)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x1000f068)
  • FindClose (Address: 0x1000f06c)
  • FindFirstFileW (Address: 0x1000f078)
  • FindNextFileW (Address: 0x1000f070)
  • GetFileSizeEx (Address: 0x1000f07c)
  • ReadFile (Address: 0x1000f074)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1000f084)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1000f094)
  • HeapAlloc (Address: 0x1000f098)
  • HeapDestroy (Address: 0x1000f090)
  • HeapFree (Address: 0x1000f08c)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • CopyFileW (Address: 0x1000f0a0)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x1000f0c0)
  • FreeLibrary (Address: 0x1000f0bc)
  • GetModuleFileNameA (Address: 0x1000f0b0)
  • GetModuleHandleExW (Address: 0x1000f0ac)
  • GetModuleHandleW (Address: 0x1000f0b4)
  • GetProcAddress (Address: 0x1000f0b8)
  • LoadLibraryExW (Address: 0x1000f0a8)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1000f0c8)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1000f0d8)
  • GetCurrentProcessId (Address: 0x1000f0d4)
  • GetCurrentThread (Address: 0x1000f0e4)
  • GetCurrentThreadId (Address: 0x1000f0e8)
  • OpenProcessToken (Address: 0x1000f0e0)
  • OpenThreadToken (Address: 0x1000f0d0)
  • TerminateProcess (Address: 0x1000f0dc)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1000f0f0)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1000f0fc)
  • RegCreateKeyExW (Address: 0x1000f10c)
  • RegDeleteKeyExW (Address: 0x1000f100)
  • RegGetValueW (Address: 0x1000f110)
  • RegOpenKeyExW (Address: 0x1000f104)
  • RegQueryValueExW (Address: 0x1000f108)
  • RegSetValueExW (Address: 0x1000f0f8)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1000f118)
  • AcquireSRWLockShared (Address: 0x1000f144)
  • CreateMutexExW (Address: 0x1000f154)
  • CreateSemaphoreExW (Address: 0x1000f11c)
  • DeleteCriticalSection (Address: 0x1000f134)
  • EnterCriticalSection (Address: 0x1000f13c)
  • InitializeCriticalSection (Address: 0x1000f124)
  • InitializeCriticalSectionEx (Address: 0x1000f138)
  • LeaveCriticalSection (Address: 0x1000f128)
  • OpenSemaphoreW (Address: 0x1000f12c)
  • ReleaseMutex (Address: 0x1000f150)
  • ReleaseSemaphore (Address: 0x1000f14c)
  • ReleaseSRWLockExclusive (Address: 0x1000f120)
  • ReleaseSRWLockShared (Address: 0x1000f148)
  • WaitForSingleObject (Address: 0x1000f130)
  • WaitForSingleObjectEx (Address: 0x1000f140)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1000f15c)
  • InitOnceComplete (Address: 0x1000f160)
  • Sleep (Address: 0x1000f164)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemDirectoryW (Address: 0x1000f174)
  • GetSystemTimeAsFileTime (Address: 0x1000f170)
  • GetSystemWindowsDirectoryW (Address: 0x1000f178)
  • GetTickCount (Address: 0x1000f16c)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x1000f180)
  • CreateThreadpoolTimer (Address: 0x1000f18c)
  • SetThreadpoolTimer (Address: 0x1000f184)
  • WaitForThreadpoolTimerCallbacks (Address: 0x1000f188)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventRegister (Address: 0x1000f19c)
  • EventUnregister (Address: 0x1000f198)
  • EventWriteTransfer (Address: 0x1000f194)
api-ms-win-security-base-l1-1-0.dll
  • AdjustTokenPrivileges (Address: 0x1000f1a4)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupPrivilegeValueW (Address: 0x1000f1ac)
CRYPT32.dll
  • CertCloseStore (Address: 0x1000f008)
  • CertCreateCertificateContext (Address: 0x1000f000)
  • CertFindCertificateInStore (Address: 0x1000f004)
  • CertFreeCertificateContext (Address: 0x1000f014)
  • CertGetCertificateContextProperty (Address: 0x1000f00c)
  • CryptMsgClose (Address: 0x1000f018)
  • CryptMsgGetParam (Address: 0x1000f01c)
  • CryptQueryObject (Address: 0x1000f010)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x1000f1b8)
  • __dllonexit (Address: 0x1000f1d4)
  • _amsg_exit (Address: 0x1000f1e4)
  • _callnewh (Address: 0x1000f1ec)
  • _CxxThrowException (Address: 0x1000f218)
  • _except_handler4_common (Address: 0x1000f20c)
  • _initterm (Address: 0x1000f1e0)
  • _lock (Address: 0x1000f1dc)
  • _onexit (Address: 0x1000f1d0)
  • _purecall (Address: 0x1000f200)
  • _unlock (Address: 0x1000f1d8)
  • _vsnprintf_s (Address: 0x1000f1f8)
  • _vsnwprintf (Address: 0x1000f1c0)
  • _wcsicmp (Address: 0x1000f1b4)
  • _XcptFilter (Address: 0x1000f1e8)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x1000f210)
  • ??0exception@@QAE@XZ (Address: 0x1000f1c4)
  • ??1exception@@UAE@XZ (Address: 0x1000f1bc)
  • ??1type_info@@UAE@XZ (Address: 0x1000f1c8)
  • ?terminate@@YAXXZ (Address: 0x1000f1cc)
  • free (Address: 0x1000f1fc)
  • malloc (Address: 0x1000f1f0)
  • memcmp (Address: 0x1000f214)
  • memcpy_s (Address: 0x1000f208)
  • memmove_s (Address: 0x1000f204)
  • memset (Address: 0x1000f21c)
  • wcsstr (Address: 0x1000f1f4)
ntdll.dll
  • NtQuerySystemInformation (Address: 0x1000f22c)
  • NtSetSystemEnvironmentValueEx (Address: 0x1000f230)
  • RtlInitUnicodeString (Address: 0x1000f228)
  • RtlNtStatusToDosError (Address: 0x1000f224)
WCP.dll
  • ?RtlGetFacilityTracingFlags@Rtl@WCP@Windows@@YIKPAU_RTL_TRACING_FACILITY@123@@Z (Address: 0x1000f030)
  • ?RtlTraceFormat_PCHRESULT@Rtl@WCP@Windows@@YIXPAUIRtlFormattedOutputStream@13@PBX@Z (Address: 0x1000f02c)
  • ?RtlTraceFormat_PCWSTR@Rtl@WCP@Windows@@YIXPAUIRtlFormattedOutputStream@13@PBX@Z (Address: 0x1000f024)
  • ?RtlTraceVa@Rtl@WCP@Windows@@YIXKKPAU_RTL_TRACING_FACILITY@123@QBDKPAD@Z (Address: 0x1000f028)
  • ConvertNtStatusToHResult (Address: 0x1000f03c)
  • RtlFreeLBlob (Address: 0x1000f038)
  • RtlReportErrorOrigination (Address: 0x1000f034)