EsdSip.dll

Description: Crypto SIP provider for signing and verifying .esd Electronic Software Distribution files

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: 81546ae66077d6440975a584d4bbc4a8

File Size: 22.0 KB

Uploaded At: Dec. 1, 2025, 7:27 a.m.

Views: 9

Exported Functions

  • EsdSipCreateHash (Ordinal: 1, Address: 0x1980)
  • EsdSipDelSignature (Ordinal: 2, Address: 0x1810)
  • EsdSipGetCaps (Ordinal: 3, Address: 0x1190)
  • EsdSipGetSignature (Ordinal: 4, Address: 0x14f0)
  • EsdSipIsMyFileType (Ordinal: 5, Address: 0x1210)
  • EsdSipPutSignature (Ordinal: 6, Address: 0x1670)
  • EsdSipVerifyHash (Ordinal: 7, Address: 0x1ee0)
  • DllCanUnloadNow (Ordinal: 8, Address: 0x1040)
  • DllMain (Ordinal: 9, Address: 0x1010)
  • DllRegisterServer (Ordinal: 10, Address: 0x1050)
  • DllUnregisterServer (Ordinal: 11, Address: 0x11e0)

Imported DLLs & Functions

ADVAPI32.dll
  • CryptAcquireContextW (Address: 0x180004130)
  • CryptCreateHash (Address: 0x180004150)
  • CryptDestroyHash (Address: 0x180004140)
  • CryptGetHashParam (Address: 0x180004138)
  • CryptHashData (Address: 0x180004148)
  • CryptReleaseContext (Address: 0x180004128)
CRYPT32.dll
  • CryptDecodeObject (Address: 0x180004180)
  • CryptEncodeObject (Address: 0x180004168)
  • CryptFindOIDInfo (Address: 0x180004178)
  • CryptSIPAddProvider (Address: 0x180004170)
  • CryptSIPRemoveProvider (Address: 0x180004160)
KERNEL32.dll
  • CloseHandle (Address: 0x180004208)
  • CreateFileW (Address: 0x180004200)
  • DisableThreadLibraryCalls (Address: 0x1800041b8)
  • GetCurrentProcess (Address: 0x180004268)
  • GetCurrentProcessId (Address: 0x180004228)
  • GetCurrentThreadId (Address: 0x180004230)
  • GetFileAttributesW (Address: 0x180004280)
  • GetFileSizeEx (Address: 0x1800041d8)
  • GetFullPathNameW (Address: 0x180004298)
  • GetLastError (Address: 0x1800041b0)
  • GetModuleFileNameW (Address: 0x1800041a0)
  • GetModuleHandleW (Address: 0x1800041c8)
  • GetProcessHeap (Address: 0x180004290)
  • GetSystemTimeAsFileTime (Address: 0x180004238)
  • GetTickCount (Address: 0x180004240)
  • HeapAlloc (Address: 0x180004288)
  • HeapFree (Address: 0x180004278)
  • LocalAlloc (Address: 0x1800041a8)
  • LocalFree (Address: 0x1800041c0)
  • QueryPerformanceCounter (Address: 0x180004220)
  • ReadFile (Address: 0x1800041d0)
  • RtlCaptureContext (Address: 0x180004248)
  • RtlLookupFunctionEntry (Address: 0x180004250)
  • RtlVirtualUnwind (Address: 0x180004190)
  • SetEndOfFile (Address: 0x1800041f8)
  • SetFilePointerEx (Address: 0x180004210)
  • SetLastError (Address: 0x180004198)
  • SetUnhandledExceptionFilter (Address: 0x180004260)
  • Sleep (Address: 0x180004218)
  • TerminateProcess (Address: 0x180004270)
  • UnhandledExceptionFilter (Address: 0x180004258)
  • VirtualAlloc (Address: 0x1800041f0)
  • VirtualFree (Address: 0x1800041e0)
  • WriteFile (Address: 0x1800041e8)
msvcrt.dll
  • __C_specific_handler (Address: 0x1800042a8)
  • _amsg_exit (Address: 0x1800042c8)
  • _initterm (Address: 0x1800042b0)
  • _wcsicmp (Address: 0x180004308)
  • _wcsnicmp (Address: 0x1800042f0)
  • _XcptFilter (Address: 0x1800042d0)
  • free (Address: 0x1800042c0)
  • malloc (Address: 0x1800042b8)
  • memcmp (Address: 0x1800042e8)
  • memcpy (Address: 0x1800042e0)
  • memset (Address: 0x180004300)
  • wcschr (Address: 0x1800042f8)
  • wcscmp (Address: 0x180004310)
  • wcsrchr (Address: 0x1800042d8)
ntdll.dll
  • RtlAllocateHeap (Address: 0x180004328)
  • RtlFreeHeap (Address: 0x180004320)