fveui.dll

Description: BitLocker Drive Encryption UI

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6328

Architecture: 64-bit

Operating System: Windows NT

SHA256: 621a2ee6cf1ac3d291c3159f79d291f5

File Size: 354.0 KB

Uploaded At: Dec. 1, 2025, 7:28 a.m.

Views: 7

Exported Functions

  • ??0VolumeFveStatus@@IEAA@XZ (Ordinal: 1, Address: 0x1750)
  • ??0VolumeFveStatus@@QEAA@K_KJW4_FVE_WIPING_STATE@@@Z (Ordinal: 2, Address: 0x1480)
  • ??4BuiVolume@@QEAAAEAV0@AEBV0@@Z (Ordinal: 3, Address: 0x17b0)
  • ??4VolumeFveStatus@@QEAAAEAV0@$$QEAV0@@Z (Ordinal: 4, Address: 0x1780)
  • ??4VolumeFveStatus@@QEAAAEAV0@AEBV0@@Z (Ordinal: 5, Address: 0x1760)
  • ?FailedDryRun@VolumeFveStatus@@QEBA_NXZ (Ordinal: 6, Address: 0x16a0)
  • ?GetExtendedFlags@VolumeFveStatus@@QEBA_KXZ (Ordinal: 7, Address: 0x1730)
  • ?GetLastConvertStatus@VolumeFveStatus@@QEBAJXZ (Ordinal: 8, Address: 0x1740)
  • ?GetStatusFlags@VolumeFveStatus@@QEBAKXZ (Ordinal: 9, Address: 0x1720)
  • ?HasExternalKey@VolumeFveStatus@@QEBA_NXZ (Ordinal: 10, Address: 0x14f0)
  • ?HasPBKDF2RecoveryPassword@VolumeFveStatus@@QEBA_NXZ (Ordinal: 11, Address: 0x14e0)
  • ?HasPassphraseProtector@VolumeFveStatus@@QEBA_NXZ (Ordinal: 12, Address: 0x1510)
  • ?HasPinProtector@VolumeFveStatus@@QEBA_NXZ (Ordinal: 13, Address: 0x14c0)
  • ?HasRecoveryData@VolumeFveStatus@@QEBA_NXZ (Ordinal: 14, Address: 0x1680)
  • ?HasRecoveryPassword@VolumeFveStatus@@QEBA_NXZ (Ordinal: 15, Address: 0x14d0)
  • ?HasSmartCardProtector@VolumeFveStatus@@QEBA_NXZ (Ordinal: 16, Address: 0x1520)
  • ?HasStartupKeyProtector@VolumeFveStatus@@QEBA_NXZ (Ordinal: 17, Address: 0x1500)
  • ?HasTpmProtector@VolumeFveStatus@@QEBA_NXZ (Ordinal: 18, Address: 0x14b0)
  • ?IsConverting@VolumeFveStatus@@QEBA_NXZ (Ordinal: 19, Address: 0x15a0)
  • ?IsCsvMetadataVolume@VolumeFveStatus@@QEBA_NXZ (Ordinal: 20, Address: 0x16e0)
  • ?IsDEAutoProvisioned@VolumeFveStatus@@QEBA_NXZ (Ordinal: 21, Address: 0x1710)
  • ?IsDecrypted@VolumeFveStatus@@QEBA_NXZ (Ordinal: 22, Address: 0x1600)
  • ?IsDecrypting@VolumeFveStatus@@QEBA_NXZ (Ordinal: 23, Address: 0x15f0)
  • ?IsDisabled@VolumeFveStatus@@QEBA_NXZ (Ordinal: 24, Address: 0x1650)
  • ?IsEDriveVolume@VolumeFveStatus@@QEBA_NXZ (Ordinal: 25, Address: 0x16d0)
  • ?IsEncrypted@VolumeFveStatus@@QEBA_NXZ (Ordinal: 26, Address: 0x15e0)
  • ?IsEncrypting@VolumeFveStatus@@QEBA_NXZ (Ordinal: 27, Address: 0x15d0)
  • ?IsLocked@VolumeFveStatus@@QEBA_NXZ (Ordinal: 28, Address: 0x1670)
  • ?IsOn@VolumeFveStatus@@QEBA_NXZ (Ordinal: 29, Address: 0x1570)
  • ?IsOsCriticalVolume@VolumeFveStatus@@QEBA_NXZ (Ordinal: 30, Address: 0x1540)
  • ?IsOsVolume@VolumeFveStatus@@QEBA_NXZ (Ordinal: 31, Address: 0x1530)
  • ?IsPartiallyConverted@VolumeFveStatus@@QEBA_NXZ (Ordinal: 32, Address: 0x15c0)
  • ?IsPaused@VolumeFveStatus@@QEBA_NXZ (Ordinal: 33, Address: 0x1580)
  • ?IsPreProvisioned@VolumeFveStatus@@QEBA_NXZ (Ordinal: 34, Address: 0x1690)
  • ?IsRoamingDevice@VolumeFveStatus@@QEBA_NXZ (Ordinal: 35, Address: 0x1560)
  • ?IsSecure@VolumeFveStatus@@QEBA_NXZ (Ordinal: 36, Address: 0x1630)
  • ?IsUnknownFveVersion@VolumeFveStatus@@QEBA_NXZ (Ordinal: 37, Address: 0x16f0)
  • ?IsWiping@VolumeFveStatus@@QEBA_NXZ (Ordinal: 38, Address: 0x1610)
  • ?NO_DRIVE_LETTER@BuiVolume@@2IB (Ordinal: 39, Address: 0x357b4)
  • ?NeedsRestart@VolumeFveStatus@@QEBA_NXZ (Ordinal: 40, Address: 0x1640)
  • DllCanUnloadNow (Ordinal: 41, Address: 0x19b0)
  • DllGetClassObject (Ordinal: 42, Address: 0x1b70)
  • FveuiEnumSmartCardCerts (Ordinal: 43, Address: 0x101e0)
  • FveuiUserSelectCert (Ordinal: 44, Address: 0xf410)
  • FveuiUserSelectSmartCard (Ordinal: 45, Address: 0xfd90)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x180033878)
  • AllocateAndInitializeSid (Address: 0x1800338f8)
  • CheckTokenMembership (Address: 0x1800338f0)
  • CloseServiceHandle (Address: 0x180033838)
  • CryptAcquireContextW (Address: 0x1800337f0)
  • CryptDestroyKey (Address: 0x180033800)
  • CryptGetKeyParam (Address: 0x180033950)
  • CryptGetProvParam (Address: 0x1800337e8)
  • CryptGetUserKey (Address: 0x1800337e0)
  • CryptReleaseContext (Address: 0x180033900)
  • DuplicateTokenEx (Address: 0x180033880)
  • EventProviderEnabled (Address: 0x180033810)
  • EventRegister (Address: 0x180033918)
  • EventSetInformation (Address: 0x180033910)
  • EventUnregister (Address: 0x180033908)
  • EventWriteTransfer (Address: 0x1800337f8)
  • FreeSid (Address: 0x180033808)
  • GetTraceEnableFlags (Address: 0x180033930)
  • GetTraceEnableLevel (Address: 0x180033938)
  • GetTraceLoggerHandle (Address: 0x180033940)
  • LsaClose (Address: 0x180033858)
  • LsaFreeMemory (Address: 0x180033860)
  • LsaOpenPolicy (Address: 0x180033870)
  • LsaQueryInformationPolicy (Address: 0x180033868)
  • OpenProcessToken (Address: 0x180033888)
  • OpenSCManagerW (Address: 0x180033840)
  • OpenServiceW (Address: 0x180033850)
  • OpenThreadToken (Address: 0x180033890)
  • QueryServiceStatus (Address: 0x180033830)
  • RegCloseKey (Address: 0x1800338d8)
  • RegCreateKeyExW (Address: 0x1800338b0)
  • RegDeleteKeyValueW (Address: 0x1800338e8)
  • RegDeleteTreeW (Address: 0x180033828)
  • RegEnumKeyExW (Address: 0x1800338b8)
  • RegEnumValueW (Address: 0x1800338c8)
  • RegGetValueA (Address: 0x1800338d0)
  • RegGetValueW (Address: 0x1800337d8)
  • RegisterTraceGuidsW (Address: 0x180033928)
  • RegLoadKeyW (Address: 0x180033820)
  • RegOpenKeyExW (Address: 0x1800338e0)
  • RegQueryInfoKeyW (Address: 0x1800338c0)
  • RegSetKeyValueW (Address: 0x1800338a8)
  • RegSetValueExW (Address: 0x1800338a0)
  • RegUnLoadKeyW (Address: 0x180033818)
  • SetThreadToken (Address: 0x180033898)
  • StartServiceW (Address: 0x180033848)
  • TraceMessage (Address: 0x180033948)
  • UnregisterTraceGuids (Address: 0x180033920)
api-ms-win-core-com-l1-1-0.dll
  • CLSIDFromString (Address: 0x180033e60)
  • CoInitializeEx (Address: 0x180033e50)
  • CoTaskMemFree (Address: 0x180033e70)
  • CoUninitialize (Address: 0x180033e58)
  • CoWaitForMultipleHandles (Address: 0x180033e48)
  • StringFromGUID2 (Address: 0x180033e68)
api-ms-win-core-winrt-l1-1-0.dll
  • RoGetActivationFactory (Address: 0x180033e80)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateStringReference (Address: 0x180033e90)
bcd.dll
  • BcdCloseObject (Address: 0x180033ec0)
  • BcdCloseStore (Address: 0x180033eb8)
  • BcdEnumerateAndUnpackElements (Address: 0x180033ed0)
  • BcdEnumerateObjects (Address: 0x180033ec8)
  • BcdGetElementData (Address: 0x180033ea8)
  • BcdOpenObject (Address: 0x180033ea0)
  • BcdOpenSystemStore (Address: 0x180033eb0)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x180033f00)
  • BCryptCreateHash (Address: 0x180033ee0)
  • BCryptDestroyHash (Address: 0x180033ef8)
  • BCryptFinishHash (Address: 0x180033ef0)
  • BCryptHashData (Address: 0x180033ee8)
  • BCryptOpenAlgorithmProvider (Address: 0x180033f08)
credui.dll
  • CredUIPromptForWindowsCredentialsW (Address: 0x180033f18)
CRYPT32.dll
  • CertAddCertificateContextToStore (Address: 0x180033960)
  • CertAddCertificateLinkToStore (Address: 0x180033998)
  • CertCloseStore (Address: 0x180033990)
  • CertEnumCertificatesInStore (Address: 0x180033988)
  • CertFreeCertificateContext (Address: 0x180033980)
  • CertOpenStore (Address: 0x180033978)
  • CertSetCertificateContextProperty (Address: 0x180033968)
  • CryptQueryObject (Address: 0x180033970)
FVEAPI.dll
  • FveAddAuthMethodInformation (Address: 0x180033a70)
  • FveAttemptAutoUnlock (Address: 0x1800339d8)
  • FveAuthElementFromPassPhraseW (Address: 0x180033a10)
  • FveAuthElementFromRecoveryPasswordW (Address: 0x180033ad8)
  • FveAuthElementGetKeyFileNameW (Address: 0x180033a28)
  • FveAuthElementReadExternalKeyW (Address: 0x180033a20)
  • FveBackupRecoveryInformationToADEx (Address: 0x180033b08)
  • FveBindDataVolume (Address: 0x1800339f8)
  • FveCheckTpmCapability (Address: 0x180033ae8)
  • FveCloseHandle (Address: 0x180033ae0)
  • FveCloseVolume (Address: 0x180033a60)
  • FveCommitChanges (Address: 0x180033a68)
  • FveConversionEncryptEx (Address: 0x180033aa8)
  • FveConversionResume (Address: 0x180033a48)
  • FveConversionStop (Address: 0x180033a58)
  • FveConversionStopEx (Address: 0x180033a50)
  • FveDeleteAuthMethod (Address: 0x1800339e0)
  • FveFindFirstVolume (Address: 0x1800339b0)
  • FveFindNextVolume (Address: 0x1800339a8)
  • FveGetAuthMethodGuids (Address: 0x180033a30)
  • FveGetAuthMethodInformation (Address: 0x180033a38)
  • FveGetDescriptionW (Address: 0x1800339d0)
  • FveGetIdentity (Address: 0x180033b00)
  • FveGetRecoveryPasswordBackupInformation (Address: 0x1800339c0)
  • FveGetSecureBootBindingState (Address: 0x180033af0)
  • FveGetStatus (Address: 0x180033ab8)
  • FveGetVolumeNameW (Address: 0x180033aa0)
  • FveInitializeDeviceEncryption2 (Address: 0x1800339b8)
  • FveIsAnyDataVolumeBoundToOSVolume (Address: 0x180033a40)
  • FveIsBoundDataVolume (Address: 0x1800339f0)
  • FveIsBoundDataVolumeToOSVolume (Address: 0x180033ac0)
  • FveIsDeviceLockedOut (Address: 0x180033af8)
  • FveIsHybridVolumeW (Address: 0x180033ad0)
  • FveIsVolumeEncryptable (Address: 0x180033a88)
  • FveNeedsDiscoveryVolumeUpdate (Address: 0x180033a90)
  • FveOpenVolumeByHandle (Address: 0x180033a18)
  • FveOpenVolumeExW (Address: 0x180033ab0)
  • FveOpenVolumeW (Address: 0x180033a78)
  • FveRevertVolume (Address: 0x180033b10)
  • FveSelectBestRecoveryPasswordByBackupInformation (Address: 0x1800339c8)
  • FveServiceDiscoveryVolume (Address: 0x180033b18)
  • FveSetAllowKeyExport (Address: 0x180033a00)
  • FveSetFipsAllowDisabled (Address: 0x180033a80)
  • FveUnbindAllDataVolumeFromOSVolume (Address: 0x180033ac8)
  • FveUnbindDataVolume (Address: 0x1800339e8)
  • FveUnlockVolumeWithAccessMode (Address: 0x180033a08)
  • FveUpgradeVolume (Address: 0x180033a98)
FVECERTS.dll
  • FveCertCanCertificateBeAdded (Address: 0x180033b48)
  • FveCertCreateCertInfo (Address: 0x180033b38)
  • FveCertFilterForValidCertificates (Address: 0x180033b28)
  • FveCertFreeCertInfo (Address: 0x180033b30)
  • FveCertGetCertHashFromCertContext (Address: 0x180033b60)
  • FveCertGetPrivateKeyHandle (Address: 0x180033b50)
  • FveCertGetPublicKeyHandle (Address: 0x180033b40)
  • FveCertIsAlternateCert (Address: 0x180033b58)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x180033d00)
  • AcquireSRWLockShared (Address: 0x180033cf0)
  • ActivateActCtx (Address: 0x180033c30)
  • CloseHandle (Address: 0x180033cd8)
  • CloseThreadpoolTimer (Address: 0x180033c78)
  • CompareStringOrdinal (Address: 0x180033dc0)
  • CreateActCtxW (Address: 0x180033c18)
  • CreateEventW (Address: 0x180033d98)
  • CreateMutexExW (Address: 0x180033bb8)
  • CreateSemaphoreExW (Address: 0x180033ba8)
  • CreateThreadpoolTimer (Address: 0x180033c40)
  • DeactivateActCtx (Address: 0x180033c38)
  • DebugBreak (Address: 0x180033d60)
  • DelayLoadFailureHook (Address: 0x180033d20)
  • DeleteCriticalSection (Address: 0x180033c58)
  • DeleteFileW (Address: 0x180033db0)
  • EnterCriticalSection (Address: 0x180033c68)
  • FindActCtxSectionStringW (Address: 0x180033c20)
  • FormatMessageW (Address: 0x180033cb8)
  • FreeLibrary (Address: 0x180033be8)
  • GetCurrentProcess (Address: 0x180033c00)
  • GetCurrentProcessId (Address: 0x180033bf8)
  • GetCurrentThread (Address: 0x180033db8)
  • GetCurrentThreadId (Address: 0x180033c80)
  • GetDriveTypeW (Address: 0x180033bd8)
  • GetFileAttributesW (Address: 0x180033bd0)
  • GetLastError (Address: 0x180033d48)
  • GetModuleFileNameA (Address: 0x180033d68)
  • GetModuleFileNameW (Address: 0x180033c10)
  • GetModuleHandleExW (Address: 0x180033d70)
  • GetModuleHandleW (Address: 0x180033d58)
  • GetProcAddress (Address: 0x180033d50)
  • GetProcessHeap (Address: 0x180033d80)
  • GetProcessMitigationPolicy (Address: 0x180033d90)
  • GetSystemTimeAsFileTime (Address: 0x180033ca8)
  • GetSystemWindowsDirectoryW (Address: 0x180033bc8)
  • GetTickCount (Address: 0x180033cb0)
  • GetVolumePathNamesForVolumeNameW (Address: 0x180033da8)
  • GetVolumePathNameW (Address: 0x180033d88)
  • HeapAlloc (Address: 0x180033d10)
  • HeapFree (Address: 0x180033d78)
  • HeapSize (Address: 0x180033be0)
  • InitializeCriticalSectionEx (Address: 0x180033c60)
  • IsDebuggerPresent (Address: 0x180033d18)
  • LeaveCriticalSection (Address: 0x180033bb0)
  • LoadLibraryExW (Address: 0x180033bf0)
  • LoadLibraryW (Address: 0x180033c28)
  • LocalAlloc (Address: 0x180033d40)
  • LocalFree (Address: 0x180033d38)
  • MultiByteToWideChar (Address: 0x180033ba0)
  • OpenSemaphoreW (Address: 0x180033c48)
  • OutputDebugStringA (Address: 0x180033cc0)
  • OutputDebugStringW (Address: 0x180033d08)
  • QueryActCtxW (Address: 0x180033c08)
  • QueryPerformanceCounter (Address: 0x180033ca0)
  • RaiseException (Address: 0x180033bc0)
  • ReleaseMutex (Address: 0x180033cc8)
  • ReleaseSemaphore (Address: 0x180033cd0)
  • ReleaseSRWLockExclusive (Address: 0x180033cf8)
  • ReleaseSRWLockShared (Address: 0x180033ce8)
  • ResolveDelayLoadedAPI (Address: 0x180033d28)
  • RtlCaptureContext (Address: 0x180033b90)
  • RtlCompareMemory (Address: 0x180033d30)
  • RtlLookupFunctionEntry (Address: 0x180033b88)
  • RtlVirtualUnwind (Address: 0x180033b80)
  • SetEvent (Address: 0x180033da0)
  • SetLastError (Address: 0x180033ce0)
  • SetThreadpoolTimer (Address: 0x180033c90)
  • SetUnhandledExceptionFilter (Address: 0x180033b70)
  • Sleep (Address: 0x180033b98)
  • TerminateProcess (Address: 0x180033c98)
  • UnhandledExceptionFilter (Address: 0x180033b78)
  • WaitForSingleObject (Address: 0x180033c50)
  • WaitForSingleObjectEx (Address: 0x180033c70)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180033c88)
msvcrt.dll
  • __C_specific_handler (Address: 0x180034008)
  • __CxxFrameHandler3 (Address: 0x180033f98)
  • __dllonexit (Address: 0x180033f28)
  • _amsg_exit (Address: 0x180033f60)
  • _callnewh (Address: 0x180034030)
  • _CxxThrowException (Address: 0x180033f80)
  • _initterm (Address: 0x180033f50)
  • _lock (Address: 0x180033f38)
  • _onexit (Address: 0x180033fa0)
  • _purecall (Address: 0x180033fb8)
  • _stricmp (Address: 0x180034018)
  • _unlock (Address: 0x180033f30)
  • _vsnprintf_s (Address: 0x180033fe8)
  • _vsnwprintf (Address: 0x180033ff8)
  • _XcptFilter (Address: 0x180033f68)
  • ??_V@YAXPEAX@Z (Address: 0x180033fc0)
  • ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180034038)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180033f90)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180033fd0)
  • ??0exception@@QEAA@XZ (Address: 0x180033fe0)
  • ??1exception@@UEAA@XZ (Address: 0x180033fd8)
  • ??1type_info@@UEAA@XZ (Address: 0x180033f40)
  • ??3@YAXPEAX@Z (Address: 0x180034000)
  • ?terminate@@YAXXZ (Address: 0x180033f48)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180033f88)
  • free (Address: 0x180033f58)
  • iswascii (Address: 0x180034040)
  • malloc (Address: 0x180033fa8)
  • memcmp (Address: 0x180034028)
  • memcpy (Address: 0x180033f78)
  • memcpy_s (Address: 0x180033ff0)
  • memmove (Address: 0x180033f70)
  • memmove_s (Address: 0x180033fc8)
  • memset (Address: 0x180034050)
  • toupper (Address: 0x180034048)
  • wcschr (Address: 0x180034020)
  • wcscmp (Address: 0x180034058)
  • wcsnlen (Address: 0x180033fb0)
  • wcstoul (Address: 0x180034010)
ntdll.dll
  • NtPowerInformation (Address: 0x180034088)
  • NtQuerySystemInformation (Address: 0x180034080)
  • RtlDosPathNameToNtPathName_U_WithStatus (Address: 0x180034068)
  • RtlFreeUnicodeString (Address: 0x180034070)
  • RtlNtStatusToDosError (Address: 0x180034090)
  • RtlStringFromGUID (Address: 0x180034078)
OLEAUT32.dll
  • SysAllocString (Address: 0x180033dd0)
profapi.dll
  • (Address: 0x1800340a0)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x180033e00)
  • RpcBindingFree (Address: 0x180033e10)
  • RpcBindingFromStringBindingW (Address: 0x180033e08)
  • RpcBindingSetAuthInfoExW (Address: 0x180033df8)
  • RpcStringBindingComposeW (Address: 0x180033de8)
  • RpcStringFreeW (Address: 0x180033de0)
  • UuidFromStringW (Address: 0x180033df0)
SHELL32.dll
  • ShellExecuteW (Address: 0x180033e20)
USER32.dll
  • LoadStringW (Address: 0x180033e30)
  • PostMessageW (Address: 0x180033e38)