nsi.dll

Description: NSI User-mode interface DLL

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: d3bc64c8fdaa24d66e05bc1eef91fa42

File Size: 25.4 KB

Uploaded At: Dec. 1, 2025, 7:35 a.m.

Views: 8

Exported Functions

  • NsiAllocateAndGetPersistentDataWithMaskTable (Ordinal: 1, Address: 0x27e0)
  • NsiAllocateAndGetTable (Ordinal: 2, Address: 0x1010)
  • NsiCancelChangeNotification (Ordinal: 3, Address: 0x1e10)
  • NsiDeregisterChangeNotification (Ordinal: 4, Address: 0x2a40)
  • NsiDeregisterChangeNotificationEx (Ordinal: 5, Address: 0x1f20)
  • NsiEnumerateObjectsAllParameters (Ordinal: 6, Address: 0x1a60)
  • NsiEnumerateObjectsAllParametersEx (Ordinal: 7, Address: 0x26b0)
  • NsiEnumerateObjectsAllPersistentParametersWithMask (Ordinal: 8, Address: 0x2a80)
  • NsiFreePersistentDataWithMaskTable (Ordinal: 9, Address: 0x2b50)
  • NsiFreeTable (Ordinal: 10, Address: 0x2240)
  • NsiGetAllParameters (Ordinal: 11, Address: 0x1830)
  • NsiGetAllParametersEx (Ordinal: 12, Address: 0x1f70)
  • NsiGetAllPersistentParametersWithMask (Ordinal: 13, Address: 0x2bd0)
  • NsiGetObjectSecurity (Ordinal: 14, Address: 0x2700)
  • NsiGetParameter (Ordinal: 15, Address: 0x1630)
  • NsiGetParameterEx (Ordinal: 16, Address: 0x2750)
  • NsiRegisterChangeNotification (Ordinal: 17, Address: 0x2c60)
  • NsiRegisterChangeNotificationEx (Ordinal: 18, Address: 0x1fc0)
  • NsiRequestChangeNotification (Ordinal: 19, Address: 0x1d20)
  • NsiRequestChangeNotificationEx (Ordinal: 20, Address: 0x1db0)
  • NsiSetAllParameters (Ordinal: 21, Address: 0x1cb0)
  • NsiSetAllParametersEx (Ordinal: 22, Address: 0x1d60)
  • NsiSetAllPersistentParametersWithMask (Ordinal: 23, Address: 0x2cd0)
  • NsiSetObjectSecurity (Ordinal: 24, Address: 0x2790)
  • NsiSetParameter (Ordinal: 25, Address: 0x1e50)
  • NsiSetParameterEx (Ordinal: 26, Address: 0x1ee0)

Imported DLLs & Functions

api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180003128)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x180003138)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180003148)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180003168)
  • HeapAlloc (Address: 0x180003160)
  • HeapFree (Address: 0x180003158)
api-ms-win-core-io-l1-1-0.dll
  • DeviceIoControl (Address: 0x180003178)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x180003188)
api-ms-win-core-synch-l1-1-0.dll
  • CreateEventA (Address: 0x180003198)
ntdll.dll
  • memset (Address: 0x1800031e8)
  • NtDeviceIoControlFile (Address: 0x1800031b8)
  • NtTerminateProcess (Address: 0x1800031e0)
  • NtWaitForSingleObject (Address: 0x1800031a8)
  • RtlCaptureContext (Address: 0x1800031d8)
  • RtlLookupFunctionEntry (Address: 0x1800031d0)
  • RtlNtStatusToDosError (Address: 0x1800031b0)
  • RtlUnhandledExceptionFilter (Address: 0x1800031c0)
  • RtlVirtualUnwind (Address: 0x1800031c8)