sdiageng.dll

Description: Scripted Diagnostics Execution Engine

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.6157

Architecture: 64-bit

Operating System: Windows NT

SHA256: 0f3721cddf918efeaff9387fe233a06b

File Size: 246.0 KB

Uploaded At: Dec. 1, 2025, 7:38 a.m.

Views: 3

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x1420)
  • DllGetClassObject (Ordinal: 2, Address: 0x1440)

Imported DLLs & Functions

ADVAPI32.dll
  • AllocateAndInitializeSid (Address: 0x18002b4c0)
  • CheckTokenMembership (Address: 0x18002b4d8)
  • ConvertSidToStringSidW (Address: 0x18002b4e0)
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x18002b4e8)
  • DuplicateTokenEx (Address: 0x18002b508)
  • EventRegister (Address: 0x18002b4f0)
  • EventUnregister (Address: 0x18002b4a0)
  • EventWriteTransfer (Address: 0x18002b518)
  • FreeSid (Address: 0x18002b4d0)
  • GetTokenInformation (Address: 0x18002b510)
  • ImpersonateLoggedOnUser (Address: 0x18002b500)
  • OpenProcessToken (Address: 0x18002b4c8)
  • OpenThreadToken (Address: 0x18002b498)
  • RegCloseKey (Address: 0x18002b4b8)
  • RegOpenKeyExW (Address: 0x18002b4a8)
  • RegQueryValueExW (Address: 0x18002b4b0)
  • RevertToSelf (Address: 0x18002b4f8)
CRYPT32.dll
  • CertCloseStore (Address: 0x18002b550)
  • CertCompareCertificate (Address: 0x18002b570)
  • CertDuplicateCertificateContext (Address: 0x18002b558)
  • CertFindCertificateInStore (Address: 0x18002b540)
  • CertFreeCertificateContext (Address: 0x18002b538)
  • CertGetCertificateContextProperty (Address: 0x18002b530)
  • CertGetEnhancedKeyUsage (Address: 0x18002b548)
  • CertGetNameStringW (Address: 0x18002b568)
  • CertOpenSystemStoreW (Address: 0x18002b528)
  • CertVerifyCertificateChainPolicy (Address: 0x18002b560)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x18002b6d8)
  • AcquireSRWLockShared (Address: 0x18002b6e8)
  • CloseHandle (Address: 0x18002b690)
  • CloseThreadpoolTimer (Address: 0x18002b720)
  • CopyFileW (Address: 0x18002b648)
  • CreateDirectoryW (Address: 0x18002b778)
  • CreateFileW (Address: 0x18002b688)
  • CreateMutexExW (Address: 0x18002b7b0)
  • CreateSemaphoreExW (Address: 0x18002b7b8)
  • CreateThreadpoolTimer (Address: 0x18002b750)
  • DebugBreak (Address: 0x18002b6b0)
  • DeleteCriticalSection (Address: 0x18002b608)
  • DeleteFileW (Address: 0x18002b630)
  • EnterCriticalSection (Address: 0x18002b730)
  • ExpandEnvironmentStringsW (Address: 0x18002b7e8)
  • FindClose (Address: 0x18002b628)
  • FindFirstFileW (Address: 0x18002b620)
  • FindNextFileW (Address: 0x18002b638)
  • FindResourceExW (Address: 0x18002b598)
  • FormatMessageW (Address: 0x18002b698)
  • FreeLibrary (Address: 0x18002b668)
  • GetComputerNameExW (Address: 0x18002b7c8)
  • GetCurrentProcess (Address: 0x18002b800)
  • GetCurrentProcessId (Address: 0x18002b7a8)
  • GetCurrentThread (Address: 0x18002b5b8)
  • GetCurrentThreadId (Address: 0x18002b6a0)
  • GetDateFormatEx (Address: 0x18002b7e0)
  • GetDriveTypeW (Address: 0x18002b798)
  • GetFullPathNameW (Address: 0x18002b7f8)
  • GetLastError (Address: 0x18002b618)
  • GetLocalTime (Address: 0x18002b7d8)
  • GetLongPathNameW (Address: 0x18002b610)
  • GetModuleFileNameA (Address: 0x18002b6a8)
  • GetModuleFileNameW (Address: 0x18002b758)
  • GetModuleHandleExW (Address: 0x18002b660)
  • GetModuleHandleW (Address: 0x18002b6b8)
  • GetNativeSystemInfo (Address: 0x18002b7a0)
  • GetProcAddress (Address: 0x18002b6c0)
  • GetProcessHeap (Address: 0x18002b678)
  • GetSystemTimeAsFileTime (Address: 0x18002b5f0)
  • GetTempPathW (Address: 0x18002b788)
  • GetThreadPreferredUILanguages (Address: 0x18002b650)
  • GetTickCount (Address: 0x18002b5e8)
  • GetTickCount64 (Address: 0x18002b760)
  • GetTimeFormatEx (Address: 0x18002b5f8)
  • GetVersionExW (Address: 0x18002b7c0)
  • GetWindowsDirectoryW (Address: 0x18002b790)
  • GlobalAlloc (Address: 0x18002b5a8)
  • GlobalFree (Address: 0x18002b5a0)
  • GlobalLock (Address: 0x18002b588)
  • GlobalUnlock (Address: 0x18002b580)
  • HeapAlloc (Address: 0x18002b670)
  • HeapFree (Address: 0x18002b680)
  • InitializeCriticalSection (Address: 0x18002b600)
  • InitializeCriticalSectionEx (Address: 0x18002b738)
  • IsDebuggerPresent (Address: 0x18002b6c8)
  • IsValidLocaleName (Address: 0x18002b7d0)
  • LeaveCriticalSection (Address: 0x18002b768)
  • LoadLibraryExW (Address: 0x18002b658)
  • LoadResource (Address: 0x18002b590)
  • LocalFree (Address: 0x18002b780)
  • LockResource (Address: 0x18002b5b0)
  • OpenSemaphoreW (Address: 0x18002b748)
  • OutputDebugStringW (Address: 0x18002b6d0)
  • QueryPerformanceCounter (Address: 0x18002b5e0)
  • ReleaseMutex (Address: 0x18002b708)
  • ReleaseSemaphore (Address: 0x18002b700)
  • ReleaseSRWLockExclusive (Address: 0x18002b6e0)
  • ReleaseSRWLockShared (Address: 0x18002b6f0)
  • RemoveDirectoryW (Address: 0x18002b640)
  • SetLastError (Address: 0x18002b6f8)
  • SetThreadpoolTimer (Address: 0x18002b710)
  • SetUnhandledExceptionFilter (Address: 0x18002b5d0)
  • SizeofResource (Address: 0x18002b7f0)
  • Sleep (Address: 0x18002b5c0)
  • TerminateProcess (Address: 0x18002b5d8)
  • UnhandledExceptionFilter (Address: 0x18002b5c8)
  • WaitForSingleObject (Address: 0x18002b740)
  • WaitForSingleObjectEx (Address: 0x18002b728)
  • WaitForThreadpoolTimerCallbacks (Address: 0x18002b718)
  • WTSGetActiveConsoleSessionId (Address: 0x18002b770)
msvcrt.dll
  • __C_specific_handler (Address: 0x18002ba38)
  • __CxxFrameHandler3 (Address: 0x18002ba90)
  • __dllonexit (Address: 0x18002ba60)
  • _amsg_exit (Address: 0x18002ba28)
  • _callnewh (Address: 0x18002b9f0)
  • _CxxThrowException (Address: 0x18002ba88)
  • _initterm (Address: 0x18002ba30)
  • _lock (Address: 0x18002ba50)
  • _onexit (Address: 0x18002ba68)
  • _purecall (Address: 0x18002b9a8)
  • _unlock (Address: 0x18002ba58)
  • _vsnprintf (Address: 0x18002b9f8)
  • _vsnprintf_s (Address: 0x18002b990)
  • _vsnwprintf (Address: 0x18002ba20)
  • _wcsicmp (Address: 0x18002ba10)
  • _wcslwr_s (Address: 0x18002ba18)
  • _wcsnicmp (Address: 0x18002b9d0)
  • _wtoi (Address: 0x18002b9b8)
  • _XcptFilter (Address: 0x18002ba00)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x18002b980)
  • ??0exception@@QEAA@XZ (Address: 0x18002b998)
  • ??1exception@@UEAA@XZ (Address: 0x18002b978)
  • ??1type_info@@UEAA@XZ (Address: 0x18002ba40)
  • ?terminate@@YAXXZ (Address: 0x18002ba48)
  • calloc (Address: 0x18002b9e8)
  • free (Address: 0x18002b9c0)
  • iswdigit (Address: 0x18002b9d8)
  • malloc (Address: 0x18002b9b0)
  • memcmp (Address: 0x18002ba80)
  • memcpy (Address: 0x18002ba78)
  • memcpy_s (Address: 0x18002b988)
  • memmove_s (Address: 0x18002b9a0)
  • memset (Address: 0x18002ba70)
  • strcmp (Address: 0x18002ba98)
  • wcschr (Address: 0x18002ba08)
  • wcsncmp (Address: 0x18002b9c8)
  • wcstol (Address: 0x18002b9e0)
ntdll.dll
  • DbgPrintEx (Address: 0x18002bae0)
  • RtlCaptureContext (Address: 0x18002bad8)
  • RtlCreateEnvironment (Address: 0x18002bac0)
  • RtlDestroyEnvironment (Address: 0x18002bae8)
  • RtlExpandEnvironmentStrings (Address: 0x18002baf0)
  • RtlInitUnicodeStringEx (Address: 0x18002bb00)
  • RtlLookupFunctionEntry (Address: 0x18002bad0)
  • RtlNtStatusToDosError (Address: 0x18002bb08)
  • RtlSetEnvironmentVariable (Address: 0x18002baf8)
  • RtlVirtualUnwind (Address: 0x18002bac8)
  • WinSqmEndSession (Address: 0x18002bab8)
  • WinSqmSetDWORD (Address: 0x18002bab0)
  • WinSqmStartSession (Address: 0x18002baa8)
ole32.dll
  • CoAllowSetForegroundWindow (Address: 0x18002bb20)
  • CoCreateInstance (Address: 0x18002bb30)
  • CoSetProxyBlanket (Address: 0x18002bb18)
  • CreateStreamOnHGlobal (Address: 0x18002bb28)
OLEAUT32.dll
  • DispGetIDsOfNames (Address: 0x18002b840)
  • GetErrorInfo (Address: 0x18002b880)
  • LoadTypeLib (Address: 0x18002b838)
  • SafeArrayAccessData (Address: 0x18002b870)
  • SafeArrayCopy (Address: 0x18002b860)
  • SafeArrayCreateVector (Address: 0x18002b818)
  • SafeArrayDestroy (Address: 0x18002b828)
  • SafeArrayGetElement (Address: 0x18002b830)
  • SafeArrayPutElement (Address: 0x18002b820)
  • SafeArrayUnaccessData (Address: 0x18002b878)
  • SysAllocString (Address: 0x18002b810)
  • SysFreeString (Address: 0x18002b888)
  • SysStringLen (Address: 0x18002b868)
  • VariantChangeTypeEx (Address: 0x18002b850)
  • VariantClear (Address: 0x18002b858)
  • VariantInit (Address: 0x18002b848)
RPCRT4.dll
  • RpcStringFreeW (Address: 0x18002b8a8)
  • UuidCreate (Address: 0x18002b898)
  • UuidToStringW (Address: 0x18002b8a0)
USER32.dll
  • LoadStringW (Address: 0x18002b8b8)
USERENV.dll
  • ExpandEnvironmentStringsForUserW (Address: 0x18002b8c8)
WINTRUST.dll
  • CryptCATAdminAcquireContext (Address: 0x18002b928)
  • CryptCATAdminCalcHashFromFileHandle (Address: 0x18002b8e8)
  • CryptCATAdminEnumCatalogFromHash (Address: 0x18002b8f8)
  • CryptCATAdminReleaseCatalogContext (Address: 0x18002b8d8)
  • CryptCATAdminReleaseContext (Address: 0x18002b8e0)
  • CryptCATCatalogInfoFromContext (Address: 0x18002b920)
  • CryptCATClose (Address: 0x18002b930)
  • CryptCATEnumerateMember (Address: 0x18002b948)
  • CryptCATGetAttrInfo (Address: 0x18002b910)
  • CryptCATGetCatAttrInfo (Address: 0x18002b918)
  • CryptCATOpen (Address: 0x18002b908)
  • WinVerifyTrust (Address: 0x18002b938)
  • WTHelperGetProvCertFromChain (Address: 0x18002b900)
  • WTHelperGetProvSignerFromChain (Address: 0x18002b940)
  • WTHelperProvDataFromStateData (Address: 0x18002b8f0)
WTSAPI32.dll
  • WTSEnumerateSessionsW (Address: 0x18002b960)
  • WTSFreeMemory (Address: 0x18002b958)
  • WTSQueryUserToken (Address: 0x18002b968)