securebootai.dll

Description: CSI Secure Boot Servicing Plugin

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 64-bit

Operating System: Windows NT

SHA256: a4b186dd2e46b9b11e5c4a70506618f1

File Size: 33.3 KB

Uploaded At: Dec. 1, 2025, 8:20 a.m.

Views: 31

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x1840)
  • DllCsiGetHandler (Ordinal: 2, Address: 0x1860)

Imported DLLs & Functions

api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800051a8)
  • SetLastError (Address: 0x1800051c0)
  • SetUnhandledExceptionFilter (Address: 0x1800051b0)
  • UnhandledExceptionFilter (Address: 0x1800051b8)
api-ms-win-core-file-l1-1-0.dll
  • CreateFileW (Address: 0x1800051e8)
  • FindClose (Address: 0x1800051f0)
  • FindFirstFileW (Address: 0x1800051d8)
  • FindNextFileW (Address: 0x1800051f8)
  • GetFileSizeEx (Address: 0x1800051d0)
  • ReadFile (Address: 0x1800051e0)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180005208)
api-ms-win-core-heap-l1-1-0.dll
  • HeapDestroy (Address: 0x180005218)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x180005240)
  • FreeLibrary (Address: 0x180005230)
  • GetProcAddress (Address: 0x180005238)
  • LoadLibraryExW (Address: 0x180005228)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180005270)
  • GetCurrentProcessId (Address: 0x180005260)
  • GetCurrentThread (Address: 0x180005250)
  • GetCurrentThreadId (Address: 0x180005268)
  • OpenProcessToken (Address: 0x180005280)
  • OpenThreadToken (Address: 0x180005258)
  • TerminateProcess (Address: 0x180005278)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180005290)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1800052a0)
  • RegOpenKeyExW (Address: 0x1800052a8)
  • RegSetValueExW (Address: 0x1800052b0)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x1800052d0)
  • RtlLookupFunctionEntry (Address: 0x1800052c0)
  • RtlVirtualUnwind (Address: 0x1800052c8)
api-ms-win-core-synch-l1-1-0.dll
  • DeleteCriticalSection (Address: 0x1800052e8)
  • InitializeCriticalSection (Address: 0x1800052e0)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1800052f8)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemDirectoryW (Address: 0x180005308)
  • GetSystemTimeAsFileTime (Address: 0x180005310)
  • GetSystemWindowsDirectoryW (Address: 0x180005320)
  • GetTickCount (Address: 0x180005318)
api-ms-win-security-base-l1-1-0.dll
  • AdjustTokenPrivileges (Address: 0x180005330)
api-ms-win-security-lsalookup-l2-1-0.dll
  • LookupPrivilegeValueW (Address: 0x180005340)
msvcrt.dll
  • __C_specific_handler (Address: 0x180005360)
  • _amsg_exit (Address: 0x180005350)
  • _callnewh (Address: 0x180005378)
  • _initterm (Address: 0x180005398)
  • _vsnwprintf (Address: 0x180005388)
  • _wcsicmp (Address: 0x180005380)
  • _XcptFilter (Address: 0x180005390)
  • free (Address: 0x180005370)
  • malloc (Address: 0x180005368)
  • memcmp (Address: 0x180005358)
  • memset (Address: 0x1800053a0)
ntdll.dll
  • NtQuerySystemInformation (Address: 0x1800053c8)
  • NtSetSystemEnvironmentValueEx (Address: 0x1800053b0)
  • RtlInitUnicodeString (Address: 0x1800053c0)
  • RtlNtStatusToDosError (Address: 0x1800053b8)
WCP.dll
  • ConvertNtStatusToHResult (Address: 0x180005190)
  • RtlFreeLBlob (Address: 0x180005188)
  • RtlReportErrorOrigination (Address: 0x180005198)