Windows 10 DLL File Information - efscore.dll |
The following DLL report was generated by automatic DLL script that scanned and loaded all DLL files in the system32 directory of Windows 10, extracted the information from them, and then saved it into HTML reports. If you want to view a report of another DLL, go to the main page of this Web site.
General Information
File Description: | EFS Core Library |
File Version: | 10.0.10130.0 (fbl_impressive.150522-2224) |
Company: | Microsoft Corporation |
Product Name: | Microsoft® Windows® Operating System |
DLL popularity | Very Low - 1 other DLL files in system32 directory are statically linked to this file. |
File Size: | 563 KB |
Total Number of Exported Functions: | 54 |
Total Number of Exported Functions With Names: | 54 |
Section Headers
Name | Virtual Address | Raw Data Size | % of File | Characteristics | Section Contains... |
---|---|---|---|---|---|
.text | 0x00001000 | 515,584 Bytes | 89.4% | Read, Execute | Code |
.data | 0x0007f000 | 1,536 Bytes | 0.3% | Write, Read | Initialized Data |
.idata | 0x00080000 | 13,312 Bytes | 2.3% | Read | Initialized Data |
.didat | 0x00084000 | 512 Bytes | 0.1% | Write, Read | Initialized Data |
.rsrc | 0x00085000 | 16,384 Bytes | 2.8% | Read | Initialized Data |
.reloc | 0x00089000 | 28,672 Bytes | 5.0% | Read, Discardable | Initialized Data |
Static Linking
efscore.dll is statically linked to the following files:msvcrt.dll
api-ms-win-eventing-provider-l1-1-0.dll
api-ms-win-core-processthreads-l1-1-2.dll
api-ms-win-core-handle-l1-1-0.dll
api-ms-win-core-errorhandling-l1-1-1.dll
api-ms-win-core-libraryloader-l1-2-0.dll
api-ms-win-core-localization-l1-2-1.dll
api-ms-win-core-heap-l2-1-0.dll
api-ms-win-core-registry-l1-1-0.dll
api-ms-win-core-heap-l1-2-0.dll
api-ms-win-core-file-l1-2-1.dll
api-ms-win-core-io-l1-1-1.dll
api-ms-win-core-memory-l1-1-2.dll
CRYPT32.dll
api-ms-win-security-base-l1-2-0.dll
api-ms-win-core-synch-l1-2-0.dll
api-ms-win-core-sysinfo-l1-2-1.dll
api-ms-win-core-timezone-l1-1-0.dll
ncrypt.dll
bcrypt.dll
AUTHZ.dll
api-ms-win-core-rtlsupport-l1-2-0.dll
USERENV.dll
netutils.dll
DSROLE.dll
SspiCli.dll
api-ms-win-core-threadpool-l1-2-0.dll
api-ms-win-core-registry-l1-1-1.dll
api-ms-win-core-file-l2-1-1.dll
api-ms-win-core-processenvironment-l1-2-0.dll
api-ms-win-security-sddl-l1-1-0.dll
api-ms-win-core-profile-l1-1-0.dll
api-ms-win-core-string-l1-1-0.dll
api-ms-win-core-synch-l1-2-1.dll
api-ms-win-core-kernel32-legacy-l1-1-1.dll
api-ms-win-core-threadpool-legacy-l1-1-0.dll
api-ms-win-security-lsapolicy-l1-1-0.dll
EFSUTIL.dll
ntdll.dll
iertutil.dll
api-ms-win-core-debug-l1-1-1.dll
OLEAUT32.dll
api-ms-win-eventing-classicprovider-l1-1-0.dll
api-ms-win-core-com-l1-1-1.dll
api-ms-win-core-delayload-l1-1-1.dll
api-ms-win-core-apiquery-l1-1-0.dll
This means that when efscore.dll is loaded, the above files are automatically loaded too. If one of these files is corrupted or missing, efscore.dll won't be loaded.
List of files that are statically linked to efscore.dll
efssvc.dll
This means that when one of the above files is loaded, efscore.dll will be loaded too. (The opposite of the previous 'Static Linking' section)
General Resources Information
Resource Type | Number of Items | Total Size | % of File |
---|---|---|---|
Icons | 0 | 0 Bytes | 0.0% |
Animated Icons | 0 | 0 Bytes | 0.0% |
Cursors | 0 | 0 Bytes | 0.0% |
Animated Cursors | 0 | 0 Bytes | 0.0% |
Bitmaps | 0 | 0 Bytes | 0.0% |
AVI Files | 0 | 0 Bytes | 0.0% |
Dialog-Boxes | 0 | 0 Bytes | 0.0% |
HTML Related Files | 0 | 0 Bytes | 0.0% |
Menus | 0 | 0 Bytes | 0.0% |
Strings | 3 | 102 Bytes | 0.0% |
Type Libraries | 0 | 0 Bytes | 0.0% |
Manifest | 0 | 0 Bytes | 0.0% |
All Others | 4 | 35,974 Bytes | 6.2% |
Total | 7 | 36,076 Bytes | 6.3% |
Icons in this file
No icons found in this file
Cursors in this file
No cursors found in this file
Dialog-boxes list (up to 1000 dialogs)
No dialog resources in this file.
String resources in this dll (up to 1000 strings)
String ID | String Text |
---|---|
101 | Encrypt to |
102 | %1 (managed) |
103 | Not encrypted |
COM Classes/Interfaces
There is no type library in this file with COM classes/interfaces information
Exported Functions List
The following functions are exported by this dll:EdpDllCredentialCreate | EdpDllCredentialDelete | EdpDllCredentialExists |
EdpDllCredentialQuery | EdpDllDplUpgradePinInfo | EdpDllDplUpgradeVerifyUser |
EdpDllDplUserCredentialsSet | EdpDllDplUserUnlockComplete | EdpDllDplUserUnlockStart |
EdpDllGetCredServiceState | EdpDllGetLockSessionUnwrappedKey | EdpDllGetLockSessionWrappedKey |
EdpDllQueryDplEnforcedPolicyOwnerIds | EdpDllQueryRevokedPolicyOwnerIds | EdpDllQueueFileForEncryption |
EdpDllServiceFileEncryptionQueue | EfsDllAddUsersToFileSrv | EfsDllAllocateHeap |
EfsDllCloseFileRaw | EfsDllConstructEFS | EfsDllDecryptFek |
EfsDllDecryptFileSrv | EfsDllDisabled | EfsDllDuplicateEncryptionInfoFileSrv |
EfsDllEncryptFileSrv | EfsDllErrorToNtStatus | EfsDllFileKeyInfoSrv |
EfsDllFreeHeap | EfsDllFreeUserInfo | EfsDllGetLocalFileName |
EfsDllGetLogFile | EfsDllGetUserInfo | EfsDllGetVolumeRoot |
EfsDllIsNonEfsSKU | EfsDllLoadUserProfile | EfsDllMarkFileForDelete |
EfsDllOnSessionChange | EfsDllOpenFileRaw | EfsDllQueryProtectorsSrv |
EfsDllQueryRecoveryAgentsSrv | EfsDllQueryUsersOnFileSrv | EfsDllReadFileRaw |
EfsDllRemoveUsersFromFileSrv | EfsDllSetFileEncryptionKeySrv | EfsDllShareDecline |
EfsDllSsoFlushUserCache | EfsDllUnloadUserProfile | EfsDllUsePinForEncryptedFilesSrv |
EfsDllValidateEfsStream | EfsDllWriteEncryptedFileWithHeader | EfsDllWriteFileRaw |
EfsInitialize | EfsProcessRecoveryPolicy | EfsUnInitialize |
Imported Functions List
The following functions are imported by this dll:- msvcrt.dll:
_CxxThrowException _XcptFilter __CxxFrameHandler __dllonexit _amsg_exit _callnewh _except_handler4_common _initterm _lock _onexit _purecall _unlock _vsnprintf _vsnwprintf _wcsicmp _wcsnicmp _wcsrev free iswspace malloc memcmp memcpy memcpy_s memmove memset public: __thiscall exception::exception(char const * const &) public: __thiscall exception::exception(char const * const &,int) public: __thiscall exception::exception(class exception const &) public: virtual __thiscall exception::~exception(void) public: virtual __thiscall type_info::~type_info(void) public: virtual char const * __thiscall exception::what(void)const strchr swprintf_s void __cdecl operator delete(void *) wcscat_s wcschr wcsncmp wcsnlen wcsstr wcstok_s - api-ms-win-eventing-provider-l1-1-0.dll:
ntdll!EtwEventActivityIdControl ntdll!EtwEventRegister ntdll!EtwEventSetInformation ntdll!EtwEventUnregister ntdll!EtwEventWriteTransfer - api-ms-win-core-processthreads-l1-1-2.dll:
KernelBase!OpenProcessToken KernelBase!OpenThreadToken KernelBase!SetThreadToken kernel32!CreateThread kernel32!GetCurrentProcess kernel32!GetCurrentProcessId kernel32!GetCurrentThread kernel32!GetCurrentThreadId kernel32!OpenProcess kernel32!ResumeThread kernel32!SetThreadStackGuarantee kernel32!TerminateProcess kernel32!TerminateThread - api-ms-win-core-handle-l1-1-0.dll:
KernelBase!CloseHandle - api-ms-win-core-errorhandling-l1-1-1.dll:
KernelBase!GetLastError KernelBase!SetUnhandledExceptionFilter KernelBase!UnhandledExceptionFilter ntdll!RtlRestoreLastWin32Error - api-ms-win-core-libraryloader-l1-2-0.dll:
KernelBase!FreeLibrary KernelBase!GetModuleFileNameA KernelBase!GetModuleFileNameW KernelBase!GetModuleHandleExW KernelBase!GetModuleHandleW KernelBase!GetProcAddress KernelBase!LoadLibraryExW KernelBase!LoadStringW - api-ms-win-core-localization-l1-2-1.dll:
KernelBase!FormatMessageW KernelBase!IdnToAscii - api-ms-win-core-heap-l2-1-0.dll:
KernelBase!LocalAlloc KernelBase!LocalFree - api-ms-win-core-registry-l1-1-0.dll:
KernelBase!RegCloseKey KernelBase!RegCreateKeyExW KernelBase!RegDeleteKeyExW KernelBase!RegDeleteTreeW KernelBase!RegDeleteValueW KernelBase!RegEnumKeyExW KernelBase!RegEnumValueW KernelBase!RegFlushKey KernelBase!RegGetValueW KernelBase!RegOpenCurrentUser KernelBase!RegOpenKeyExW KernelBase!RegQueryInfoKeyW KernelBase!RegQueryValueExW KernelBase!RegSetValueExW - api-ms-win-core-heap-l1-2-0.dll:
KernelBase!GetProcessHeap KernelBase!HeapSetInformation ntdll!RtlAllocateHeap ntdll!RtlFreeHeap - api-ms-win-core-file-l1-2-1.dll:
KernelBase!CompareFileTime KernelBase!CreateFileW KernelBase!DeleteFileW KernelBase!FindClose KernelBase!FindFirstFileW KernelBase!FindFirstVolumeW KernelBase!FindNextFileW KernelBase!FindNextVolumeW KernelBase!FindVolumeClose KernelBase!FlushFileBuffers KernelBase!GetFileAttributesW KernelBase!GetFileSizeEx KernelBase!GetFileTime KernelBase!GetFinalPathNameByHandleW KernelBase!GetVolumeInformationByHandleW KernelBase!GetVolumeInformationW KernelBase!GetVolumePathNameW KernelBase!ReadFile KernelBase!SetFileInformationByHandle KernelBase!SetFilePointer KernelBase!SetFileTime KernelBase!WriteFile - api-ms-win-core-io-l1-1-1.dll:
kernel32!DeviceIoControl - api-ms-win-core-memory-l1-1-2.dll:
KernelBase!CreateFileMappingW KernelBase!MapViewOfFile KernelBase!UnmapViewOfFile KernelBase!VirtualAlloc KernelBase!VirtualFree KernelBase!VirtualLock KernelBase!VirtualProtect KernelBase!VirtualQuery KernelBase!VirtualUnlock - CRYPT32.dll:
CertAddEncodedCertificateToStore CertCloseStore CertCreateCertificateContext CertDeleteCRLFromStore CertDuplicateCertificateContext CertFindCertificateInStore CertFindExtension CertFreeCertificateChainEngine CertFreeCertificateContext CertGetCertificateContextProperty CertGetNameStringW CertOpenStore CertSetCRLContextProperty CertVerifyTimeValidity CryptBinaryToStringW CryptDecodeObject CryptImportPublicKeyInfoEx2 CryptStringToBinaryW dpapi!CryptProtectMemory dpapi!CryptUnprotectMemory - api-ms-win-security-base-l1-2-0.dll:
KernelBase!AdjustTokenPrivileges KernelBase!CopySid KernelBase!CreateWellKnownSid KernelBase!DuplicateTokenEx KernelBase!EqualSid KernelBase!GetLengthSid KernelBase!GetSidSubAuthority KernelBase!GetSidSubAuthorityCount KernelBase!GetTokenInformation KernelBase!ImpersonateLoggedOnUser KernelBase!IsValidSid KernelBase!RevertToSelf KernelBase!SetTokenInformation - api-ms-win-core-synch-l1-2-0.dll:
KernelBase!CancelWaitableTimer KernelBase!CreateEventW KernelBase!CreateMutexW KernelBase!CreateWaitableTimerExW KernelBase!ReleaseMutex KernelBase!ResetEvent KernelBase!SetEvent KernelBase!SetWaitableTimerEx KernelBase!Sleep KernelBase!WaitForSingleObject ntdll!RtlAcquireSRWLockExclusive ntdll!RtlDeleteCriticalSection ntdll!RtlEnterCriticalSection ntdll!RtlInitializeCriticalSection ntdll!RtlLeaveCriticalSection ntdll!RtlReleaseSRWLockExclusive ntdll!RtlTryEnterCriticalSection - api-ms-win-core-sysinfo-l1-2-1.dll:
KernelBase!GetComputerNameExW KernelBase!GetSystemInfo KernelBase!GetSystemTime KernelBase!GetSystemTimeAsFileTime KernelBase!GetTickCount KernelBase!GetTickCount64 - api-ms-win-core-timezone-l1-1-0.dll:
KernelBase!SystemTimeToFileTime - ncrypt.dll:
NCryptCloseProtectionDescriptor NCryptCreateProtectionDescriptor NCryptDeriveKey NCryptExportKey NCryptFreeObject NCryptGetProperty NCryptImportKey NCryptOpenStorageProvider NCryptProtectSecret NCryptSecretAgreement NCryptUnprotectSecret - bcrypt.dll:
BCryptCloseAlgorithmProvider BCryptCreateHash BCryptDecrypt BCryptDeriveKey BCryptDestroyHash BCryptDestroyKey BCryptDestroySecret BCryptDuplicateKey BCryptEncrypt BCryptExportKey BCryptFinalizeKeyPair BCryptFinishHash BCryptGenRandom BCryptGenerateKeyPair BCryptGenerateSymmetricKey BCryptGetFipsAlgorithmMode BCryptGetProperty BCryptHashData BCryptImportKey BCryptImportKeyPair BCryptKeyDerivation BCryptOpenAlgorithmProvider BCryptSecretAgreement BCryptSetProperty - AUTHZ.dll:
AuthzFreeAuditEvent AuthziAllocateAuditParams AuthziFreeAuditEventType AuthziFreeAuditParams AuthziInitializeAuditEvent AuthziInitializeAuditEventType AuthziInitializeAuditParams AuthziLogAuditEvent - api-ms-win-core-rtlsupport-l1-2-0.dll:
ntdll!RtlCompareMemory - USERENV.dll:
EnterCriticalPolicySection ExpandEnvironmentStringsForUserW LeaveCriticalPolicySection LoadUserProfileW RegisterGPNotification UnloadUserProfile UnregisterGPNotification - netutils.dll:
NetApiBufferFree - DSROLE.dll:
DsRoleFreeMemory DsRoleGetPrimaryDomainInformation - SspiCli.dll:
LsaFreeReturnBuffer LsaGetLogonSessionData LsaRegisterPolicyChangeNotification LsaUnregisterPolicyChangeNotification - api-ms-win-core-threadpool-l1-2-0.dll:
KernelBase!CallbackMayRunLong KernelBase!CreateThreadpoolCleanupGroup KernelBase!CreateThreadpoolTimer ntdll!TpIsTimerSet ntdll!TpReleaseCleanupGroup ntdll!TpReleaseCleanupGroupMembers ntdll!TpReleaseTimer ntdll!TpSetTimer ntdll!TpWaitForTimer - api-ms-win-core-registry-l1-1-1.dll:
KernelBase!RegSetKeyValueW - api-ms-win-core-file-l2-1-1.dll:
KernelBase!GetFileInformationByHandleEx KernelBase!ReplaceFileW - api-ms-win-core-processenvironment-l1-2-0.dll:
KernelBase!GetEnvironmentVariableW - api-ms-win-security-sddl-l1-1-0.dll:
sechost!ConvertSidToStringSidW sechost!ConvertStringSidToSidW - api-ms-win-core-profile-l1-1-0.dll:
ntdll!RtlQueryPerformanceCounter - api-ms-win-core-string-l1-1-0.dll:
KernelBase!CompareStringOrdinal - api-ms-win-core-synch-l1-2-1.dll:
KernelBase!WaitForMultipleObjects - api-ms-win-core-kernel32-legacy-l1-1-1.dll:
kernel32!GetComputerNameW kernel32!RegisterWaitForSingleObject kernel32!UnregisterWait - api-ms-win-core-threadpool-legacy-l1-1-0.dll:
KernelBase!CreateTimerQueueTimer KernelBase!DeleteTimerQueueTimer KernelBase!QueueUserWorkItem KernelBase!UnregisterWaitEx - api-ms-win-security-lsapolicy-l1-1-0.dll:
sechost!LsaClose sechost!LsaFreeMemory sechost!LsaOpenPolicy sechost!LsaQueryInformationPolicy - EFSUTIL.dll:
EfsUtilApplyGroupPolicy EfsUtilCheckCurrentKeyCapabilities EfsUtilCreateSelfSignedCertificate EfsUtilGetCertContextFromCertHash EfsUtilGetProvider EfsUtilGetUserKey EfsUtilIsSmartcardKey EfsUtilIsSmartcardProvider EfsUtilReleaseProvider EfsUtilReleaseUserKey EfsUtilSetCurrentKey EfsUtilSetSmartcardPin EfsUtilSmartcardCredsNeededError - ntdll.dll:
CsrIdentifyAlertableThread EtwEventEnabled EtwEventRegister EtwEventUnregister EtwEventWrite NtClose NtCreateFile NtFlushBuffersFile NtFsControlFile NtOpenThreadToken NtQueryInformationFile NtQueryInformationToken NtQueryObject NtQuerySecurityAttributesToken NtQuerySystemTime NtQueryVolumeInformationFile NtReadFile NtSetInformationFile NtSetInformationThread NtSetInformationToken NtWriteFile RtlAcquireResourceExclusive RtlAcquireResourceShared RtlAcquireSRWLockExclusive RtlAcquireSRWLockShared RtlAddAccessAllowedAceEx RtlAllocateHeap RtlAnsiStringToUnicodeString RtlCanonicalizeDomainName RtlCompareUnicodeString RtlCompareUnicodeStrings RtlConvertSidToUnicodeString RtlCopySid RtlCopyUnicodeString RtlCreateSecurityDescriptor RtlDeleteCriticalSection RtlDosPathNameToNtPathName_U RtlEnterCriticalSection RtlEqualDomainName RtlEqualSid RtlFreeAnsiString RtlFreeHeap RtlGetDaclSecurityDescriptor RtlImageNtHeader RtlInitAnsiString RtlInitUnicodeString RtlInitializeConditionVariable RtlInitializeCriticalSection RtlInitializeResource RtlInitializeSid RtlLeaveCriticalSection RtlLengthRequiredSid RtlLengthSid RtlNtStatusToDosError RtlPublishWnfStateData RtlReleaseResource RtlReleaseSRWLockExclusive RtlReleaseSRWLockShared RtlSetDaclSecurityDescriptor RtlSubAuthoritySid RtlSubscribeWnfStateChangeNotification RtlUnsubscribeWnfNotificationWaitForCompletion RtlValidSid WinSqmAddToStreamEx - iertutil.dll:
CreateUri - api-ms-win-core-debug-l1-1-1.dll:
KernelBase!OutputDebugStringW - OLEAUT32.dll:
SysAllocString SysFreeString - api-ms-win-eventing-classicprovider-l1-1-0.dll:
ntdll!EtwTraceMessage - api-ms-win-core-com-l1-1-1.dll:
combase!CoTaskMemAlloc combase!CoTaskMemFree combase!StringFromGUID2 - api-ms-win-core-delayload-l1-1-1.dll:
KernelBase!DelayLoadFailureHook KernelBase!ResolveDelayLoadedAPI - api-ms-win-core-apiquery-l1-1-0.dll:
ntdll!ApiSetQueryApiSetPresence