Windows 10 DLL File Information - NcaSvc.dll |
The following DLL report was generated by automatic DLL script that scanned and loaded all DLL files in the system32 directory of Windows 10, extracted the information from them, and then saved it into HTML reports. If you want to view a report of another DLL, go to the main page of this Web site.
General Information
File Description: | Microsoft Network Connectivity Assistant Service |
File Version: | 10.0.10130.0 (fbl_impressive.150522-2224) |
Company: | Microsoft Corporation |
Product Name: | Microsoft® Windows® Operating System |
DLL popularity | Very Low - There is no any other DLL in system32 directory that is statically linked to this file. |
File Size: | 140 KB |
Total Number of Exported Functions: | 2 |
Total Number of Exported Functions With Names: | 2 |
Section Headers
Name | Virtual Address | Raw Data Size | % of File | Characteristics | Section Contains... |
---|---|---|---|---|---|
.text | 0x00001000 | 111,616 Bytes | 77.9% | Read, Execute | Code |
.data | 0x0001d000 | 1,024 Bytes | 0.7% | Write, Read | Initialized Data |
.idata | 0x0001f000 | 9,216 Bytes | 6.4% | Read | Initialized Data |
.rsrc | 0x00022000 | 10,240 Bytes | 7.1% | Read | Initialized Data |
.reloc | 0x00025000 | 10,240 Bytes | 7.1% | Read, Discardable | Initialized Data |
Static Linking
NcaSvc.dll is statically linked to the following files:msvcrt.dll
api-ms-win-eventing-classicprovider-l1-1-0.dll
api-ms-win-core-synch-l1-2-0.dll
api-ms-win-core-synch-l1-2-1.dll
api-ms-win-core-handle-l1-1-0.dll
api-ms-win-core-threadpool-l1-2-0.dll
api-ms-win-eventing-provider-l1-1-0.dll
api-ms-win-service-core-l1-1-1.dll
api-ms-win-core-errorhandling-l1-1-1.dll
api-ms-win-core-processthreads-l1-1-2.dll
api-ms-win-core-libraryloader-l1-2-0.dll
OLEAUT32.dll
api-ms-win-core-com-l1-1-1.dll
WS2_32.dll
IPHLPAPI.DLL
api-ms-win-security-sddl-l1-1-0.dll
api-ms-win-core-heap-l2-1-0.dll
api-ms-win-security-base-l1-2-0.dll
RPCRT4.dll
api-ms-win-core-file-l1-2-1.dll
USERENV.dll
api-ms-win-core-string-l1-1-0.dll
api-ms-win-service-management-l1-1-0.dll
api-ms-win-service-management-l2-1-0.dll
api-ms-win-core-rtlsupport-l1-2-0.dll
WINHTTP.dll
api-ms-win-core-sysinfo-l1-2-1.dll
DNSAPI.dll
SspiCli.dll
api-ms-win-core-processenvironment-l1-2-0.dll
api-ms-win-core-registry-l1-1-0.dll
api-ms-win-core-heap-l1-2-0.dll
api-ms-win-core-debug-l1-1-1.dll
bcrypt.dll
api-ms-win-core-profile-l1-1-0.dll
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
ntdll.dll
api-ms-win-security-lsalookup-l1-1-1.dll
httpprxp.dll
KERNEL32.dll
fwpuclnt.dll
FirewallAPI.dll
This means that when NcaSvc.dll is loaded, the above files are automatically loaded too. If one of these files is corrupted or missing, NcaSvc.dll won't be loaded.
General Resources Information
Resource Type | Number of Items | Total Size | % of File |
---|---|---|---|
Icons | 0 | 0 Bytes | 0.0% |
Animated Icons | 0 | 0 Bytes | 0.0% |
Cursors | 0 | 0 Bytes | 0.0% |
Animated Cursors | 0 | 0 Bytes | 0.0% |
Bitmaps | 0 | 0 Bytes | 0.0% |
AVI Files | 0 | 0 Bytes | 0.0% |
Dialog-Boxes | 0 | 0 Bytes | 0.0% |
HTML Related Files | 0 | 0 Bytes | 0.0% |
Menus | 0 | 0 Bytes | 0.0% |
Strings | 79 | 8,386 Bytes | 5.8% |
Type Libraries | 0 | 0 Bytes | 0.0% |
Manifest | 0 | 0 Bytes | 0.0% |
All Others | 4 | 14,386 Bytes | 10.0% |
Total | 83 | 22,772 Bytes | 15.9% |
Icons in this file
No icons found in this file
Cursors in this file
No cursors found in this file
Dialog-boxes list (up to 1000 dialogs)
No dialog resources in this file.
String resources in this dll (up to 1000 strings)
String ID | String Text |
---|---|
3008 | Provides DirectAccess status notification for UI components |
3009 | Network Connectivity Assistant |
3010 | Corporate Connection |
3011 | NCA_STATUS_EVENT_SUBTYPE_INVALID |
3013 | User must resolve Network Access Protection (NAP) issues for connectivity. |
3014 | User must provide stronger credentials for connectivity. |
3015 | User disconnected from DirectAccess and local DNS resolution is currently preferred. |
3016 | Windows is not configured for DirectAccess. |
3017 | No Internet Access. |
3018 | Windows is unable to contact the DirectAccess server. |
3019 | Windows is unable to resolve DNS names for probes. |
3020 | Windows is unable to contact some remote resources due to network authentication failures. |
3021 | Windows is unable to contact some FILE or HTTP resources. |
3022 | Windows is unable to contact some remote resources. |
3023 | The DirectAccess client experience settings are missing. |
3024 | User must provide configuration for their network proxy. |
3025 | User must provide credentials for their network proxy. |
3026 | IP-HTTPS certificate is not available. |
3027 | IPv6 is disabled. |
3028 | Windows Firewall is deactivated. |
3029 | NCA_STATUS_EVENT_SUBTYPE_MAX |
3030 | Configuration Error: |
3031 | UDP: |
3032 | PING: |
3033 | HTTP: |
3034 | FILE: |
3035 | NCA_PROBE_TYPE_MAX |
3036 | <b>(Fail)</b> |
3037 | <b>(Resolved Name)</b> |
3038 | (Pass) |
3039 | NCA_EVCOLL_PROBE_PRV_RESULT_MAX |
3040 | <hr>Probes List |
3041 | <hr>DTE List |
3043 | DirectAccess connectivity status for user: <b> |
3044 | </b> is<br><b> |
3045 | </b><br> |
3046 | <html> <big>DirectAccess Logs</big> <table BORDER='1'> <tr><td><b>Connectivity</b></td><td><b>System Settings</b></td><td><b>DNS/Naming</b></td> <td> <B>DirectAccess Connectivity Status</b> </td></tr> <tr> <td> <a href='#ipConfig'>IP Configuration</a><br> <a href='#ipAddress'>IP Address</a><br> <a href='#iphttpsConfig'>IP-HTTPs Configuration</a><br> <a href='#iphttpsState'>IP-HTTPs State</a><br> <a href='#teredoConfig'>Teredo Configuration</a><br> <a href='#teredoState'>Teredo State</a><br> <a href='#route'>Route</a><br> <a href='#winsock'>Winsock Catalog</a><br> <a href='#6to4'>6to4 Configuration</a><br> <a href='#proxy'>Proxy Configuration</a><br> </td> <td> <a href='#systeminfo'>System Info</a><br> <a href='#groups'>Groups</a><br> </td> <td> <a href='#nrptPolicy'>NRPT Policy</a><br> <a href='#ipsecMain'>IPsec Main Mode SA’s</a><br> <a href='#ipsecQuick'>IPsec Quick Mode SA’s</a><br> <a href='#wfp'>WFP Netevents</a><br> <a href='#certMy'>Certificate Store (my)</a><br> <a href='#certRoot'>Certificate Store (root)</a><br> <a href='#ipsec'>IPsec Rules</a><br> <a href='#multisite'>DA Multisite</a><br> <a href='#daConfig'>DA Settings</a><br> <a href='#prefixPolicy'>Prefix Policy</a><br> </td><td> |
3047 | <b>The log generation was terminated because of timeout. Some of the command outputs may be truncated or missing. |
3048 | <a name=' |
3049 | '></a><br><br><big> |
3050 | </big><br><hr> <textarea cols=100 rows=35> |
3051 | </textarea><hr> |
3052 | Route (Get-NetRoute) |
3053 | System Info (systeminfo) |
3054 | 6to4 Configuration (Get-Net6to4Configuration) |
3055 | Proxy Configuration (netsh winhttp show proxy) |
3056 | Teredo Configuration (Get-NetTeredoConfiguration) |
3057 | Teredo State (Get-NetTeredoState) |
3058 | IP-HTTPs Configuration (Get-NetIPHttpsConfiguration) |
3059 | IP-HTTPs State (Get-NetIPHttpsState) |
3060 | Certificate Store (my) (certutil -silent -store -user my) |
3061 | Certificate Store (root) (certutil -store root) |
3062 | NRPT Policy (Get-DnsClientNrptPolicy) |
3064 | Winsock Catalog (netsh winsock show catalog) |
3065 | WFP Netevents (netsh wfp show netevents file=-) |
3066 | IPsec Rules (Show-NetIPsecRule -PolicyStore ActiveStore) |
3067 | Groups (whoami /all) |
3068 | IPsec Main Mode SA's (Get-NetIPsecMainModeSA) |
3069 | IPsec Quick Mode SA's (Get-NetIPsecQuickModeSA) |
3070 | IP Configuration (Get-NetIPConfiguration -All -Detailed) |
3071 | IP Address (Get-NetIPAddress) |
3072 | DA Multisite (Get-DAEntryPointTableItem) |
3073 | DA Settings (Get-DAClientExperienceConfiguration) |
3074 | Prefix Policy Table (Get-NetPrefixPolicy) |
3075 | NCA_STATUS_EVENT_TYPE_CONFIG_CHANGED |
3076 | Connected Locally: Connected to the network locally or through VPN. |
3077 | Connected Remotely: Connected to the network through DirectAccess. |
3078 | Actionable error : Corporate connectivity requires user action. |
3079 | Error: Corporate connectivity is not working. |
3080 | NCA_STATUS_EVENT_TYPE_MAX |
3081 | (Site Selected) |
3082 | <hr>DirectAccess Multisite: <b>Configured</b><br> |
3083 | Active Site: <b> |
3084 | Site Determination In Progress |
3085 | Multisite deactivated because of local workplace connection. |
3086 | </b><br> |
3087 | </td> </tr> </table> |
COM Classes/Interfaces
There is no type library in this file with COM classes/interfaces information
Exported Functions List
The following functions are exported by this dll:ServiceMain | SvchostPushServiceGlobals |
Imported Functions List
The following functions are imported by this dll:- msvcrt.dll:
_XcptFilter _amsg_exit _except_handler4_common _initterm _vsnprintf_s _vsnwprintf _wcsicmp _wcsnicmp free malloc memcmp memcpy memset strchr wcschr - api-ms-win-eventing-classicprovider-l1-1-0.dll:
ntdll!EtwGetTraceEnableFlags ntdll!EtwGetTraceEnableLevel ntdll!EtwGetTraceLoggerHandle ntdll!EtwRegisterTraceGuidsW ntdll!EtwTraceMessage ntdll!EtwUnregisterTraceGuids - api-ms-win-core-synch-l1-2-0.dll:
KernelBase!CreateEventW KernelBase!InitializeCriticalSectionAndSpinCount KernelBase!ResetEvent KernelBase!SetEvent KernelBase!SetWaitableTimer KernelBase!Sleep KernelBase!SleepConditionVariableCS KernelBase!WaitForSingleObject KernelBase!WaitForSingleObjectEx ntdll!RtlAcquireSRWLockExclusive ntdll!RtlAcquireSRWLockShared ntdll!RtlDeleteCriticalSection ntdll!RtlEnterCriticalSection ntdll!RtlInitializeConditionVariable ntdll!RtlInitializeConditionVariable ntdll!RtlLeaveCriticalSection ntdll!RtlReleaseSRWLockExclusive ntdll!RtlReleaseSRWLockShared ntdll!RtlWakeConditionVariable - api-ms-win-core-synch-l1-2-1.dll:
KernelBase!CreateWaitableTimerW KernelBase!WaitForMultipleObjects - api-ms-win-core-handle-l1-1-0.dll:
KernelBase!CloseHandle - api-ms-win-core-threadpool-l1-2-0.dll:
KernelBase!CreateThreadpoolTimer KernelBase!CreateThreadpoolWait KernelBase!CreateThreadpoolWork ntdll!TpCallbackLeaveCriticalSectionOnCompletion ntdll!TpPostWork ntdll!TpReleaseTimer ntdll!TpReleaseWait ntdll!TpReleaseWork ntdll!TpSetTimer ntdll!TpSetWait ntdll!TpWaitForTimer ntdll!TpWaitForWait - api-ms-win-eventing-provider-l1-1-0.dll:
ntdll!EtwEventRegister ntdll!EtwEventUnregister ntdll!EtwEventWrite - api-ms-win-service-core-l1-1-1.dll:
sechost!RegisterServiceCtrlHandlerExW sechost!SetServiceStatus - api-ms-win-core-errorhandling-l1-1-1.dll:
KernelBase!GetLastError KernelBase!SetUnhandledExceptionFilter KernelBase!UnhandledExceptionFilter ntdll!RtlRestoreLastWin32Error - api-ms-win-core-processthreads-l1-1-2.dll:
KernelBase!OpenProcessToken KernelBase!OpenThreadToken KernelBase!SetThreadToken kernel32!CreateProcessAsUserW kernel32!CreateProcessW kernel32!CreateThread kernel32!GetCurrentProcess kernel32!GetCurrentProcessId kernel32!GetCurrentThread kernel32!GetCurrentThreadId kernel32!QueueUserAPC kernel32!ResumeThread kernel32!TerminateProcess - api-ms-win-core-libraryloader-l1-2-0.dll:
KernelBase!DisableThreadLibraryCalls KernelBase!LoadStringW - OLEAUT32.dll:
SysAllocString SysFreeString VariantClear VariantInit - api-ms-win-core-com-l1-1-1.dll:
combase!CoCreateInstance combase!CoInitializeEx combase!CoSetProxyBlanket combase!CoUninitialize - WS2_32.dll:
FreeAddrInfoW GetAddrInfoW InetPtonW WSACleanup WSAStartup - IPHLPAPI.DLL:
CancelMibChangeNotify2 CreateSortedAddressPairs FreeMibTable GetAdaptersAddresses Icmp6CreateFile Icmp6SendEcho2 IcmpCloseHandle NotifyIpInterfaceChange NotifyRouteChange2 NotifyUnicastIpAddressChange - api-ms-win-security-sddl-l1-1-0.dll:
sechost!ConvertStringSecurityDescriptorToSecurityDescriptorW sechost!ConvertStringSidToSidW - api-ms-win-core-heap-l2-1-0.dll:
KernelBase!LocalAlloc KernelBase!LocalFree - api-ms-win-security-base-l1-2-0.dll:
KernelBase!AccessCheck KernelBase!CheckTokenMembership KernelBase!CopySid KernelBase!DuplicateTokenEx KernelBase!EqualSid KernelBase!GetLengthSid KernelBase!GetTokenInformation KernelBase!RevertToSelf - RPCRT4.dll:
I_RpcBindingIsClientLocal NdrAsyncServerCall NdrServerCall2 RpcAsyncAbortCall RpcAsyncCompleteCall RpcBindingInqAuthClientW RpcBindingToStringBindingW RpcBindingVectorFree RpcEpRegisterW RpcEpUnregister RpcImpersonateClient RpcRevertToSelf RpcServerInqBindings RpcServerInqDefaultPrincNameW RpcServerRegisterAuthInfoW RpcServerRegisterIfEx RpcServerUnregisterIfEx RpcServerUseProtseqW RpcStringBindingParseW RpcStringFreeW UuidEqual - api-ms-win-core-file-l1-2-1.dll:
KernelBase!CreateFileW KernelBase!GetLongPathNameW KernelBase!GetTempFileNameW KernelBase!GetTempPathW KernelBase!ReadFile KernelBase!SetFilePointer KernelBase!WriteFile - USERENV.dll:
CreateEnvironmentBlock DestroyEnvironmentBlock RegisterGPNotification UnregisterGPNotification - api-ms-win-core-string-l1-1-0.dll:
KernelBase!MultiByteToWideChar - api-ms-win-service-management-l1-1-0.dll:
sechost!CloseServiceHandle sechost!OpenSCManagerW sechost!OpenServiceW - api-ms-win-service-management-l2-1-0.dll:
sechost!NotifyServiceStatusChange - api-ms-win-core-rtlsupport-l1-2-0.dll:
ntdll!RtlCompareMemory - WINHTTP.dll:
WinHttpCloseHandle WinHttpConnect WinHttpCrackUrl WinHttpOpen WinHttpOpenRequest WinHttpSendRequest WinHttpSetStatusCallback - api-ms-win-core-sysinfo-l1-2-1.dll:
KernelBase!GetComputerNameExW KernelBase!GetSystemTime KernelBase!GetSystemTimeAsFileTime KernelBase!GetTickCount KernelBase!GetTickCount64 - DNSAPI.dll:
DnsFreePolicyConfig DnsGetPolicyTableInfo - SspiCli.dll:
AcceptSecurityContext AcquireCredentialsHandleW DeleteSecurityContext FreeContextBuffer FreeCredentialsHandle GetUserNameExW ImpersonateSecurityContext InitializeSecurityContextW QuerySecurityPackageInfoW RevertSecurityContext - api-ms-win-core-processenvironment-l1-2-0.dll:
KernelBase!ExpandEnvironmentStringsW - api-ms-win-core-registry-l1-1-0.dll:
KernelBase!RegCloseKey KernelBase!RegCreateKeyExW KernelBase!RegDeleteValueW KernelBase!RegEnumValueW KernelBase!RegNotifyChangeKeyValue KernelBase!RegOpenKeyExW KernelBase!RegQueryInfoKeyW KernelBase!RegQueryValueExW KernelBase!RegSetValueExW - api-ms-win-core-heap-l1-2-0.dll:
KernelBase!GetProcessHeap ntdll!RtlAllocateHeap ntdll!RtlFreeHeap - api-ms-win-core-debug-l1-1-1.dll:
KernelBase!OutputDebugStringA - bcrypt.dll:
BCryptGetFipsAlgorithmMode - api-ms-win-core-profile-l1-1-0.dll:
ntdll!RtlQueryPerformanceCounter - api-ms-win-core-shlwapi-legacy-l1-1-0.dll:
KernelBase!PathCanonicalizeW - ntdll.dll:
AlpcGetMessageAttribute AlpcInitializeMessageAttribute CsrIdentifyAlertableThread EtwTraceMessage NtAlpcCancelMessage NtAlpcConnectPort NtAlpcDisconnectPort NtAlpcQueryInformation NtAlpcSendWaitReceivePort NtClose RtlAllocateHeap RtlFreeHeap RtlInitUnicodeString RtlIpv6AddressToStringW RtlWaitOnAddress RtlWakeAddressAll TpAllocAlpcCompletion TpReleaseAlpcCompletion TpWaitForAlpcCompletion WinSqmAddToAverageDWORD vDbgPrintEx - api-ms-win-security-lsalookup-l1-1-1.dll:
sechost!LookupAccountSidLocalW - httpprxp.dll:
ProxyHelperProviderConnectToServer ProxyHelperProviderDisconnectFromServer ProxyHelperProviderRegisterForEventNotification ProxyHelperProviderUnregisterEventNotification - KERNEL32.dll:
AssignProcessToJobObject CreateJobObjectW GetComputerNameW RegisterWaitForSingleObject TerminateJobObject UnregisterWait UnregisterWaitEx - fwpuclnt.dll:
FwpmEngineClose0 FwpmEngineOpen0 FwpmNetEventSubscribe1 FwpmNetEventUnsubscribe0 - FirewallAPI.dll:
FWChangeNotificationCreate FWChangeNotificationDestroy