Windows 10 DLL File Information - sechost.dll |
The following DLL report was generated by automatic DLL script that scanned and loaded all DLL files in the system32 directory of Windows 10, extracted the information from them, and then saved it into HTML reports. If you want to view a report of another DLL, go to the main page of this Web site.
General Information
File Description: | Host for SCM/SDDL/LSA Lookup APIs |
File Version: | 10.0.10130.0 (fbl_impressive.150522-2224) |
Company: | Microsoft Corporation |
Product Name: | Microsoft® Windows® Operating System |
DLL popularity | Very Low - 2 other DLL files in system32 directory are statically linked to this file. |
File Size: | 256 KB |
Total Number of Exported Functions: | 190 |
Total Number of Exported Functions With Names: | 190 |
Section Headers
Name | Virtual Address | Raw Data Size | % of File | Characteristics | Section Contains... |
---|---|---|---|---|---|
.text | 0x00001000 | 221,696 Bytes | 84.3% | Read, Execute | Code |
.data | 0x00038000 | 7,680 Bytes | 2.9% | Write, Read | Initialized Data |
.idata | 0x0003b000 | 10,240 Bytes | 3.9% | Read | Initialized Data |
.didat | 0x0003e000 | 512 Bytes | 0.2% | Write, Read | Initialized Data |
.rsrc | 0x0003f000 | 1,536 Bytes | 0.6% | Read | Initialized Data |
.reloc | 0x00040000 | 9,216 Bytes | 3.5% | Read, Discardable | Initialized Data |
Static Linking
sechost.dll is statically linked to the following files:ntdll.dll
api-ms-win-core-libraryloader-l1-2-0.dll
RPCRT4.dll
api-ms-win-core-crt-l1-1-0.dll
api-ms-win-core-threadpool-l1-2-0.dll
api-ms-win-core-file-l1-2-1.dll
api-ms-win-core-io-l1-1-1.dll
api-ms-win-core-debug-l1-1-1.dll
api-ms-win-core-errorhandling-l1-1-1.dll
api-ms-win-core-handle-l1-1-0.dll
api-ms-win-core-heap-l1-2-0.dll
api-ms-win-core-registry-l1-1-0.dll
api-ms-win-core-heap-obsolete-l1-1-0.dll
api-ms-win-core-memory-l1-1-2.dll
api-ms-win-core-processthreads-l1-1-2.dll
api-ms-win-core-string-l1-1-0.dll
api-ms-win-core-synch-l1-2-0.dll
api-ms-win-core-sysinfo-l1-2-1.dll
api-ms-win-core-wow64-l1-1-0.dll
api-ms-win-security-base-l1-2-0.dll
api-ms-win-core-apiquery-l1-1-0.dll
api-ms-win-core-delayload-l1-1-1.dll
This means that when sechost.dll is loaded, the above files are automatically loaded too. If one of these files is corrupted or missing, sechost.dll won't be loaded.
List of files that are statically linked to sechost.dll
advapi32.dll
tdh.dll
This means that when one of the above files is loaded, sechost.dll will be loaded too. (The opposite of the previous 'Static Linking' section)
General Resources Information
Resource Type | Number of Items | Total Size | % of File |
---|---|---|---|
Icons | 0 | 0 Bytes | 0.0% |
Animated Icons | 0 | 0 Bytes | 0.0% |
Cursors | 0 | 0 Bytes | 0.0% |
Animated Cursors | 0 | 0 Bytes | 0.0% |
Bitmaps | 0 | 0 Bytes | 0.0% |
AVI Files | 0 | 0 Bytes | 0.0% |
Dialog-Boxes | 0 | 0 Bytes | 0.0% |
HTML Related Files | 0 | 0 Bytes | 0.0% |
Menus | 0 | 0 Bytes | 0.0% |
Strings | 0 | 0 Bytes | 0.0% |
Type Libraries | 0 | 0 Bytes | 0.0% |
Manifest | 0 | 0 Bytes | 0.0% |
All Others | 2 | 1,140 Bytes | 0.4% |
Total | 2 | 1,140 Bytes | 0.4% |
Icons in this file
No icons found in this file
Cursors in this file
No cursors found in this file
Dialog-boxes list (up to 1000 dialogs)
No dialog resources in this file.
String resources in this dll (up to 1000 strings)
No string resources in this file.
COM Classes/Interfaces
There is no type library in this file with COM classes/interfaces information
Exported Functions List
The following functions are exported by this dll:AuditComputeEffectivePolicyBySid | AuditEnumerateCategories |
AuditEnumeratePerUserPolicy | AuditEnumerateSubCategories |
AuditFree | AuditLookupCategoryNameW |
AuditLookupSubCategoryNameW | AuditQueryGlobalSaclW |
AuditQueryPerUserPolicy | AuditQuerySecurity |
AuditQuerySystemPolicy | AuditSetGlobalSaclW |
AuditSetPerUserPolicy | AuditSetSecurity |
AuditSetSystemPolicy | BuildSecurityDescriptorForSharingAccess |
BuildSecurityDescriptorForSharingAccessEx | CapabilityCheck |
ChangeServiceConfig2A | ChangeServiceConfig2W |
ChangeServiceConfigA | ChangeServiceConfigW |
CloseServiceHandle | CloseTrace |
ControlService | ControlServiceExA |
ControlServiceExW | ControlTraceA |
ControlTraceW | ConvertSecurityDescriptorToStringSecurityDescriptorW |
ConvertSidToStringSidW | ConvertStringSecurityDescriptorToSecurityDescriptorW |
ConvertStringSidToSidW | CreateServiceA |
CreateServiceW | CredBackupCredentials |
CredDeleteA | CredDeleteW |
CredEncryptAndMarshalBinaryBlob | CredEnumerateA |
CredEnumerateW | CredFindBestCredentialA |
CredFindBestCredentialW | CredFree |
CredGetSessionTypes | CredGetTargetInfoA |
CredGetTargetInfoW | CredIsMarshaledCredentialW |
CredIsProtectedA | CredIsProtectedW |
CredMarshalCredentialA | CredMarshalCredentialW |
CredParseUserNameWithType | CredProfileLoaded |
CredProfileLoadedEx | CredProfileUnloaded |
CredProtectA | CredProtectW |
CredReadA | CredReadByTokenHandle |
CredReadDomainCredentialsA | CredReadDomainCredentialsW |
CredReadW | CredRestoreCredentials |
CredUnmarshalCredentialA | CredUnmarshalCredentialW |
CredUnprotectA | CredUnprotectW |
CredWriteA | CredWriteDomainCredentialsA |
CredWriteDomainCredentialsW | CredWriteW |
CredpConvertCredential | CredpConvertOneCredentialSize |
CredpConvertTargetInfo | CredpDecodeCredential |
CredpEncodeCredential | CredpEncodeSecret |
DeleteService | EnableTraceEx2 |
EnumDependentServicesW | EnumServicesStatusExW |
EnumerateIdentityProviders | EnumerateTraceGuidsEx |
EtwQueryRealtimeConsumer | EventAccessControl |
EventAccessQuery | EventAccessRemove |
FreeTransientObjectSecurityDescriptor | GetDefaultIdentityProvider |
GetIdentityProviderInfoByGUID | GetIdentityProviderInfoByName |
GetServiceDisplayNameW | GetServiceKeyNameW |
I_QueryTagInformation | I_ScBroadcastServiceControlMessage |
I_ScIsSecurityProcess | I_ScPnPGetServiceName |
I_ScQueryServiceConfig | I_ScRegisterDeviceNotification |
I_ScRegisterPreshutdownRestart | I_ScRpcBindA |
I_ScRpcBindW | I_ScSendPnPMessage |
I_ScSendTSMessage | I_ScSetServiceBitsA |
I_ScSetServiceBitsW | I_ScUnregisterDeviceNotification |
I_ScValidatePnPService | LocalGetConditionForString |
LocalGetReferencedTokenTypesForCondition | LocalGetStringForCondition |
LookupAccountNameLocalA | LookupAccountNameLocalW |
LookupAccountSidLocalA | LookupAccountSidLocalW |
LsaAddAccountRights | LsaClose |
LsaCreateSecret | LsaDelete |
LsaEnumerateAccountRights | LsaEnumerateAccountsWithUserRight |
LsaFreeMemory | LsaICLookupNames |
LsaICLookupNamesWithCreds | LsaICLookupSids |
LsaICLookupSidsWithCreds | LsaLookupClose |
LsaLookupFreeMemory | LsaLookupGetDomainInfo |
LsaLookupManageSidNameMapping | LsaLookupNames2 |
LsaLookupOpenLocalPolicy | LsaLookupSids |
LsaLookupSids2 | LsaLookupTranslateNames |
LsaLookupTranslateSids | LsaLookupUserAccountType |
LsaOpenPolicy | LsaOpenSecret |
LsaQueryInformationPolicy | LsaQuerySecret |
LsaRemoveAccountRights | LsaRetrievePrivateData |
LsaSetInformationPolicy | LsaSetSecret |
LsaStorePrivateData | NotifyServiceStatusChange |
NotifyServiceStatusChangeA | NotifyServiceStatusChangeW |
OpenSCManagerA | OpenSCManagerW |
OpenServiceA | OpenServiceW |
OpenTraceW | ProcessTrace |
QueryAllTracesA | QueryAllTracesW |
QueryServiceConfig2A | QueryServiceConfig2W |
QueryServiceConfigA | QueryServiceConfigW |
QueryServiceDynamicInformation | QueryServiceObjectSecurity |
QueryServiceStatus | QueryServiceStatusEx |
QueryTransientObjectSecurityDescriptor | RegisterServiceCtrlHandlerA |
RegisterServiceCtrlHandlerExA | RegisterServiceCtrlHandlerExW |
RegisterServiceCtrlHandlerW | RegisterTraceGuidsA |
ReleaseIdentityProviderEnumContext | RemoveTraceCallback |
RpcClientCapabilityCheck | SetServiceObjectSecurity |
SetServiceStatus | SetTraceCallback |
StartServiceA | StartServiceCtrlDispatcherA |
StartServiceCtrlDispatcherW | StartServiceW |
StartTraceA | StartTraceW |
StopTraceW | SubscribeServiceChangeNotifications |
TraceQueryInformation | TraceSetInformation |
UnsubscribeServiceChangeNotifications | WaitServiceState |
Imported Functions List
The following functions are imported by this dll:- ntdll.dll:
DbgPrintEx EtwDeliverDataBlock EtwEnumerateProcessRegGuids EtwProcessPrivateLoggerRequest EtwSendNotification EtwpGetCpuSpeed LdrQueryModuleServiceTags NlsMbCodePageTag NtCancelIoFile NtClose NtOpenKey NtOpenProcessToken NtOpenProcessTokenEx NtOpenThreadToken NtPowerInformation NtQueryInformationFile NtQueryInformationProcess NtQueryInformationThread NtQueryInformationToken NtQueryIntervalProfile NtQueryPerformanceCounter NtQuerySystemInformation NtQuerySystemInformation NtQueryValueKey NtQueryVolumeInformationFile NtQueueApcThread NtSetEvent NtSetInformationThread NtSetIntervalProfile NtSetSystemInformation NtTerminateProcess NtTraceControl NtTraceEvent NtWaitForMultipleObjects RtlAbsoluteToSelfRelativeSD RtlAcquireSRWLockExclusive RtlAcquireSRWLockShared RtlAddAccessAllowedAce RtlAddAccessAllowedAceEx RtlAddAccessAllowedObjectAce RtlAddAccessDeniedAceEx RtlAddAccessDeniedObjectAce RtlAddAce RtlAddAuditAccessAceEx RtlAddAuditAccessObjectAce RtlAddMandatoryAce RtlAdjustPrivilege RtlAllocateHeap RtlAnsiStringToUnicodeSize RtlAnsiStringToUnicodeString RtlCapabilityCheck RtlCaptureContext RtlCheckTokenCapability RtlCheckTokenMembership RtlCheckTokenMembershipEx RtlCompareMemory RtlCompareUnicodeString RtlConvertSidToUnicodeString RtlCopySecurityDescriptor RtlCopySid RtlCopyUnicodeString RtlCreateAcl RtlCreateQueryDebugBuffer RtlCreateSecurityDescriptor RtlCreateServiceSid RtlDecompressBufferEx RtlDeleteCriticalSection RtlDestroyQueryDebugBuffer RtlDllShutdownInProgress RtlEqualPrefixSid RtlEqualSid RtlEqualUnicodeString RtlFirstFreeAce RtlFreeAnsiString RtlFreeAnsiString RtlFreeHeap RtlGUIDFromString RtlGetAce RtlGetCompressionWorkSpaceSize RtlGetControlSecurityDescriptor RtlGetDaclSecurityDescriptor RtlGetGroupSecurityDescriptor RtlGetNtProductType RtlGetOwnerSecurityDescriptor RtlGetSaclSecurityDescriptor RtlImpersonateSelf RtlInitAnsiString RtlInitUnicodeString RtlInitUnicodeStringEx RtlInitializeBitMap RtlInitializeConditionVariable RtlInitializeCriticalSectionEx RtlInitializeSid RtlInterlockedClearBitRun RtlLengthRequiredSid RtlLengthSecurityDescriptor RtlLengthSid RtlMakeSelfRelativeSD RtlNtStatusToDosError RtlNtStatusToDosErrorNoTeb RtlQueryHeapInformation RtlQueryPerformanceFrequency RtlQueryProcessDebugInformation RtlQueryTimeZoneInformation RtlQueryWnfStateData RtlReleaseSRWLockExclusive RtlReleaseSRWLockShared RtlRestoreLastWin32Error RtlRunOnceExecuteOnce RtlSetDaclSecurityDescriptor RtlSetGroupSecurityDescriptor RtlSetOwnerSecurityDescriptor RtlSetSaclSecurityDescriptor RtlSetThreadSubProcessTag RtlSubAuthorityCountSid RtlSubAuthoritySid RtlSubscribeWnfStateChangeNotification RtlUnhandledExceptionFilter RtlUnicodeStringToAnsiSize RtlUnicodeStringToAnsiString RtlUnicodeToMultiByteSize RtlUnsubscribeWnfNotificationWaitForCompletion RtlUnsubscribeWnfStateChangeNotification RtlValidAcl RtlValidRelativeSecurityDescriptor RtlValidSid WinSqmAddToStream _vsnwprintf - api-ms-win-core-libraryloader-l1-2-0.dll:
KernelBase!DisableThreadLibraryCalls KernelBase!FreeLibrary KernelBase!GetModuleHandleExW KernelBase!GetProcAddress KernelBase!LoadLibraryExW - RPCRT4.dll:
I_RpcExceptionFilter I_RpcMapWin32Status NdrAsyncClientCall2 NdrClientCall4 RpcAsyncCancelCall RpcAsyncCompleteCall RpcAsyncInitializeHandle RpcBindingBind RpcBindingCreateW RpcBindingFree RpcBindingFromStringBindingW RpcBindingServerFromClient RpcBindingSetAuthInfoExW RpcBindingSetAuthInfoW RpcBindingSetOption RpcBindingToStringBindingW RpcImpersonateClient RpcRevertToSelf RpcRevertToSelfEx RpcServerInqCallAttributesA RpcSmDestroyClientContext RpcSsDestroyClientContext RpcSsGetContextBinding RpcStringBindingComposeW RpcStringBindingParseW RpcStringFreeW UuidCreate UuidEqual UuidFromStringW UuidIsNil UuidToStringW - api-ms-win-core-crt-l1-1-0.dll:
ntdll!_errno ntdll!_except_handler4_common ntdll!_ftol2 ntdll!_i64tow_s ntdll!_strcmpi ntdll!_ui64tow_s ntdll!_ultow ntdll!_ultow_s ntdll!_wcsicmp ntdll!_wcslwr_s ntdll!_wcsnicmp ntdll!_wcstoi64 ntdll!_wcstoui64 ntdll!iswctype ntdll!memcmp ntdll!memcpy ntdll!memset ntdll!qsort_s ntdll!strchr ntdll!strrchr ntdll!strstr ntdll!swprintf_s ntdll!wcschr ntdll!wcscpy_s ntdll!wcsncmp ntdll!wcsncpy_s ntdll!wcsrchr ntdll!wcsstr ntdll!wcstok_s ntdll!wcstoul - api-ms-win-core-threadpool-l1-2-0.dll:
KernelBase!CreateThreadpoolWork ntdll!TpPostWork ntdll!TpReleaseWork - api-ms-win-core-file-l1-2-1.dll:
KernelBase!CreateFileW KernelBase!GetDiskFreeSpaceExW KernelBase!GetDriveTypeW KernelBase!GetFileAttributesExW KernelBase!GetFullPathNameA KernelBase!GetFullPathNameW KernelBase!GetLogicalDriveStringsW KernelBase!GetVolumeInformationW KernelBase!ReadFile - api-ms-win-core-io-l1-1-1.dll:
kernel32!DeviceIoControl kernel32!GetOverlappedResult - api-ms-win-core-debug-l1-1-1.dll:
KernelBase!DebugBreak KernelBase!IsDebuggerPresent - api-ms-win-core-errorhandling-l1-1-1.dll:
KernelBase!GetLastError ntdll!RtlRestoreLastWin32Error - api-ms-win-core-handle-l1-1-0.dll:
KernelBase!CloseHandle - api-ms-win-core-heap-l1-2-0.dll:
KernelBase!GetProcessHeap ntdll!RtlAllocateHeap ntdll!RtlFreeHeap - api-ms-win-core-registry-l1-1-0.dll:
KernelBase!RegCloseKey KernelBase!RegDeleteValueW KernelBase!RegEnumKeyExW KernelBase!RegEnumValueW KernelBase!RegNotifyChangeKeyValue KernelBase!RegOpenKeyExA KernelBase!RegOpenKeyExW KernelBase!RegQueryInfoKeyW KernelBase!RegQueryValueExA KernelBase!RegQueryValueExW - api-ms-win-core-heap-obsolete-l1-1-0.dll:
kernel32!LocalAlloc kernel32!LocalFree kernel32!LocalReAlloc - api-ms-win-core-memory-l1-1-2.dll:
KernelBase!VirtualAllocEx KernelBase!VirtualFree KernelBase!VirtualFreeEx - api-ms-win-core-processthreads-l1-1-2.dll:
KernelBase!OpenProcessToken KernelBase!OpenThreadToken kernel32!CreateThread kernel32!GetCurrentProcess kernel32!GetCurrentProcessId kernel32!GetCurrentThread kernel32!GetCurrentThreadId kernel32!GetProcessTimes kernel32!GetThreadPriority kernel32!IsProcessorFeaturePresent kernel32!OpenProcess kernel32!OpenThread kernel32!ResumeThread kernel32!SetThreadPriority kernel32!TerminateThread kernel32!TlsAlloc kernel32!TlsGetValue kernel32!TlsSetValue - api-ms-win-core-string-l1-1-0.dll:
KernelBase!CompareStringOrdinal KernelBase!CompareStringW - api-ms-win-core-synch-l1-2-0.dll:
KernelBase!CreateEventA KernelBase!CreateEventW KernelBase!OpenEventW KernelBase!ResetEvent KernelBase!SetEvent KernelBase!Sleep KernelBase!SleepEx KernelBase!WaitForMultipleObjectsEx KernelBase!WaitForSingleObject KernelBase!WaitForSingleObjectEx ntdll!RtlAcquireSRWLockExclusive ntdll!RtlAcquireSRWLockShared ntdll!RtlEnterCriticalSection ntdll!RtlInitializeConditionVariable ntdll!RtlLeaveCriticalSection ntdll!RtlReleaseSRWLockExclusive ntdll!RtlReleaseSRWLockShared - api-ms-win-core-sysinfo-l1-2-1.dll:
KernelBase!GetComputerNameExW KernelBase!GetNativeSystemInfo KernelBase!GetSystemDirectoryW KernelBase!GetSystemFirmwareTable KernelBase!GlobalMemoryStatusEx - api-ms-win-core-wow64-l1-1-0.dll:
KernelBase!IsWow64Process - api-ms-win-security-base-l1-2-0.dll:
KernelBase!AddAccessAllowedAce KernelBase!AddAccessDeniedAce KernelBase!AdjustTokenGroups KernelBase!AdjustTokenPrivileges KernelBase!AllocateAndInitializeSid KernelBase!EqualDomainSid KernelBase!EqualSid KernelBase!FreeSid KernelBase!GetAclInformation KernelBase!GetLengthSid KernelBase!GetSecurityDescriptorDacl KernelBase!GetSecurityDescriptorSacl KernelBase!GetSidSubAuthority KernelBase!GetSidSubAuthorityCount KernelBase!GetTokenInformation KernelBase!InitializeSecurityDescriptor KernelBase!IsValidSecurityDescriptor KernelBase!IsValidSid KernelBase!SetKernelObjectSecurity KernelBase!SetSecurityDescriptorDacl KernelBase!SetSecurityDescriptorSacl - api-ms-win-core-apiquery-l1-1-0.dll:
ntdll!ApiSetQueryApiSetPresence - api-ms-win-core-delayload-l1-1-1.dll:
KernelBase!DelayLoadFailureHook KernelBase!ResolveDelayLoadedAPI