¿Para qué sirve la dll ci.dll?

Code Integrity Module

Dependencias de la dll ci.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\ci.dll

File Type: DLL

  Image has the following dependencies:

    ntoskrnl.exe
    HAL.dll
    msrpc.sys
    ext-ms-win-ci-xbox-l1-1-0.dll

  Summary

        2000 .data
        1000 .edata
        3000 .idata
        7000 .pdata
        C000 .rdata
        4000 .reloc
       14000 .rsrc
       2A000 .text
        2000 GFIDS
        1000 INIT
       78000 PAGE
        B000 PAGECONS
        1000 PAGEDATA

Funciones que tiene la dll ci.dll


4    0 00044910 CiCheckSignedFile
5    1 000449D0 CiFindPageHashesInCatalog
6    2 00044A50 CiFindPageHashesInSignedFile
7    3 00044A90 CiFreePolicyInfo
8    4 0005FF60 CiGetCertPublisherName
9    5 000447F0 CiGetPEInformation
10    6 00043130 CiInitialize
11    7 00060320 CiSetTrustedOriginClaimId
12    8 00052DC0 CiValidateFileObject
13    9 00044890 CiVerifyHashInCatalog
1      00053800 [NONAME]
2      0005C110 [NONAME]
3      0005C360 [NONAME]

Información avanzada sobre funciones que tiene la dll ci.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\ci.dll

File Type: DLL

  Section contains the following exports for CI.dll

    00000000 characteristics
    1A00934C time date stamp
        0.00 version
           1 ordinal base
          13 number of functions
          10 number of names

    ordinal hint RVA      name

          4    0 00044910 CiCheckSignedFile
          5    1 000449D0 CiFindPageHashesInCatalog
          6    2 00044A50 CiFindPageHashesInSignedFile
          7    3 00044A90 CiFreePolicyInfo
          8    4 0005FF60 CiGetCertPublisherName
          9    5 000447F0 CiGetPEInformation
         10    6 00043130 CiInitialize
         11    7 00060320 CiSetTrustedOriginClaimId
         12    8 00052DC0 CiValidateFileObject
         13    9 00044890 CiVerifyHashInCatalog
          1      00053800 [NONAME]
          2      0005C110 [NONAME]
          3      0005C360 [NONAME]

  Summary

        2000 .data
        1000 .edata
        3000 .idata
        7000 .pdata
        C000 .rdata
        4000 .reloc
       14000 .rsrc
       2A000 .text
        2000 GFIDS
        1000 INIT
       78000 PAGE
        B000 PAGECONS
        1000 PAGEDATA

Integridad de la dll ci.dll



Algorithm       Hash                                                                   Path                                         
---------       ----                                                                   ----                                         
SHA256          8E1AD0C29AC03E9F0E226311C4ECCE217D86218E7826FC2279CEA454C659ECCC       C:\Windows\System32\ci.dll                   


Detalles sobre el fichero dll ci.dll




PSPath            : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32\ci.dll
PSParentPath      : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32
PSChildName       : ci.dll
PSDrive           : C
PSProvider        : Microsoft.PowerShell.Core\FileSystem
PSIsContainer     : False
Mode              : -a----
VersionInfo       : File:             C:\Windows\System32\ci.dll
                    InternalName:     ci.dll
                    OriginalFilename: ci.dll.mui
                    FileVersion:      10.0.19041.1 (WinBuild.160101.0800)
                    FileDescription:  Code Integrity Module
                    Product:          Microsoft® Windows® Operating System
                    ProductVersion:   10.0.19041.1
                    Debug:            False
                    Patched:          False
                    PreRelease:       False
                    PrivateBuild:     False
                    SpecialBuild:     False
                    Language:         Inglés (Estados Unidos)
                    
BaseName          : ci
Target            : {C:\Windows\WinSxS\amd64_microsoft-windows-codeintegrity_31bf3856ad364e35_10.0.19041.546_none_7e71383e638f2ebd\c
                    i.dll}
LinkType          : HardLink
Name              : ci.dll
Length            : 913776
DirectoryName     : C:\Windows\System32
Directory         : C:\Windows\System32
IsReadOnly        : False
Exists            : True
FullName          : C:\Windows\System32\ci.dll
Extension         : .dll
CreationTime      : 21/11/2020 8:44:11
CreationTimeUtc   : 21/11/2020 7:44:11
LastAccessTime    : 03/12/2020 9:09:02
LastAccessTimeUtc : 03/12/2020 8:09:02
LastWriteTime     : 21/11/2020 8:44:11
LastWriteTimeUtc  : 21/11/2020 7:44:11
Attributes        : Archive



Procesos que utilizan la dll ci.dll


chrome
explorer
Microsoft.Photos