¿Para qué sirve la dll fvewiz.dll?

Asistente para Cifrado de unidad BitLocker

Dependencias de la dll fvewiz.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\fvewiz.dll

File Type: DLL

  Image has the following dependencies:

    msvcrt.dll
    ADVAPI32.dll
    bcrypt.dll
    BDEUI.dll
    COMCTL32.dll
    COMDLG32.dll
    FVEAPI.dll
    FVEUI.dll
    GDI32.dll
    KERNEL32.dll
    NETAPI32.dll
    ntdll.dll
    ole32.dll
    OLEAUT32.dll
    SHELL32.dll
    SHLWAPI.dll
    USER32.dll
    UxTheme.dll
    DUI70.dll
    BDEHDCFGLIB.dll
    CRYPT32.dll
    FVECERTS.dll
    FVESKYBACKUP.dll
    VSSAPI.DLL
    profapi.dll
    bcd.dll
    dsreg.dll
    RPCRT4.dll

  Image has the following delay load dependencies:

    ext-ms-win-devmgmt-policy-l1-1-0.dll
    TpmCoreProvisioning.DLL

  Summary

        2000 .data
        1000 .didat
        2000 .pdata
       14000 .rdata
        1000 .reloc
       68000 .rsrc
       54000 .text

Funciones que tiene la dll fvewiz.dll


1    0 00002040 ??0VolumeFveStatus@@IEAA@XZ
2    1 00001D70 ??0VolumeFveStatus@@QEAA@K_KJW4_FVE_WIPING_STATE@@@Z
3    2 000020A0 ??4BuiVolume@@QEAAAEAV0@AEBV0@@Z
4    3 00002070 ??4VolumeFveStatus@@QEAAAEAV0@$$QEAV0@@Z
5    4 00002050 ??4VolumeFveStatus@@QEAAAEAV0@AEBV0@@Z
6    5 00001F90 ?FailedDryRun@VolumeFveStatus@@QEBA_NXZ
7    6 00002020 ?GetExtendedFlags@VolumeFveStatus@@QEBA_KXZ
8    7 00002030 ?GetLastConvertStatus@VolumeFveStatus@@QEBAJXZ
9    8 00002010 ?GetStatusFlags@VolumeFveStatus@@QEBAKXZ
10    9 00001DE0 ?HasExternalKey@VolumeFveStatus@@QEBA_NXZ
11    A 00001DD0 ?HasPBKDF2RecoveryPassword@VolumeFveStatus@@QEBA_NXZ
12    B 00001E00 ?HasPassphraseProtector@VolumeFveStatus@@QEBA_NXZ
13    C 00001DB0 ?HasPinProtector@VolumeFveStatus@@QEBA_NXZ
14    D 00001F70 ?HasRecoveryData@VolumeFveStatus@@QEBA_NXZ
15    E 00001DC0 ?HasRecoveryPassword@VolumeFveStatus@@QEBA_NXZ
16    F 00001E10 ?HasSmartCardProtector@VolumeFveStatus@@QEBA_NXZ
17   10 00001DF0 ?HasStartupKeyProtector@VolumeFveStatus@@QEBA_NXZ
18   11 00001DA0 ?HasTpmProtector@VolumeFveStatus@@QEBA_NXZ
19   12 00001E90 ?IsConverting@VolumeFveStatus@@QEBA_NXZ
20   13 00001FD0 ?IsCsvMetadataVolume@VolumeFveStatus@@QEBA_NXZ
21   14 00002000 ?IsDEAutoProvisioned@VolumeFveStatus@@QEBA_NXZ
22   15 00001EF0 ?IsDecrypted@VolumeFveStatus@@QEBA_NXZ
23   16 00001EE0 ?IsDecrypting@VolumeFveStatus@@QEBA_NXZ
24   17 00001F40 ?IsDisabled@VolumeFveStatus@@QEBA_NXZ
25   18 00001FC0 ?IsEDriveVolume@VolumeFveStatus@@QEBA_NXZ
26   19 00001ED0 ?IsEncrypted@VolumeFveStatus@@QEBA_NXZ
27   1A 00001EC0 ?IsEncrypting@VolumeFveStatus@@QEBA_NXZ
28   1B 00001F60 ?IsLocked@VolumeFveStatus@@QEBA_NXZ
29   1C 00001E60 ?IsOn@VolumeFveStatus@@QEBA_NXZ
30   1D 00001E30 ?IsOsCriticalVolume@VolumeFveStatus@@QEBA_NXZ
31   1E 00001E20 ?IsOsVolume@VolumeFveStatus@@QEBA_NXZ
32   1F 00001EB0 ?IsPartiallyConverted@VolumeFveStatus@@QEBA_NXZ
33   20 00001E70 ?IsPaused@VolumeFveStatus@@QEBA_NXZ
34   21 00001F80 ?IsPreProvisioned@VolumeFveStatus@@QEBA_NXZ
35   22 00001E50 ?IsRoamingDevice@VolumeFveStatus@@QEBA_NXZ
36   23 00001F20 ?IsSecure@VolumeFveStatus@@QEBA_NXZ
37   24 00001FE0 ?IsUnknownFveVersion@VolumeFveStatus@@QEBA_NXZ
38   25 00001F00 ?IsWiping@VolumeFveStatus@@QEBA_NXZ
39   26 0005A34C ?NO_DRIVE_LETTER@BuiVolume@@2IB
40   27 00001F30 ?NeedsRestart@VolumeFveStatus@@QEBA_NXZ
41   28 00002A90 FveuiWizard
42   29 0003FA30 FveuipClearFveWizOnStartup

Información avanzada sobre funciones que tiene la dll fvewiz.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\fvewiz.dll

File Type: DLL

  Section contains the following exports for FVEWIZ.dll

    00000000 characteristics
    BF414C5B time date stamp
        0.00 version
           1 ordinal base
          42 number of functions
          42 number of names

    ordinal hint RVA      name

          1    0 00002040 ??0VolumeFveStatus@@IEAA@XZ
          2    1 00001D70 ??0VolumeFveStatus@@QEAA@K_KJW4_FVE_WIPING_STATE@@@Z
          3    2 000020A0 ??4BuiVolume@@QEAAAEAV0@AEBV0@@Z
          4    3 00002070 ??4VolumeFveStatus@@QEAAAEAV0@$$QEAV0@@Z
          5    4 00002050 ??4VolumeFveStatus@@QEAAAEAV0@AEBV0@@Z
          6    5 00001F90 ?FailedDryRun@VolumeFveStatus@@QEBA_NXZ
          7    6 00002020 ?GetExtendedFlags@VolumeFveStatus@@QEBA_KXZ
          8    7 00002030 ?GetLastConvertStatus@VolumeFveStatus@@QEBAJXZ
          9    8 00002010 ?GetStatusFlags@VolumeFveStatus@@QEBAKXZ
         10    9 00001DE0 ?HasExternalKey@VolumeFveStatus@@QEBA_NXZ
         11    A 00001DD0 ?HasPBKDF2RecoveryPassword@VolumeFveStatus@@QEBA_NXZ
         12    B 00001E00 ?HasPassphraseProtector@VolumeFveStatus@@QEBA_NXZ
         13    C 00001DB0 ?HasPinProtector@VolumeFveStatus@@QEBA_NXZ
         14    D 00001F70 ?HasRecoveryData@VolumeFveStatus@@QEBA_NXZ
         15    E 00001DC0 ?HasRecoveryPassword@VolumeFveStatus@@QEBA_NXZ
         16    F 00001E10 ?HasSmartCardProtector@VolumeFveStatus@@QEBA_NXZ
         17   10 00001DF0 ?HasStartupKeyProtector@VolumeFveStatus@@QEBA_NXZ
         18   11 00001DA0 ?HasTpmProtector@VolumeFveStatus@@QEBA_NXZ
         19   12 00001E90 ?IsConverting@VolumeFveStatus@@QEBA_NXZ
         20   13 00001FD0 ?IsCsvMetadataVolume@VolumeFveStatus@@QEBA_NXZ
         21   14 00002000 ?IsDEAutoProvisioned@VolumeFveStatus@@QEBA_NXZ
         22   15 00001EF0 ?IsDecrypted@VolumeFveStatus@@QEBA_NXZ
         23   16 00001EE0 ?IsDecrypting@VolumeFveStatus@@QEBA_NXZ
         24   17 00001F40 ?IsDisabled@VolumeFveStatus@@QEBA_NXZ
         25   18 00001FC0 ?IsEDriveVolume@VolumeFveStatus@@QEBA_NXZ
         26   19 00001ED0 ?IsEncrypted@VolumeFveStatus@@QEBA_NXZ
         27   1A 00001EC0 ?IsEncrypting@VolumeFveStatus@@QEBA_NXZ
         28   1B 00001F60 ?IsLocked@VolumeFveStatus@@QEBA_NXZ
         29   1C 00001E60 ?IsOn@VolumeFveStatus@@QEBA_NXZ
         30   1D 00001E30 ?IsOsCriticalVolume@VolumeFveStatus@@QEBA_NXZ
         31   1E 00001E20 ?IsOsVolume@VolumeFveStatus@@QEBA_NXZ
         32   1F 00001EB0 ?IsPartiallyConverted@VolumeFveStatus@@QEBA_NXZ
         33   20 00001E70 ?IsPaused@VolumeFveStatus@@QEBA_NXZ
         34   21 00001F80 ?IsPreProvisioned@VolumeFveStatus@@QEBA_NXZ
         35   22 00001E50 ?IsRoamingDevice@VolumeFveStatus@@QEBA_NXZ
         36   23 00001F20 ?IsSecure@VolumeFveStatus@@QEBA_NXZ
         37   24 00001FE0 ?IsUnknownFveVersion@VolumeFveStatus@@QEBA_NXZ
         38   25 00001F00 ?IsWiping@VolumeFveStatus@@QEBA_NXZ
         39   26 0005A34C ?NO_DRIVE_LETTER@BuiVolume@@2IB
         40   27 00001F30 ?NeedsRestart@VolumeFveStatus@@QEBA_NXZ
         41   28 00002A90 FveuiWizard
         42   29 0003FA30 FveuipClearFveWizOnStartup

  Summary

        2000 .data
        1000 .didat
        2000 .pdata
       14000 .rdata
        1000 .reloc
       68000 .rsrc
       54000 .text

Integridad de la dll fvewiz.dll



Algorithm       Hash                                                                   Path                                         
---------       ----                                                                   ----                                         
SHA256          E70E87E863C5233AE238722B8C276CA748878447A54F62A2CE60249CAE10FB5E       C:\Windows\System32\fvewiz.dll               


Detalles sobre el fichero dll fvewiz.dll




PSPath            : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32\fvewiz.dll
PSParentPath      : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32
PSChildName       : fvewiz.dll
PSDrive           : C
PSProvider        : Microsoft.PowerShell.Core\FileSystem
PSIsContainer     : False
Mode              : -a----
VersionInfo       : File:             C:\Windows\System32\fvewiz.dll
                    InternalName:     BitLocker Drive Encryption Wizard
                    OriginalFilename: FveWiz.dll.mui
                    FileVersion:      10.0.19041.561 (WinBuild.160101.0800)
                    FileDescription:  Asistente para Cifrado de unidad BitLocker
                    Product:          Sistema operativo Microsoft® Windows®
                    ProductVersion:   10.0.19041.561
                    Debug:            False
                    Patched:          False
                    PreRelease:       False
                    PrivateBuild:     False
                    SpecialBuild:     False
                    Language:         Español (España, internacional)
                    
BaseName          : fvewiz
Target            : {C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-cpl_31bf3856ad364e35_10.0.19041.546_none_357f9e54e9e7aa
                    25\fvewiz.dll}
LinkType          : HardLink
Name              : fvewiz.dll
Length            : 859136
DirectoryName     : C:\Windows\System32
Directory         : C:\Windows\System32
IsReadOnly        : False
Exists            : True
FullName          : C:\Windows\System32\fvewiz.dll
Extension         : .dll
CreationTime      : 21/11/2020 8:49:06
CreationTimeUtc   : 21/11/2020 7:49:06
LastAccessTime    : 03/12/2020 10:51:49
LastAccessTimeUtc : 03/12/2020 9:51:49
LastWriteTime     : 21/11/2020 8:49:07
LastWriteTimeUtc  : 21/11/2020 7:49:07
Attributes        : Archive



Procesos que utilizan la dll fvewiz.dll