edputil.dll

  • File Path: C:\Windows\SysWOW64\edputil.dll
  • Description: EDP util

Hashes

Type Hash
MD5 1742C5DB6A2691E2E2011430690BC812
SHA1 9EC36F391B332F19CBE0D93983728853859CE705
SHA256 403D0A01298EE1875E7B4CD1A6FCD67953B6C19BC2FC92B547B8870E3EDC5B19
SHA384 6B5FF4BF9F14C331DA85F3CFEEE521941EDD0F10EB3BDD02B063BD7560E2B0B9E43F595F211DBD545F6EA37D97E1A4B3
SHA512 3291B0C77C89227D5235D21E57103500B4A51AE3445780A2005BBD13765BC1A1EDD8F39993E970800A4B540390BBB5BEB6BBD2883A1993F07467068374FC79AF
SSDEEP 1536:c+oa5BW0v6JZMRyECz7BNCCvntCVNFY2X8Dafwfh0BS44Fzc2hw2y1CIJjXkkm5s:c+jBW0vUNz7BXvcVNFY2caIfyc44Fzc1
IMP 171D1EA50A24EB69B0039D5D15FB9236
PESHA1 975A12320DE86FB243914462B500D55B37775777
PE256 D54D9C978849D522189A0C0E0E64455DC96D668478012C124F47F5FCBAB68F98

DLL Exports:

Function Name Ordinal Type
EdpIsUIPolicyEvaluationEnabledForThread 37 Exported Function
EdpIsFileAccessAllowed 36 Exported Function
EdpIsContextExemptOrEnlightenedAllowed 35 Exported Function
EdpRequestAccessForContext 40 Exported Function
EdpRequestAccess 39 Exported Function
EdpIsValidSubjectForEncryption 38 Exported Function
EdpIsAppClipboardConsentCached 34 Exported Function
EdpGetPrimaryIdentityIfManaged 30 Exported Function
EdpGetPrimaryIdentities 29 Exported Function
EdpGetPersonalEnterpriseIdString 28 Exported Function
EdpGetWindowFromThreadId 33 Exported Function
EdpGetSourceIsEnlightenedForClipboard 32 Exported Function
EdpGetSourceAppIdForClipboard 31 Exported Function
EdpSetEnterpriseIdForClipboard 41 Exported Function
EdpUtilGetEnterpriseContextForView 51 Exported Function
EdpUtilGetEnterpriseContextForCurrentView 50 Exported Function
EdpUtilGetEnterpriseContextByWindowHandle 49 Exported Function
GetProcessUniqueIdFromToken 54 Exported Function
EdpUtilQueryPolicy 53 Exported Function
EdpUtilIsAppEnlightened 52 Exported Function
EdpUtilGetEnterpriseContextByProcess 48 Exported Function
EdpShouldShowEnterpriseIndicator 44 Exported Function
EdpSetSourceIsEnlightenedForClipboard 43 Exported Function
EdpSetSourceAppIdForClipboard 42 Exported Function
EdpUtilGetEnterpriseContextByName 47 Exported Function
EdpUtilFreeEnterpriseContext 46 Exported Function
EdpUtilCreateEnterpriseContextFromEnterpriseId 45 Exported Function
EdpFreeContext 10 Exported Function
EdpConvertProtectorToExternalId 9 Exported Function
EdpClearClipboardMetaData 8 Exported Function
EdpGetAppLockerUniqueAppIdentifierByTokenEx 13 Exported Function
EdpGetAppLockerUniqueAppIdentifierByToken 12 Exported Function
EdpGetAppLockerUniqueAppIdentifier 11 Exported Function
EdpCheckIsRmsEntId 7 Exported Function
EdpCanCallerAccessWin32Clipboard 3 Exported Function
EdpAuditAction 2 Exported Function
EdpAddAppClipboardConsentInCache 1 Exported Function
EdpCheckIsDpapiNgEntId 6 Exported Function
EdpCheckAccessForContext 5 Exported Function
EdpCheckAccess 4 Exported Function
EdpGetClipboardAccessDeniedData 14 Exported Function
EdpGetEnterpriseIdForUIEnforcement 24 Exported Function
EdpGetEnterpriseIdForDataObject 23 Exported Function
EdpGetEnterpriseIdForClipboard 22 Exported Function
EdpGetIsManaged 27 Exported Function
EdpGetFilePathsForDataObject 26 Exported Function
EdpGetEnterpriseIdForUIEnforcementFromProcess 25 Exported Function
EdpGetDataInfoFromWin32Clipboard 21 Exported Function
EdpGetContextForPackageFullName 17 Exported Function
EdpGetContextForImpersonatedToken 16 Exported Function
EdpGetContextForBinaryPath 15 Exported Function
EdpGetDataInfoFromDataObject 20 Exported Function
EdpGetContextForWindow 19 Exported Function
EdpGetContextForProcess 18 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: EDPUTIL.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/403d0a01298ee1875e7b4cd1a6fcd67953b6c19bc2fc92b547b8870e3edc5b19/detection/

MIT License. Copyright (c) 2020-2021 Strontic.