// ntddk.h
typedef enum _BDCB_CLASSIFICATION {
BdCbClassificationUnknownImage,
BdCbClassificationKnownGoodImage,
BdCbClassificationKnownBadImage,
BdCbClassificationKnownBadImageBootCritical,
BdCbClassificationEnd
} BDCB_CLASSIFICATION, *PBDCB_CLASSIFICATION;
View the official Windows Driver Kit DDI referenceNo description available.
The BDCB_CLASSIFICATION enumeration lists different classifications of boot start images.
BdCbClassificationUnknownImageThe boot start image has not been inspected by anti-malware or anti-malware does not have enough information to determine whether the binary is malware.
BdCbClassificationKnownGoodImageThe boot start image has been inspected by anti-malware and found not to be malware.
BdCbClassificationKnownBadImageThe boot start image has been inspected by anti-malware and found to be malware.
BdCbClassificationKnownBadImageBootCriticalThe boot start image has been inspected by anti-malware and found to be malware, but the anti-malware boot-start driver also knows it to be critical to the success of the boot.
BdCbClassificationEndDo not use. Reserved for future use.