WsmAgent.dll

Description: WinRM Agent

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 32-bit

Operating System: Windows NT

SHA256: 145db355a57f29c1e9cef4c1210cc23c

File Size: 25.5 KB

Uploaded At: Dec. 1, 2025, 8:08 a.m.

Views: 15

Exported Functions

  • ??1CWSManCriticalSectionWithConditionVar@@QAE@XZ (Ordinal: 1, Address: 0x3440)
  • ?GetInitError@CWSManCriticalSection@@QBEKXZ (Ordinal: 2, Address: 0x3430)
  • DllCanUnloadNow (Ordinal: 3, Address: 0x2d70)
  • DllGetClassObject (Ordinal: 4, Address: 0x2da0)
  • DllMain (Ordinal: 5, Address: 0x2ac0)
  • DllRegisterServer (Ordinal: 6, Address: 0x2ce0)
  • DllUnregisterServer (Ordinal: 7, Address: 0x2d30)
  • GetProviderClassID (Ordinal: 8, Address: 0x2b80)
  • MI_Main (Ordinal: 9, Address: 0x29a0)

Imported DLLs & Functions

api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x10007030)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x10007038)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x10007048)
  • SetUnhandledExceptionFilter (Address: 0x10007040)
  • UnhandledExceptionFilter (Address: 0x10007044)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x10007050)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x10007064)
  • FreeLibrary (Address: 0x1000705c)
  • GetProcAddress (Address: 0x10007060)
  • LoadLibraryExW (Address: 0x10007058)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1000706c)
  • GetCurrentProcessId (Address: 0x1000707c)
  • GetCurrentThread (Address: 0x10007074)
  • GetCurrentThreadId (Address: 0x10007078)
  • OpenThreadToken (Address: 0x10007070)
  • TerminateProcess (Address: 0x10007080)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x10007088)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x10007090)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemDirectoryW (Address: 0x10007098)
  • GetSystemTimeAsFileTime (Address: 0x1000709c)
  • GetTickCount (Address: 0x100070a0)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • GetTraceEnableFlags (Address: 0x100070a8)
  • GetTraceEnableLevel (Address: 0x100070b8)
  • GetTraceLoggerHandle (Address: 0x100070b4)
  • RegisterTraceGuidsW (Address: 0x100070ac)
  • TraceMessage (Address: 0x100070bc)
  • UnregisterTraceGuids (Address: 0x100070b0)
api-ms-win-security-base-l1-1-0.dll
  • CheckTokenMembership (Address: 0x100070c4)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x100070d8)
  • __dllonexit (Address: 0x100070d4)
  • _amsg_exit (Address: 0x100070e8)
  • _except_handler4_common (Address: 0x100070cc)
  • _initterm (Address: 0x100070e4)
  • _lock (Address: 0x100070dc)
  • _onexit (Address: 0x100070d0)
  • _purecall (Address: 0x100070f0)
  • _unlock (Address: 0x10007100)
  • _XcptFilter (Address: 0x100070ec)
  • ?terminate@@YAXXZ (Address: 0x100070e0)
  • free (Address: 0x100070f8)
  • malloc (Address: 0x100070f4)
  • memset (Address: 0x10007104)
  • swprintf_s (Address: 0x100070fc)
WsmSvc.DLL
  • ??0?$AutoDelete@U_SID@@@@QAE@PAU_SID@@@Z (Address: 0x10007000)
  • ??0AutoImpersonateUser@@QAE@XZ (Address: 0x10007028)
  • ??1?$AutoDelete@U_SID@@@@QAE@XZ (Address: 0x10007018)
  • ??1AutoImpersonateUser@@QAE@XZ (Address: 0x1000701c)
  • ??1CWSManCriticalSection@@QAE@XZ (Address: 0x10007008)
  • ?Alloc@WSManMemory@@SGPAXIHW4_NitsFaultMode@@@Z (Address: 0x10007004)
  • ?BeginRevertToSelf@CSecurity@@SGHPAPAXK@Z (Address: 0x10007024)
  • ?Free@WSManMemory@@SGXPAXH@Z (Address: 0x10007020)
  • ?GetSid@CSecurity@@SGPAXXZ (Address: 0x1000700c)
  • ?IsLocalSystemSid@CSecurity@@SGHPAX@Z (Address: 0x10007010)
  • StringIsBlank (Address: 0x10007014)