WsmAgent.dll
Description: WinRM Agent
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 32-bit
Operating System: Windows NT
SHA256: 145db355a57f29c1e9cef4c1210cc23c
File Size: 25.5 KB
Uploaded At: Dec. 1, 2025, 8:08 a.m.
Views: 15
Exported Functions
- ??1CWSManCriticalSectionWithConditionVar@@QAE@XZ (Ordinal: 1, Address: 0x3440)
- ?GetInitError@CWSManCriticalSection@@QBEKXZ (Ordinal: 2, Address: 0x3430)
- DllCanUnloadNow (Ordinal: 3, Address: 0x2d70)
- DllGetClassObject (Ordinal: 4, Address: 0x2da0)
- DllMain (Ordinal: 5, Address: 0x2ac0)
- DllRegisterServer (Ordinal: 6, Address: 0x2ce0)
- DllUnregisterServer (Ordinal: 7, Address: 0x2d30)
- GetProviderClassID (Ordinal: 8, Address: 0x2b80)
- MI_Main (Ordinal: 9, Address: 0x29a0)
Imported DLLs & Functions
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x10007030)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x10007038)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x10007048)
- SetUnhandledExceptionFilter (Address: 0x10007040)
- UnhandledExceptionFilter (Address: 0x10007044)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x10007050)
api-ms-win-core-libraryloader-l1-1-0.dll
- DisableThreadLibraryCalls (Address: 0x10007064)
- FreeLibrary (Address: 0x1000705c)
- GetProcAddress (Address: 0x10007060)
- LoadLibraryExW (Address: 0x10007058)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1000706c)
- GetCurrentProcessId (Address: 0x1000707c)
- GetCurrentThread (Address: 0x10007074)
- GetCurrentThreadId (Address: 0x10007078)
- OpenThreadToken (Address: 0x10007070)
- TerminateProcess (Address: 0x10007080)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x10007088)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x10007090)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x10007098)
- GetSystemTimeAsFileTime (Address: 0x1000709c)
- GetTickCount (Address: 0x100070a0)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- GetTraceEnableFlags (Address: 0x100070a8)
- GetTraceEnableLevel (Address: 0x100070b8)
- GetTraceLoggerHandle (Address: 0x100070b4)
- RegisterTraceGuidsW (Address: 0x100070ac)
- TraceMessage (Address: 0x100070bc)
- UnregisterTraceGuids (Address: 0x100070b0)
api-ms-win-security-base-l1-1-0.dll
- CheckTokenMembership (Address: 0x100070c4)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x100070d8)
- __dllonexit (Address: 0x100070d4)
- _amsg_exit (Address: 0x100070e8)
- _except_handler4_common (Address: 0x100070cc)
- _initterm (Address: 0x100070e4)
- _lock (Address: 0x100070dc)
- _onexit (Address: 0x100070d0)
- _purecall (Address: 0x100070f0)
- _unlock (Address: 0x10007100)
- _XcptFilter (Address: 0x100070ec)
- ?terminate@@YAXXZ (Address: 0x100070e0)
- free (Address: 0x100070f8)
- malloc (Address: 0x100070f4)
- memset (Address: 0x10007104)
- swprintf_s (Address: 0x100070fc)
WsmSvc.DLL
- ??0?$AutoDelete@U_SID@@@@QAE@PAU_SID@@@Z (Address: 0x10007000)
- ??0AutoImpersonateUser@@QAE@XZ (Address: 0x10007028)
- ??1?$AutoDelete@U_SID@@@@QAE@XZ (Address: 0x10007018)
- ??1AutoImpersonateUser@@QAE@XZ (Address: 0x1000701c)
- ??1CWSManCriticalSection@@QAE@XZ (Address: 0x10007008)
- ?Alloc@WSManMemory@@SGPAXIHW4_NitsFaultMode@@@Z (Address: 0x10007004)
- ?BeginRevertToSelf@CSecurity@@SGHPAPAXK@Z (Address: 0x10007024)
- ?Free@WSManMemory@@SGXPAXH@Z (Address: 0x10007020)
- ?GetSid@CSecurity@@SGPAXXZ (Address: 0x1000700c)
- ?IsLocalSystemSid@CSecurity@@SGHPAX@Z (Address: 0x10007010)
- StringIsBlank (Address: 0x10007014)