cmisetup.dll

Description: Windows Component Configuration

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 32-bit

Operating System: Windows NT

SHA256: 12cc51ce73cad29fabcb3880bfbaed68

File Size: 521.4 KB

Uploaded At: Dec. 1, 2025, 8:10 a.m.

Views: 14

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • CallBack_ConfigureWindowsFoundationImage (Ordinal: 1, Address: 0x184e0)
  • Module_Init_Cmi (Ordinal: 2, Address: 0x17370)
  • Module_Init_SkuAssembly (Ordinal: 3, Address: 0x18040)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x1007a048)
  • CloseEncryptedFileRaw (Address: 0x1007a028)
  • GetAclInformation (Address: 0x1007a018)
  • GetSecurityDescriptorControl (Address: 0x1007a010)
  • GetSecurityDescriptorDacl (Address: 0x1007a008)
  • GetSecurityDescriptorGroup (Address: 0x1007a004)
  • GetSecurityDescriptorLength (Address: 0x1007a014)
  • GetSecurityDescriptorOwner (Address: 0x1007a000)
  • GetSecurityDescriptorSacl (Address: 0x1007a00c)
  • GetTraceEnableFlags (Address: 0x1007a034)
  • GetTraceEnableLevel (Address: 0x1007a030)
  • GetTraceLoggerHandle (Address: 0x1007a038)
  • OpenEncryptedFileRawW (Address: 0x1007a020)
  • OpenProcessToken (Address: 0x1007a04c)
  • RegCloseKey (Address: 0x1007a044)
  • RegCreateKeyExW (Address: 0x1007a054)
  • RegDeleteKeyExW (Address: 0x1007a050)
  • RegDeleteTreeW (Address: 0x1007a058)
  • RegDeleteValueW (Address: 0x1007a060)
  • RegEnumValueW (Address: 0x1007a068)
  • RegisterTraceGuidsW (Address: 0x1007a02c)
  • RegOpenKeyExW (Address: 0x1007a06c)
  • RegQueryValueExW (Address: 0x1007a064)
  • RegSetValueExW (Address: 0x1007a05c)
  • RevertToSelf (Address: 0x1007a01c)
  • TraceEvent (Address: 0x1007a040)
  • UnregisterTraceGuids (Address: 0x1007a03c)
  • WriteEncryptedFileRaw (Address: 0x1007a024)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x1007a27c)
  • BCryptCreateHash (Address: 0x1007a28c)
  • BCryptDestroyHash (Address: 0x1007a284)
  • BCryptFinishHash (Address: 0x1007a288)
  • BCryptGetProperty (Address: 0x1007a280)
  • BCryptHashData (Address: 0x1007a274)
  • BCryptOpenAlgorithmProvider (Address: 0x1007a278)
Cabinet.dll
  • (Address: 0x1007a074)
  • (Address: 0x1007a078)
  • (Address: 0x1007a07c)
KERNEL32.dll
  • CloseHandle (Address: 0x1007a1a0)
  • CompareStringW (Address: 0x1007a17c)
  • CopyFileExW (Address: 0x1007a1c4)
  • CopyFileW (Address: 0x1007a13c)
  • CreateDirectoryW (Address: 0x1007a180)
  • CreateEventW (Address: 0x1007a084)
  • CreateFileA (Address: 0x1007a1fc)
  • CreateFileMappingW (Address: 0x1007a100)
  • CreateFileW (Address: 0x1007a198)
  • DeleteCriticalSection (Address: 0x1007a1e8)
  • DeleteFileW (Address: 0x1007a1c0)
  • DeviceIoControl (Address: 0x1007a1b0)
  • DosDateTimeToFileTime (Address: 0x1007a0c8)
  • DuplicateHandle (Address: 0x1007a09c)
  • EnterCriticalSection (Address: 0x1007a1dc)
  • ExpandEnvironmentStringsW (Address: 0x1007a16c)
  • FindClose (Address: 0x1007a134)
  • FindFirstFileW (Address: 0x1007a138)
  • FindNextFileW (Address: 0x1007a1ac)
  • FlushFileBuffers (Address: 0x1007a1c8)
  • FreeLibrary (Address: 0x1007a14c)
  • GetCurrentDirectoryW (Address: 0x1007a1a4)
  • GetCurrentProcess (Address: 0x1007a110)
  • GetCurrentProcessId (Address: 0x1007a128)
  • GetCurrentThreadId (Address: 0x1007a124)
  • GetEnvironmentVariableW (Address: 0x1007a1d4)
  • GetFileAttributesW (Address: 0x1007a170)
  • GetFileInformationByHandle (Address: 0x1007a1b8)
  • GetFileInformationByHandleEx (Address: 0x1007a1a8)
  • GetFileSizeEx (Address: 0x1007a1cc)
  • GetFinalPathNameByHandleW (Address: 0x1007a18c)
  • GetFullPathNameW (Address: 0x1007a184)
  • GetHandleInformation (Address: 0x1007a108)
  • GetLastError (Address: 0x1007a154)
  • GetLongPathNameW (Address: 0x1007a188)
  • GetModuleHandleExW (Address: 0x1007a0d0)
  • GetModuleHandleW (Address: 0x1007a158)
  • GetOverlappedResult (Address: 0x1007a0a8)
  • GetPrivateProfileSectionW (Address: 0x1007a1f0)
  • GetProcAddress (Address: 0x1007a15c)
  • GetProcessHeap (Address: 0x1007a144)
  • GetSystemInfo (Address: 0x1007a0a4)
  • GetSystemTimeAsFileTime (Address: 0x1007a120)
  • GetTempFileNameW (Address: 0x1007a0bc)
  • GetTempPathW (Address: 0x1007a190)
  • GetTickCount (Address: 0x1007a11c)
  • GetVersionExA (Address: 0x1007a0b0)
  • GetVersionExW (Address: 0x1007a160)
  • GetVolumeInformationByHandleW (Address: 0x1007a0f4)
  • GetVolumeInformationW (Address: 0x1007a08c)
  • GetVolumeNameForVolumeMountPointW (Address: 0x1007a19c)
  • GetVolumePathNamesForVolumeNameW (Address: 0x1007a0dc)
  • GetVolumePathNameW (Address: 0x1007a194)
  • HeapAlloc (Address: 0x1007a140)
  • HeapFree (Address: 0x1007a148)
  • HeapReAlloc (Address: 0x1007a168)
  • InitializeCriticalSection (Address: 0x1007a1e4)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1007a088)
  • LeaveCriticalSection (Address: 0x1007a1e0)
  • LoadLibraryExW (Address: 0x1007a150)
  • LoadLibraryW (Address: 0x1007a1f4)
  • LocalAlloc (Address: 0x1007a1f8)
  • LocalFileTimeToFileTime (Address: 0x1007a0c4)
  • LocalFree (Address: 0x1007a178)
  • LockFileEx (Address: 0x1007a090)
  • lstrcmpiW (Address: 0x1007a0cc)
  • MapViewOfFile (Address: 0x1007a0fc)
  • MultiByteToWideChar (Address: 0x1007a0b8)
  • OpenProcess (Address: 0x1007a094)
  • QueryPerformanceCounter (Address: 0x1007a12c)
  • ReadFile (Address: 0x1007a1ec)
  • ReleaseSemaphore (Address: 0x1007a104)
  • RemoveDirectoryW (Address: 0x1007a0f0)
  • ResetEvent (Address: 0x1007a1d8)
  • SetEndOfFile (Address: 0x1007a164)
  • SetFileAttributesW (Address: 0x1007a1b4)
  • SetFileInformationByHandle (Address: 0x1007a1bc)
  • SetFilePointer (Address: 0x1007a0d4)
  • SetFilePointerEx (Address: 0x1007a098)
  • SetFileTime (Address: 0x1007a0c0)
  • SetLastError (Address: 0x1007a174)
  • SetUnhandledExceptionFilter (Address: 0x1007a114)
  • Sleep (Address: 0x1007a130)
  • TerminateProcess (Address: 0x1007a10c)
  • TlsAlloc (Address: 0x1007a0ec)
  • TlsFree (Address: 0x1007a0e8)
  • TlsGetValue (Address: 0x1007a0e4)
  • TlsSetValue (Address: 0x1007a0e0)
  • UnhandledExceptionFilter (Address: 0x1007a118)
  • UnlockFileEx (Address: 0x1007a0ac)
  • UnmapViewOfFile (Address: 0x1007a0f8)
  • WaitForMultipleObjects (Address: 0x1007a0a0)
  • WaitForSingleObject (Address: 0x1007a1d0)
  • WideCharToMultiByte (Address: 0x1007a0b4)
  • WriteFile (Address: 0x1007a0d8)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x1007a338)
  • __dllonexit (Address: 0x1007a2f8)
  • _amsg_exit (Address: 0x1007a30c)
  • _callnewh (Address: 0x1007a318)
  • _CxxThrowException (Address: 0x1007a314)
  • _except_handler4_common (Address: 0x1007a2ec)
  • _initterm (Address: 0x1007a308)
  • _lock (Address: 0x1007a300)
  • _onexit (Address: 0x1007a2f4)
  • _purecall (Address: 0x1007a2d8)
  • _snprintf_s (Address: 0x1007a2b4)
  • _unlock (Address: 0x1007a2fc)
  • _vscwprintf (Address: 0x1007a2cc)
  • _vsnwprintf (Address: 0x1007a334)
  • _wcsicmp (Address: 0x1007a2c8)
  • _wcsnicmp (Address: 0x1007a2c4)
  • _wcstoi64 (Address: 0x1007a294)
  • _XcptFilter (Address: 0x1007a310)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x1007a324)
  • ??0exception@@QAE@XZ (Address: 0x1007a328)
  • ??1exception@@UAE@XZ (Address: 0x1007a320)
  • ??1type_info@@UAE@XZ (Address: 0x1007a2f0)
  • ?terminate@@YAXXZ (Address: 0x1007a304)
  • ?what@exception@@UBEPBDXZ (Address: 0x1007a31c)
  • bsearch (Address: 0x1007a2dc)
  • free (Address: 0x1007a330)
  • iswspace (Address: 0x1007a2ac)
  • malloc (Address: 0x1007a32c)
  • memcmp (Address: 0x1007a2e0)
  • memcpy (Address: 0x1007a2e4)
  • memcpy_s (Address: 0x1007a2d4)
  • memmove (Address: 0x1007a2e8)
  • memmove_s (Address: 0x1007a2a4)
  • memset (Address: 0x1007a33c)
  • qsort (Address: 0x1007a29c)
  • strcpy_s (Address: 0x1007a2a0)
  • strncmp (Address: 0x1007a2b0)
  • swscanf_s (Address: 0x1007a298)
  • towupper (Address: 0x1007a2d0)
  • wcschr (Address: 0x1007a2c0)
  • wcsncmp (Address: 0x1007a2a8)
  • wcsrchr (Address: 0x1007a2bc)
  • wcstoul (Address: 0x1007a2b8)
ntdll.dll
  • DbgPrint (Address: 0x1007a400)
  • DbgPrintEx (Address: 0x1007a3e8)
  • LdrGetDllHandle (Address: 0x1007a354)
  • LdrGetProcedureAddress (Address: 0x1007a35c)
  • LdrLoadDll (Address: 0x1007a34c)
  • LdrUnloadDll (Address: 0x1007a350)
  • NtClose (Address: 0x1007a3ac)
  • NtCreateFile (Address: 0x1007a3b0)
  • NtOpenFile (Address: 0x1007a3a8)
  • NtOpenKey (Address: 0x1007a358)
  • NtQueryInformationFile (Address: 0x1007a3bc)
  • NtQueryInformationProcess (Address: 0x1007a3b8)
  • NtQueryPerformanceCounter (Address: 0x1007a3d8)
  • NtQueryValueKey (Address: 0x1007a388)
  • NtReadFile (Address: 0x1007a37c)
  • NtSetEaFile (Address: 0x1007a39c)
  • NtSetInformationFile (Address: 0x1007a3f0)
  • NtSetSecurityObject (Address: 0x1007a3c0)
  • NtWaitForSingleObject (Address: 0x1007a374)
  • NtWriteFile (Address: 0x1007a380)
  • NtYieldExecution (Address: 0x1007a3d4)
  • RtlAcquireResourceExclusive (Address: 0x1007a394)
  • RtlAcquireResourceShared (Address: 0x1007a390)
  • RtlAdjustPrivilege (Address: 0x1007a3a0)
  • RtlAllocateHeap (Address: 0x1007a3fc)
  • RtlCreateUnicodeStringFromAsciiz (Address: 0x1007a344)
  • RtlDeleteCriticalSection (Address: 0x1007a36c)
  • RtlDeleteResource (Address: 0x1007a3cc)
  • RtlDosPathNameToNtPathName_U (Address: 0x1007a3b4)
  • RtlDosPathNameToNtPathName_U_WithStatus (Address: 0x1007a3f4)
  • RtlDowncaseUnicodeChar (Address: 0x1007a3dc)
  • RtlEnterCriticalSection (Address: 0x1007a368)
  • RtlExpandEnvironmentStrings (Address: 0x1007a378)
  • RtlFindAceByType (Address: 0x1007a3c4)
  • RtlFreeHeap (Address: 0x1007a3f8)
  • RtlHashUnicodeString (Address: 0x1007a3d0)
  • RtlImpersonateSelf (Address: 0x1007a3a4)
  • RtlInitializeCriticalSection (Address: 0x1007a364)
  • RtlInitializeResource (Address: 0x1007a398)
  • RtlInitUnicodeString (Address: 0x1007a384)
  • RtlLeaveCriticalSection (Address: 0x1007a360)
  • RtlNtStatusToDosError (Address: 0x1007a3ec)
  • RtlQueryEnvironmentVariable_U (Address: 0x1007a348)
  • RtlRaiseStatus (Address: 0x1007a3e4)
  • RtlReAllocateHeap (Address: 0x1007a3e0)
  • RtlReleaseResource (Address: 0x1007a38c)
  • RtlSetControlSecurityDescriptor (Address: 0x1007a3c8)
  • RtlTimeToTimeFields (Address: 0x1007a370)
ole32.dll
  • CoGetMalloc (Address: 0x1007a408)
  • CoInitializeEx (Address: 0x1007a40c)
  • CoUninitialize (Address: 0x1007a410)
OLEAUT32.dll
  • SysAllocString (Address: 0x1007a204)
  • SysFreeString (Address: 0x1007a208)
RPCRT4.dll
  • RpcStringFreeW (Address: 0x1007a214)
  • UuidCreate (Address: 0x1007a210)
  • UuidToStringW (Address: 0x1007a218)
USER32.dll
  • CharUpperW (Address: 0x1007a220)
  • GetSystemMetrics (Address: 0x1007a224)
WDSCORE.dll
  • ConstructPartialMsgVW (Address: 0x1007a254)
  • CurrentIP (Address: 0x1007a24c)
  • WdsCreateBlackboard (Address: 0x1007a25c)
  • WdsDestroyBlackboard (Address: 0x1007a260)
  • WdsFreeData (Address: 0x1007a248)
  • WdsGetBlackboardValue (Address: 0x1007a250)
  • WdsInitializeCallbackArray (Address: 0x1007a23c)
  • WdsInitializeDataStringW (Address: 0x1007a258)
  • WdsInitializeDataUInt32 (Address: 0x1007a22c)
  • WdsPublish (Address: 0x1007a238)
  • WdsPublishImmediateEx (Address: 0x1007a240)
  • WdsSetBlackboardValue (Address: 0x1007a244)
  • WdsSetupLogMessageW (Address: 0x1007a230)
  • WdsSubscribeEx (Address: 0x1007a234)
WDSUTIL.dll
  • IsCrossArchitectureInstall (Address: 0x1007a268)
  • PublishMessage (Address: 0x1007a26c)