cmisetup.dll
Description: Windows Component Configuration
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 32-bit
Operating System: Windows NT
SHA256: 12cc51ce73cad29fabcb3880bfbaed68
File Size: 521.4 KB
Uploaded At: Dec. 1, 2025, 8:10 a.m.
Views: 14
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- CallBack_ConfigureWindowsFoundationImage (Ordinal: 1, Address: 0x184e0)
- Module_Init_Cmi (Ordinal: 2, Address: 0x17370)
- Module_Init_SkuAssembly (Ordinal: 3, Address: 0x18040)
Imported DLLs & Functions
ADVAPI32.dll
- AdjustTokenPrivileges (Address: 0x1007a048)
- CloseEncryptedFileRaw (Address: 0x1007a028)
- GetAclInformation (Address: 0x1007a018)
- GetSecurityDescriptorControl (Address: 0x1007a010)
- GetSecurityDescriptorDacl (Address: 0x1007a008)
- GetSecurityDescriptorGroup (Address: 0x1007a004)
- GetSecurityDescriptorLength (Address: 0x1007a014)
- GetSecurityDescriptorOwner (Address: 0x1007a000)
- GetSecurityDescriptorSacl (Address: 0x1007a00c)
- GetTraceEnableFlags (Address: 0x1007a034)
- GetTraceEnableLevel (Address: 0x1007a030)
- GetTraceLoggerHandle (Address: 0x1007a038)
- OpenEncryptedFileRawW (Address: 0x1007a020)
- OpenProcessToken (Address: 0x1007a04c)
- RegCloseKey (Address: 0x1007a044)
- RegCreateKeyExW (Address: 0x1007a054)
- RegDeleteKeyExW (Address: 0x1007a050)
- RegDeleteTreeW (Address: 0x1007a058)
- RegDeleteValueW (Address: 0x1007a060)
- RegEnumValueW (Address: 0x1007a068)
- RegisterTraceGuidsW (Address: 0x1007a02c)
- RegOpenKeyExW (Address: 0x1007a06c)
- RegQueryValueExW (Address: 0x1007a064)
- RegSetValueExW (Address: 0x1007a05c)
- RevertToSelf (Address: 0x1007a01c)
- TraceEvent (Address: 0x1007a040)
- UnregisterTraceGuids (Address: 0x1007a03c)
- WriteEncryptedFileRaw (Address: 0x1007a024)
bcrypt.dll
- BCryptCloseAlgorithmProvider (Address: 0x1007a27c)
- BCryptCreateHash (Address: 0x1007a28c)
- BCryptDestroyHash (Address: 0x1007a284)
- BCryptFinishHash (Address: 0x1007a288)
- BCryptGetProperty (Address: 0x1007a280)
- BCryptHashData (Address: 0x1007a274)
- BCryptOpenAlgorithmProvider (Address: 0x1007a278)
Cabinet.dll
- (Address: 0x1007a074)
- (Address: 0x1007a078)
- (Address: 0x1007a07c)
KERNEL32.dll
- CloseHandle (Address: 0x1007a1a0)
- CompareStringW (Address: 0x1007a17c)
- CopyFileExW (Address: 0x1007a1c4)
- CopyFileW (Address: 0x1007a13c)
- CreateDirectoryW (Address: 0x1007a180)
- CreateEventW (Address: 0x1007a084)
- CreateFileA (Address: 0x1007a1fc)
- CreateFileMappingW (Address: 0x1007a100)
- CreateFileW (Address: 0x1007a198)
- DeleteCriticalSection (Address: 0x1007a1e8)
- DeleteFileW (Address: 0x1007a1c0)
- DeviceIoControl (Address: 0x1007a1b0)
- DosDateTimeToFileTime (Address: 0x1007a0c8)
- DuplicateHandle (Address: 0x1007a09c)
- EnterCriticalSection (Address: 0x1007a1dc)
- ExpandEnvironmentStringsW (Address: 0x1007a16c)
- FindClose (Address: 0x1007a134)
- FindFirstFileW (Address: 0x1007a138)
- FindNextFileW (Address: 0x1007a1ac)
- FlushFileBuffers (Address: 0x1007a1c8)
- FreeLibrary (Address: 0x1007a14c)
- GetCurrentDirectoryW (Address: 0x1007a1a4)
- GetCurrentProcess (Address: 0x1007a110)
- GetCurrentProcessId (Address: 0x1007a128)
- GetCurrentThreadId (Address: 0x1007a124)
- GetEnvironmentVariableW (Address: 0x1007a1d4)
- GetFileAttributesW (Address: 0x1007a170)
- GetFileInformationByHandle (Address: 0x1007a1b8)
- GetFileInformationByHandleEx (Address: 0x1007a1a8)
- GetFileSizeEx (Address: 0x1007a1cc)
- GetFinalPathNameByHandleW (Address: 0x1007a18c)
- GetFullPathNameW (Address: 0x1007a184)
- GetHandleInformation (Address: 0x1007a108)
- GetLastError (Address: 0x1007a154)
- GetLongPathNameW (Address: 0x1007a188)
- GetModuleHandleExW (Address: 0x1007a0d0)
- GetModuleHandleW (Address: 0x1007a158)
- GetOverlappedResult (Address: 0x1007a0a8)
- GetPrivateProfileSectionW (Address: 0x1007a1f0)
- GetProcAddress (Address: 0x1007a15c)
- GetProcessHeap (Address: 0x1007a144)
- GetSystemInfo (Address: 0x1007a0a4)
- GetSystemTimeAsFileTime (Address: 0x1007a120)
- GetTempFileNameW (Address: 0x1007a0bc)
- GetTempPathW (Address: 0x1007a190)
- GetTickCount (Address: 0x1007a11c)
- GetVersionExA (Address: 0x1007a0b0)
- GetVersionExW (Address: 0x1007a160)
- GetVolumeInformationByHandleW (Address: 0x1007a0f4)
- GetVolumeInformationW (Address: 0x1007a08c)
- GetVolumeNameForVolumeMountPointW (Address: 0x1007a19c)
- GetVolumePathNamesForVolumeNameW (Address: 0x1007a0dc)
- GetVolumePathNameW (Address: 0x1007a194)
- HeapAlloc (Address: 0x1007a140)
- HeapFree (Address: 0x1007a148)
- HeapReAlloc (Address: 0x1007a168)
- InitializeCriticalSection (Address: 0x1007a1e4)
- InitializeCriticalSectionAndSpinCount (Address: 0x1007a088)
- LeaveCriticalSection (Address: 0x1007a1e0)
- LoadLibraryExW (Address: 0x1007a150)
- LoadLibraryW (Address: 0x1007a1f4)
- LocalAlloc (Address: 0x1007a1f8)
- LocalFileTimeToFileTime (Address: 0x1007a0c4)
- LocalFree (Address: 0x1007a178)
- LockFileEx (Address: 0x1007a090)
- lstrcmpiW (Address: 0x1007a0cc)
- MapViewOfFile (Address: 0x1007a0fc)
- MultiByteToWideChar (Address: 0x1007a0b8)
- OpenProcess (Address: 0x1007a094)
- QueryPerformanceCounter (Address: 0x1007a12c)
- ReadFile (Address: 0x1007a1ec)
- ReleaseSemaphore (Address: 0x1007a104)
- RemoveDirectoryW (Address: 0x1007a0f0)
- ResetEvent (Address: 0x1007a1d8)
- SetEndOfFile (Address: 0x1007a164)
- SetFileAttributesW (Address: 0x1007a1b4)
- SetFileInformationByHandle (Address: 0x1007a1bc)
- SetFilePointer (Address: 0x1007a0d4)
- SetFilePointerEx (Address: 0x1007a098)
- SetFileTime (Address: 0x1007a0c0)
- SetLastError (Address: 0x1007a174)
- SetUnhandledExceptionFilter (Address: 0x1007a114)
- Sleep (Address: 0x1007a130)
- TerminateProcess (Address: 0x1007a10c)
- TlsAlloc (Address: 0x1007a0ec)
- TlsFree (Address: 0x1007a0e8)
- TlsGetValue (Address: 0x1007a0e4)
- TlsSetValue (Address: 0x1007a0e0)
- UnhandledExceptionFilter (Address: 0x1007a118)
- UnlockFileEx (Address: 0x1007a0ac)
- UnmapViewOfFile (Address: 0x1007a0f8)
- WaitForMultipleObjects (Address: 0x1007a0a0)
- WaitForSingleObject (Address: 0x1007a1d0)
- WideCharToMultiByte (Address: 0x1007a0b4)
- WriteFile (Address: 0x1007a0d8)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x1007a338)
- __dllonexit (Address: 0x1007a2f8)
- _amsg_exit (Address: 0x1007a30c)
- _callnewh (Address: 0x1007a318)
- _CxxThrowException (Address: 0x1007a314)
- _except_handler4_common (Address: 0x1007a2ec)
- _initterm (Address: 0x1007a308)
- _lock (Address: 0x1007a300)
- _onexit (Address: 0x1007a2f4)
- _purecall (Address: 0x1007a2d8)
- _snprintf_s (Address: 0x1007a2b4)
- _unlock (Address: 0x1007a2fc)
- _vscwprintf (Address: 0x1007a2cc)
- _vsnwprintf (Address: 0x1007a334)
- _wcsicmp (Address: 0x1007a2c8)
- _wcsnicmp (Address: 0x1007a2c4)
- _wcstoi64 (Address: 0x1007a294)
- _XcptFilter (Address: 0x1007a310)
- ??0exception@@QAE@ABV0@@Z (Address: 0x1007a324)
- ??0exception@@QAE@XZ (Address: 0x1007a328)
- ??1exception@@UAE@XZ (Address: 0x1007a320)
- ??1type_info@@UAE@XZ (Address: 0x1007a2f0)
- ?terminate@@YAXXZ (Address: 0x1007a304)
- ?what@exception@@UBEPBDXZ (Address: 0x1007a31c)
- bsearch (Address: 0x1007a2dc)
- free (Address: 0x1007a330)
- iswspace (Address: 0x1007a2ac)
- malloc (Address: 0x1007a32c)
- memcmp (Address: 0x1007a2e0)
- memcpy (Address: 0x1007a2e4)
- memcpy_s (Address: 0x1007a2d4)
- memmove (Address: 0x1007a2e8)
- memmove_s (Address: 0x1007a2a4)
- memset (Address: 0x1007a33c)
- qsort (Address: 0x1007a29c)
- strcpy_s (Address: 0x1007a2a0)
- strncmp (Address: 0x1007a2b0)
- swscanf_s (Address: 0x1007a298)
- towupper (Address: 0x1007a2d0)
- wcschr (Address: 0x1007a2c0)
- wcsncmp (Address: 0x1007a2a8)
- wcsrchr (Address: 0x1007a2bc)
- wcstoul (Address: 0x1007a2b8)
ntdll.dll
- DbgPrint (Address: 0x1007a400)
- DbgPrintEx (Address: 0x1007a3e8)
- LdrGetDllHandle (Address: 0x1007a354)
- LdrGetProcedureAddress (Address: 0x1007a35c)
- LdrLoadDll (Address: 0x1007a34c)
- LdrUnloadDll (Address: 0x1007a350)
- NtClose (Address: 0x1007a3ac)
- NtCreateFile (Address: 0x1007a3b0)
- NtOpenFile (Address: 0x1007a3a8)
- NtOpenKey (Address: 0x1007a358)
- NtQueryInformationFile (Address: 0x1007a3bc)
- NtQueryInformationProcess (Address: 0x1007a3b8)
- NtQueryPerformanceCounter (Address: 0x1007a3d8)
- NtQueryValueKey (Address: 0x1007a388)
- NtReadFile (Address: 0x1007a37c)
- NtSetEaFile (Address: 0x1007a39c)
- NtSetInformationFile (Address: 0x1007a3f0)
- NtSetSecurityObject (Address: 0x1007a3c0)
- NtWaitForSingleObject (Address: 0x1007a374)
- NtWriteFile (Address: 0x1007a380)
- NtYieldExecution (Address: 0x1007a3d4)
- RtlAcquireResourceExclusive (Address: 0x1007a394)
- RtlAcquireResourceShared (Address: 0x1007a390)
- RtlAdjustPrivilege (Address: 0x1007a3a0)
- RtlAllocateHeap (Address: 0x1007a3fc)
- RtlCreateUnicodeStringFromAsciiz (Address: 0x1007a344)
- RtlDeleteCriticalSection (Address: 0x1007a36c)
- RtlDeleteResource (Address: 0x1007a3cc)
- RtlDosPathNameToNtPathName_U (Address: 0x1007a3b4)
- RtlDosPathNameToNtPathName_U_WithStatus (Address: 0x1007a3f4)
- RtlDowncaseUnicodeChar (Address: 0x1007a3dc)
- RtlEnterCriticalSection (Address: 0x1007a368)
- RtlExpandEnvironmentStrings (Address: 0x1007a378)
- RtlFindAceByType (Address: 0x1007a3c4)
- RtlFreeHeap (Address: 0x1007a3f8)
- RtlHashUnicodeString (Address: 0x1007a3d0)
- RtlImpersonateSelf (Address: 0x1007a3a4)
- RtlInitializeCriticalSection (Address: 0x1007a364)
- RtlInitializeResource (Address: 0x1007a398)
- RtlInitUnicodeString (Address: 0x1007a384)
- RtlLeaveCriticalSection (Address: 0x1007a360)
- RtlNtStatusToDosError (Address: 0x1007a3ec)
- RtlQueryEnvironmentVariable_U (Address: 0x1007a348)
- RtlRaiseStatus (Address: 0x1007a3e4)
- RtlReAllocateHeap (Address: 0x1007a3e0)
- RtlReleaseResource (Address: 0x1007a38c)
- RtlSetControlSecurityDescriptor (Address: 0x1007a3c8)
- RtlTimeToTimeFields (Address: 0x1007a370)
ole32.dll
- CoGetMalloc (Address: 0x1007a408)
- CoInitializeEx (Address: 0x1007a40c)
- CoUninitialize (Address: 0x1007a410)
OLEAUT32.dll
- SysAllocString (Address: 0x1007a204)
- SysFreeString (Address: 0x1007a208)
RPCRT4.dll
- RpcStringFreeW (Address: 0x1007a214)
- UuidCreate (Address: 0x1007a210)
- UuidToStringW (Address: 0x1007a218)
USER32.dll
- CharUpperW (Address: 0x1007a220)
- GetSystemMetrics (Address: 0x1007a224)
WDSCORE.dll
- ConstructPartialMsgVW (Address: 0x1007a254)
- CurrentIP (Address: 0x1007a24c)
- WdsCreateBlackboard (Address: 0x1007a25c)
- WdsDestroyBlackboard (Address: 0x1007a260)
- WdsFreeData (Address: 0x1007a248)
- WdsGetBlackboardValue (Address: 0x1007a250)
- WdsInitializeCallbackArray (Address: 0x1007a23c)
- WdsInitializeDataStringW (Address: 0x1007a258)
- WdsInitializeDataUInt32 (Address: 0x1007a22c)
- WdsPublish (Address: 0x1007a238)
- WdsPublishImmediateEx (Address: 0x1007a240)
- WdsSetBlackboardValue (Address: 0x1007a244)
- WdsSetupLogMessageW (Address: 0x1007a230)
- WdsSubscribeEx (Address: 0x1007a234)
WDSUTIL.dll
- IsCrossArchitectureInstall (Address: 0x1007a268)
- PublishMessage (Address: 0x1007a26c)