vdswmi.dll
Description: WMI Provider for VDS
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.1
Architecture: 32-bit
Operating System: Windows NT
SHA256: c96deafb57a4e027c054b6dfcb7f89cb
File Size: 169.5 KB
Uploaded At: Dec. 1, 2025, 8:11 a.m.
Views: 13
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0xe650)
- DllGetClassObject (Ordinal: 2, Address: 0xe340)
- DllRegisterServer (Ordinal: 3, Address: 0x14c90)
- DllUnregisterServer (Ordinal: 4, Address: 0x14e70)
Imported DLLs & Functions
ADVAPI32.dll
- AllocateAndInitializeSid (Address: 0x1002a018)
- CreateProcessAsUserW (Address: 0x1002a024)
- DuplicateTokenEx (Address: 0x1002a020)
- FreeSid (Address: 0x1002a014)
- LookupAccountSidW (Address: 0x1002a010)
- OpenThreadToken (Address: 0x1002a01c)
- RegCloseKey (Address: 0x1002a00c)
- RegCreateKeyW (Address: 0x1002a02c)
- RegDeleteKeyW (Address: 0x1002a008)
- RegOpenKeyExW (Address: 0x1002a030)
- RegOpenKeyW (Address: 0x1002a000)
- RegQueryValueExW (Address: 0x1002a028)
- RegSetValueExW (Address: 0x1002a004)
api-ms-win-core-com-l1-1-0.dll
- CoCreateInstance (Address: 0x1002a158)
- CoImpersonateClient (Address: 0x1002a168)
- CoTaskMemAlloc (Address: 0x1002a15c)
- CoTaskMemFree (Address: 0x1002a164)
- StringFromGUID2 (Address: 0x1002a160)
framedynos.dll
- ??0CObjectPathParser@@QAE@W4ObjectParserFlags@@@Z (Address: 0x1002a17c)
- ??1CObjectPathParser@@QAE@XZ (Address: 0x1002a178)
- ?AddKeyRef@ParsedObjectPath@@QAEHPBGPBUtagVARIANT@@@Z (Address: 0x1002a184)
- ?Free@CObjectPathParser@@QAEXPAUParsedObjectPath@@@Z (Address: 0x1002a170)
- ?Parse@CObjectPathParser@@QAEHPBGPAPAUParsedObjectPath@@@Z (Address: 0x1002a174)
- ?Unparse@CObjectPathParser@@SGHPAUParsedObjectPath@@PAPAG@Z (Address: 0x1002a180)
KERNEL32.dll
- CloseHandle (Address: 0x1002a0b0)
- CompareStringW (Address: 0x1002a074)
- CreateFileW (Address: 0x1002a090)
- DeleteCriticalSection (Address: 0x1002a0c4)
- DeleteVolumeMountPointW (Address: 0x1002a0d8)
- DeviceIoControl (Address: 0x1002a084)
- EnterCriticalSection (Address: 0x1002a07c)
- FindFirstVolumeW (Address: 0x1002a078)
- FindNextVolumeW (Address: 0x1002a0dc)
- FindVolumeClose (Address: 0x1002a0cc)
- FlushFileBuffers (Address: 0x1002a054)
- FormatMessageW (Address: 0x1002a058)
- FreeLibrary (Address: 0x1002a0d0)
- GetCommandLineW (Address: 0x1002a03c)
- GetComputerNameW (Address: 0x1002a0c8)
- GetCurrentProcess (Address: 0x1002a10c)
- GetCurrentProcessId (Address: 0x1002a11c)
- GetCurrentThread (Address: 0x1002a0ec)
- GetCurrentThreadId (Address: 0x1002a098)
- GetDiskFreeSpaceExW (Address: 0x1002a0ac)
- GetDiskFreeSpaceW (Address: 0x1002a080)
- GetDriveTypeW (Address: 0x1002a0e0)
- GetExitCodeProcess (Address: 0x1002a0f0)
- GetFileAttributesW (Address: 0x1002a094)
- GetFileSizeEx (Address: 0x1002a038)
- GetLastError (Address: 0x1002a0a8)
- GetLogicalDriveStringsW (Address: 0x1002a100)
- GetModuleFileNameW (Address: 0x1002a06c)
- GetProcAddress (Address: 0x1002a0bc)
- GetSystemDirectoryW (Address: 0x1002a0f8)
- GetSystemTimeAsFileTime (Address: 0x1002a118)
- GetTickCount (Address: 0x1002a064)
- GetVolumeInformationW (Address: 0x1002a070)
- GetVolumeNameForVolumeMountPointW (Address: 0x1002a0fc)
- GetVolumePathNamesForVolumeNameW (Address: 0x1002a0d4)
- InitializeCriticalSection (Address: 0x1002a040)
- InitializeCriticalSectionAndSpinCount (Address: 0x1002a0e4)
- LeaveCriticalSection (Address: 0x1002a088)
- LoadLibraryW (Address: 0x1002a0b4)
- LocalAlloc (Address: 0x1002a08c)
- LocalFree (Address: 0x1002a0c0)
- LockFileEx (Address: 0x1002a050)
- lstrlenW (Address: 0x1002a068)
- OutputDebugStringA (Address: 0x1002a114)
- OutputDebugStringW (Address: 0x1002a048)
- QueryDosDeviceW (Address: 0x1002a0f4)
- QueryPerformanceCounter (Address: 0x1002a060)
- SetFileAttributesW (Address: 0x1002a09c)
- SetFilePointerEx (Address: 0x1002a04c)
- SetUnhandledExceptionFilter (Address: 0x1002a108)
- SetVolumeLabelW (Address: 0x1002a0a4)
- SetVolumeMountPointW (Address: 0x1002a0b8)
- Sleep (Address: 0x1002a0a0)
- TerminateProcess (Address: 0x1002a110)
- UnhandledExceptionFilter (Address: 0x1002a104)
- UnlockFileEx (Address: 0x1002a044)
- WaitForSingleObject (Address: 0x1002a0e8)
- WriteFile (Address: 0x1002a05c)
msvcrt.dll
- __CxxFrameHandler3 (Address: 0x1002a218)
- __dllonexit (Address: 0x1002a1ec)
- _amsg_exit (Address: 0x1002a190)
- _callnewh (Address: 0x1002a1b0)
- _CxxThrowException (Address: 0x1002a214)
- _except_handler4_common (Address: 0x1002a208)
- _initterm (Address: 0x1002a1dc)
- _lock (Address: 0x1002a1e4)
- _onexit (Address: 0x1002a1f0)
- _purecall (Address: 0x1002a1f4)
- _ui64tow (Address: 0x1002a1a4)
- _unlock (Address: 0x1002a1e8)
- _vsnwprintf (Address: 0x1002a200)
- _wcsicmp (Address: 0x1002a1f8)
- _wcsnicmp (Address: 0x1002a1c4)
- _wtoi64 (Address: 0x1002a1a0)
- _XcptFilter (Address: 0x1002a18c)
- ??0exception@@QAE@ABQBD@Z (Address: 0x1002a1cc)
- ??0exception@@QAE@ABV0@@Z (Address: 0x1002a1c8)
- ??0exception@@QAE@XZ (Address: 0x1002a1d0)
- ??1exception@@UAE@XZ (Address: 0x1002a1d4)
- ??1type_info@@UAE@XZ (Address: 0x1002a204)
- ?terminate@@YAXXZ (Address: 0x1002a1e0)
- ?what@exception@@UBEPBDXZ (Address: 0x1002a1d8)
- free (Address: 0x1002a1ac)
- localtime (Address: 0x1002a19c)
- malloc (Address: 0x1002a1a8)
- memcmp (Address: 0x1002a210)
- memcpy (Address: 0x1002a20c)
- memcpy_s (Address: 0x1002a1fc)
- memmove_s (Address: 0x1002a1c0)
- memset (Address: 0x1002a21c)
- time (Address: 0x1002a198)
- towupper (Address: 0x1002a1bc)
- wcschr (Address: 0x1002a1b8)
- wcsftime (Address: 0x1002a194)
- wcsstr (Address: 0x1002a1b4)
ntdll.dll
- NtQuerySystemInformation (Address: 0x1002a224)
- NtQueryVolumeInformationFile (Address: 0x1002a228)
OLEAUT32.dll
- SafeArrayAccessData (Address: 0x1002a13c)
- SafeArrayUnaccessData (Address: 0x1002a140)
- SysAllocString (Address: 0x1002a128)
- SysAllocStringByteLen (Address: 0x1002a12c)
- SysFreeString (Address: 0x1002a130)
- SysStringByteLen (Address: 0x1002a144)
- SysStringLen (Address: 0x1002a124)
- VariantClear (Address: 0x1002a134)
- VariantInit (Address: 0x1002a138)
USERENV.dll
- CreateEnvironmentBlock (Address: 0x1002a14c)
- DestroyEnvironmentBlock (Address: 0x1002a150)