vdswmi.dll

Description: WMI Provider for VDS

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 32-bit

Operating System: Windows NT

SHA256: c96deafb57a4e027c054b6dfcb7f89cb

File Size: 169.5 KB

Uploaded At: Dec. 1, 2025, 8:11 a.m.

Views: 13

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0xe650)
  • DllGetClassObject (Ordinal: 2, Address: 0xe340)
  • DllRegisterServer (Ordinal: 3, Address: 0x14c90)
  • DllUnregisterServer (Ordinal: 4, Address: 0x14e70)

Imported DLLs & Functions

ADVAPI32.dll
  • AllocateAndInitializeSid (Address: 0x1002a018)
  • CreateProcessAsUserW (Address: 0x1002a024)
  • DuplicateTokenEx (Address: 0x1002a020)
  • FreeSid (Address: 0x1002a014)
  • LookupAccountSidW (Address: 0x1002a010)
  • OpenThreadToken (Address: 0x1002a01c)
  • RegCloseKey (Address: 0x1002a00c)
  • RegCreateKeyW (Address: 0x1002a02c)
  • RegDeleteKeyW (Address: 0x1002a008)
  • RegOpenKeyExW (Address: 0x1002a030)
  • RegOpenKeyW (Address: 0x1002a000)
  • RegQueryValueExW (Address: 0x1002a028)
  • RegSetValueExW (Address: 0x1002a004)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x1002a158)
  • CoImpersonateClient (Address: 0x1002a168)
  • CoTaskMemAlloc (Address: 0x1002a15c)
  • CoTaskMemFree (Address: 0x1002a164)
  • StringFromGUID2 (Address: 0x1002a160)
framedynos.dll
  • ??0CObjectPathParser@@QAE@W4ObjectParserFlags@@@Z (Address: 0x1002a17c)
  • ??1CObjectPathParser@@QAE@XZ (Address: 0x1002a178)
  • ?AddKeyRef@ParsedObjectPath@@QAEHPBGPBUtagVARIANT@@@Z (Address: 0x1002a184)
  • ?Free@CObjectPathParser@@QAEXPAUParsedObjectPath@@@Z (Address: 0x1002a170)
  • ?Parse@CObjectPathParser@@QAEHPBGPAPAUParsedObjectPath@@@Z (Address: 0x1002a174)
  • ?Unparse@CObjectPathParser@@SGHPAUParsedObjectPath@@PAPAG@Z (Address: 0x1002a180)
KERNEL32.dll
  • CloseHandle (Address: 0x1002a0b0)
  • CompareStringW (Address: 0x1002a074)
  • CreateFileW (Address: 0x1002a090)
  • DeleteCriticalSection (Address: 0x1002a0c4)
  • DeleteVolumeMountPointW (Address: 0x1002a0d8)
  • DeviceIoControl (Address: 0x1002a084)
  • EnterCriticalSection (Address: 0x1002a07c)
  • FindFirstVolumeW (Address: 0x1002a078)
  • FindNextVolumeW (Address: 0x1002a0dc)
  • FindVolumeClose (Address: 0x1002a0cc)
  • FlushFileBuffers (Address: 0x1002a054)
  • FormatMessageW (Address: 0x1002a058)
  • FreeLibrary (Address: 0x1002a0d0)
  • GetCommandLineW (Address: 0x1002a03c)
  • GetComputerNameW (Address: 0x1002a0c8)
  • GetCurrentProcess (Address: 0x1002a10c)
  • GetCurrentProcessId (Address: 0x1002a11c)
  • GetCurrentThread (Address: 0x1002a0ec)
  • GetCurrentThreadId (Address: 0x1002a098)
  • GetDiskFreeSpaceExW (Address: 0x1002a0ac)
  • GetDiskFreeSpaceW (Address: 0x1002a080)
  • GetDriveTypeW (Address: 0x1002a0e0)
  • GetExitCodeProcess (Address: 0x1002a0f0)
  • GetFileAttributesW (Address: 0x1002a094)
  • GetFileSizeEx (Address: 0x1002a038)
  • GetLastError (Address: 0x1002a0a8)
  • GetLogicalDriveStringsW (Address: 0x1002a100)
  • GetModuleFileNameW (Address: 0x1002a06c)
  • GetProcAddress (Address: 0x1002a0bc)
  • GetSystemDirectoryW (Address: 0x1002a0f8)
  • GetSystemTimeAsFileTime (Address: 0x1002a118)
  • GetTickCount (Address: 0x1002a064)
  • GetVolumeInformationW (Address: 0x1002a070)
  • GetVolumeNameForVolumeMountPointW (Address: 0x1002a0fc)
  • GetVolumePathNamesForVolumeNameW (Address: 0x1002a0d4)
  • InitializeCriticalSection (Address: 0x1002a040)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1002a0e4)
  • LeaveCriticalSection (Address: 0x1002a088)
  • LoadLibraryW (Address: 0x1002a0b4)
  • LocalAlloc (Address: 0x1002a08c)
  • LocalFree (Address: 0x1002a0c0)
  • LockFileEx (Address: 0x1002a050)
  • lstrlenW (Address: 0x1002a068)
  • OutputDebugStringA (Address: 0x1002a114)
  • OutputDebugStringW (Address: 0x1002a048)
  • QueryDosDeviceW (Address: 0x1002a0f4)
  • QueryPerformanceCounter (Address: 0x1002a060)
  • SetFileAttributesW (Address: 0x1002a09c)
  • SetFilePointerEx (Address: 0x1002a04c)
  • SetUnhandledExceptionFilter (Address: 0x1002a108)
  • SetVolumeLabelW (Address: 0x1002a0a4)
  • SetVolumeMountPointW (Address: 0x1002a0b8)
  • Sleep (Address: 0x1002a0a0)
  • TerminateProcess (Address: 0x1002a110)
  • UnhandledExceptionFilter (Address: 0x1002a104)
  • UnlockFileEx (Address: 0x1002a044)
  • WaitForSingleObject (Address: 0x1002a0e8)
  • WriteFile (Address: 0x1002a05c)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x1002a218)
  • __dllonexit (Address: 0x1002a1ec)
  • _amsg_exit (Address: 0x1002a190)
  • _callnewh (Address: 0x1002a1b0)
  • _CxxThrowException (Address: 0x1002a214)
  • _except_handler4_common (Address: 0x1002a208)
  • _initterm (Address: 0x1002a1dc)
  • _lock (Address: 0x1002a1e4)
  • _onexit (Address: 0x1002a1f0)
  • _purecall (Address: 0x1002a1f4)
  • _ui64tow (Address: 0x1002a1a4)
  • _unlock (Address: 0x1002a1e8)
  • _vsnwprintf (Address: 0x1002a200)
  • _wcsicmp (Address: 0x1002a1f8)
  • _wcsnicmp (Address: 0x1002a1c4)
  • _wtoi64 (Address: 0x1002a1a0)
  • _XcptFilter (Address: 0x1002a18c)
  • ??0exception@@QAE@ABQBD@Z (Address: 0x1002a1cc)
  • ??0exception@@QAE@ABV0@@Z (Address: 0x1002a1c8)
  • ??0exception@@QAE@XZ (Address: 0x1002a1d0)
  • ??1exception@@UAE@XZ (Address: 0x1002a1d4)
  • ??1type_info@@UAE@XZ (Address: 0x1002a204)
  • ?terminate@@YAXXZ (Address: 0x1002a1e0)
  • ?what@exception@@UBEPBDXZ (Address: 0x1002a1d8)
  • free (Address: 0x1002a1ac)
  • localtime (Address: 0x1002a19c)
  • malloc (Address: 0x1002a1a8)
  • memcmp (Address: 0x1002a210)
  • memcpy (Address: 0x1002a20c)
  • memcpy_s (Address: 0x1002a1fc)
  • memmove_s (Address: 0x1002a1c0)
  • memset (Address: 0x1002a21c)
  • time (Address: 0x1002a198)
  • towupper (Address: 0x1002a1bc)
  • wcschr (Address: 0x1002a1b8)
  • wcsftime (Address: 0x1002a194)
  • wcsstr (Address: 0x1002a1b4)
ntdll.dll
  • NtQuerySystemInformation (Address: 0x1002a224)
  • NtQueryVolumeInformationFile (Address: 0x1002a228)
OLEAUT32.dll
  • SafeArrayAccessData (Address: 0x1002a13c)
  • SafeArrayUnaccessData (Address: 0x1002a140)
  • SysAllocString (Address: 0x1002a128)
  • SysAllocStringByteLen (Address: 0x1002a12c)
  • SysFreeString (Address: 0x1002a130)
  • SysStringByteLen (Address: 0x1002a144)
  • SysStringLen (Address: 0x1002a124)
  • VariantClear (Address: 0x1002a134)
  • VariantInit (Address: 0x1002a138)
USERENV.dll
  • CreateEnvironmentBlock (Address: 0x1002a14c)
  • DestroyEnvironmentBlock (Address: 0x1002a150)