WdacWmiProv.dll

Description: WDAC WMI Providers

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 32-bit

Operating System: Windows NT

SHA256: cc4ea3ae8946aaf3222c7cb0bba78280

File Size: 109.0 KB

Uploaded At: Dec. 1, 2025, 8:11 a.m.

Views: 14

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x8530)
  • DllGetClassObject (Ordinal: 2, Address: 0x8570)
  • DllMain (Ordinal: 3, Address: 0x80f0)
  • DllRegisterServer (Ordinal: 4, Address: 0x8470)
  • DllUnregisterServer (Ordinal: 5, Address: 0x84d0)
  • GetProviderClassID (Ordinal: 6, Address: 0x82e0)
  • MI_Main (Ordinal: 7, Address: 0x8760)

Imported DLLs & Functions

ADVAPI32.dll
  • RegCloseKey (Address: 0x1001900c)
  • RegCreateKeyExW (Address: 0x1001901c)
  • RegDeleteTreeW (Address: 0x10019018)
  • RegDeleteValueW (Address: 0x10019014)
  • RegEnumKeyW (Address: 0x10019008)
  • RegEnumValueW (Address: 0x10019004)
  • RegGetValueW (Address: 0x10019010)
  • RegOpenKeyExW (Address: 0x10019020)
  • RegSetValueExW (Address: 0x10019000)
KERNEL32.dll
  • CloseHandle (Address: 0x100190a4)
  • CreateEventW (Address: 0x100190a0)
  • CreateMutexW (Address: 0x100190ac)
  • DelayLoadFailureHook (Address: 0x10019040)
  • DeleteFileW (Address: 0x10019034)
  • DisableThreadLibraryCalls (Address: 0x10019064)
  • FormatMessageW (Address: 0x10019088)
  • FreeLibrary (Address: 0x10019068)
  • GetCurrentProcess (Address: 0x10019060)
  • GetCurrentProcessId (Address: 0x10019050)
  • GetCurrentThreadId (Address: 0x100190b0)
  • GetFileAttributesW (Address: 0x10019098)
  • GetLastError (Address: 0x10019074)
  • GetModuleFileNameW (Address: 0x10019028)
  • GetProcAddress (Address: 0x10019078)
  • GetProcessHeap (Address: 0x1001907c)
  • GetSystemDirectoryW (Address: 0x1001906c)
  • GetSystemTimeAsFileTime (Address: 0x1001904c)
  • GetTempFileNameW (Address: 0x10019038)
  • GetTempPathW (Address: 0x10019030)
  • GetThreadUILanguage (Address: 0x10019090)
  • GetTickCount (Address: 0x10019048)
  • HeapAlloc (Address: 0x10019080)
  • HeapFree (Address: 0x10019084)
  • IsWow64Process (Address: 0x1001905c)
  • LoadLibraryA (Address: 0x1001902c)
  • LoadLibraryExW (Address: 0x10019070)
  • LocaleNameToLCID (Address: 0x1001908c)
  • QueryPerformanceCounter (Address: 0x10019054)
  • ReleaseMutex (Address: 0x100190b4)
  • ResolveDelayLoadedAPI (Address: 0x1001903c)
  • SetEvent (Address: 0x10019044)
  • SetThreadUILanguage (Address: 0x10019094)
  • SetUnhandledExceptionFilter (Address: 0x100190a8)
  • Sleep (Address: 0x100190b8)
  • TerminateProcess (Address: 0x10019058)
  • UnhandledExceptionFilter (Address: 0x100190bc)
  • WaitForSingleObject (Address: 0x1001909c)
mi.dll
  • mi_clientFT_V1 (Address: 0x100190d0)
msvcrt.dll
  • _amsg_exit (Address: 0x100190e0)
  • _except_handler4_common (Address: 0x100190d8)
  • _initterm (Address: 0x100190dc)
  • _purecall (Address: 0x100190f0)
  • _ui64tow_s (Address: 0x1001910c)
  • _ultow_s (Address: 0x100190ec)
  • _vsnwprintf (Address: 0x10019108)
  • _vsnwprintf_s (Address: 0x10019114)
  • _wcsicmp (Address: 0x10019110)
  • _wfopen (Address: 0x1001911c)
  • _XcptFilter (Address: 0x100190e4)
  • fclose (Address: 0x10019118)
  • free (Address: 0x10019128)
  • fwprintf (Address: 0x10019120)
  • iswspace (Address: 0x10019100)
  • malloc (Address: 0x10019130)
  • memcpy (Address: 0x10019124)
  • memset (Address: 0x10019134)
  • swprintf_s (Address: 0x1001912c)
  • tolower (Address: 0x100190e8)
  • toupper (Address: 0x100190fc)
  • wcsrchr (Address: 0x100190f8)
  • wcsstr (Address: 0x10019104)
  • wcstoul (Address: 0x100190f4)
USER32.dll
  • LoadStringW (Address: 0x100190c4)
  • MessageBoxW (Address: 0x100190c8)