WsmAgent.dll
Description: WinRM Agent
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 64-bit
Operating System: Windows NT
SHA256: 0322870de2d615884dd3e938f0059681
File Size: 32.0 KB
Uploaded At: Dec. 1, 2025, 7:45 a.m.
Views: 6
Exported Functions
- ??1CWSManCriticalSectionWithConditionVar@@QEAA@XZ (Ordinal: 1, Address: 0x1f40)
- ?GetInitError@CWSManCriticalSection@@QEBAKXZ (Ordinal: 2, Address: 0x1f30)
- DllCanUnloadNow (Ordinal: 3, Address: 0x15a0)
- DllGetClassObject (Ordinal: 4, Address: 0x15e0)
- DllMain (Ordinal: 5, Address: 0x11a0)
- DllRegisterServer (Ordinal: 6, Address: 0x1500)
- DllUnregisterServer (Ordinal: 7, Address: 0x1550)
- GetProviderClassID (Ordinal: 8, Address: 0x1300)
- MI_Main (Ordinal: 9, Address: 0x10a0)
Imported DLLs & Functions
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x180006368)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x180006378)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180006390)
- SetUnhandledExceptionFilter (Address: 0x180006398)
- UnhandledExceptionFilter (Address: 0x180006388)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x1800063a8)
api-ms-win-core-libraryloader-l1-1-0.dll
- DisableThreadLibraryCalls (Address: 0x1800063d0)
- FreeLibrary (Address: 0x1800063c0)
- GetProcAddress (Address: 0x1800063c8)
- LoadLibraryExW (Address: 0x1800063b8)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x1800063e8)
- GetCurrentProcessId (Address: 0x1800063f8)
- GetCurrentThread (Address: 0x180006408)
- GetCurrentThreadId (Address: 0x180006400)
- OpenThreadToken (Address: 0x1800063f0)
- TerminateProcess (Address: 0x1800063e0)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180006418)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x180006428)
- RtlLookupFunctionEntry (Address: 0x180006438)
- RtlVirtualUnwind (Address: 0x180006430)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x180006448)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x180006468)
- GetSystemTimeAsFileTime (Address: 0x180006458)
- GetTickCount (Address: 0x180006460)
api-ms-win-eventing-classicprovider-l1-1-0.dll
- GetTraceEnableFlags (Address: 0x180006480)
- GetTraceEnableLevel (Address: 0x180006498)
- GetTraceLoggerHandle (Address: 0x1800064a0)
- RegisterTraceGuidsW (Address: 0x180006490)
- TraceMessage (Address: 0x180006478)
- UnregisterTraceGuids (Address: 0x180006488)
api-ms-win-security-base-l1-1-0.dll
- CheckTokenMembership (Address: 0x1800064b0)
msvcrt.dll
- __C_specific_handler (Address: 0x1800064f0)
- __CxxFrameHandler3 (Address: 0x1800064c0)
- __dllonexit (Address: 0x1800064d0)
- _amsg_exit (Address: 0x180006500)
- _initterm (Address: 0x1800064f8)
- _lock (Address: 0x1800064e0)
- _onexit (Address: 0x1800064c8)
- _purecall (Address: 0x180006510)
- _unlock (Address: 0x1800064d8)
- _XcptFilter (Address: 0x180006508)
- ?terminate@@YAXXZ (Address: 0x1800064e8)
- free (Address: 0x180006520)
- malloc (Address: 0x180006518)
- memset (Address: 0x180006530)
- swprintf_s (Address: 0x180006528)
WsmSvc.DLL
- ??0?$AutoDelete@U_SID@@@@QEAA@PEAU_SID@@@Z (Address: 0x180006308)
- ??0AutoImpersonateUser@@QEAA@XZ (Address: 0x180006358)
- ??1?$AutoDelete@U_SID@@@@QEAA@XZ (Address: 0x180006338)
- ??1AutoImpersonateUser@@QEAA@XZ (Address: 0x180006340)
- ??1CWSManCriticalSection@@QEAA@XZ (Address: 0x180006318)
- ?Alloc@WSManMemory@@SAPEAX_KHW4_NitsFaultMode@@@Z (Address: 0x180006310)
- ?BeginRevertToSelf@CSecurity@@SAHPEAPEAXK@Z (Address: 0x180006350)
- ?Free@WSManMemory@@SAXPEAXH@Z (Address: 0x180006348)
- ?GetSid@CSecurity@@SAPEAXXZ (Address: 0x180006320)
- ?IsLocalSystemSid@CSecurity@@SAHPEAX@Z (Address: 0x180006328)
- StringIsBlank (Address: 0x180006330)