cmisetup.dll

Description: Windows Component Configuration

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: 0f680ef58076c052e7ef628371b7a63e

File Size: 653.9 KB

Uploaded At: Dec. 1, 2025, 7:50 a.m.

Views: 5

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • CallBack_ConfigureWindowsFoundationImage (Ordinal: 1, Address: 0x3920)
  • Module_Init_Cmi (Ordinal: 2, Address: 0x1930)
  • Module_Init_SkuAssembly (Ordinal: 3, Address: 0x2ef0)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x180081390)
  • CloseEncryptedFileRaw (Address: 0x180081388)
  • GetAclInformation (Address: 0x180081368)
  • GetSecurityDescriptorControl (Address: 0x180081358)
  • GetSecurityDescriptorDacl (Address: 0x180081348)
  • GetSecurityDescriptorGroup (Address: 0x180081340)
  • GetSecurityDescriptorLength (Address: 0x180081360)
  • GetSecurityDescriptorOwner (Address: 0x180081338)
  • GetSecurityDescriptorSacl (Address: 0x180081350)
  • GetTraceEnableFlags (Address: 0x1800813b0)
  • GetTraceEnableLevel (Address: 0x1800813a8)
  • GetTraceLoggerHandle (Address: 0x1800813b8)
  • OpenEncryptedFileRawW (Address: 0x180081378)
  • OpenProcessToken (Address: 0x180081398)
  • RegCloseKey (Address: 0x1800813d0)
  • RegCreateKeyExW (Address: 0x1800813e0)
  • RegDeleteKeyExW (Address: 0x1800813d8)
  • RegDeleteTreeW (Address: 0x1800813e8)
  • RegDeleteValueW (Address: 0x1800813f8)
  • RegEnumValueW (Address: 0x180081408)
  • RegisterTraceGuidsW (Address: 0x1800813a0)
  • RegOpenKeyExW (Address: 0x180081410)
  • RegQueryValueExW (Address: 0x180081400)
  • RegSetValueExW (Address: 0x1800813f0)
  • RevertToSelf (Address: 0x180081370)
  • TraceEvent (Address: 0x1800813c8)
  • UnregisterTraceGuids (Address: 0x1800813c0)
  • WriteEncryptedFileRaw (Address: 0x180081380)
bcrypt.dll
  • BCryptCloseAlgorithmProvider (Address: 0x180081828)
  • BCryptCreateHash (Address: 0x180081838)
  • BCryptDestroyHash (Address: 0x180081840)
  • BCryptFinishHash (Address: 0x180081848)
  • BCryptGetProperty (Address: 0x180081830)
  • BCryptHashData (Address: 0x180081850)
  • BCryptOpenAlgorithmProvider (Address: 0x180081820)
Cabinet.dll
  • (Address: 0x180081420)
  • (Address: 0x180081428)
  • (Address: 0x180081430)
KERNEL32.dll
  • CloseHandle (Address: 0x180081698)
  • CompareStringW (Address: 0x180081650)
  • CopyFileExW (Address: 0x1800816e0)
  • CopyFileW (Address: 0x1800815b0)
  • CreateDirectoryW (Address: 0x180081658)
  • CreateEventW (Address: 0x180081440)
  • CreateFileA (Address: 0x1800814e8)
  • CreateFileMappingW (Address: 0x180081540)
  • CreateFileW (Address: 0x180081688)
  • DeleteCriticalSection (Address: 0x180081728)
  • DeleteFileW (Address: 0x1800816d8)
  • DeviceIoControl (Address: 0x1800816b8)
  • DosDateTimeToFileTime (Address: 0x1800814b8)
  • DuplicateHandle (Address: 0x180081558)
  • EnterCriticalSection (Address: 0x180081710)
  • ExpandEnvironmentStringsW (Address: 0x180081630)
  • FindClose (Address: 0x1800815a0)
  • FindFirstFileW (Address: 0x1800815a8)
  • FindNextFileW (Address: 0x1800816b0)
  • FlushFileBuffers (Address: 0x1800816e8)
  • FreeLibrary (Address: 0x1800815d0)
  • GetCurrentDirectoryW (Address: 0x1800816a0)
  • GetCurrentProcess (Address: 0x180081628)
  • GetCurrentProcessId (Address: 0x180081588)
  • GetCurrentThreadId (Address: 0x180081580)
  • GetEnvironmentVariableW (Address: 0x180081700)
  • GetFileAttributesW (Address: 0x180081638)
  • GetFileInformationByHandle (Address: 0x1800816c8)
  • GetFileInformationByHandleEx (Address: 0x1800816a8)
  • GetFileSizeEx (Address: 0x1800816f0)
  • GetFinalPathNameByHandleW (Address: 0x180081670)
  • GetFullPathNameW (Address: 0x180081660)
  • GetHandleInformation (Address: 0x180081620)
  • GetLastError (Address: 0x1800815e0)
  • GetLongPathNameW (Address: 0x180081668)
  • GetModuleHandleExW (Address: 0x1800814c8)
  • GetModuleHandleW (Address: 0x1800815e8)
  • GetOverlappedResult (Address: 0x180081608)
  • GetPrivateProfileSectionW (Address: 0x180081730)
  • GetProcAddress (Address: 0x1800815f0)
  • GetProcessHeap (Address: 0x1800815c0)
  • GetSystemInfo (Address: 0x180081480)
  • GetSystemTimeAsFileTime (Address: 0x180081578)
  • GetTempFileNameW (Address: 0x1800814a0)
  • GetTempPathW (Address: 0x180081678)
  • GetTickCount (Address: 0x180081570)
  • GetVersionExA (Address: 0x180081488)
  • GetVersionExW (Address: 0x1800815f8)
  • GetVolumeInformationByHandleW (Address: 0x180081528)
  • GetVolumeInformationW (Address: 0x180081458)
  • GetVolumeNameForVolumeMountPointW (Address: 0x180081690)
  • GetVolumePathNamesForVolumeNameW (Address: 0x180081448)
  • GetVolumePathNameW (Address: 0x180081680)
  • HeapAlloc (Address: 0x1800815b8)
  • HeapFree (Address: 0x1800815c8)
  • HeapReAlloc (Address: 0x180081560)
  • InitializeCriticalSection (Address: 0x180081720)
  • InitializeCriticalSectionAndSpinCount (Address: 0x180081450)
  • LeaveCriticalSection (Address: 0x180081718)
  • LoadLibraryExW (Address: 0x1800815d8)
  • LoadLibraryW (Address: 0x180081600)
  • LocalAlloc (Address: 0x1800814f0)
  • LocalFileTimeToFileTime (Address: 0x1800814b0)
  • LocalFree (Address: 0x180081648)
  • LockFileEx (Address: 0x180081460)
  • lstrcmpiW (Address: 0x1800814c0)
  • MapViewOfFile (Address: 0x180081538)
  • MultiByteToWideChar (Address: 0x180081498)
  • OpenProcess (Address: 0x180081470)
  • QueryPerformanceCounter (Address: 0x180081590)
  • ReadFile (Address: 0x1800814e0)
  • ReleaseSemaphore (Address: 0x180081548)
  • RemoveDirectoryW (Address: 0x180081520)
  • ResetEvent (Address: 0x180081708)
  • SetEndOfFile (Address: 0x180081610)
  • SetFileAttributesW (Address: 0x1800816c0)
  • SetFileInformationByHandle (Address: 0x1800816d0)
  • SetFilePointer (Address: 0x1800814d0)
  • SetFilePointerEx (Address: 0x180081618)
  • SetFileTime (Address: 0x1800814a8)
  • SetLastError (Address: 0x180081640)
  • SetUnhandledExceptionFilter (Address: 0x180081478)
  • Sleep (Address: 0x180081598)
  • TerminateProcess (Address: 0x1800814f8)
  • TlsAlloc (Address: 0x180081518)
  • TlsFree (Address: 0x180081510)
  • TlsGetValue (Address: 0x180081508)
  • TlsSetValue (Address: 0x180081500)
  • UnhandledExceptionFilter (Address: 0x180081568)
  • UnlockFileEx (Address: 0x180081468)
  • UnmapViewOfFile (Address: 0x180081530)
  • WaitForMultipleObjects (Address: 0x180081550)
  • WaitForSingleObject (Address: 0x1800816f8)
  • WideCharToMultiByte (Address: 0x180081490)
  • WriteFile (Address: 0x1800814d8)
msvcrt.dll
  • __C_specific_handler (Address: 0x180081940)
  • __CxxFrameHandler3 (Address: 0x1800819a8)
  • __dllonexit (Address: 0x180081920)
  • _amsg_exit (Address: 0x180081950)
  • _callnewh (Address: 0x180081968)
  • _CxxThrowException (Address: 0x180081960)
  • _initterm (Address: 0x180081948)
  • _lock (Address: 0x180081930)
  • _onexit (Address: 0x180081918)
  • _purecall (Address: 0x1800818e0)
  • _snprintf_s (Address: 0x180081898)
  • _unlock (Address: 0x180081928)
  • _vscwprintf (Address: 0x1800818c8)
  • _vsnwprintf (Address: 0x1800819a0)
  • _wcsicmp (Address: 0x1800818f0)
  • _wcsnicmp (Address: 0x1800818c0)
  • _wcstoi64 (Address: 0x1800818a0)
  • _XcptFilter (Address: 0x180081958)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180081988)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180081980)
  • ??1exception@@UEAA@XZ (Address: 0x180081978)
  • ??1type_info@@UEAA@XZ (Address: 0x180081910)
  • ?terminate@@YAXXZ (Address: 0x180081938)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180081970)
  • bsearch (Address: 0x1800818e8)
  • free (Address: 0x180081998)
  • iswspace (Address: 0x180081888)
  • malloc (Address: 0x180081990)
  • memcmp (Address: 0x1800818f8)
  • memcpy (Address: 0x180081900)
  • memcpy_s (Address: 0x1800818d8)
  • memmove (Address: 0x180081908)
  • memmove_s (Address: 0x180081880)
  • memset (Address: 0x1800819b0)
  • qsort (Address: 0x180081870)
  • strcpy_s (Address: 0x180081878)
  • strncmp (Address: 0x180081890)
  • swscanf_s (Address: 0x180081860)
  • towupper (Address: 0x1800818d0)
  • wcschr (Address: 0x1800818b8)
  • wcsncmp (Address: 0x180081868)
  • wcsrchr (Address: 0x1800818b0)
  • wcstoul (Address: 0x1800818a8)
ntdll.dll
  • DbgPrint (Address: 0x1800819c8)
  • DbgPrintEx (Address: 0x180081b00)
  • LdrGetDllHandle (Address: 0x1800819e0)
  • LdrGetProcedureAddress (Address: 0x1800819f0)
  • LdrLoadDll (Address: 0x180081a90)
  • LdrUnloadDll (Address: 0x180081b50)
  • NtClose (Address: 0x180081b30)
  • NtCreateFile (Address: 0x180081a98)
  • NtOpenFile (Address: 0x180081a88)
  • NtOpenKey (Address: 0x1800819e8)
  • NtQueryInformationFile (Address: 0x180081ab0)
  • NtQueryInformationProcess (Address: 0x180081aa8)
  • NtQueryPerformanceCounter (Address: 0x180081ae0)
  • NtQueryValueKey (Address: 0x1800819d0)
  • NtReadFile (Address: 0x180081a30)
  • NtSetEaFile (Address: 0x180081a70)
  • NtSetInformationFile (Address: 0x180081b10)
  • NtSetSecurityObject (Address: 0x180081ab8)
  • NtWaitForSingleObject (Address: 0x180081a20)
  • NtWriteFile (Address: 0x180081a38)
  • NtYieldExecution (Address: 0x180081ad8)
  • RtlAcquireResourceExclusive (Address: 0x180081a60)
  • RtlAcquireResourceShared (Address: 0x180081a58)
  • RtlAdjustPrivilege (Address: 0x180081a78)
  • RtlAllocateHeap (Address: 0x180081b28)
  • RtlCaptureContext (Address: 0x180081b38)
  • RtlCreateUnicodeStringFromAsciiz (Address: 0x1800819d8)
  • RtlDeleteCriticalSection (Address: 0x180081a10)
  • RtlDeleteResource (Address: 0x180081a48)
  • RtlDosPathNameToNtPathName_U (Address: 0x180081aa0)
  • RtlDosPathNameToNtPathName_U_WithStatus (Address: 0x180081b18)
  • RtlDowncaseUnicodeChar (Address: 0x180081ae8)
  • RtlEnterCriticalSection (Address: 0x180081a08)
  • RtlExpandEnvironmentStrings (Address: 0x180081a28)
  • RtlFindAceByType (Address: 0x180081ac0)
  • RtlFreeHeap (Address: 0x180081b20)
  • RtlHashUnicodeString (Address: 0x180081ad0)
  • RtlImpersonateSelf (Address: 0x180081a80)
  • RtlInitializeCriticalSection (Address: 0x180081a00)
  • RtlInitializeResource (Address: 0x180081a68)
  • RtlInitUnicodeString (Address: 0x180081a40)
  • RtlLeaveCriticalSection (Address: 0x1800819f8)
  • RtlLookupFunctionEntry (Address: 0x180081b40)
  • RtlNtStatusToDosError (Address: 0x180081b08)
  • RtlQueryEnvironmentVariable_U (Address: 0x1800819c0)
  • RtlRaiseStatus (Address: 0x180081af8)
  • RtlReAllocateHeap (Address: 0x180081af0)
  • RtlReleaseResource (Address: 0x180081a50)
  • RtlSetControlSecurityDescriptor (Address: 0x180081ac8)
  • RtlTimeToTimeFields (Address: 0x180081a18)
  • RtlVirtualUnwind (Address: 0x180081b48)
ole32.dll
  • CoGetMalloc (Address: 0x180081b70)
  • CoInitializeEx (Address: 0x180081b68)
  • CoUninitialize (Address: 0x180081b60)
OLEAUT32.dll
  • SysAllocString (Address: 0x180081748)
  • SysFreeString (Address: 0x180081740)
RPCRT4.dll
  • RpcStringFreeW (Address: 0x180081758)
  • UuidCreate (Address: 0x180081768)
  • UuidToStringW (Address: 0x180081760)
USER32.dll
  • CharUpperW (Address: 0x180081778)
  • GetSystemMetrics (Address: 0x180081780)
WDSCORE.dll
  • ConstructPartialMsgVW (Address: 0x1800817e8)
  • CurrentIP (Address: 0x1800817f0)
  • WdsCreateBlackboard (Address: 0x1800817c0)
  • WdsDestroyBlackboard (Address: 0x1800817d8)
  • WdsFreeData (Address: 0x1800817b8)
  • WdsGetBlackboardValue (Address: 0x1800817c8)
  • WdsInitializeCallbackArray (Address: 0x1800817a0)
  • WdsInitializeDataStringW (Address: 0x1800817d0)
  • WdsInitializeDataUInt32 (Address: 0x1800817e0)
  • WdsPublish (Address: 0x1800817b0)
  • WdsPublishImmediateEx (Address: 0x180081798)
  • WdsSetBlackboardValue (Address: 0x180081790)
  • WdsSetupLogMessageW (Address: 0x1800817f8)
  • WdsSubscribeEx (Address: 0x1800817a8)
WDSUTIL.dll
  • IsCrossArchitectureInstall (Address: 0x180081810)
  • PublishMessage (Address: 0x180081808)