WMICOOKR.dll
Description: WMI
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.4474
Architecture: 64-bit
Operating System: Windows NT
SHA256: 1f9da0af0814850808cbe6acab7da2ae
File Size: 92.5 KB
Uploaded At: Dec. 1, 2025, 7:51 a.m.
Views: 5
Exported Functions
- ??0CArena@@QEAA@$$QEAV0@@Z (Ordinal: 1, Address: 0x1070)
- ??0CArena@@QEAA@AEBV0@@Z (Ordinal: 2, Address: 0x1070)
- ??0CArena@@QEAA@XZ (Ordinal: 3, Address: 0x1070)
- ??0CCheckedInCritSec@@QEAA@PEAVCCritSec@@@Z (Ordinal: 4, Address: 0x12d0)
- ??0CCritSec@@QEAA@XZ (Ordinal: 5, Address: 0x1160)
- ??0CEnterWbemCriticalSection@@QEAA@PEAVCWbemCriticalSection@@K@Z (Ordinal: 6, Address: 0x1560)
- ??0CHaltable@@QEAA@AEBV0@@Z (Ordinal: 7, Address: 0x13d0)
- ??0CInCritSec@@QEAA@PEAU_RTL_CRITICAL_SECTION@@@Z (Ordinal: 8, Address: 0x1240)
- ??0CWin32DefaultArena@@QEAA@AEBV0@@Z (Ordinal: 9, Address: 0x10a0)
- ??0CWin32DefaultArena@@QEAA@XZ (Ordinal: 10, Address: 0x10a0)
- ??0WString@@QEAA@AEBV0@@Z (Ordinal: 11, Address: 0x1a10)
- ??1CCheckedInCritSec@@QEAA@XZ (Ordinal: 12, Address: 0x1300)
- ??1CCritSec@@QEAA@XZ (Ordinal: 13, Address: 0x11a0)
- ??1CEnterWbemCriticalSection@@QEAA@XZ (Ordinal: 14, Address: 0x15a0)
- ??1CInCritSec@@QEAA@XZ (Ordinal: 15, Address: 0x1280)
- ??1CWin32DefaultArena@@QEAA@XZ (Ordinal: 16, Address: 0x10c0)
- ??1WString@@QEAA@XZ (Ordinal: 17, Address: 0x1a40)
- ??4CArena@@QEAAAEAV0@$$QEAV0@@Z (Ordinal: 18, Address: 0x1090)
- ??4CArena@@QEAAAEAV0@AEBV0@@Z (Ordinal: 19, Address: 0x1090)
- ??4CCheckedInCritSec@@QEAAAEAV0@AEBV0@@Z (Ordinal: 20, Address: 0x13b0)
- ??4CCritSec@@QEAAAEAV0@AEBV0@@Z (Ordinal: 21, Address: 0x1210)
- ??4CEnterWbemCriticalSection@@QEAAAEAV0@AEBV0@@Z (Ordinal: 22, Address: 0x13b0)
- ??4CFlexQueue@@QEAAAEAV0@AEBV0@@Z (Ordinal: 23, Address: 0x1540)
- ??4CHaltable@@QEAAAEAV0@AEBV0@@Z (Ordinal: 24, Address: 0x1430)
- ??4CInCritSec@@QEAAAEAV0@AEBV0@@Z (Ordinal: 25, Address: 0x12b0)
- ??4CSmallArrayBlob@@QEAAAEAV0@$$QEAV0@@Z (Ordinal: 26, Address: 0x1790)
- ??4CSmallArrayBlob@@QEAAAEAV0@AEBV0@@Z (Ordinal: 27, Address: 0x13b0)
- ??4CWbemCriticalSection@@QEAAAEAV0@AEBV0@@Z (Ordinal: 28, Address: 0x1540)
- ??4CWin32DefaultArena@@QEAAAEAV0@AEBV0@@Z (Ordinal: 29, Address: 0x1090)
- ??ACSmallArrayBlob@@QEBAPEAXH@Z (Ordinal: 30, Address: 0x1770)
- ??ACWStringArray@@QEBAPEAGH@Z (Ordinal: 31, Address: 0x1630)
- ??BWString@@QEAAPEAGXZ (Ordinal: 32, Address: 0x1a90)
- ??BWString@@QEBAPEBGXZ (Ordinal: 33, Address: 0x1a90)
- ??MWString@@QEBAHPEBG@Z (Ordinal: 34, Address: 0x1b00)
- ??NWString@@QEBAHPEBG@Z (Ordinal: 35, Address: 0x1b60)
- ??OWString@@QEBAHPEBG@Z (Ordinal: 36, Address: 0x1b30)
- ??PWString@@QEBAHPEBG@Z (Ordinal: 37, Address: 0x1b90)
- ??_7CArena@@6B@ (Ordinal: 38, Address: 0xeaa0)
- ??_7CHaltable@@6B@ (Ordinal: 39, Address: 0xea98)
- ??_7CWin32DefaultArena@@6B@ (Ordinal: 40, Address: 0xeab8)
- ??_FCFlexArray@@QEAAXXZ (Ordinal: 41, Address: 0x1610)
- ??_FCFlexQueue@@QEAAXXZ (Ordinal: 42, Address: 0x1750)
- ??_FCWStringArray@@QEAAXXZ (Ordinal: 43, Address: 0x1670)
- ?Add@CFlexArray@@QEAAHPEAX@Z (Ordinal: 44, Address: 0x15d0)
- ?Alloc@CWin32DefaultArena@@UEAAPEAX_K@Z (Ordinal: 45, Address: 0x10e0)
- ?BindPtr@WString@@QEAAXPEAG@Z (Ordinal: 46, Address: 0x1bc0)
- ?Compress@CWStringArray@@QEAAXXZ (Ordinal: 47, Address: 0x1650)
- ?DecrementIndex@CFlexQueue@@IEAAXAEAH@Z (Ordinal: 48, Address: 0x16e0)
- ?Enter@CCheckedInCritSec@@QEAAXXZ (Ordinal: 49, Address: 0x1340)
- ?Enter@CCritSec@@QEAAXXZ (Ordinal: 50, Address: 0x11d0)
- ?Equal@WString@@QEBAHPEBG@Z (Ordinal: 51, Address: 0x1aa0)
- ?EqualNoCase@WString@@QEBAHPEBG@Z (Ordinal: 52, Address: 0x1ad0)
- ?Free@CWin32DefaultArena@@UEAAHPEAX@Z (Ordinal: 53, Address: 0x1120)
- ?GetArrayPtr@CFlexArray@@QEAAPEAPEAXXZ (Ordinal: 54, Address: 0x1600)
- ?GetArrayPtr@CFlexArray@@QEBAPEBQEAXXZ (Ordinal: 55, Address: 0x1600)
- ?GetArrayPtr@CSmallArrayBlob@@QEAAPEAPEAXXZ (Ordinal: 56, Address: 0x1780)
- ?GetArrayPtr@CSmallArrayBlob@@QEBAPEBQEAXXZ (Ordinal: 57, Address: 0x1780)
- ?GetArrayPtr@CWStringArray@@QEAAPEAPEBGXZ (Ordinal: 58, Address: 0x1600)
- ?GetAt@CSmallArrayBlob@@QEBAPEAXH@Z (Ordinal: 59, Address: 0x1770)
- ?GetAt@CWStringArray@@QEBAPEAGH@Z (Ordinal: 60, Address: 0x1630)
- ?GetLockCount@CWbemCriticalSection@@QEAAJXZ (Ordinal: 61, Address: 0x1520)
- ?GetOwningThreadId@CWbemCriticalSection@@QEAAKXZ (Ordinal: 62, Address: 0x13a0)
- ?GetQueueSize@CFlexQueue@@QEBAHXZ (Ordinal: 63, Address: 0x1690)
- ?GetRecursionCount@CWbemCriticalSection@@QEAAJXZ (Ordinal: 64, Address: 0x1530)
- ?GetStringPointerByRef@WString@@QEBAAEBQEBGXZ (Ordinal: 65, Address: 0x1090)
- ?IncrementIndex@CFlexQueue@@IEAAXAEAH@Z (Ordinal: 66, Address: 0x16c0)
- ?IsEntered@CCheckedInCritSec@@QEAAHXZ (Ordinal: 67, Address: 0x13a0)
- ?IsEntered@CEnterWbemCriticalSection@@QEAAHXZ (Ordinal: 68, Address: 0x13a0)
- ?Leave@CCheckedInCritSec@@QEAAXXZ (Ordinal: 69, Address: 0x1370)
- ?Leave@CCritSec@@QEAAXXZ (Ordinal: 70, Address: 0x11f0)
- ?Length@WString@@QEBAHXZ (Ordinal: 71, Address: 0x1a70)
- ?Realloc@CWin32DefaultArena@@UEAAPEAXPEAX_K@Z (Ordinal: 72, Address: 0x1100)
- ?SetSize@CFlexArray@@QEAAXH@Z (Ordinal: 73, Address: 0x15f0)
- ?Size@CFlexArray@@QEBAHXZ (Ordinal: 74, Address: 0x1520)
- ?Size@CSmallArrayBlob@@QEBAHXZ (Ordinal: 75, Address: 0x1520)
- ?Size@CWStringArray@@QEBAHXZ (Ordinal: 76, Address: 0x1520)
- ?Unqueue@CFlexQueue@@QEAAPEAXXZ (Ordinal: 77, Address: 0x1700)
- ?WbemSysFreeString@CWin32DefaultArena@@SAXPEAG@Z (Ordinal: 78, Address: 0x1140)
- ?isValid@CHaltable@@QEAA_NXZ (Ordinal: 79, Address: 0x1510)
- DllCanUnloadNow (Ordinal: 80, Address: 0x7d00)
- DllGetClassObject (Ordinal: 81, Address: 0x7c10)
- DllRegisterServer (Ordinal: 82, Address: 0x7d20)
- DllUnregisterServer (Ordinal: 83, Address: 0x7fb0)
Imported DLLs & Functions
api-ms-win-core-delayload-l1-1-0.dll
- DelayLoadFailureHook (Address: 0x18000edc8)
api-ms-win-core-delayload-l1-1-1.dll
- ResolveDelayLoadedAPI (Address: 0x18000edd8)
api-ms-win-core-errorhandling-l1-1-0.dll
- SetUnhandledExceptionFilter (Address: 0x18000edf0)
- UnhandledExceptionFilter (Address: 0x18000ede8)
api-ms-win-core-heap-l2-1-0.dll
- LocalFree (Address: 0x18000ee00)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x18000ee18)
- GetModuleFileNameW (Address: 0x18000ee10)
api-ms-win-core-localization-l1-2-0.dll
- LCMapStringW (Address: 0x18000ee28)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x18000ee38)
- GetCurrentProcessId (Address: 0x18000ee50)
- GetCurrentThreadId (Address: 0x18000ee48)
- TerminateProcess (Address: 0x18000ee40)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x18000ee60)
- QueryPerformanceFrequency (Address: 0x18000ee68)
api-ms-win-core-registry-l1-1-0.dll
- RegCloseKey (Address: 0x18000ee80)
- RegCreateKeyExW (Address: 0x18000ee98)
- RegDeleteKeyExW (Address: 0x18000ee78)
- RegOpenKeyExW (Address: 0x18000ee88)
- RegSetValueExW (Address: 0x18000ee90)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x18000eeb8)
- RtlLookupFunctionEntry (Address: 0x18000eea8)
- RtlVirtualUnwind (Address: 0x18000eeb0)
api-ms-win-core-string-obsolete-l1-1-0.dll
- lstrcmpW (Address: 0x18000eec8)
api-ms-win-core-synch-l1-1-0.dll
- DeleteCriticalSection (Address: 0x18000eee0)
- EnterCriticalSection (Address: 0x18000eef0)
- InitializeCriticalSectionAndSpinCount (Address: 0x18000eee8)
- LeaveCriticalSection (Address: 0x18000eed8)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x18000ef00)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemTimeAsFileTime (Address: 0x18000ef18)
- GetTickCount (Address: 0x18000ef10)
msvcrt.dll
- __C_specific_handler (Address: 0x18000efd8)
- __CxxFrameHandler3 (Address: 0x18000ef28)
- __dllonexit (Address: 0x18000ef90)
- _amsg_exit (Address: 0x18000ef30)
- _CxxThrowException (Address: 0x18000ef50)
- _initterm (Address: 0x18000efb0)
- _lock (Address: 0x18000efc0)
- _onexit (Address: 0x18000efa0)
- _purecall (Address: 0x18000efd0)
- _unlock (Address: 0x18000ef48)
- _vsnwprintf (Address: 0x18000efc8)
- _XcptFilter (Address: 0x18000ef38)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x18000efa8)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x18000ef98)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x18000ef80)
- ??1exception@@UEAA@XZ (Address: 0x18000ef78)
- ??1type_info@@UEAA@XZ (Address: 0x18000ef60)
- ?terminate@@YAXXZ (Address: 0x18000ef70)
- ?what@exception@@UEBAPEBDXZ (Address: 0x18000ef58)
- free (Address: 0x18000ef68)
- malloc (Address: 0x18000ef88)
- memcpy (Address: 0x18000efe0)
- memmove (Address: 0x18000ef40)
- memset (Address: 0x18000efe8)
- wcsstr (Address: 0x18000efb8)
wbemcomn.dll
- _ThrowMemoryException_ (Address: 0x18000f000)
- ??0CFlexArray@@QEAA@HH@Z (Address: 0x18000f030)
- ??0CFlexQueue@@QEAA@H@Z (Address: 0x18000f068)
- ??0CWStringArray@@QEAA@HH@Z (Address: 0x18000f008)
- ??0WString@@QEAA@PEAGH@Z (Address: 0x18000f040)
- ??1CHaltable@@UEAA@XZ (Address: 0x18000f070)
- ??4WString@@QEAAAEAV0@AEBV0@@Z (Address: 0x18000f038)
- ??ACFlexArray@@QEBAPEAXH@Z (Address: 0x18000f028)
- ?Compress@CFlexArray@@QEAAXXZ (Address: 0x18000f018)
- ?DeleteString@WString@@AEAAXPEAG@Z (Address: 0x18000f048)
- ?Enter@CWbemCriticalSection@@QEAAHK@Z (Address: 0x18000eff8)
- ?InsertAt@CFlexArray@@QEAAHHPEAX@Z (Address: 0x18000f050)
- ?Leave@CWbemCriticalSection@@QEAAXXZ (Address: 0x18000f020)
- ?WbemMemAlloc@CWin32DefaultArena@@SAPEAX_K@Z (Address: 0x18000f078)
- ?WbemMemFree@CWin32DefaultArena@@SAHPEAX@Z (Address: 0x18000f060)
- ?WbemMemReAlloc@CWin32DefaultArena@@SAPEAXPEAX_K@Z (Address: 0x18000f058)
- BreakOnDbgAndRenterLoop (Address: 0x18000f010)