CIWmi.dll
Description: WMIv2 Provider for CI Policy Management
Authors: © Microsoft Corporation. All rights reserved.
Version: 10.0.19041.3636
Architecture: 64-bit
Operating System: Windows NT
SHA256: 00434937973e2d513938b879b579bccd
File Size: 41.0 KB
Uploaded At: Dec. 1, 2025, 7:24 a.m.
Views: 13
Exported Functions
- DllCanUnloadNow (Ordinal: 1, Address: 0x1c70)
- DllGetClassObject (Ordinal: 2, Address: 0x1cb0)
- DllMain (Ordinal: 3, Address: 0x1960)
- DllRegisterServer (Ordinal: 4, Address: 0x1bd0)
- DllUnregisterServer (Ordinal: 5, Address: 0x1c20)
- GetProviderClassID (Ordinal: 6, Address: 0x19c0)
- MI_Main (Ordinal: 7, Address: 0x1140)
Imported DLLs & Functions
api-ms-win-core-com-l1-1-0.dll
- CoImpersonateClient (Address: 0x180006b78)
- CoRevertToSelf (Address: 0x180006b80)
api-ms-win-core-errorhandling-l1-1-0.dll
- GetLastError (Address: 0x180006b98)
- SetUnhandledExceptionFilter (Address: 0x180006b90)
- UnhandledExceptionFilter (Address: 0x180006ba0)
api-ms-win-core-file-l1-1-0.dll
- CreateFileW (Address: 0x180006bb0)
- DeleteFileW (Address: 0x180006bd0)
- GetFileSize (Address: 0x180006bc0)
- ReadFile (Address: 0x180006bc8)
- WriteFile (Address: 0x180006bb8)
api-ms-win-core-file-l2-1-0.dll
- CopyFileExW (Address: 0x180006be0)
api-ms-win-core-handle-l1-1-0.dll
- CloseHandle (Address: 0x180006bf0)
api-ms-win-core-heap-l1-1-0.dll
- GetProcessHeap (Address: 0x180006c00)
- HeapAlloc (Address: 0x180006c08)
- HeapFree (Address: 0x180006c10)
api-ms-win-core-heap-l2-1-0.dll
- LocalAlloc (Address: 0x180006c28)
- LocalFree (Address: 0x180006c20)
api-ms-win-core-libraryloader-l1-2-0.dll
- DisableThreadLibraryCalls (Address: 0x180006c50)
- FreeLibrary (Address: 0x180006c38)
- GetProcAddress (Address: 0x180006c48)
- LoadLibraryExW (Address: 0x180006c40)
api-ms-win-core-processthreads-l1-1-0.dll
- GetCurrentProcess (Address: 0x180006c70)
- GetCurrentProcessId (Address: 0x180006c60)
- GetCurrentThread (Address: 0x180006c68)
- GetCurrentThreadId (Address: 0x180006c80)
- OpenThreadToken (Address: 0x180006c78)
- TerminateProcess (Address: 0x180006c88)
api-ms-win-core-profile-l1-1-0.dll
- QueryPerformanceCounter (Address: 0x180006c98)
api-ms-win-core-rtlsupport-l1-1-0.dll
- RtlCaptureContext (Address: 0x180006cb8)
- RtlLookupFunctionEntry (Address: 0x180006cb0)
- RtlVirtualUnwind (Address: 0x180006ca8)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
- PathFindFileNameW (Address: 0x180006cc8)
api-ms-win-core-synch-l1-2-0.dll
- Sleep (Address: 0x180006cd8)
api-ms-win-core-sysinfo-l1-1-0.dll
- GetSystemDirectoryW (Address: 0x180006ce8)
- GetSystemTimeAsFileTime (Address: 0x180006cf0)
- GetSystemWindowsDirectoryW (Address: 0x180006d00)
- GetTickCount (Address: 0x180006cf8)
api-ms-win-core-wow64-l1-1-0.dll
- Wow64DisableWow64FsRedirection (Address: 0x180006d18)
- Wow64RevertWow64FsRedirection (Address: 0x180006d10)
api-ms-win-security-base-l1-1-0.dll
- AccessCheck (Address: 0x180006d28)
msvcrt.dll
- __C_specific_handler (Address: 0x180006d70)
- __CxxFrameHandler3 (Address: 0x180006da8)
- __dllonexit (Address: 0x180006df0)
- _amsg_exit (Address: 0x180006dc0)
- _callnewh (Address: 0x180006d40)
- _CxxThrowException (Address: 0x180006de8)
- _initterm (Address: 0x180006d68)
- _lock (Address: 0x180006d98)
- _onexit (Address: 0x180006df8)
- _purecall (Address: 0x180006d88)
- _unlock (Address: 0x180006dc8)
- _wcsicmp (Address: 0x180006d80)
- _XcptFilter (Address: 0x180006d38)
- ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180006d60)
- ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180006d78)
- ??0exception@@QEAA@AEBV0@@Z (Address: 0x180006dd0)
- ??1exception@@UEAA@XZ (Address: 0x180006db8)
- ??1type_info@@UEAA@XZ (Address: 0x180006e00)
- ??3@YAXPEAX@Z (Address: 0x180006d90)
- ?what@exception@@UEBAPEBDXZ (Address: 0x180006d48)
- free (Address: 0x180006dd8)
- malloc (Address: 0x180006db0)
- memcmp (Address: 0x180006e08)
- memcpy (Address: 0x180006d58)
- memmove (Address: 0x180006d50)
- memset (Address: 0x180006e10)
- swprintf_s (Address: 0x180006de0)
- wcscat_s (Address: 0x180006da0)
ntdll.dll
- NtQuerySystemInformation (Address: 0x180006e30)
- NtSetSystemInformation (Address: 0x180006e28)
- RtlNtStatusToDosError (Address: 0x180006e20)
- RtlNtStatusToDosErrorNoTeb (Address: 0x180006e38)