IEFileInstallAI.dll

Description: CMI IE File Install plug-in

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5071

Architecture: 64-bit

Operating System: Windows NT

SHA256: 753406f8c5a7a124f37ad072d49f491c

File Size: 38.0 KB

Uploaded At: Dec. 1, 2025, 8:22 a.m.

Views: 24

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x2ed0)
  • DllCsiGetHandler (Ordinal: 2, Address: 0x2ef0)

Imported DLLs & Functions

api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180005210)
  • SetUnhandledExceptionFilter (Address: 0x180005218)
  • UnhandledExceptionFilter (Address: 0x180005208)
api-ms-win-core-file-l1-1-0.dll
  • DeleteFileW (Address: 0x180005228)
  • GetTempFileNameW (Address: 0x180005230)
api-ms-win-core-file-l2-1-0.dll
  • MoveFileExW (Address: 0x180005240)
api-ms-win-core-heap-l1-1-0.dll
  • HeapDestroy (Address: 0x180005250)
api-ms-win-core-heap-obsolete-l1-1-0.dll
  • LocalFree (Address: 0x180005260)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • CopyFileW (Address: 0x180005278)
  • MoveFileW (Address: 0x180005270)
api-ms-win-core-libraryloader-l1-1-0.dll
  • DisableThreadLibraryCalls (Address: 0x180005288)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x1800052a0)
  • GetCurrentProcessId (Address: 0x1800052b0)
  • GetCurrentThreadId (Address: 0x1800052a8)
  • TerminateProcess (Address: 0x180005298)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1800052c0)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1800052e0)
  • RegCreateKeyExW (Address: 0x1800052d0)
  • RegOpenKeyExW (Address: 0x1800052e8)
  • RegSetValueExW (Address: 0x1800052d8)
api-ms-win-core-registry-l2-1-0.dll
  • RegDeleteKeyW (Address: 0x1800052f8)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180005308)
  • RtlLookupFunctionEntry (Address: 0x180005310)
  • RtlVirtualUnwind (Address: 0x180005318)
api-ms-win-core-synch-l1-1-0.dll
  • DeleteCriticalSection (Address: 0x180005330)
  • InitializeCriticalSection (Address: 0x180005328)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x180005340)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x180005350)
  • GetTickCount (Address: 0x180005358)
api-ms-win-security-base-l1-1-0.dll
  • SetFileSecurityW (Address: 0x180005368)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180005378)
msvcrt.dll
  • __C_specific_handler (Address: 0x1800053c8)
  • _amsg_exit (Address: 0x180005398)
  • _callnewh (Address: 0x1800053a8)
  • _initterm (Address: 0x180005390)
  • _purecall (Address: 0x1800053c0)
  • _vsnwprintf (Address: 0x1800053d0)
  • _wcsicmp (Address: 0x1800053d8)
  • _XcptFilter (Address: 0x1800053a0)
  • free (Address: 0x1800053b8)
  • malloc (Address: 0x1800053b0)
  • memcmp (Address: 0x180005388)
  • memset (Address: 0x1800053e0)
WCP.dll
  • ?RtlGetFacilityTracingFlags@Rtl@WCP@Windows@@YAKPEAU_RTL_TRACING_FACILITY@123@@Z (Address: 0x1800051b8)
  • ?RtlTraceFormat_PCBOOLEAN@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x1800051b0)
  • ?RtlTraceFormat_PCLUNICODE_STRING@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x1800051d8)
  • ?RtlTraceFormat_PCWSTR@Rtl@WCP@Windows@@YAXPEAUIRtlFormattedOutputStream@13@PEBX@Z (Address: 0x1800051d0)
  • ?RtlTraceVa@Rtl@WCP@Windows@@YAXKKPEAU_RTL_TRACING_FACILITY@123@QEBD_KPEAD@Z (Address: 0x1800051f8)
  • ConvertNtStatusToHResult (Address: 0x1800051e0)
  • RtlCombineNtPathSegments (Address: 0x1800051c0)
  • RtlFreeLUnicodeString (Address: 0x1800051e8)
  • RtlInitLUnicodeStringFromNullTerminatedString (Address: 0x1800051c8)
  • RtlReallocateLUnicodeString (Address: 0x1800051f0)
  • RtlReportErrorOrigination (Address: 0x1800051a8)