uwfwmi.dll

Description:

Authors:

Version:

Architecture: 32-bit

Operating System:

SHA256: bc2b7f62a34d99e506e080c9332f9727

File Size: 184.4 KB

Uploaded At: Dec. 1, 2025, 8:31 a.m.

Views: 15

Exported Functions

  • MethodAccessCheck (Ordinal: 1, Address: 0x11730)
  • PropertyAccessCheck (Ordinal: 2, Address: 0x116a0)
  • DllCanUnloadNow (Ordinal: 3, Address: 0x11030)
  • DllGetClassObject (Ordinal: 4, Address: 0x11060)
  • DllRegisterServer (Ordinal: 5, Address: 0x10fa0)
  • DllUnregisterServer (Ordinal: 6, Address: 0x10ff0)
  • DoUnattend (Ordinal: 7, Address: 0x117e0)
  • GetProviderClassID (Ordinal: 8, Address: 0x10e30)
  • MI_Main (Ordinal: 9, Address: 0x10da0)
  • UwfSysprepCleanup (Ordinal: 10, Address: 0x110d0)
  • UwfSysprepGeneralize (Ordinal: 11, Address: 0x110c0)
  • UwfSysprepSpecialize (Ordinal: 12, Address: 0x110c0)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x10025010)
  • CoImpersonateClient (Address: 0x10025008)
  • CoRevertToSelf (Address: 0x1002500c)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x1002501c)
  • IsDebuggerPresent (Address: 0x10025020)
  • OutputDebugStringA (Address: 0x10025024)
  • OutputDebugStringW (Address: 0x10025018)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1002502c)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x10025034)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x10025040)
  • RaiseException (Address: 0x1002504c)
  • SetLastError (Address: 0x1002503c)
  • SetUnhandledExceptionFilter (Address: 0x10025044)
  • UnhandledExceptionFilter (Address: 0x10025048)
api-ms-win-core-file-l1-1-0.dll
  • CreateDirectoryW (Address: 0x10025064)
  • FindFirstVolumeW (Address: 0x10025054)
  • FindNextVolumeW (Address: 0x10025060)
  • FindVolumeClose (Address: 0x10025058)
  • GetFileAttributesW (Address: 0x1002505c)
  • GetFullPathNameW (Address: 0x10025068)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x10025070)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1002508c)
  • HeapAlloc (Address: 0x10025078)
  • HeapDestroy (Address: 0x10025080)
  • HeapFree (Address: 0x10025088)
  • HeapReAlloc (Address: 0x1002507c)
  • HeapSize (Address: 0x10025084)
api-ms-win-core-libraryloader-l1-2-0.dll
  • DisableThreadLibraryCalls (Address: 0x100250ac)
  • FindResourceExW (Address: 0x100250b8)
  • FreeLibrary (Address: 0x100250b0)
  • GetModuleFileNameA (Address: 0x100250a0)
  • GetModuleFileNameW (Address: 0x10025098)
  • GetModuleHandleExW (Address: 0x1002509c)
  • GetModuleHandleW (Address: 0x100250a4)
  • GetProcAddress (Address: 0x100250bc)
  • LoadLibraryExW (Address: 0x100250c0)
  • LoadResource (Address: 0x100250b4)
  • LockResource (Address: 0x100250a8)
  • SizeofResource (Address: 0x10025094)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x100250c8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x100250d0)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x100250d8)
  • GetCurrentProcessId (Address: 0x100250e4)
  • GetCurrentThreadId (Address: 0x100250dc)
  • TerminateProcess (Address: 0x100250e0)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x100250ec)
api-ms-win-core-registry-l1-1-0.dll
  • RegEnumKeyExW (Address: 0x100250f8)
  • RegGetValueW (Address: 0x100250f4)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x10025110)
  • AcquireSRWLockShared (Address: 0x10025128)
  • CreateMutexExW (Address: 0x10025120)
  • CreateSemaphoreExW (Address: 0x10025100)
  • DeleteCriticalSection (Address: 0x10025138)
  • EnterCriticalSection (Address: 0x1002512c)
  • InitializeCriticalSection (Address: 0x10025124)
  • InitializeCriticalSectionEx (Address: 0x10025134)
  • LeaveCriticalSection (Address: 0x1002510c)
  • OpenSemaphoreW (Address: 0x10025118)
  • ReleaseMutex (Address: 0x1002513c)
  • ReleaseSemaphore (Address: 0x1002511c)
  • ReleaseSRWLockExclusive (Address: 0x10025104)
  • ReleaseSRWLockShared (Address: 0x10025130)
  • WaitForSingleObject (Address: 0x10025108)
  • WaitForSingleObjectEx (Address: 0x10025114)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x1002514c)
  • InitOnceComplete (Address: 0x10025148)
  • Sleep (Address: 0x10025154)
  • SleepConditionVariableSRW (Address: 0x10025150)
  • WakeAllConditionVariable (Address: 0x10025144)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemDirectoryW (Address: 0x10025160)
  • GetSystemTimeAsFileTime (Address: 0x10025164)
  • GetTickCount (Address: 0x1002515c)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x10025174)
  • CreateThreadpoolTimer (Address: 0x10025178)
  • SetThreadpoolTimer (Address: 0x1002516c)
  • WaitForThreadpoolTimerCallbacks (Address: 0x10025170)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x10025194)
  • EventRegister (Address: 0x1002518c)
  • EventSetInformation (Address: 0x10025190)
  • EventUnregister (Address: 0x10025184)
  • EventWrite (Address: 0x10025188)
  • EventWriteTransfer (Address: 0x10025180)
msvcrt.dll
  • __CxxFrameHandler3 (Address: 0x10025208)
  • __dllonexit (Address: 0x100251c0)
  • __iob_func (Address: 0x100251b4)
  • _amsg_exit (Address: 0x100251d4)
  • _callnewh (Address: 0x100251e4)
  • _errno (Address: 0x100251c4)
  • _except_handler4_common (Address: 0x100251d0)
  • _initterm (Address: 0x100251ac)
  • _lock (Address: 0x100251a8)
  • _onexit (Address: 0x100251bc)
  • _purecall (Address: 0x10025200)
  • _unlock (Address: 0x100251a4)
  • _vsnprintf (Address: 0x100251b0)
  • _vsnwprintf (Address: 0x10025220)
  • _wcsicmp (Address: 0x100251ec)
  • _wcsnicmp (Address: 0x100251d8)
  • _wtoi (Address: 0x100251f0)
  • _XcptFilter (Address: 0x100251e0)
  • calloc (Address: 0x100251e8)
  • fputws (Address: 0x100251f8)
  • free (Address: 0x10025214)
  • malloc (Address: 0x10025210)
  • memcmp (Address: 0x100251f4)
  • memcpy (Address: 0x100251b8)
  • memcpy_s (Address: 0x1002521c)
  • memmove_s (Address: 0x100251fc)
  • memset (Address: 0x100251cc)
  • realloc (Address: 0x100251c8)
  • swprintf_s (Address: 0x10025218)
  • vswprintf_s (Address: 0x10025204)
  • wcscat_s (Address: 0x100251dc)
  • wcschr (Address: 0x1002519c)
  • wcsncmp (Address: 0x1002520c)
  • wcsrchr (Address: 0x100251a0)
ntdll.dll
  • RtlAllocateHeap (Address: 0x10025228)
  • RtlFreeHeap (Address: 0x1002522c)
OLEAUT32.dll
  • SysFreeString (Address: 0x10025000)
uwfcfgmgmt.dll
  • _MultiSzFree@4 (Address: 0x1002527c)
  • ??0CUwfOverlayDevice@@QAE@XZ (Address: 0x1002526c)
  • ??0CUwfRegKey@@QAE@XZ (Address: 0x10025370)
  • ??1CDevice@@UAE@XZ (Address: 0x10025268)
  • ??1CUwfRegKey@@QAE@XZ (Address: 0x1002536c)
  • ?AddFileExclusion@CUwfStaticVolumeConfiguration@@QAEJPBG@Z (Address: 0x100253a8)
  • ?AddMultiSzValue@CUwfRegKey@@QAEJPBG0@Z (Address: 0x100252b8)
  • ?AddRegKeyExclusion@CUwfStaticConfiguration@@QAEJPBG@Z (Address: 0x100252f8)
  • ?Begin@CUwfProvider@@QAEJ_N@Z (Address: 0x100252ac)
  • ?Begin@CUwfProvider@@QAEJXZ (Address: 0x10025388)
  • ?CanVolumeBeProtected@@YGJPBG_NPA_N@Z (Address: 0x100252a0)
  • ?CaptureUwfSettings@@YGJW4E_UNATTEND_REASON@@@Z (Address: 0x10025360)
  • ?CommitFile@CUwfManagement@@QAEJPBG0@Z (Address: 0x10025294)
  • ?CommitFileDeletion@CUwfManagement@@QAEJPBG00@Z (Address: 0x10025290)
  • ?CommitRegistry@CUwfManagement@@QAEJ_NPBG1@Z (Address: 0x100252d0)
  • ?CommitRegistryDeletion@CUwfManagement@@QAEJ_NPBG1@Z (Address: 0x10025298)
  • ?CopyTree@CUwfRegKey@@QAEJAAV1@PBG_N@Z (Address: 0x10025340)
  • ?Create@CUwfRegKey@@QAEJPAUHKEY__@@PBGPAGKKPAU_SECURITY_ATTRIBUTES@@PAK@Z (Address: 0x10025344)
  • ?CreateVolume@CUwfStaticConfiguration@@QAEJPBG0PAPAVCUwfStaticVolumeConfiguration@@@Z (Address: 0x100252c8)
  • ?DeleteTree@CUwfRegKey@@QAEJPBG@Z (Address: 0x10025364)
  • ?DisableAutoDefragService@@YGJH@Z (Address: 0x10025348)
  • ?Finalize@CUwfProvider@@QAEJXZ (Address: 0x1002537c)
  • ?FindFileExclusion@CUwfStaticVolumeConfiguration@@QAEJPBG@Z (Address: 0x10025284)
  • ?FindRegKeyExclusion@CUwfStaticConfiguration@@QAEJPBG@Z (Address: 0x10025234)
  • ?FixupLowerFiltersSetting@@YGJXZ (Address: 0x1002535c)
  • ?FixupUpdatedSettings@CUwfConfiguration@@QAEJXZ (Address: 0x100252e0)
  • ?get_BindingType@CUwfStaticVolumeConfiguration@@QAEJPAK@Z (Address: 0x100252b0)
  • ?get_DriveLetter@CUwfStaticVolumeConfiguration@@QAEJPAPAG@Z (Address: 0x100252cc)
  • ?get_FileExclusions@CUwfStaticVolumeConfiguration@@QAEJPAPAU_MULTISZ@@@Z (Address: 0x10025280)
  • ?get_HORMEnabled@CUwfConfiguration@@QAEJPA_N@Z (Address: 0x10025324)
  • ?get_HORMEnabled@CUwfManagement@@QAEJPA_N@Z (Address: 0x10025384)
  • ?get_NumVolumes@CUwfStaticConfiguration@@QAEJPAK@Z (Address: 0x100253a0)
  • ?get_OverlayCriticalThreshold@CUwfManagement@@QAEJPAK@Z (Address: 0x10025274)
  • ?get_OverlayInformation@CUwfManagement@@QAEJPBGPAU_UWFVOL_OVERLAY_DATA_OUTPUT@@PAK2@Z (Address: 0x10025278)
  • ?get_OverlayMaximumSize@CUwfManagement@@QAEJ_NPAK@Z (Address: 0x100252fc)
  • ?get_OverlayMaximumSize@CUwfStaticConfiguration@@QAEJPAK@Z (Address: 0x10025318)
  • ?get_OverlayType@CUwfManagement@@QAEJ_NPAW4_UWF_CONFIG_OVERLAY_TYPE@@@Z (Address: 0x1002530c)
  • ?get_OverlayType@CUwfStaticConfiguration@@QAEJPAW4_UWF_CONFIG_OVERLAY_TYPE@@@Z (Address: 0x100252a4)
  • ?get_OverlayWarningThreshold@CUwfManagement@@QAEJPAK@Z (Address: 0x10025270)
  • ?get_PersistDomainSecretKey@CUwfStaticConfiguration@@QAEJPA_N@Z (Address: 0x10025240)
  • ?get_PersistTSCAL@CUwfStaticConfiguration@@QAEJPA_N@Z (Address: 0x1002523c)
  • ?get_Protected@CUwfStaticVolumeConfiguration@@QAEJPA_N@Z (Address: 0x100252ec)
  • ?get_RegKeyExclusions@CUwfStaticConfiguration@@QAEJPAPAU_MULTISZ@@@Z (Address: 0x1002534c)
  • ?get_ServicingModeEnabled@CUwfStaticConfiguration@@QAEJPA_N@Z (Address: 0x1002532c)
  • ?get_StaticVolumeConfiguration@CUwfStaticConfiguration@@QAEJKPAPAVCUwfStaticVolumeConfiguration@@@Z (Address: 0x10025398)
  • ?get_UwfConfiguration@CUwfManagement@@QAEJPAPAVCUwfConfiguration@@@Z (Address: 0x100252e4)
  • ?get_UwfEnabled@CUwfStaticConfiguration@@QAEJPA_N@Z (Address: 0x100252d4)
  • ?get_VolumeGuid@CUwfStaticVolumeConfiguration@@QAEJPAPAG@Z (Address: 0x10025394)
  • ?GetConfiguration@CUwfProvider@@QAEPAVCUwfConfiguration@@XZ (Address: 0x10025320)
  • ?GetDriveLetterFromVolumeName@@YGJPBGPAG@Z (Address: 0x100252f0)
  • ?GetManagement@CUwfProvider@@QAEPAVCUwfManagement@@XZ (Address: 0x10025380)
  • ?GetOverlayFiles@CUwfOverlayDevice@@QAEJAA_KAAV?$CRBMap@V?$CStringT@GV?$StrTraitATL@GV?$ChTraitsCRT@G@ATL@@@ATL@@@ATL@@_KV?$CElementTraits@V?$CStringT@GV?$StrTraitATL@GV?$ChTraitsCRT@G@ATL@@@ATL@@@ATL@@@2@V?$CElementTraits@_K@2@@ATL@@@Z (Address: 0x10025260)
  • ?GetStaticConfiguration@CUwfProvider@@QAEJ_NPAPAVCUwfStaticConfiguration@@@Z (Address: 0x1002531c)
  • ?GetSystemShutdownState@CUwfManagement@@QAEJPA_N@Z (Address: 0x1002525c)
  • ?GetUwfProtectableVolumeList@@YGJ_NPAKPAUUWF_PROTECTABLEVOLUME_INFO@@@Z (Address: 0x100252b4)
  • ?GetUwfProvider@CUwfProvider@@SGPAV1@XZ (Address: 0x10025390)
  • ?GetWinResumeObjectId@@YGJPAPAG@Z (Address: 0x100253a4)
  • ?HiberFileExists@@YG_NXZ (Address: 0x10025250)
  • ?Initialize@CUwfOverlayDevice@@QAEJPBG@Z (Address: 0x10025264)
  • ?IsHORMEnabled@CUwfConfiguration@@QAE_NXZ (Address: 0x1002529c)
  • ?IsUserAdmin@@YGJPA_N@Z (Address: 0x10025374)
  • ?IsValidDriveLetter@@YG_NPBG@Z (Address: 0x10025338)
  • ?IsValidOverlayConfig@@YG_NW4_UWF_CONFIG_OVERLAY_TYPE@@K@Z (Address: 0x10025314)
  • ?LOCK@CUwfProvider@@QAEXXZ (Address: 0x1002538c)
  • ?LookupShutdownPrivilegeInCurThreadToken@CUwfManagement@@QAEJAA_N@Z (Address: 0x10025248)
  • ?Open@CUwfRegKey@@QAEJPAUHKEY__@@PBGK@Z (Address: 0x10025368)
  • ?ParsePathSpec@@YGJPBGPAGK1K1K@Z (Address: 0x100252f4)
  • ?QueryDWORDValue@CUwfRegKey@@QAEJPBGPAK@Z (Address: 0x100252bc)
  • ?QueryMultiSzValue@CUwfRegKey@@QAEJPBGPAPAU_MULTISZ@@@Z (Address: 0x1002533c)
  • ?RegReadValue@@YGJPAUHKEY__@@PBGKPAPAEPAK@Z (Address: 0x10025358)
  • ?ReleaseStaticVolumeConfiguration@CUwfStaticConfiguration@@QAEXXZ (Address: 0x1002539c)
  • ?RemoveAllFileExclusions@CUwfStaticVolumeConfiguration@@QAEJXZ (Address: 0x10025288)
  • ?RemoveFileExclusion@CUwfStaticVolumeConfiguration@@QAEJPBG@Z (Address: 0x1002528c)
  • ?RemoveRegKeyExclusion@CUwfStaticConfiguration@@QAEJPBG@Z (Address: 0x10025238)
  • ?ResetUwfSettings@CUwfManagement@@QAEJXZ (Address: 0x1002524c)
  • ?set_BindingType@CUwfStaticVolumeConfiguration@@QAEJK@Z (Address: 0x100252c0)
  • ?set_HORMEnabled@CUwfManagement@@QAEJ_N@Z (Address: 0x100252dc)
  • ?set_OverlayCriticalThreshold@CUwfManagement@@QAEJK@Z (Address: 0x10025330)
  • ?set_OverlayMaximumSize@CUwfManagement@@QAEJK@Z (Address: 0x100252c4)
  • ?set_OverlayMaximumSize@CUwfStaticConfiguration@@QAEJK@Z (Address: 0x10025310)
  • ?set_OverlayType@CUwfManagement@@QAEJW4_UWF_CONFIG_OVERLAY_TYPE@@@Z (Address: 0x10025308)
  • ?set_OverlayWarningThreshold@CUwfManagement@@QAEJK@Z (Address: 0x10025328)
  • ?set_PersistDomainSecretKey@CUwfStaticConfiguration@@QAEJ_N@Z (Address: 0x10025304)
  • ?set_PersistTSCAL@CUwfStaticConfiguration@@QAEJ_N@Z (Address: 0x10025300)
  • ?set_Protected@CUwfStaticVolumeConfiguration@@QAEJ_N@Z (Address: 0x100252e8)
  • ?set_ServicingModeEnabled@CUwfManagement@@QAEJ_N0@Z (Address: 0x10025334)
  • ?set_UwfEnabled@CUwfStaticConfiguration@@QAEJ_N@Z (Address: 0x10025258)
  • ?SetBootStatusPolicy@@YGJPBG@Z (Address: 0x10025354)
  • ?ShutdownSystem@CUwfManagement@@QAEJ_N@Z (Address: 0x10025244)
  • ?UNLOCK@CUwfProvider@@QAEXXZ (Address: 0x10025378)
  • ?VolumeGetConfig@@YGJPAVCUwfStaticConfiguration@@PBG1PAPAVCUwfStaticVolumeConfiguration@@@Z (Address: 0x100252a8)
  • ?VolumeGetVolumeGuid@@YGJPBGPAGK@Z (Address: 0x10025350)
  • UwfCfgSetFilterEnabled (Address: 0x10025254)
  • UwfCfgSetHormEnabled (Address: 0x100252d8)