SystemEventsBrokerServer.dll

Description: System Events Broker

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: 192f5364e9736244066c3ff36d90b3cf

File Size: 246.0 KB

Uploaded At: Dec. 1, 2025, 7:40 a.m.

Views: 33

Exported Functions

  • ServiceMain (Ordinal: 1, Address: 0x196d0)
  • SvchostPushServiceGlobals (Ordinal: 2, Address: 0x19870)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x180028490)
  • CoInitializeEx (Address: 0x180028498)
  • CoUninitialize (Address: 0x180028488)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x1800284a8)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x1800284b8)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800284d8)
  • SetUnhandledExceptionFilter (Address: 0x1800284d0)
  • UnhandledExceptionFilter (Address: 0x1800284c8)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1800284e8)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1800284f8)
  • HeapAlloc (Address: 0x180028508)
  • HeapFree (Address: 0x180028500)
api-ms-win-core-heap-l2-1-0.dll
  • LocalFree (Address: 0x180028518)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180028538)
  • GetCurrentProcessId (Address: 0x180028540)
  • GetCurrentThread (Address: 0x180028530)
  • GetCurrentThreadId (Address: 0x180028548)
  • OpenThreadToken (Address: 0x180028550)
  • TerminateProcess (Address: 0x180028528)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180028560)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x180028580)
  • RegOpenKeyExW (Address: 0x180028578)
  • RegQueryValueExW (Address: 0x180028570)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringEx (Address: 0x180028590)
  • CompareStringW (Address: 0x180028598)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1800285d0)
  • AcquireSRWLockShared (Address: 0x1800285c8)
  • CreateEventW (Address: 0x1800285c0)
  • InitializeSRWLock (Address: 0x1800285d8)
  • ReleaseSRWLockExclusive (Address: 0x1800285e0)
  • ReleaseSRWLockShared (Address: 0x1800285a8)
  • SetEvent (Address: 0x1800285b0)
  • TryAcquireSRWLockExclusive (Address: 0x1800285b8)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1800285f0)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x180028608)
  • GetTickCount (Address: 0x180028600)
  • GetTickCount64 (Address: 0x180028610)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x180028630)
  • CreateThreadpoolTimer (Address: 0x180028638)
  • SetThreadpoolTimer (Address: 0x180028620)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180028628)
api-ms-win-core-threadpool-legacy-l1-1-0.dll
  • UnregisterWaitEx (Address: 0x180028648)
api-ms-win-devices-config-l1-1-1.dll
  • CM_Get_Device_Interface_List_SizeW (Address: 0x180028670)
  • CM_Get_Device_Interface_ListW (Address: 0x180028680)
  • CM_Get_Device_Interface_PropertyW (Address: 0x180028678)
  • CM_Get_DevNode_PropertyW (Address: 0x180028688)
  • CM_Locate_DevNodeW (Address: 0x180028658)
  • CM_Register_Notification (Address: 0x180028660)
  • CM_Unregister_Notification (Address: 0x180028668)
api-ms-win-eventing-classicprovider-l1-1-0.dll
  • GetTraceEnableFlags (Address: 0x1800286a8)
  • GetTraceEnableLevel (Address: 0x1800286a0)
  • GetTraceLoggerHandle (Address: 0x1800286b0)
  • RegisterTraceGuidsW (Address: 0x180028698)
  • TraceMessage (Address: 0x1800286c0)
  • UnregisterTraceGuids (Address: 0x1800286b8)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventRegister (Address: 0x1800286e0)
  • EventSetInformation (Address: 0x1800286d0)
  • EventUnregister (Address: 0x1800286d8)
  • EventWriteTransfer (Address: 0x1800286e8)
api-ms-win-power-setting-l1-1-0.dll
  • PowerSettingUnregisterNotification (Address: 0x1800286f8)
api-ms-win-security-base-l1-1-0.dll
  • AccessCheck (Address: 0x180028710)
  • EqualSid (Address: 0x180028728)
  • GetLengthSid (Address: 0x180028708)
  • GetTokenInformation (Address: 0x180028730)
  • IsValidSid (Address: 0x180028720)
  • IsWellKnownSid (Address: 0x180028718)
  • MapGenericMask (Address: 0x180028738)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSecurityDescriptorToSecurityDescriptorW (Address: 0x180028748)
api-ms-win-service-core-l1-1-0.dll
  • RegisterServiceCtrlHandlerExW (Address: 0x180028760)
  • SetServiceStatus (Address: 0x180028758)
BrokerLib.dll
  • BrBufferFree (Address: 0x1800283e0)
  • BrCreateBrokerInstance2 (Address: 0x180028380)
  • BrDeleteBrokerInstance (Address: 0x1800283e8)
  • BrFindBrokeredEvent (Address: 0x1800283b8)
  • BrGetBrokeredEventInfo2 (Address: 0x1800283d8)
  • BrGetPackageFullNameForBrokeredEvent (Address: 0x1800283b0)
  • BrInitializeBrokerInstance2 (Address: 0x180028398)
  • BrLockBroker (Address: 0x1800283c0)
  • BrQueryBrokeredApplicationState (Address: 0x1800283d0)
  • BrQueryBrokeredEvents2 (Address: 0x1800283c8)
  • BrRegisterStateChangeCallbacks (Address: 0x1800283a8)
  • BrSendActivatorControl (Address: 0x180028390)
  • BrSignalBrokerEvent2 (Address: 0x180028388)
  • BrSignalBrokerEvent2Ex (Address: 0x1800283f0)
  • BrUnlockBroker (Address: 0x1800283a0)
msvcrt.dll
  • __C_specific_handler (Address: 0x1800287a8)
  • __CxxFrameHandler3 (Address: 0x1800287d0)
  • __dllonexit (Address: 0x180028798)
  • _amsg_exit (Address: 0x180028828)
  • _callnewh (Address: 0x180028788)
  • _CxxThrowException (Address: 0x180028778)
  • _initterm (Address: 0x180028818)
  • _lock (Address: 0x1800287e8)
  • _onexit (Address: 0x1800287c0)
  • _purecall (Address: 0x180028838)
  • _unlock (Address: 0x180028780)
  • _vsnwprintf (Address: 0x180028790)
  • _XcptFilter (Address: 0x180028770)
  • ??_V@YAXPEAX@Z (Address: 0x1800287a0)
  • ??0exception@@QEAA@AEBQEBD@Z (Address: 0x180028808)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x1800287f0)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x1800287e0)
  • ??0exception@@QEAA@XZ (Address: 0x1800287b0)
  • ??1exception@@UEAA@XZ (Address: 0x180028820)
  • ??1type_info@@UEAA@XZ (Address: 0x180028848)
  • ??3@YAXPEAX@Z (Address: 0x180028840)
  • ?terminate@@YAXXZ (Address: 0x1800287c8)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180028830)
  • free (Address: 0x1800287d8)
  • malloc (Address: 0x1800287b8)
  • memcmp (Address: 0x180028810)
  • memcpy (Address: 0x180028800)
  • memmove (Address: 0x1800287f8)
  • memset (Address: 0x180028850)
ntdll.dll
  • NtCreateWnfStateName (Address: 0x1800288f0)
  • NtDeleteWnfStateName (Address: 0x180028950)
  • NtQueryWnfStateData (Address: 0x180028898)
  • RtlAbsoluteToSelfRelativeSD (Address: 0x1800288d0)
  • RtlAcquireSRWLockExclusive (Address: 0x180028938)
  • RtlAcquireSRWLockShared (Address: 0x180028930)
  • RtlAddAccessAllowedAce (Address: 0x180028970)
  • RtlAllocateAndInitializeSid (Address: 0x1800288e0)
  • RtlAllocateHeap (Address: 0x180028960)
  • RtlCaptureContext (Address: 0x180028868)
  • RtlCopySid (Address: 0x180028918)
  • RtlCreateAcl (Address: 0x1800288c0)
  • RtlCreateSecurityDescriptor (Address: 0x1800288b8)
  • RtlEqualSid (Address: 0x180028908)
  • RtlFreeHeap (Address: 0x180028910)
  • RtlGUIDFromString (Address: 0x180028878)
  • RtlInitializeSRWLock (Address: 0x180028958)
  • RtlInitUnicodeString (Address: 0x180028870)
  • RtlLengthSecurityDescriptor (Address: 0x180028900)
  • RtlLengthSid (Address: 0x180028928)
  • RtlLookupFunctionEntry (Address: 0x180028860)
  • RtlNtStatusToDosError (Address: 0x180028968)
  • RtlPublishWnfStateData (Address: 0x180028948)
  • RtlQueryPackageIdentity (Address: 0x180028888)
  • RtlReleaseSRWLockExclusive (Address: 0x180028940)
  • RtlReleaseSRWLockShared (Address: 0x180028920)
  • RtlSetDaclSecurityDescriptor (Address: 0x1800288e8)
  • RtlSetOwnerSecurityDescriptor (Address: 0x1800288f8)
  • RtlSubscribeWnfStateChangeNotification (Address: 0x1800288a0)
  • RtlTestAndPublishWnfStateData (Address: 0x180028880)
  • RtlUnsubscribeWnfNotificationWaitForCompletion (Address: 0x180028890)
  • RtlUnsubscribeWnfStateChangeNotification (Address: 0x1800288b0)
  • RtlVirtualUnwind (Address: 0x1800288d8)
  • RtlWaitForWnfMetaNotification (Address: 0x1800288c8)
  • RtlWakeAddressAll (Address: 0x1800288a8)
POWRPROF.dll
  • PowerSettingRegisterNotificationEx (Address: 0x180028400)
RPCRT4.dll
  • I_RpcBindingInqLocalClientPID (Address: 0x180028450)
  • NdrServerCall2 (Address: 0x180028470)
  • NdrServerCallAll (Address: 0x180028410)
  • RpcBindingVectorFree (Address: 0x180028460)
  • RpcEpRegisterW (Address: 0x180028430)
  • RpcEpUnregister (Address: 0x180028438)
  • RpcImpersonateClient (Address: 0x180028468)
  • RpcObjectSetType (Address: 0x180028458)
  • RpcRevertToSelf (Address: 0x180028478)
  • RpcServerInqBindings (Address: 0x180028428)
  • RpcServerRegisterIf3 (Address: 0x180028448)
  • RpcServerUnregisterIfEx (Address: 0x180028420)
  • RpcServerUseProtseqEpW (Address: 0x180028418)
  • RpcServerUseProtseqW (Address: 0x180028440)