fhsvc.dll

Description: File History Service

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.3636

Architecture: 64-bit

Operating System: Windows NT

SHA256: 2afb58ee1423e25f82a6f1a6c923d722

File Size: 121.5 KB

Uploaded At: Dec. 1, 2025, 7:28 a.m.

Views: 7

Exported Functions

  • ServiceMain (Ordinal: 1, Address: 0x1160)
  • SvchostPushServiceGlobals (Ordinal: 2, Address: 0x4c20)
  • DllMain (Ordinal: 3, Address: 0x5b00)

Imported DLLs & Functions

ADVAPI32.dll
  • AddAccessAllowedAce (Address: 0x180013690)
  • ChangeServiceConfig2W (Address: 0x1800136f0)
  • ChangeServiceConfigW (Address: 0x1800136f8)
  • CloseServiceHandle (Address: 0x1800136e8)
  • ControlTraceW (Address: 0x180013638)
  • CreateWellKnownSid (Address: 0x1800136a8)
  • EnableTrace (Address: 0x180013640)
  • EventRegister (Address: 0x1800136d8)
  • EventUnregister (Address: 0x1800136d0)
  • EventWriteTransfer (Address: 0x180013658)
  • GetLengthSid (Address: 0x1800136a0)
  • GetTraceEnableFlags (Address: 0x180013630)
  • GetTraceEnableLevel (Address: 0x180013740)
  • GetTraceLoggerHandle (Address: 0x180013738)
  • ImpersonateLoggedOnUser (Address: 0x180013670)
  • InitializeAcl (Address: 0x180013698)
  • InitializeSecurityDescriptor (Address: 0x180013688)
  • OpenSCManagerW (Address: 0x180013708)
  • OpenServiceW (Address: 0x180013700)
  • OpenThreadToken (Address: 0x1800136c0)
  • RegCloseKey (Address: 0x180013710)
  • RegCreateKeyExW (Address: 0x1800136b8)
  • RegDeleteValueW (Address: 0x180013668)
  • RegEnumValueW (Address: 0x180013660)
  • RegGetValueW (Address: 0x180013718)
  • RegisterServiceCtrlHandlerExW (Address: 0x180013728)
  • RegisterTraceGuidsW (Address: 0x180013748)
  • RegOpenKeyExW (Address: 0x180013720)
  • RegQueryValueExW (Address: 0x180013650)
  • RegSetValueExW (Address: 0x1800136b0)
  • SetSecurityDescriptorDacl (Address: 0x180013680)
  • SetServiceStatus (Address: 0x1800136e0)
  • SetThreadToken (Address: 0x1800136c8)
  • StartTraceW (Address: 0x180013648)
  • SystemFunction036 (Address: 0x180013678)
  • TraceMessage (Address: 0x180013730)
  • UnregisterTraceGuids (Address: 0x180013750)
api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x180013a88)
  • CoInitializeEx (Address: 0x180013a90)
  • CoUninitialize (Address: 0x180013a80)
KERNEL32.dll
  • CallbackMayRunLong (Address: 0x180013918)
  • CloseHandle (Address: 0x180013830)
  • CloseThreadpoolCleanupGroup (Address: 0x180013880)
  • CloseThreadpoolCleanupGroupMembers (Address: 0x180013878)
  • CloseThreadpoolWait (Address: 0x180013870)
  • CloseThreadpoolWork (Address: 0x180013958)
  • CreateDirectoryW (Address: 0x180013970)
  • CreateEventW (Address: 0x180013810)
  • CreateFileW (Address: 0x180013900)
  • CreateThreadpoolCleanupGroup (Address: 0x180013898)
  • CreateThreadpoolWait (Address: 0x1800138a0)
  • CreateThreadpoolWork (Address: 0x180013948)
  • DeleteCriticalSection (Address: 0x180013858)
  • DuplicateHandle (Address: 0x1800138c0)
  • EnterCriticalSection (Address: 0x1800138b0)
  • ExpandEnvironmentStringsW (Address: 0x180013968)
  • FileTimeToSystemTime (Address: 0x1800138e0)
  • FindResourceExW (Address: 0x180013940)
  • FreeLibrary (Address: 0x180013860)
  • GetComputerNameExW (Address: 0x180013770)
  • GetCurrentProcess (Address: 0x1800138c8)
  • GetCurrentProcessId (Address: 0x1800137b8)
  • GetCurrentThread (Address: 0x180013838)
  • GetCurrentThreadId (Address: 0x1800137c0)
  • GetDateFormatEx (Address: 0x1800138f0)
  • GetFileAttributesExW (Address: 0x180013978)
  • GetLastError (Address: 0x180013818)
  • GetProcAddress (Address: 0x180013890)
  • GetProcessHeap (Address: 0x180013798)
  • GetSystemPowerStatus (Address: 0x1800138d8)
  • GetSystemTime (Address: 0x180013768)
  • GetSystemTimeAsFileTime (Address: 0x180013848)
  • GetTickCount (Address: 0x1800137c8)
  • GetTimeFormatEx (Address: 0x1800138f8)
  • GetVersionExW (Address: 0x180013760)
  • HeapAlloc (Address: 0x180013790)
  • HeapDestroy (Address: 0x1800137a0)
  • HeapFree (Address: 0x180013788)
  • HeapReAlloc (Address: 0x180013780)
  • HeapSize (Address: 0x180013778)
  • InitializeCriticalSection (Address: 0x180013850)
  • LeaveCriticalSection (Address: 0x1800138b8)
  • LoadLibraryExW (Address: 0x180013888)
  • LoadResource (Address: 0x180013938)
  • LocalAlloc (Address: 0x180013960)
  • LocalFree (Address: 0x1800138d0)
  • LockResource (Address: 0x180013930)
  • OutputDebugStringA (Address: 0x180013800)
  • QueryPerformanceCounter (Address: 0x1800137b0)
  • RaiseException (Address: 0x180013840)
  • ResetEvent (Address: 0x180013808)
  • RtlCaptureContext (Address: 0x1800137d0)
  • RtlLookupFunctionEntry (Address: 0x1800137d8)
  • RtlVirtualUnwind (Address: 0x1800137e0)
  • SetEvent (Address: 0x180013828)
  • SetEventWhenCallbackReturns (Address: 0x180013908)
  • SetFileInformationByHandle (Address: 0x180013980)
  • SetThreadpoolWait (Address: 0x1800138a8)
  • SetUnhandledExceptionFilter (Address: 0x1800137f0)
  • SizeofResource (Address: 0x180013928)
  • Sleep (Address: 0x1800137a8)
  • SubmitThreadpoolWork (Address: 0x180013910)
  • SystemTimeToTzSpecificLocalTime (Address: 0x1800138e8)
  • TerminateProcess (Address: 0x1800137f8)
  • UnhandledExceptionFilter (Address: 0x1800137e8)
  • UnregisterWaitEx (Address: 0x180013820)
  • WaitForSingleObject (Address: 0x180013920)
  • WaitForThreadpoolWaitCallbacks (Address: 0x180013868)
  • WaitForThreadpoolWorkCallbacks (Address: 0x180013950)
msvcrt.dll
  • __C_specific_handler (Address: 0x180013ae8)
  • __CxxFrameHandler3 (Address: 0x180013b70)
  • __dllonexit (Address: 0x180013b60)
  • _amsg_exit (Address: 0x180013b28)
  • _callnewh (Address: 0x180013b10)
  • _CxxThrowException (Address: 0x180013b18)
  • _errno (Address: 0x180013b40)
  • _initterm (Address: 0x180013b30)
  • _lock (Address: 0x180013b50)
  • _onexit (Address: 0x180013b68)
  • _unlock (Address: 0x180013b58)
  • _vsnwprintf (Address: 0x180013ae0)
  • _XcptFilter (Address: 0x180013b20)
  • ??_V@YAXPEAX@Z (Address: 0x180013aa0)
  • ??0exception@@QEAA@AEBQEBDH@Z (Address: 0x180013af0)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180013af8)
  • ??1exception@@UEAA@XZ (Address: 0x180013b00)
  • ??1type_info@@UEAA@XZ (Address: 0x180013b38)
  • ??3@YAXPEAX@Z (Address: 0x180013b78)
  • ?what@exception@@UEBAPEBDXZ (Address: 0x180013b08)
  • calloc (Address: 0x180013ad0)
  • free (Address: 0x180013ab8)
  • iswalpha (Address: 0x180013ac8)
  • malloc (Address: 0x180013ad8)
  • memcpy_s (Address: 0x180013ab0)
  • memmove_s (Address: 0x180013aa8)
  • memset (Address: 0x180013b80)
  • realloc (Address: 0x180013b48)
  • swprintf_s (Address: 0x180013ac0)
OLEAUT32.dll
  • SysAllocString (Address: 0x180013990)
  • SysFreeString (Address: 0x180013998)
POWRPROF.dll
  • PowerSettingRegisterNotification (Address: 0x1800139a8)
  • PowerSettingUnregisterNotification (Address: 0x1800139b0)
RPCRT4.dll
  • NdrServerCall2 (Address: 0x1800139f0)
  • NdrServerCallAll (Address: 0x1800139e8)
  • RpcBindingToStringBindingW (Address: 0x180013a10)
  • RpcBindingVectorFree (Address: 0x180013a18)
  • RpcEpRegisterW (Address: 0x180013a20)
  • RpcEpUnregister (Address: 0x180013a30)
  • RpcImpersonateClient (Address: 0x180013a08)
  • RpcRevertToSelf (Address: 0x180013a00)
  • RpcServerInqBindings (Address: 0x1800139d8)
  • RpcServerRegisterAuthInfoW (Address: 0x1800139d0)
  • RpcServerRegisterIfEx (Address: 0x1800139c0)
  • RpcServerUnregisterIfEx (Address: 0x180013a28)
  • RpcServerUseProtseqW (Address: 0x1800139c8)
  • RpcStringFreeW (Address: 0x1800139f8)
  • UuidFromStringW (Address: 0x1800139e0)
USER32.dll
  • RegisterDeviceNotificationW (Address: 0x180013a48)
  • UnregisterClassA (Address: 0x180013a50)
  • UnregisterDeviceNotification (Address: 0x180013a40)
WTSAPI32.dll
  • WTSEnumerateSessionsW (Address: 0x180013a70)
  • WTSFreeMemory (Address: 0x180013a60)
  • WTSQueryUserToken (Address: 0x180013a68)