InputSwitch.dll

Description: Microsoft Windows Input Switcher

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.5848

Architecture: 64-bit

Operating System: Windows NT

SHA256: da5db8bb2dfacea61dfe3b0c2f659b80

File Size: 524.0 KB

Uploaded At: Dec. 1, 2025, 7:29 a.m.

Views: 7

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • DllCanUnloadNow (Ordinal: 1, Address: 0x92c0)
  • DllGetClassObject (Ordinal: 2, Address: 0x9940)

Imported DLLs & Functions

api-ms-win-appmodel-runtime-l1-1-1.dll
  • FindPackagesByPackageFamily (Address: 0x180053130)
api-ms-win-appmodel-runtime-l1-1-3.dll
  • GetStagedPackagePathByFullName2 (Address: 0x180053140)
api-ms-win-core-debug-l1-1-0.dll
  • DebugBreak (Address: 0x180053160)
  • IsDebuggerPresent (Address: 0x180053150)
  • OutputDebugStringW (Address: 0x180053158)
api-ms-win-core-delayload-l1-1-0.dll
  • DelayLoadFailureHook (Address: 0x180053170)
api-ms-win-core-delayload-l1-1-1.dll
  • ResolveDelayLoadedAPI (Address: 0x180053180)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x1800531a8)
  • RaiseException (Address: 0x180053190)
  • SetLastError (Address: 0x1800531b0)
  • SetUnhandledExceptionFilter (Address: 0x1800531a0)
  • UnhandledExceptionFilter (Address: 0x180053198)
api-ms-win-core-file-l1-1-0.dll
  • GetFullPathNameW (Address: 0x1800531c0)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x1800531d0)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x1800531e8)
  • HeapAlloc (Address: 0x1800531e0)
  • HeapFree (Address: 0x1800531f8)
  • HeapReAlloc (Address: 0x1800531f0)
api-ms-win-core-heap-l2-1-0.dll
  • LocalAlloc (Address: 0x180053218)
  • LocalFree (Address: 0x180053210)
  • LocalReAlloc (Address: 0x180053208)
api-ms-win-core-kernel32-legacy-l1-1-0.dll
  • MulDiv (Address: 0x180053228)
api-ms-win-core-kernel32-legacy-l1-1-1.dll
  • VerifyVersionInfoW (Address: 0x180053238)
api-ms-win-core-libraryloader-l1-2-0.dll
  • FindResourceExW (Address: 0x180053250)
  • FindStringOrdinal (Address: 0x180053258)
  • FreeLibrary (Address: 0x180053298)
  • GetModuleFileNameA (Address: 0x180053288)
  • GetModuleHandleExW (Address: 0x180053290)
  • GetModuleHandleW (Address: 0x180053270)
  • GetProcAddress (Address: 0x180053268)
  • LoadLibraryExW (Address: 0x180053248)
  • LoadResource (Address: 0x180053260)
  • LoadStringW (Address: 0x180053280)
  • LockResource (Address: 0x180053278)
api-ms-win-core-localization-l1-2-0.dll
  • FormatMessageW (Address: 0x1800532c8)
  • GetLocaleInfoEx (Address: 0x1800532c0)
  • GetLocaleInfoW (Address: 0x1800532a8)
  • GetThreadUILanguage (Address: 0x1800532b0)
  • GetUserDefaultLangID (Address: 0x1800532b8)
  • SetThreadUILanguage (Address: 0x1800532d0)
api-ms-win-core-localization-obsolete-l1-2-0.dll
  • GetUserDefaultUILanguage (Address: 0x1800532e0)
api-ms-win-core-path-l1-1-0.dll
  • PathAllocCombine (Address: 0x1800532f0)
  • PathCchRemoveFileSpec (Address: 0x1800532f8)
api-ms-win-core-processenvironment-l1-1-0.dll
  • ExpandEnvironmentStringsW (Address: 0x180053308)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180053338)
  • GetCurrentProcessId (Address: 0x180053340)
  • GetCurrentThreadId (Address: 0x180053330)
  • OpenThread (Address: 0x180053328)
  • TerminateProcess (Address: 0x180053348)
  • TlsAlloc (Address: 0x180053350)
  • TlsFree (Address: 0x180053358)
  • TlsGetValue (Address: 0x180053320)
  • TlsSetValue (Address: 0x180053318)
api-ms-win-core-processthreads-l1-1-1.dll
  • OpenProcess (Address: 0x180053368)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x180053378)
api-ms-win-core-psapi-l1-1-0.dll
  • QueryFullProcessImageNameW (Address: 0x180053388)
api-ms-win-core-registry-l1-1-0.dll
  • RegCloseKey (Address: 0x1800533a8)
  • RegCreateKeyExW (Address: 0x1800533c8)
  • RegGetValueW (Address: 0x1800533d0)
  • RegOpenCurrentUser (Address: 0x1800533a0)
  • RegOpenKeyExW (Address: 0x180053398)
  • RegQueryInfoKeyW (Address: 0x1800533b8)
  • RegQueryValueExW (Address: 0x1800533c0)
  • RegSetValueExW (Address: 0x1800533b0)
api-ms-win-core-registry-l1-1-1.dll
  • RegSetKeyValueW (Address: 0x1800533e0)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x180053400)
  • RtlLookupFunctionEntry (Address: 0x1800533f0)
  • RtlVirtualUnwind (Address: 0x1800533f8)
api-ms-win-core-shlwapi-legacy-l1-1-0.dll
  • PathAppendW (Address: 0x180053428)
  • PathFileExistsW (Address: 0x180053420)
  • PathFindExtensionW (Address: 0x180053418)
  • PathFindFileNameW (Address: 0x180053410)
  • PathIsFileSpecW (Address: 0x180053430)
  • PathIsRelativeW (Address: 0x180053440)
  • PathRemoveFileSpecW (Address: 0x180053438)
api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
  • QISearch (Address: 0x180053450)
api-ms-win-core-string-l1-1-0.dll
  • CompareStringOrdinal (Address: 0x180053460)
api-ms-win-core-synch-l1-1-0.dll
  • AcquireSRWLockExclusive (Address: 0x1800534b0)
  • AcquireSRWLockShared (Address: 0x1800534e0)
  • CreateEventW (Address: 0x1800534b8)
  • CreateMutexExW (Address: 0x1800534a0)
  • CreateSemaphoreExW (Address: 0x180053490)
  • DeleteCriticalSection (Address: 0x1800534d0)
  • EnterCriticalSection (Address: 0x1800534f8)
  • InitializeCriticalSectionEx (Address: 0x180053500)
  • LeaveCriticalSection (Address: 0x1800534f0)
  • OpenSemaphoreW (Address: 0x180053498)
  • ReleaseMutex (Address: 0x180053488)
  • ReleaseSemaphore (Address: 0x180053478)
  • ReleaseSRWLockExclusive (Address: 0x1800534c8)
  • ReleaseSRWLockShared (Address: 0x1800534d8)
  • SetEvent (Address: 0x1800534e8)
  • TryEnterCriticalSection (Address: 0x180053470)
  • WaitForMultipleObjectsEx (Address: 0x1800534a8)
  • WaitForSingleObject (Address: 0x180053480)
  • WaitForSingleObjectEx (Address: 0x1800534c0)
api-ms-win-core-synch-l1-2-0.dll
  • InitOnceBeginInitialize (Address: 0x180053530)
  • InitOnceComplete (Address: 0x180053538)
  • InitOnceExecuteOnce (Address: 0x180053520)
  • Sleep (Address: 0x180053518)
  • SleepConditionVariableSRW (Address: 0x180053528)
  • WakeAllConditionVariable (Address: 0x180053510)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTime (Address: 0x180053550)
  • GetSystemTimeAsFileTime (Address: 0x180053558)
  • GetTickCount (Address: 0x180053560)
  • GetVersionExW (Address: 0x180053548)
api-ms-win-core-sysinfo-l1-2-0.dll
  • GetSystemTimePreciseAsFileTime (Address: 0x180053578)
  • VerSetConditionMask (Address: 0x180053570)
api-ms-win-core-threadpool-l1-2-0.dll
  • CloseThreadpoolTimer (Address: 0x180053590)
  • CreateThreadpoolTimer (Address: 0x1800535a0)
  • SetThreadpoolTimer (Address: 0x180053598)
  • WaitForThreadpoolTimerCallbacks (Address: 0x180053588)
api-ms-win-core-timezone-l1-1-0.dll
  • SystemTimeToFileTime (Address: 0x1800535b0)
api-ms-win-core-url-l1-1-0.dll
  • PathIsURLW (Address: 0x1800535c8)
  • UrlCreateFromPathW (Address: 0x1800535d0)
  • UrlUnescapeW (Address: 0x1800535c0)
api-ms-win-core-util-l1-1-0.dll
  • DecodePointer (Address: 0x1800535e8)
  • EncodePointer (Address: 0x1800535e0)
api-ms-win-core-winrt-error-l1-1-0.dll
  • RoOriginateError (Address: 0x1800535f8)
  • SetRestrictedErrorInfo (Address: 0x180053600)
api-ms-win-core-winrt-error-l1-1-1.dll
  • RoGetMatchingRestrictedErrorInfo (Address: 0x180053610)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x180053620)
  • RoGetActivationFactory (Address: 0x180053628)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateString (Address: 0x180053658)
  • WindowsCreateStringReference (Address: 0x180053640)
  • WindowsDeleteString (Address: 0x180053638)
  • WindowsDuplicateString (Address: 0x180053648)
  • WindowsGetStringRawBuffer (Address: 0x180053650)
  • WindowsIsStringEmpty (Address: 0x180053660)
api-ms-win-eventing-provider-l1-1-0.dll
  • EventActivityIdControl (Address: 0x180053670)
  • EventRegister (Address: 0x180053680)
  • EventSetInformation (Address: 0x180053678)
  • EventUnregister (Address: 0x180053688)
  • EventWriteTransfer (Address: 0x180053690)
api-ms-win-ntuser-rectangle-l1-1-0.dll
  • CopyRect (Address: 0x1800536a0)
  • OffsetRect (Address: 0x1800536b8)
  • PtInRect (Address: 0x1800536a8)
  • SetRectEmpty (Address: 0x1800536b0)
api-ms-win-ntuser-sysparams-l1-1-0.dll
  • GetMonitorInfoW (Address: 0x1800536c8)
  • GetSystemMetrics (Address: 0x1800536d0)
  • SystemParametersInfoW (Address: 0x1800536d8)
api-ms-win-rtcore-ntuser-private-l1-1-0.dll
  • CreateWindowInBand (Address: 0x1800536f0)
  • GetWindowBand (Address: 0x1800536e8)
api-ms-win-rtcore-ntuser-shell-l1-1-0.dll
  • DeregisterShellHookWindow (Address: 0x180053700)
  • RegisterShellHookWindow (Address: 0x180053708)
api-ms-win-rtcore-ntuser-synch-l1-1-0.dll
  • MsgWaitForMultipleObjectsEx (Address: 0x180053718)
api-ms-win-rtcore-ntuser-window-l1-1-0.dll
  • ClientToScreen (Address: 0x180053750)
  • CreateWindowExW (Address: 0x180053768)
  • DefWindowProcW (Address: 0x180053780)
  • DestroyWindow (Address: 0x180053728)
  • DispatchMessageW (Address: 0x180053738)
  • FindWindowExW (Address: 0x1800537b8)
  • FindWindowW (Address: 0x180053788)
  • GetClassNameW (Address: 0x180053800)
  • GetClientRect (Address: 0x1800537a8)
  • GetCursorPos (Address: 0x180053790)
  • GetDesktopWindow (Address: 0x180053760)
  • GetMessageExtraInfo (Address: 0x1800537c0)
  • GetMessageW (Address: 0x180053820)
  • GetParent (Address: 0x180053850)
  • GetPropW (Address: 0x1800537d0)
  • GetWindowLongPtrW (Address: 0x180053770)
  • GetWindowLongW (Address: 0x1800537f0)
  • GetWindowRect (Address: 0x180053798)
  • GetWindowThreadProcessId (Address: 0x180053848)
  • KillTimer (Address: 0x180053858)
  • PeekMessageW (Address: 0x180053828)
  • PostMessageW (Address: 0x180053730)
  • PostQuitMessage (Address: 0x180053748)
  • RegisterClassExW (Address: 0x180053758)
  • RegisterClassW (Address: 0x180053818)
  • RegisterWindowMessageW (Address: 0x1800537d8)
  • RemovePropW (Address: 0x1800537e0)
  • ScreenToClient (Address: 0x1800537a0)
  • SendMessageW (Address: 0x1800537b0)
  • SetForegroundWindow (Address: 0x180053838)
  • SetMessageExtraInfo (Address: 0x1800537c8)
  • SetPropW (Address: 0x1800537e8)
  • SetTimer (Address: 0x180053830)
  • SetWindowLongPtrW (Address: 0x180053778)
  • SetWindowLongW (Address: 0x180053808)
  • SetWindowPos (Address: 0x180053840)
  • ShowWindow (Address: 0x180053810)
  • TranslateMessage (Address: 0x180053740)
  • WindowFromPoint (Address: 0x1800537f8)
api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll
  • NotifyWinEvent (Address: 0x180053868)
api-ms-win-rtcore-ntuser-wmpointer-l1-1-0.dll
  • GetCurrentInputMessageSource (Address: 0x180053878)
api-ms-win-security-base-l1-1-0.dll
  • CheckTokenMembership (Address: 0x180053888)
  • CreateWellKnownSid (Address: 0x180053898)
  • GetTokenInformation (Address: 0x180053890)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertSidToStringSidW (Address: 0x1800538a8)
api-ms-win-shcore-comhelpers-l1-1-0.dll
  • IUnknown_QueryService (Address: 0x1800538c0)
  • IUnknown_Set (Address: 0x1800538b8)
api-ms-win-shlwapi-winrt-storage-l1-1-1.dll
  • (Address: 0x1800538d0)
  • (Address: 0x1800538d8)
  • IUnknown_GetWindow (Address: 0x1800538e0)
api-ms-win-stateseparation-helpers-l1-1-0.dll
  • GetPersistedRegistryLocationW (Address: 0x1800538f0)
Bcp47Langs.dll
  • Bcp47FromLcid (Address: 0x180052e48)
  • Bcp47GetAbbreviation (Address: 0x180052e38)
  • Bcp47GetLanguageName (Address: 0x180052e40)
GDI32.dll
  • BitBlt (Address: 0x180052f00)
  • CreateCompatibleDC (Address: 0x180052ee8)
  • CreateDIBSection (Address: 0x180052ef0)
  • CreateFontIndirectW (Address: 0x180052e98)
  • CreateSolidBrush (Address: 0x180052f08)
  • DeleteDC (Address: 0x180052ec8)
  • DeleteObject (Address: 0x180052e68)
  • ExcludeClipRect (Address: 0x180052ea8)
  • ExtTextOutW (Address: 0x180052e90)
  • GdiAlphaBlend (Address: 0x180052ee0)
  • GetClipBox (Address: 0x180052f28)
  • GetCurrentObject (Address: 0x180052f10)
  • GetDeviceCaps (Address: 0x180052ed0)
  • GetDIBits (Address: 0x180052e58)
  • GetObjectW (Address: 0x180052eb0)
  • GetStockObject (Address: 0x180052e70)
  • GetTextExtentPoint32W (Address: 0x180052e80)
  • GetTextMetricsW (Address: 0x180052f20)
  • RemoveFontMemResourceEx (Address: 0x180052e60)
  • SelectObject (Address: 0x180052ef8)
  • SetBkColor (Address: 0x180052e78)
  • SetBkMode (Address: 0x180052eb8)
  • SetStretchBltMode (Address: 0x180052ea0)
  • SetTextAlign (Address: 0x180052e88)
  • SetTextColor (Address: 0x180052ec0)
  • StretchBlt (Address: 0x180052ed8)
  • StretchDIBits (Address: 0x180052f18)
IMM32.dll
  • ImmDisableLegacyIME (Address: 0x180052f38)
msvcrt.dll
  • __C_specific_handler (Address: 0x1800539d8)
  • __CxxFrameHandler3 (Address: 0x180053928)
  • __dllonexit (Address: 0x1800539c0)
  • __isascii (Address: 0x180053980)
  • _amsg_exit (Address: 0x180053a20)
  • _callnewh (Address: 0x180053930)
  • _CxxThrowException (Address: 0x180053920)
  • _get_errno (Address: 0x180053950)
  • _initterm (Address: 0x1800539e0)
  • _itow_s (Address: 0x1800539f0)
  • _lock (Address: 0x1800539d0)
  • _onexit (Address: 0x1800539b8)
  • _purecall (Address: 0x1800539a0)
  • _set_errno (Address: 0x180053958)
  • _unlock (Address: 0x1800539c8)
  • _vsnprintf_s (Address: 0x180053a10)
  • _vsnwprintf (Address: 0x180053a40)
  • _wcsicmp (Address: 0x180053948)
  • _wtoi (Address: 0x180053990)
  • _XcptFilter (Address: 0x180053a28)
  • ??0exception@@QEAA@AEBV0@@Z (Address: 0x180053a08)
  • ??0exception@@QEAA@XZ (Address: 0x180053a00)
  • ??1exception@@UEAA@XZ (Address: 0x1800539f8)
  • ??1type_info@@UEAA@XZ (Address: 0x180053a18)
  • floorf (Address: 0x180053918)
  • free (Address: 0x180053a30)
  • islower (Address: 0x180053978)
  • malloc (Address: 0x1800539e8)
  • memcmp (Address: 0x180053910)
  • memcpy (Address: 0x180053908)
  • memcpy_s (Address: 0x180053a38)
  • memmove (Address: 0x180053900)
  • memmove_s (Address: 0x180053998)
  • memset (Address: 0x1800539b0)
  • pow (Address: 0x1800539a8)
  • toupper (Address: 0x180053970)
  • wcschr (Address: 0x180053968)
  • wcsncmp (Address: 0x180053988)
  • wcsrchr (Address: 0x180053938)
  • wcsstr (Address: 0x180053940)
  • wcstoul (Address: 0x180053960)
ntdll.dll
  • NtQueryWnfStateData (Address: 0x180053a78)
  • RtlGetDeviceFamilyInfoEnum (Address: 0x180053a68)
  • RtlPublishWnfStateData (Address: 0x180053a50)
  • RtlSubscribeWnfStateChangeNotification (Address: 0x180053a70)
  • RtlUnsubscribeWnfNotificationWaitForCompletion (Address: 0x180053a60)
  • WinSqmAddToStream (Address: 0x180053a80)
  • WinSqmIncrementDWORD (Address: 0x180053a58)
ole32.dll
  • CreateBindCtx (Address: 0x180053a90)
PROPSYS.dll
  • PropVariantToUInt32 (Address: 0x180052f50)
  • PSCreateMemoryPropertyStore (Address: 0x180052f58)
  • PSPropertyBag_WriteStr (Address: 0x180052f48)
SHCORE.dll
  • (Address: 0x180052f68)
  • SHTaskPoolQueueTask (Address: 0x180052f70)
USER32.dll
  • AreDpiAwarenessContextsEqual (Address: 0x180053078)
  • BeginPaint (Address: 0x180053008)
  • CalculatePopupWindowPosition (Address: 0x1800530b8)
  • CallNextHookEx (Address: 0x180053090)
  • CheckMenuItem (Address: 0x1800530a0)
  • CopyIcon (Address: 0x1800530e0)
  • CopyImage (Address: 0x180052fb0)
  • CreateIconIndirect (Address: 0x1800530d0)
  • DestroyIcon (Address: 0x180052fa8)
  • DestroyMenu (Address: 0x180052ff8)
  • DrawIconEx (Address: 0x180053030)
  • DrawTextExW (Address: 0x180053070)
  • DrawTextW (Address: 0x180053038)
  • EndPaint (Address: 0x180053010)
  • GetAsyncKeyState (Address: 0x180052fb8)
  • GetDC (Address: 0x180053040)
  • GetDpiForSystem (Address: 0x180053060)
  • GetDpiForWindow (Address: 0x180052fc0)
  • GetKeyboardState (Address: 0x180052fe0)
  • GetKeyState (Address: 0x1800530b0)
  • GetMenuInfo (Address: 0x180053048)
  • GetMenuItemInfoW (Address: 0x180053088)
  • GetMenuState (Address: 0x180053098)
  • GetSubMenu (Address: 0x180053108)
  • GetSysColor (Address: 0x180052f88)
  • GetThreadDesktop (Address: 0x180052ff0)
  • GetWindowDpiAwarenessContext (Address: 0x180053068)
  • InjectKeyboardInput (Address: 0x180053110)
  • LoadCursorW (Address: 0x180052fa0)
  • LoadIconW (Address: 0x180053018)
  • LoadImageW (Address: 0x1800530d8)
  • LoadMenuW (Address: 0x180052f80)
  • MonitorFromPoint (Address: 0x180053058)
  • MonitorFromRect (Address: 0x180053100)
  • MonitorFromWindow (Address: 0x180052fd0)
  • ReleaseCapture (Address: 0x1800530f8)
  • ReleaseDC (Address: 0x180053028)
  • RemoveMenu (Address: 0x1800530c8)
  • SendInput (Address: 0x1800530a8)
  • SetCapture (Address: 0x1800530e8)
  • SetCursor (Address: 0x180052f98)
  • SetKeyboardState (Address: 0x180052fe8)
  • SetLayeredWindowAttributes (Address: 0x180053020)
  • SetMenuInfo (Address: 0x180053050)
  • SetMenuItemInfoW (Address: 0x180052fc8)
  • SetThreadDesktop (Address: 0x180052f90)
  • SetWindowCompositionAttribute (Address: 0x180053080)
  • SetWindowsHookExW (Address: 0x1800530c0)
  • TrackMouseEvent (Address: 0x1800530f0)
  • TrackPopupMenuEx (Address: 0x180053000)
  • UnhookWindowsHookEx (Address: 0x180052fd8)
WININET.dll
  • InternetCrackUrlW (Address: 0x180053120)