nvsphelperplugin64.dll

Description: NVIDIA Helper Plugin

Authors: (C) 2020 NVIDIA Corporation. All rights reserved.

Version: 11.0.5.420

Architecture: 64-bit

Operating System: Windows

SHA256: 95c36ea7ff3a9b9c2570a559befd8dcc

File Size: 932.1 KB

Uploaded At: Dec. 1, 2025, 2:54 p.m.

Views: 7

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • NvGetPluginState (Ordinal: 1, Address: 0x43f9)
  • NvPluginGetInfo (Ordinal: 2, Address: 0x4296)

Imported DLLs & Functions

ADVAPI32.dll
  • AllocateAndInitializeSid (Address: 0x1800e90b0)
  • ConvertSidToStringSidA (Address: 0x1800e9098)
  • CopySid (Address: 0x1800e9018)
  • CreateRestrictedToken (Address: 0x1800e90b8)
  • CreateWellKnownSid (Address: 0x1800e90c0)
  • DuplicateTokenEx (Address: 0x1800e9048)
  • FreeSid (Address: 0x1800e90c8)
  • GetLengthSid (Address: 0x1800e9010)
  • GetSecurityDescriptorDacl (Address: 0x1800e90d0)
  • GetTokenInformation (Address: 0x1800e9008)
  • GetUserNameA (Address: 0x1800e90e0)
  • GetUserNameW (Address: 0x1800e90e8)
  • ImpersonateLoggedOnUser (Address: 0x1800e9050)
  • ImpersonateSelf (Address: 0x1800e90d8)
  • InitializeSecurityDescriptor (Address: 0x1800e9080)
  • LookupAccountNameA (Address: 0x1800e9090)
  • OpenProcessToken (Address: 0x1800e9020)
  • OpenThreadToken (Address: 0x1800e9000)
  • RegCloseKey (Address: 0x1800e9060)
  • RegCopyTreeA (Address: 0x1800e9028)
  • RegCreateKeyExA (Address: 0x1800e90a8)
  • RegDeleteKeyExA (Address: 0x1800e90f8)
  • RegDeleteKeyValueA (Address: 0x1800e9030)
  • RegOpenCurrentUser (Address: 0x1800e9068)
  • RegOpenKeyExA (Address: 0x1800e9070)
  • RegQueryValueExA (Address: 0x1800e9078)
  • RegQueryValueExW (Address: 0x1800e9040)
  • RegSetValueExA (Address: 0x1800e9038)
  • RevertToSelf (Address: 0x1800e9058)
  • SetEntriesInAclA (Address: 0x1800e90f0)
  • SetSecurityDescriptorDacl (Address: 0x1800e9088)
  • SetThreadToken (Address: 0x1800e90a0)
KERNEL32.dll
  • AcquireSRWLockExclusive (Address: 0x1800e9480)
  • CloseHandle (Address: 0x1800e9200)
  • CompareStringW (Address: 0x1800e9508)
  • ConnectNamedPipe (Address: 0x1800e92f8)
  • CopyFileA (Address: 0x1800e9400)
  • CreateDirectoryA (Address: 0x1800e93b8)
  • CreateEventA (Address: 0x1800e9270)
  • CreateEventW (Address: 0x1800e9278)
  • CreateFileA (Address: 0x1800e93c0)
  • CreateFileMappingA (Address: 0x1800e9460)
  • CreateFileMappingW (Address: 0x1800e9430)
  • CreateFileW (Address: 0x1800e9320)
  • CreateMutexA (Address: 0x1800e9440)
  • CreateMutexW (Address: 0x1800e9420)
  • CreateNamedPipeA (Address: 0x1800e9468)
  • CreateNamedPipeW (Address: 0x1800e9308)
  • CreateProcessA (Address: 0x1800e9340)
  • CreateProcessW (Address: 0x1800e9348)
  • CreateThread (Address: 0x1800e9298)
  • DecodePointer (Address: 0x1800e91f8)
  • DeleteCriticalSection (Address: 0x1800e9248)
  • DeleteFileA (Address: 0x1800e93c8)
  • DisconnectNamedPipe (Address: 0x1800e9300)
  • EncodePointer (Address: 0x1800e95f8)
  • EnterCriticalSection (Address: 0x1800e9398)
  • EnumSystemLocalesW (Address: 0x1800e91d0)
  • ExitProcess (Address: 0x1800e95c8)
  • FindClose (Address: 0x1800e95a0)
  • FindFirstFileExW (Address: 0x1800e9598)
  • FindNextFileW (Address: 0x1800e9590)
  • FlsAlloc (Address: 0x1800e9538)
  • FlsFree (Address: 0x1800e9520)
  • FlsGetValue (Address: 0x1800e9530)
  • FlsSetValue (Address: 0x1800e9528)
  • FlushFileBuffers (Address: 0x1800e92e0)
  • FreeEnvironmentStringsW (Address: 0x1800e9550)
  • FreeLibrary (Address: 0x1800e92c0)
  • GetACP (Address: 0x1800e9580)
  • GetCommandLineA (Address: 0x1800e9568)
  • GetCommandLineW (Address: 0x1800e9560)
  • GetConsoleMode (Address: 0x1800e91b0)
  • GetConsoleOutputCP (Address: 0x1800e91a8)
  • GetCPInfo (Address: 0x1800e9570)
  • GetCurrentProcess (Address: 0x1800e9450)
  • GetCurrentProcessId (Address: 0x1800e9290)
  • GetCurrentThread (Address: 0x1800e93f0)
  • GetCurrentThreadId (Address: 0x1800e91f0)
  • GetDateFormatW (Address: 0x1800e9518)
  • GetEnvironmentStringsW (Address: 0x1800e9558)
  • GetFileAttributesA (Address: 0x1800e93d0)
  • GetFileAttributesW (Address: 0x1800e9328)
  • GetFileSizeEx (Address: 0x1800e93d8)
  • GetFileType (Address: 0x1800e95b0)
  • GetFinalPathNameByHandleA (Address: 0x1800e93e0)
  • GetFullPathNameW (Address: 0x1800e9330)
  • GetLastError (Address: 0x1800e9208)
  • GetLocaleInfoW (Address: 0x1800e91e8)
  • GetLocalTime (Address: 0x1800e93f8)
  • GetModuleFileNameA (Address: 0x1800e9258)
  • GetModuleFileNameW (Address: 0x1800e9358)
  • GetModuleHandleA (Address: 0x1800e92b8)
  • GetModuleHandleExW (Address: 0x1800e95c0)
  • GetModuleHandleW (Address: 0x1800e9360)
  • GetOEMCP (Address: 0x1800e9578)
  • GetProcAddress (Address: 0x1800e92c8)
  • GetProcessHeap (Address: 0x1800e9238)
  • GetStartupInfoW (Address: 0x1800e94c8)
  • GetStdHandle (Address: 0x1800e95b8)
  • GetStringTypeW (Address: 0x1800e9190)
  • GetSystemDirectoryW (Address: 0x1800e9350)
  • GetSystemInfo (Address: 0x1800e93a8)
  • GetSystemTimeAsFileTime (Address: 0x1800e94e0)
  • GetTempPathW (Address: 0x1800e9540)
  • GetTimeFormatW (Address: 0x1800e9510)
  • GetUserDefaultLCID (Address: 0x1800e91d8)
  • HeapAlloc (Address: 0x1800e9218)
  • HeapDestroy (Address: 0x1800e9210)
  • HeapFree (Address: 0x1800e9228)
  • HeapReAlloc (Address: 0x1800e9220)
  • HeapSize (Address: 0x1800e9230)
  • InitializeCriticalSection (Address: 0x1800e9390)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1800e95f0)
  • InitializeCriticalSectionEx (Address: 0x1800e9240)
  • InitializeSListHead (Address: 0x1800e94e8)
  • InterlockedFlushSList (Address: 0x1800e9600)
  • InterlockedPushEntrySList (Address: 0x1800e9608)
  • IsDebuggerPresent (Address: 0x1800e94b0)
  • IsProcessorFeaturePresent (Address: 0x1800e94d0)
  • IsValidCodePage (Address: 0x1800e9588)
  • IsValidLocale (Address: 0x1800e91e0)
  • LCMapStringW (Address: 0x1800e9500)
  • LeaveCriticalSection (Address: 0x1800e93a0)
  • LoadLibraryA (Address: 0x1800e9438)
  • LoadLibraryExW (Address: 0x1800e9368)
  • LocalAlloc (Address: 0x1800e9370)
  • LocalFree (Address: 0x1800e92d0)
  • MapViewOfFile (Address: 0x1800e92a8)
  • MoveFileExA (Address: 0x1800e9408)
  • MultiByteToWideChar (Address: 0x1800e95a8)
  • OpenEventA (Address: 0x1800e9448)
  • OpenEventW (Address: 0x1800e9280)
  • OpenFileMappingA (Address: 0x1800e91c8)
  • OpenFileMappingW (Address: 0x1800e92a0)
  • OpenMutexA (Address: 0x1800e9458)
  • OpenMutexW (Address: 0x1800e9428)
  • OpenProcess (Address: 0x1800e9470)
  • OutputDebugStringA (Address: 0x1800e93e8)
  • OutputDebugStringW (Address: 0x1800e94f0)
  • QueryPerformanceCounter (Address: 0x1800e9380)
  • QueryPerformanceFrequency (Address: 0x1800e9388)
  • RaiseException (Address: 0x1800e94f8)
  • ReadConsoleW (Address: 0x1800e91b8)
  • ReadFile (Address: 0x1800e92e8)
  • ReleaseMutex (Address: 0x1800e9410)
  • ReleaseSRWLockExclusive (Address: 0x1800e9478)
  • ResetEvent (Address: 0x1800e9310)
  • RtlCaptureContext (Address: 0x1800e9498)
  • RtlLookupFunctionEntry (Address: 0x1800e94a0)
  • RtlPcToFileHeader (Address: 0x1800e9618)
  • RtlUnwind (Address: 0x1800e9418)
  • RtlUnwindEx (Address: 0x1800e9610)
  • RtlVirtualUnwind (Address: 0x1800e94a8)
  • SetConsoleCtrlHandler (Address: 0x1800e9188)
  • SetDllDirectoryA (Address: 0x1800e92d8)
  • SetEnvironmentVariableW (Address: 0x1800e9548)
  • SetEvent (Address: 0x1800e9260)
  • SetFilePointerEx (Address: 0x1800e9198)
  • SetLastError (Address: 0x1800e9338)
  • SetStdHandle (Address: 0x1800e91a0)
  • SetUnhandledExceptionFilter (Address: 0x1800e94c0)
  • SleepConditionVariableSRW (Address: 0x1800e9490)
  • TerminateProcess (Address: 0x1800e94d8)
  • TlsAlloc (Address: 0x1800e95e8)
  • TlsFree (Address: 0x1800e95d0)
  • TlsGetValue (Address: 0x1800e95e0)
  • TlsSetValue (Address: 0x1800e95d8)
  • UnhandledExceptionFilter (Address: 0x1800e94b8)
  • UnmapViewOfFile (Address: 0x1800e92b0)
  • VerifyVersionInfoW (Address: 0x1800e9378)
  • VerSetConditionMask (Address: 0x1800e9318)
  • WaitForMultipleObjects (Address: 0x1800e9288)
  • WaitForSingleObject (Address: 0x1800e9268)
  • WakeAllConditionVariable (Address: 0x1800e9488)
  • WideCharToMultiByte (Address: 0x1800e93b0)
  • WriteConsoleW (Address: 0x1800e91c0)
  • WriteFile (Address: 0x1800e92f0)
  • WTSGetActiveConsoleSessionId (Address: 0x1800e9250)
ole32.dll
  • CoTaskMemFree (Address: 0x1800e9a50)
SHELL32.dll
  • SHGetFolderPathA (Address: 0x1800e9760)
  • SHGetKnownFolderPath (Address: 0x1800e9768)
USER32.dll
  • CallNextHookEx (Address: 0x1800e97d0)
  • CloseDesktop (Address: 0x1800e98b0)
  • CreateWindowExA (Address: 0x1800e9858)
  • DefWindowProcA (Address: 0x1800e9868)
  • DestroyWindow (Address: 0x1800e9848)
  • DispatchMessageA (Address: 0x1800e9878)
  • EnumDisplaySettingsA (Address: 0x1800e9818)
  • FindWindowA (Address: 0x1800e97e8)
  • GetAsyncKeyState (Address: 0x1800e9888)
  • GetForegroundWindow (Address: 0x1800e9870)
  • GetMessageA (Address: 0x1800e9808)
  • GetPhysicalCursorPos (Address: 0x1800e9820)
  • GetRawInputData (Address: 0x1800e98d0)
  • GetSystemMetrics (Address: 0x1800e9828)
  • GetThreadDesktop (Address: 0x1800e98a8)
  • GetWindowThreadProcessId (Address: 0x1800e98c8)
  • IsWindow (Address: 0x1800e9850)
  • MapVirtualKeyA (Address: 0x1800e9840)
  • OpenInputDesktop (Address: 0x1800e98c0)
  • PeekMessageA (Address: 0x1800e98d8)
  • PostMessageA (Address: 0x1800e97f8)
  • PostThreadMessageA (Address: 0x1800e97f0)
  • RegisterClassExA (Address: 0x1800e9860)
  • RegisterHotKey (Address: 0x1800e9898)
  • RegisterRawInputDevices (Address: 0x1800e9838)
  • SendMessageA (Address: 0x1800e9800)
  • SendNotifyMessageA (Address: 0x1800e97c8)
  • SetThreadDesktop (Address: 0x1800e98b8)
  • SetWindowsHookExA (Address: 0x1800e97e0)
  • SystemParametersInfoA (Address: 0x1800e9810)
  • TranslateMessage (Address: 0x1800e9880)
  • UnhookWindowsHookEx (Address: 0x1800e97d8)
  • UnregisterClassA (Address: 0x1800e98a0)
  • UnregisterHotKey (Address: 0x1800e9890)
  • wsprintfW (Address: 0x1800e9830)
VERSION.dll
  • GetFileVersionInfoA (Address: 0x1800e9970)
  • GetFileVersionInfoSizeA (Address: 0x1800e9980)
  • VerQueryValueA (Address: 0x1800e9978)
WTSAPI32.dll
  • WTSFreeMemory (Address: 0x1800e99e8)
  • WTSQuerySessionInformationA (Address: 0x1800e99f0)
  • WTSQueryUserToken (Address: 0x1800e99e0)