KeyboardFilterSvc.dll

Description: SvcHost Service for Microsoft Keyboard Filter

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.4355

Architecture: 64-bit

Operating System: Windows NT

SHA256: 95607fe3ff4739e4f15551b157dc01fc

File Size: 158.5 KB

Uploaded At: Dec. 1, 2025, 7:31 a.m.

Views: 5

Exported Functions

  • ServiceMain (Ordinal: 1, Address: 0x4fa0)

Imported DLLs & Functions

ADVAPI32.dll
  • AdjustTokenPrivileges (Address: 0x18001aba0)
  • ChangeServiceConfigW (Address: 0x18001ab80)
  • CloseServiceHandle (Address: 0x18001ab98)
  • ConvertSidToStringSidW (Address: 0x18001aae8)
  • CreateProcessAsUserW (Address: 0x18001ab08)
  • CreateWellKnownSid (Address: 0x18001ab38)
  • DuplicateToken (Address: 0x18001ab18)
  • EqualSid (Address: 0x18001ab28)
  • EventEnabled (Address: 0x18001aaf0)
  • EventRegister (Address: 0x18001ab40)
  • EventSetInformation (Address: 0x18001ab00)
  • EventUnregister (Address: 0x18001ab48)
  • EventWrite (Address: 0x18001ab78)
  • EventWriteTransfer (Address: 0x18001aaf8)
  • GetTokenInformation (Address: 0x18001ab30)
  • GetTraceEnableFlags (Address: 0x18001abd8)
  • GetTraceEnableLevel (Address: 0x18001abe0)
  • GetTraceLoggerHandle (Address: 0x18001aac8)
  • ImpersonateLoggedOnUser (Address: 0x18001ab10)
  • LookupPrivilegeValueW (Address: 0x18001aba8)
  • OpenProcessToken (Address: 0x18001abb0)
  • OpenSCManagerW (Address: 0x18001ab90)
  • OpenServiceW (Address: 0x18001ab88)
  • OpenThreadToken (Address: 0x18001ab68)
  • RegCloseKey (Address: 0x18001ab60)
  • RegCreateKeyExW (Address: 0x18001aae0)
  • RegDeleteValueW (Address: 0x18001aab0)
  • RegEnumValueW (Address: 0x18001aab8)
  • RegGetValueW (Address: 0x18001aac0)
  • RegisterServiceCtrlHandlerExW (Address: 0x18001abb8)
  • RegisterTraceGuidsW (Address: 0x18001abd0)
  • RegNotifyChangeKeyValue (Address: 0x18001ab58)
  • RegOpenKeyExW (Address: 0x18001aaa8)
  • RegQueryInfoKeyW (Address: 0x18001aad0)
  • RegQueryValueExW (Address: 0x18001aad8)
  • RegSetValueExW (Address: 0x18001ab50)
  • RevertToSelf (Address: 0x18001ab20)
  • SetServiceStatus (Address: 0x18001abc0)
  • TraceMessage (Address: 0x18001ab70)
  • UnregisterTraceGuids (Address: 0x18001abc8)
api-ms-win-core-winrt-error-l1-1-0.dll
  • GetRestrictedErrorInfo (Address: 0x18001af18)
  • SetRestrictedErrorInfo (Address: 0x18001af20)
api-ms-win-core-winrt-error-l1-1-1.dll
  • RoOriginateLanguageException (Address: 0x18001af30)
api-ms-win-core-winrt-l1-1-0.dll
  • RoActivateInstance (Address: 0x18001af40)
  • RoGetActivationFactory (Address: 0x18001af48)
api-ms-win-core-winrt-string-l1-1-0.dll
  • WindowsCreateString (Address: 0x18001af68)
  • WindowsCreateStringReference (Address: 0x18001af70)
  • WindowsDeleteString (Address: 0x18001af60)
  • WindowsGetStringRawBuffer (Address: 0x18001af58)
api-ms-win-crt-private-l1-1-0.dll
  • __C_specific_handler (Address: 0x18001b028)
  • __CxxFrameHandler3 (Address: 0x18001b030)
  • __CxxFrameHandler4 (Address: 0x18001b098)
  • __std_terminate (Address: 0x18001b090)
  • _CxxThrowException (Address: 0x18001b038)
  • _o___std_exception_copy (Address: 0x18001b088)
  • _o___std_exception_destroy (Address: 0x18001b080)
  • _o___std_type_info_destroy_list (Address: 0x18001b078)
  • _o___stdio_common_vsnprintf_s (Address: 0x18001b070)
  • _o___stdio_common_vswprintf (Address: 0x18001b068)
  • _o___stdio_common_vswprintf_s (Address: 0x18001b060)
  • _o__callnewh (Address: 0x18001b058)
  • _o__cexit (Address: 0x18001b050)
  • _o__configure_narrow_argv (Address: 0x18001b048)
  • _o__crt_atexit (Address: 0x18001b040)
  • _o__errno (Address: 0x18001b0a8)
  • _o__execute_onexit_table (Address: 0x18001b0a0)
  • _o__get_errno (Address: 0x18001af80)
  • _o__initialize_narrow_environment (Address: 0x18001af88)
  • _o__initialize_onexit_table (Address: 0x18001af90)
  • _o__invalid_parameter_noinfo (Address: 0x18001af98)
  • _o__invalid_parameter_noinfo_noreturn (Address: 0x18001afa0)
  • _o__purecall (Address: 0x18001afa8)
  • _o__recalloc (Address: 0x18001afb0)
  • _o__register_onexit_function (Address: 0x18001afb8)
  • _o__seh_filter_dll (Address: 0x18001afc0)
  • _o__set_errno (Address: 0x18001afc8)
  • _o__wcsicmp (Address: 0x18001afd8)
  • _o__wcsnicmp (Address: 0x18001afe0)
  • _o_calloc (Address: 0x18001afe8)
  • _o_free (Address: 0x18001aff0)
  • _o_iswspace (Address: 0x18001aff8)
  • _o_malloc (Address: 0x18001b000)
  • _o_memcpy_s (Address: 0x18001b008)
  • _o_terminate (Address: 0x18001b010)
  • _o_wcscpy_s (Address: 0x18001b018)
  • _o_wcstoul (Address: 0x18001b020)
  • memcpy (Address: 0x18001b0b0)
  • memmove (Address: 0x18001afd0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _initterm (Address: 0x18001b0c8)
  • _initterm_e (Address: 0x18001b0c0)
api-ms-win-crt-string-l1-1-0.dll
  • memset (Address: 0x18001b0d8)
api-ms-win-stateseparation-helpers-l1-1-0.dll
  • GetPersistedRegistryLocationW (Address: 0x18001b0e8)
KERNEL32.dll
  • CancelIoEx (Address: 0x18001ac70)
  • CloseHandle (Address: 0x18001ad78)
  • CreateEventExW (Address: 0x18001ad10)
  • CreateEventW (Address: 0x18001ad20)
  • CreateFileW (Address: 0x18001acb0)
  • CreateMutexExW (Address: 0x18001ad60)
  • CreateSemaphoreExW (Address: 0x18001ade0)
  • CreateThread (Address: 0x18001ac80)
  • DebugBreak (Address: 0x18001ad40)
  • DeleteCriticalSection (Address: 0x18001ace8)
  • DeviceIoControl (Address: 0x18001aca8)
  • EnterCriticalSection (Address: 0x18001ace0)
  • FindResourceExW (Address: 0x18001ac88)
  • FormatMessageW (Address: 0x18001ada0)
  • GetCurrentProcess (Address: 0x18001ad18)
  • GetCurrentProcessId (Address: 0x18001ad58)
  • GetCurrentThread (Address: 0x18001ad08)
  • GetCurrentThreadId (Address: 0x18001adb0)
  • GetExitCodeThread (Address: 0x18001ac78)
  • GetLastError (Address: 0x18001ad98)
  • GetModuleFileNameA (Address: 0x18001ade8)
  • GetModuleHandleExW (Address: 0x18001adc0)
  • GetModuleHandleW (Address: 0x18001ad48)
  • GetNativeSystemInfo (Address: 0x18001adf8)
  • GetProcAddress (Address: 0x18001ad68)
  • GetProcessHeap (Address: 0x18001ad50)
  • GetSystemDirectoryW (Address: 0x18001ac00)
  • GetSystemTimeAsFileTime (Address: 0x18001ac10)
  • GetSystemWow64DirectoryW (Address: 0x18001abf0)
  • HeapAlloc (Address: 0x18001ad70)
  • HeapDestroy (Address: 0x18001ac58)
  • HeapFree (Address: 0x18001add8)
  • HeapReAlloc (Address: 0x18001ac60)
  • HeapSize (Address: 0x18001ac68)
  • InitializeCriticalSection (Address: 0x18001acf0)
  • InitializeSListHead (Address: 0x18001ac08)
  • InterlockedPushEntrySList (Address: 0x18001adf0)
  • IsDebuggerPresent (Address: 0x18001ad38)
  • IsProcessorFeaturePresent (Address: 0x18001ac20)
  • LeaveCriticalSection (Address: 0x18001acd8)
  • LoadResource (Address: 0x18001ac90)
  • LocalAlloc (Address: 0x18001acc8)
  • LocalFree (Address: 0x18001acc0)
  • LockResource (Address: 0x18001ac98)
  • OpenSemaphoreW (Address: 0x18001ad80)
  • OutputDebugStringW (Address: 0x18001ad90)
  • ProcessIdToSessionId (Address: 0x18001abf8)
  • QueryPerformanceCounter (Address: 0x18001ac18)
  • RaiseException (Address: 0x18001acd0)
  • ReleaseMutex (Address: 0x18001ada8)
  • ReleaseSemaphore (Address: 0x18001adc8)
  • ResetEvent (Address: 0x18001ad28)
  • RtlCaptureContext (Address: 0x18001ac50)
  • RtlLookupFunctionEntry (Address: 0x18001ac48)
  • RtlVirtualUnwind (Address: 0x18001ac40)
  • SetEvent (Address: 0x18001ad30)
  • SetLastError (Address: 0x18001add0)
  • SetUnhandledExceptionFilter (Address: 0x18001ac30)
  • SizeofResource (Address: 0x18001aca0)
  • Sleep (Address: 0x18001acb8)
  • TerminateProcess (Address: 0x18001ac28)
  • UnhandledExceptionFilter (Address: 0x18001ac38)
  • WaitForMultipleObjects (Address: 0x18001acf8)
  • WaitForSingleObject (Address: 0x18001adb8)
  • WaitForSingleObjectEx (Address: 0x18001ad88)
  • WTSGetActiveConsoleSessionId (Address: 0x18001ad00)
msvcp_win.dll
  • ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x18001b0f8)
ole32.dll
  • CoIncrementMTAUsage (Address: 0x18001b120)
  • CoTaskMemAlloc (Address: 0x18001b118)
  • CoTaskMemFree (Address: 0x18001b110)
  • CoTaskMemRealloc (Address: 0x18001b108)
OLEAUT32.dll
  • SysFreeString (Address: 0x18001ae08)
  • SysStringLen (Address: 0x18001ae10)
RPCRT4.dll
  • NdrClientCall3 (Address: 0x18001ae70)
  • NdrServerCall2 (Address: 0x18001ae28)
  • NdrServerCallAll (Address: 0x18001ae30)
  • RpcBindingFree (Address: 0x18001ae78)
  • RpcBindingFromStringBindingW (Address: 0x18001ae80)
  • RpcImpersonateClient (Address: 0x18001ae60)
  • RpcRaiseException (Address: 0x18001ae58)
  • RpcRevertToSelf (Address: 0x18001ae68)
  • RpcServerInqCallAttributesW (Address: 0x18001ae50)
  • RpcServerListen (Address: 0x18001ae48)
  • RpcServerRegisterIfEx (Address: 0x18001ae38)
  • RpcServerUnregisterIf (Address: 0x18001ae20)
  • RpcServerUseProtseqEpW (Address: 0x18001ae40)
  • RpcStringBindingComposeW (Address: 0x18001ae88)
  • RpcStringFreeW (Address: 0x18001ae90)
  • UuidCreate (Address: 0x18001aea0)
  • UuidToStringW (Address: 0x18001ae98)
SLC.dll
  • SLGetWindowsInformationDWORD (Address: 0x18001aeb0)
USER32.dll
  • GetKeyboardLayout (Address: 0x18001aec0)
  • RegisterDeviceNotificationW (Address: 0x18001aed0)
  • UnregisterClassA (Address: 0x18001aec8)
  • UnregisterDeviceNotification (Address: 0x18001aed8)
WTSAPI32.dll
  • WTSDisconnectSession (Address: 0x18001aee8)
  • WTSEnumerateSessionsW (Address: 0x18001af08)
  • WTSFreeMemory (Address: 0x18001af00)
  • WTSQuerySessionInformationW (Address: 0x18001aef8)
  • WTSQueryUserToken (Address: 0x18001aef0)