ksuser.dll

Description: User CSA Library

Authors: © Microsoft Corporation. All rights reserved.

Version: 10.0.19041.1

Architecture: 64-bit

Operating System: Windows NT

SHA256: d284e0301679ecef1b763addd6bece58

File Size: 22.7 KB

Uploaded At: Dec. 1, 2025, 7:31 a.m.

Views: 7

Exported Functions

  • KsCreateAllocator (Ordinal: 1, Address: 0x1240)
  • KsCreateAllocator2 (Ordinal: 2, Address: 0x14f0)
  • KsCreateClock (Ordinal: 3, Address: 0x1280)
  • KsCreateClock2 (Ordinal: 4, Address: 0x1530)
  • KsCreatePin (Ordinal: 5, Address: 0x12c0)
  • KsCreatePin2 (Ordinal: 6, Address: 0x1570)
  • KsCreateTopologyNode (Ordinal: 7, Address: 0x1310)
  • KsCreateTopologyNode2 (Ordinal: 8, Address: 0x15c0)

Imported DLLs & Functions

api-ms-win-core-com-l1-1-0.dll
  • CoCreateInstance (Address: 0x180003128)
api-ms-win-core-errorhandling-l1-1-0.dll
  • GetLastError (Address: 0x180003140)
  • SetUnhandledExceptionFilter (Address: 0x180003138)
  • UnhandledExceptionFilter (Address: 0x180003148)
api-ms-win-core-handle-l1-1-0.dll
  • CloseHandle (Address: 0x180003158)
api-ms-win-core-heap-l1-1-0.dll
  • GetProcessHeap (Address: 0x180003168)
  • HeapAlloc (Address: 0x180003178)
  • HeapFree (Address: 0x180003170)
api-ms-win-core-processenvironment-l1-1-0.dll
  • GetEnvironmentVariableW (Address: 0x180003188)
api-ms-win-core-processthreads-l1-1-0.dll
  • GetCurrentProcess (Address: 0x180003198)
  • GetCurrentProcessId (Address: 0x1800031a8)
  • GetCurrentThreadId (Address: 0x1800031a0)
  • OpenProcessToken (Address: 0x1800031b8)
  • TerminateProcess (Address: 0x1800031b0)
api-ms-win-core-profile-l1-1-0.dll
  • QueryPerformanceCounter (Address: 0x1800031c8)
api-ms-win-core-rtlsupport-l1-1-0.dll
  • RtlCaptureContext (Address: 0x1800031e0)
  • RtlLookupFunctionEntry (Address: 0x1800031e8)
  • RtlVirtualUnwind (Address: 0x1800031d8)
api-ms-win-core-synch-l1-2-0.dll
  • Sleep (Address: 0x1800031f8)
api-ms-win-core-sysinfo-l1-1-0.dll
  • GetSystemTimeAsFileTime (Address: 0x180003208)
  • GetTickCount (Address: 0x180003210)
api-ms-win-security-base-l1-1-0.dll
  • AllocateAndInitializeSid (Address: 0x180003220)
  • EqualSid (Address: 0x180003238)
  • FreeSid (Address: 0x180003228)
  • GetTokenInformation (Address: 0x180003230)
api-ms-win-security-sddl-l1-1-0.dll
  • ConvertStringSidToSidW (Address: 0x180003248)
msvcrt.dll
  • __C_specific_handler (Address: 0x180003270)
  • _amsg_exit (Address: 0x180003280)
  • _initterm (Address: 0x180003258)
  • _XcptFilter (Address: 0x180003288)
  • free (Address: 0x180003268)
  • malloc (Address: 0x180003260)
  • memcpy (Address: 0x180003278)
  • memset (Address: 0x180003290)
ntdll.dll
  • NtCreateFile (Address: 0x1800032a0)
  • RtlNtStatusToDosError (Address: 0x1800032a8)