dispsvc.dll

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: 8e490b6367984419d76512ba05fdbacc

File Size: 110.9 KB

Uploaded At: Aug. 11, 2026, 9:24 p.m.

Views: 27

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: OpenProcess

Exported Functions

  • HookMsgFilter (Ordinal: 1, Address: 0x2260)

Imported DLLs & Functions

api-ms-win-crt-heap-l1-1-0.dll
  • calloc (Address: 0x21125b3b0)
  • free (Address: 0x21125b3b8)
api-ms-win-crt-private-l1-1-0.dll
  • memcpy (Address: 0x21125b3c8)
  • strrchr (Address: 0x21125b3d0)
api-ms-win-crt-runtime-l1-1-0.dll
  • _execute_onexit_table (Address: 0x21125b3e0)
  • _exit (Address: 0x21125b3e8)
  • _initialize_onexit_table (Address: 0x21125b3f0)
  • _initterm (Address: 0x21125b3f8)
  • _initterm_e (Address: 0x21125b400)
  • _register_onexit_function (Address: 0x21125b408)
  • abort (Address: 0x21125b410)
api-ms-win-crt-stdio-l1-1-0.dll
  • __acrt_iob_func (Address: 0x21125b420)
  • __stdio_common_vfprintf (Address: 0x21125b428)
  • __stdio_common_vsprintf (Address: 0x21125b430)
  • fclose (Address: 0x21125b438)
  • fgets (Address: 0x21125b440)
  • fopen (Address: 0x21125b448)
api-ms-win-crt-string-l1-1-0.dll
  • _stricmp (Address: 0x21125b458)
  • memset (Address: 0x21125b460)
  • strcmp (Address: 0x21125b468)
  • strlen (Address: 0x21125b470)
  • strncmp (Address: 0x21125b478)
KERNEL32.dll
  • CloseHandle (Address: 0x21125b2c0)
  • CompareFileTime (Address: 0x21125b2c8)
  • CreateEventA (Address: 0x21125b2d0)
  • CreateFileMappingA (Address: 0x21125b2d8)
  • CreateThread (Address: 0x21125b2e0)
  • DeleteCriticalSection (Address: 0x21125b2e8)
  • DisableThreadLibraryCalls (Address: 0x21125b2f0)
  • EnterCriticalSection (Address: 0x21125b2f8)
  • FreeLibraryAndExitThread (Address: 0x21125b300)
  • GetCurrentProcess (Address: 0x21125b308)
  • GetCurrentProcessId (Address: 0x21125b310)
  • GetFileAttributesExA (Address: 0x21125b318)
  • GetLastError (Address: 0x21125b320)
  • GetModuleFileNameA (Address: 0x21125b328)
  • GetModuleHandleA (Address: 0x21125b330)
  • GetProcAddress (Address: 0x21125b338)
  • GetTickCount64 (Address: 0x21125b340)
  • InitializeCriticalSection (Address: 0x21125b348)
  • K32EnumProcessModules (Address: 0x21125b350)
  • LeaveCriticalSection (Address: 0x21125b358)
  • MapViewOfFile (Address: 0x21125b360)
  • OpenFileMappingA (Address: 0x21125b368)
  • OpenProcess (Address: 0x21125b370)
  • Sleep (Address: 0x21125b378)
  • TlsGetValue (Address: 0x21125b380)
  • UnmapViewOfFile (Address: 0x21125b388)
  • VirtualProtect (Address: 0x21125b390)
  • VirtualQuery (Address: 0x21125b398)
  • WaitForSingleObject (Address: 0x21125b3a0)
USER32.dll
  • CallNextHookEx (Address: 0x21125b488)
  • ClientToScreen (Address: 0x21125b490)
  • EnumWindows (Address: 0x21125b498)
  • GetWindowRect (Address: 0x21125b4a0)
  • GetWindowTextA (Address: 0x21125b4a8)
  • GetWindowThreadProcessId (Address: 0x21125b4b0)
  • IsWindow (Address: 0x21125b4b8)
  • IsWindowVisible (Address: 0x21125b4c0)
  • PostMessageW (Address: 0x21125b4c8)
  • ScreenToClient (Address: 0x21125b4d0)