wksServicePlugin.dll
Description: NVIDIA Display Container Workstation Service Plugin, Version 560.94
Authors: (C) 2024 NVIDIA Corporation. All rights reserved.
Version: 32.0.15.6094
Architecture: 64-bit
Operating System: Windows NT
SHA256: 2609cd3126acc7be8e960a90fc624049
File Size: 307.1 KB
Uploaded At: Dec. 1, 2025, 7:49 a.m.
Views: 6
Security Warning
This file has been flagged as potentially dangerous.
Reason: Detected potentially dangerous functions used for process injection: OpenProcess
Exported Functions
- NvPluginGetInfo (Ordinal: 1, Address: 0x1310)
Imported DLLs & Functions
ADVAPI32.dll
- GetTokenInformation (Address: 0x18002c038)
- InitializeSecurityDescriptor (Address: 0x18002c030)
- OpenProcessToken (Address: 0x18002c040)
- RegCloseKey (Address: 0x18002c020)
- RegCreateKeyExW (Address: 0x18002c018)
- RegOpenKeyExW (Address: 0x18002c010)
- RegQueryValueExW (Address: 0x18002c008)
- RegSetValueExW (Address: 0x18002c000)
- SetSecurityDescriptorDacl (Address: 0x18002c028)
KERNEL32.dll
- CloseHandle (Address: 0x18002c100)
- ConnectNamedPipe (Address: 0x18002c070)
- CreateEventW (Address: 0x18002c0e0)
- CreateFileW (Address: 0x18002c110)
- CreateNamedPipeW (Address: 0x18002c080)
- CreateThread (Address: 0x18002c0f0)
- DeleteCriticalSection (Address: 0x18002c0c0)
- DisconnectNamedPipe (Address: 0x18002c078)
- DuplicateHandle (Address: 0x18002c068)
- EncodePointer (Address: 0x18002c298)
- EnterCriticalSection (Address: 0x18002c168)
- ExitProcess (Address: 0x18002c2c8)
- FindClose (Address: 0x18002c2f0)
- FindFirstFileExW (Address: 0x18002c2f8)
- FindNextFileW (Address: 0x18002c300)
- FlushFileBuffers (Address: 0x18002c050)
- FormatMessageW (Address: 0x18002c158)
- FreeEnvironmentStringsW (Address: 0x18002c350)
- FreeLibrary (Address: 0x18002c208)
- GetACP (Address: 0x18002c310)
- GetCommandLineA (Address: 0x18002c328)
- GetCommandLineW (Address: 0x18002c330)
- GetConsoleMode (Address: 0x18002c1e0)
- GetConsoleOutputCP (Address: 0x18002c1e8)
- GetCPInfo (Address: 0x18002c320)
- GetCurrentProcess (Address: 0x18002c0e8)
- GetCurrentProcessId (Address: 0x18002c1f0)
- GetCurrentThreadId (Address: 0x18002c0f8)
- GetEnvironmentStringsW (Address: 0x18002c348)
- GetFileAttributesW (Address: 0x18002c220)
- GetFileType (Address: 0x18002c2e0)
- GetFullPathNameW (Address: 0x18002c228)
- GetLastError (Address: 0x18002c0b0)
- GetModuleFileNameA (Address: 0x18002c240)
- GetModuleFileNameW (Address: 0x18002c248)
- GetModuleHandleExW (Address: 0x18002c2d0)
- GetModuleHandleW (Address: 0x18002c1d8)
- GetNamedPipeClientProcessId (Address: 0x18002c128)
- GetNamedPipeInfo (Address: 0x18002c088)
- GetOEMCP (Address: 0x18002c318)
- GetProcAddress (Address: 0x18002c210)
- GetProcessHeap (Address: 0x18002c0a0)
- GetStartupInfoW (Address: 0x18002c1d0)
- GetStdHandle (Address: 0x18002c2d8)
- GetStringTypeW (Address: 0x18002c360)
- GetSystemDirectoryW (Address: 0x18002c238)
- GetSystemTimeAsFileTime (Address: 0x18002c1b8)
- HeapAlloc (Address: 0x18002c090)
- HeapFree (Address: 0x18002c098)
- HeapReAlloc (Address: 0x18002c140)
- HeapSize (Address: 0x18002c148)
- InitializeCriticalSection (Address: 0x18002c0a8)
- InitializeCriticalSectionAndSpinCount (Address: 0x18002c2a0)
- InitializeSListHead (Address: 0x18002c1c0)
- InterlockedFlushSList (Address: 0x18002c290)
- InterlockedPushEntrySList (Address: 0x18002c288)
- IsDebuggerPresent (Address: 0x18002c1c8)
- IsProcessorFeaturePresent (Address: 0x18002c1a8)
- IsValidCodePage (Address: 0x18002c308)
- LCMapStringW (Address: 0x18002c2e8)
- LeaveCriticalSection (Address: 0x18002c0b8)
- LoadLibraryExW (Address: 0x18002c250)
- LoadLibraryW (Address: 0x18002c150)
- LocalAlloc (Address: 0x18002c258)
- LocalFree (Address: 0x18002c260)
- MultiByteToWideChar (Address: 0x18002c338)
- OpenProcess (Address: 0x18002c108)
- OutputDebugStringW (Address: 0x18002c200)
- ProcessIdToSessionId (Address: 0x18002c160)
- QueryPerformanceCounter (Address: 0x18002c1b0)
- RaiseException (Address: 0x18002c280)
- ReadFile (Address: 0x18002c058)
- ResetEvent (Address: 0x18002c0d0)
- RtlCaptureContext (Address: 0x18002c178)
- RtlLookupFunctionEntry (Address: 0x18002c180)
- RtlPcToFileHeader (Address: 0x18002c278)
- RtlUnwindEx (Address: 0x18002c270)
- RtlVirtualUnwind (Address: 0x18002c188)
- SetEvent (Address: 0x18002c0c8)
- SetFilePointerEx (Address: 0x18002c358)
- SetLastError (Address: 0x18002c230)
- SetStdHandle (Address: 0x18002c1f8)
- SetUnhandledExceptionFilter (Address: 0x18002c198)
- Sleep (Address: 0x18002c118)
- TerminateProcess (Address: 0x18002c1a0)
- TlsAlloc (Address: 0x18002c2a8)
- TlsFree (Address: 0x18002c2c0)
- TlsGetValue (Address: 0x18002c2b0)
- TlsSetValue (Address: 0x18002c2b8)
- UnhandledExceptionFilter (Address: 0x18002c190)
- VerifyVersionInfoW (Address: 0x18002c268)
- VerSetConditionMask (Address: 0x18002c218)
- WaitForMultipleObjects (Address: 0x18002c170)
- WaitForSingleObject (Address: 0x18002c0d8)
- WaitForSingleObjectEx (Address: 0x18002c120)
- WideCharToMultiByte (Address: 0x18002c340)
- WriteConsoleW (Address: 0x18002c138)
- WriteFile (Address: 0x18002c060)
- WTSGetActiveConsoleSessionId (Address: 0x18002c130)
ole32.dll
- CoCreateFreeThreadedMarshaler (Address: 0x18002c3f8)
- CoInitializeEx (Address: 0x18002c3e8)
- CoTaskMemAlloc (Address: 0x18002c400)
- CoTaskMemFree (Address: 0x18002c3f0)
OLEAUT32.dll
- GetErrorInfo (Address: 0x18002c378)
- SetErrorInfo (Address: 0x18002c388)
- SysAllocString (Address: 0x18002c390)
- SysFreeString (Address: 0x18002c370)
- SysStringLen (Address: 0x18002c380)
USER32.dll
- CloseDesktop (Address: 0x18002c3a8)
- GetThreadDesktop (Address: 0x18002c3b8)
- GetUserObjectInformationW (Address: 0x18002c3c8)
- OpenInputDesktop (Address: 0x18002c3d0)
- RegisterDeviceNotificationW (Address: 0x18002c3c0)
- SetWinEventHook (Address: 0x18002c3d8)
- UnhookWinEvent (Address: 0x18002c3a0)
- UnregisterDeviceNotification (Address: 0x18002c3b0)