Import table
advapi32.dll
RegisterServiceCtrlHandlerW, ReportEventW, RegisterEventSourceW, SetServiceStatus, CloseServiceHandle, OpenServiceW, OpenSCManagerW, CreateServiceW, DeleteService, RegQueryValueExW, RegEnumValueW, OpenProcessToken, LookupPrivilegeValueW, DuplicateTokenEx, SetTokenInformation, AdjustTokenPrivileges, CreateProcessAsUserW, RegQueryInfoKeyW, RegEnumKeyExW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegSetValueExW, RegCloseKey, RegOpenKeyExW, StartServiceCtrlDispatcherW, ControlService, DeregisterEventSource, ConvertStringSecurityDescriptorToSecurityDescriptorW
crypt32.dll
CryptDecodeObject, CertGetNameStringW, CryptMsgClose, CertCloseStore, CertFreeCertificateContext, CertFindCertificateInStore, CryptMsgGetParam, CryptQueryObject
kernel32.dll
CompareStringW, LCMapStringW, WriteConsoleW, SetStdHandle, FlushFileBuffers, GetStringTypeW, LoadLibraryW, CreateFileW, WriteFile, SetEvent, GetTempPathW, CreateDirectoryW, CreateToolhelp32Snapshot, Process32FirstW, lstrcmpiW, ProcessIdToSessionId, Process32NextW, OpenProcess, WTSGetActiveConsoleSessionId, lstrcmpA, WaitForMultipleObjects, lstrlenW, LocalFree, LocalAlloc, GetSystemTime, CreateEventW, CloseHandle, GetModuleHandleW, GetProcAddress, MultiByteToWideChar, FindResourceExW, FindResourceW, LoadResource, LockResource, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetConsoleMode, GetConsoleCP, SetFilePointer, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetFileType, SetHandleCount, GetEnvironmentStringsW, SetEnvironmentVariableA, FreeEnvironmentStringsW, GetTimeZoneInformation, WideCharToMultiByte, IsProcessorFeaturePresent, GetStdHandle, HeapCreate, ExitProcess, Sleep, SetLastError, InterlockedIncrement, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, SizeofResource, GetCommandLineW, InterlockedDecrement, GetModuleFileNameW, GetCurrentThreadId, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetLastError, RaiseException, GetCurrentProcess, TerminateProcess, IsDebuggerPresent, SetUnhandledExceptionFilter, EnterCriticalSection, LeaveCriticalSection, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RtlUnwind, EncodePointer, DecodePointer, ExitThread, CreateThread, GetSystemTimeAsFileTime, HeapSetInformation, GetStartupInfoW, UnhandledExceptionFilter, GetVersionExW
ole32.dll
CoInitializeEx, CoUninitialize, CoReleaseServerProcess, CoInitializeSecurity, CoCreateInstance, CoTaskMemFree, CoTaskMemAlloc, CoAddRefServerProcess
user32.dll
GetMessageW, SetTimer, KillTimer, TranslateMessage, MessageBoxW, PostThreadMessageW, DispatchMessageW, CharUpperW, CharNextW, LoadStringW, RegisterWindowMessageW
userenv.dll
UnloadUserProfile, CreateEnvironmentBlock
winhttp.dll
WinHttpQueryDataAvailable, WinHttpReceiveResponse, WinHttpSendRequest, WinHttpCloseHandle, WinHttpOpenRequest, WinHttpConnect, WinHttpOpen, WinHttpSetOption, WinHttpCrackUrl, WinHttpReadData, WinHttpQueryHeaders
wintrust.dll
WinVerifyTrust
wtsapi32.dll
WTSEnumerateSessionsW, WTSFreeMemory