Import table
advapi32.dll
RegRestoreKeyW, GetFileSecurityW, GetSecurityDescriptorDacl, GetAclInformation, AddAce, GetAce, EqualSid, GetSecurityDescriptorControl, SetSecurityDescriptorControl, SetFileSecurityW, SetNamedSecurityInfoW, LookupPrivilegeValueW, AdjustTokenPrivileges, RegDeleteValueW, RegQueryMultipleValuesW, RegEnumValueW, RegEnumKeyExW, RegQueryInfoKeyW, RegSaveKeyW, RegDeleteKeyW, RegCreateKeyExW, RegSetValueExW, LookupAccountNameW, IsValidSid, RegisterEventSourceW, ReportEventW, DeregisterEventSource, ConvertSidToStringSidW, GetTokenInformation, LookupAccountSidW, OpenSCManagerW, OpenServiceW, QueryServiceStatus, CloseServiceHandle, ImpersonateLoggedOnUser, GetUserNameW, ImpersonateSelf, OpenThreadToken, OpenProcessToken, AllocateAndInitializeSid, InitializeSecurityDescriptor, InitializeAcl, AddAccessAllowedAce, SetSecurityDescriptorDacl, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, IsValidSecurityDescriptor, AccessCheck, FreeSid, GetLengthSid, CopySid, RevertToSelf, RegQueryValueExW, RegCloseKey, RegOpenKeyExW, CryptSignHashW, CryptGetUserKey, CryptGenKey, CryptVerifySignatureW, CryptSetKeyParam, CryptSetHashParam, CryptHashSessionKey, CryptHashData, CryptGetProvParam, CryptGetKeyParam, CryptGetHashParam, CryptGenRandom, CryptExportKey, CryptEncrypt, CryptImportKey, CryptDestroyKey, CryptAcquireContextW, CryptDecrypt, CryptReleaseContext, CryptCreateHash, CryptDeriveKey, CryptDestroyHash
kernel32.dll
GetDateFormatA, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, ExpandEnvironmentStringsW, DuplicateHandle, CreateEventW, WaitForSingleObject, SetEvent, ResetEvent, CreateProcessW, TerminateProcess, GetExitCodeProcess, VirtualAlloc, VirtualLock, VirtualUnlock, VirtualFree, CreateThread, GetPrivateProfileSectionNamesW, GetPrivateProfileSectionW, GetPrivateProfileStringW, WritePrivateProfileStringW, GetPrivateProfileIntW, WritePrivateProfileSectionW, FindFirstFileW, GetFileAttributesW, SetFileAttributesW, DeleteFileW, FindNextFileW, FindClose, GetComputerNameW, SetEnvironmentVariableW, GetEnvironmentVariableW, GetModuleHandleW, GetModuleFileNameW, CreateFileW, WriteFile, SetFilePointer, CreateDirectoryW, GetProcessHeap, HeapAlloc, Sleep, HeapFree, LoadLibraryW, GetProcAddress, FreeLibrary, OpenProcess, CloseHandle, GetCurrentThread, GetCurrentProcess, LocalAlloc, LocalFree, SetStdHandle, GetLastError, SetLastError, IsValidLocale, IsValidCodePage, GetTimeZoneInformation, LCMapStringA, LCMapStringW, SetConsoleCtrlHandler, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, GetComputerNameExW, SetNamedPipeHandleState, ReadFile, FlushFileBuffers, GetTimeFormatA, GetStringTypeW, GetStringTypeA, LoadLibraryA, InterlockedExchange, InitializeCriticalSection, GetCPInfo, GetOEMCP, GetACP, IsBadCodePtr, IsBadReadPtr, HeapSize, VirtualQuery, GetSystemInfo, VirtualProtect, UnhandledExceptionFilter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, GetStdHandle, SetHandleCount, CreateMutexW, RtlUnwind, HeapReAlloc, ExitProcess, RaiseException, GetCurrentThreadId, GetCommandLineA, GetVersionExA, WideCharToMultiByte, MultiByteToWideChar, GetSystemTimeAsFileTime, TlsAlloc, TlsFree, TlsSetValue, TlsGetValue, GetModuleHandleA, DeleteCriticalSection, LeaveCriticalSection, FatalAppExitA, EnterCriticalSection, HeapDestroy, HeapCreate, IsBadWritePtr, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetModuleFileNameA, SetUnhandledExceptionFilter
netapi32.dll
NetUserEnum, NetGroupEnum, NetApiBufferFree, NetWkstaUserGetInfo, NetQueryDisplayInformation, NetGetDCName
ole32.dll
CoInitialize, CoUninitialize, CoCreateInstance
psapi.dll
GetModuleBaseNameW, EnumProcessModules, EnumProcesses
shell32.dll
SHGetFolderPathW
shlwapi.dll
SHCopyKeyW, SHDeleteKeyW
tvttsp.dll
Tspi_Context_FreeMemory, Tspi_SetAttribData, Tspi_Key_WrapKey, Tspi_Key_GetPubKey, Tspi_Context_Close, Tspi_Policy_SetSecret, Tspi_GetPolicyObject, Tspi_Context_CreateObject, Tspi_Context_GetTpmObject, Tspi_Context_Create, Tspi_TPM_GetRandom, Tspi_SetAttribUint32, Tspi_Key_CreateKey, Tspi_Context_CloseObject, Tspi_Hash_VerifySignature, Tspi_Hash_SetHashValue, Tspi_GetAttribData, Tspi_Data_Bind, Tspi_Hash_Sign, Tspi_Data_Unbind, Tspi_ChangeAuth, Tspi_Key_LoadKey, Tspi_Context_Connect
user32.dll
wsprintfW, PeekMessageW, DispatchMessageW, MsgWaitForMultipleObjects
wtsapi32.dll
WTSFreeMemory, WTSQuerySessionInformationW