Import table
advapi32.dll
CryptDestroyHash, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, CryptDestroyKey, CryptReleaseContext, ConvertSidToStringSidW, IsValidSid, GetTokenInformation, OpenProcessToken, RegEnumKeyW, RegDeleteKeyW, RegQueryInfoKeyA, RegEnumValueA, RegEnumKeyExA, RegDeleteValueA, RegQueryValueExA, RegOpenKeyExA, RegCreateKeyExA, CryptVerifySignatureW, CryptHashData, CryptCreateHash, CryptImportKey, CryptAcquireContextW, RegEnumKeyExW, RegCreateKeyExW, RegDeleteValueW, RegEnumValueW, RegQueryInfoKeyW, FreeSid, CheckTokenMembership, AllocateAndInitializeSid, ConvertStringSecurityDescriptorToSecurityDescriptorW
crypt32.dll
CryptUnprotectData
gdi32.dll
GetObjectW, DeleteDC, SelectObject, CreateCompatibleDC, DeleteObject
gdiplus.dll
GdipGetImageEncoders, GdipGetImageEncodersSize, GdipCreateBitmapFromHBITMAP, GdipCreateBitmapFromScan0, GdipSaveImageToStream, GdipGetFontHeight, GdipDeleteFont, GdipCreateFont, GdipDeleteFontFamily, GdipCreateFontFamilyFromName, GdipDrawString, GdipSetTextRenderingHint, GdipStringFormatGetGenericDefault, GdiplusShutdown, GdipFree, GdipAlloc, GdipDisposeImage, GdipCloneImage, GdipCreateBitmapFromStream, GdipCreateBitmapFromResource, GdipCreateHBITMAPFromBitmap, GdiplusStartup, GdipGetImageGraphicsContext, GdipDeleteGraphics, GdipGetDC, GdipReleaseDC, GdipGetImageWidth, GdipGetImageHeight, GdipCreateBitmapFromFile, GdipDeleteBrush, GdipCloneBrush, GdipCreateSolidFill, GdipCreateStringFormat, GdipDeleteStringFormat, GdipSetStringFormatAlign
kernel32.dll
DllMain, GetACP, FlushFileBuffers, IsProcessorFeaturePresent, SwitchToThread, MoveFileW, CreateDirectoryW, GetVersionExA, GetUserDefaultLCID, GetSystemDefaultLCID, LocalAlloc, GetFileSize, TlsAlloc, TlsFree, TlsGetValue, TlsSetValue, IsValidCodePage, SetFilePointer, GetModuleHandleA, GetLogicalDrives, GetDriveTypeW, GetDiskFreeSpaceExW, SetEnvironmentVariableW, ReleaseSemaphore, CreateSemaphoreW, FindClose, FindNextFileW, FindFirstFileW, GetLongPathNameW, GetFullPathNameW, ExpandEnvironmentStringsW, FileTimeToSystemTime, GetFileAttributesExW, CopyFileW, GetExitCodeProcess, FormatMessageW, LocalFree, SetLastError, SuspendThread, SetThreadContext, GetThreadContext, VirtualAlloc, VirtualProtect, VirtualQuery, FindAtomW, DeleteAtom, AddAtomW, CreateEventA, CreateMutexA, LoadLibraryA, CreateProcessA, ReleaseMutex, GetUserDefaultUILanguage, GetModuleFileNameA, GetFileAttributesA, GetCurrentThread, CompareStringW, CompareStringA, MapViewOfFile, CreateFileMappingW, GlobalFree, GlobalAlloc, UnmapViewOfFile, GlobalUnlock, GlobalLock, QueueUserAPC, OpenThread, OutputDebugStringW, GetExitCodeThread, VirtualQueryEx, OpenProcess, DeleteFileW, CreateThread, ResumeThread, SetThreadPriority, GetSystemInfo, DuplicateHandle, WaitForSingleObject, SetEvent, CreateEventW, GetVersionExW, CompareFileTime, SystemTimeToFileTime, GetSystemTime, CreateProcessW, GetCommandLineW, GetFileAttributesW, LoadLibraryExW, GetModuleFileNameW, lstrlenA, WriteFile, WideCharToMultiByte, GetStdHandle, GetEnvironmentVariableW, ReadFile, CloseHandle, CreateFileW, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, LeaveCriticalSection, EnterCriticalSection, IsDebuggerPresent, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, SetUnhandledExceptionFilter, DecodePointer, EncodePointer, GetStartupInfoW, InterlockedCompareExchange, Sleep, CreateFileA, CreateFileMappingA, GetVersion, HeapSetInformation, InterlockedIncrement, InterlockedDecrement, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetLastError, FreeLibrary, LoadLibraryW, MultiByteToWideChar, lstrlenW, GetModuleHandleW, GetProcAddress, InterlockedExchange, FindResourceExW, LockResource, SizeofResource, LoadResource, RaiseException, FindResourceW, FlushInstructionCache
msvcr100.dll
wcsrchr, ceil, _swab, _itow_s, malloc, _callnewh, wcsnlen, wmemcpy_s, memcpy_s, memmove_s, _vscwprintf, vswprintf_s, free, wcsncpy_s, wcscpy_s, fopen_s, fprintf, fclose, _wcsicmp, _CxxThrowException, __CxxFrameHandler3, fputws, ferror, _wfsopen, wcsncmp, _ui64tow_s, wcsncpy, tolower, iswspace, _wcsupr_s, wcscspn, wcsspn, memcpy, swprintf_s, sprintf_s, strncpy_s, _vsnprintf, _vswprintf_c_l, strrchr, strcpy_s, isprint, _purecall, wcscat_s, _set_purecall_handler, calloc, _ultow_s, _strlwr_s, _wmakepath_s, _amsg_exit, __getmainargs, _cexit, _exit, _XcptFilter, _ismbblead, exit, _acmdln, _initterm, _initterm_e, _configthreadlocale, __setusermatherr, _wcsnicmp, _commode, _fmode, __set_app_type, _unlock, __dllonexit, _lock, fgetws, _wfopen_s, wcsstr, _wcslwr_s, _wtoi, wcspbrk, _wfullpath, _resetstkoflw, _wsplitpath_s, memmove, wcschr, _vsnwprintf, _recalloc, _onexit, _except_handler4_common, _wtol, _crt_debugger_hook, _controlfp_s, _invoke_watson, memset, DllMain
ole32.dll
CoDisconnectObject, CoMarshalInterface, CoReleaseMarshalData, OleUninitialize, OleInitialize, StringFromGUID2, CoCreateInstance, IIDFromString, CLSIDFromString, CreateStreamOnHGlobal, CoTaskMemAlloc, CoTaskMemFree, StringFromCLSID, CoCreateGuid, CoUninitialize, CoInitialize, CoInitializeSecurity
shell32.dll
SHFileOperationW, SHGetFileInfoW, SHGetFolderPathW, ShellExecuteExW
shlwapi.dll
AssocQueryStringW, PathRemoveBlanksW, PathRemoveBackslashW, PathIsFileSpecW, PathStripPathW, PathMatchSpecW, PathFindExtensionW, PathRenameExtensionW, PathIsDirectoryW, PathRemoveExtensionW, PathFileExistsW, PathFindFileNameW, PathAppendW, PathCombineW, PathRemoveFileSpecW, SHCreateStreamOnFileEx, StrToIntW, PathAddBackslashW, StrToIntExW, StrToInt64ExW
user32.dll
LoadStringW, UnregisterClassW, CharNextW, MessageBoxW, SetForegroundWindow, GetSystemMetrics, SystemParametersInfoA, MsgWaitForMultipleObjectsEx, PeekMessageW, GetWindowTextW, TranslateMessage, DispatchMessageW, MessageBoxExW, LoadIconW, LoadImageW, DestroyWindow, RegisterClassW, CreateWindowExW, ShowWindow, KillTimer, SetTimer, DefWindowProcW, UpdateLayeredWindow, GetMessageTime
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW