Import table
advapi32.dll
RegOpenKeyExW, RegSetValueExW, SetSecurityDescriptorDacl, RegCloseKey, RegOpenKeyExA, RegQueryValueExA, RegEnumKeyW, RegDeleteKeyW, RegCreateKeyExW, OpenProcessToken, LookupPrivilegeValueA, InitializeSecurityDescriptor, GetTokenInformation, GetLengthSid, FreeSid, AllocateAndInitializeSid, AdjustTokenPrivileges, GetKernelObjectSecurity, RegSetValueExA
kernel32.dll
DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, VirtualFree, VirtualAlloc, LocalFree, LocalAlloc, GetCurrentThreadId, MultiByteToWideChar, GetThreadLocale, GetStartupInfoA, GetLocaleInfoA, FreeLibrary, ExitProcess, WriteFile, UnhandledExceptionFilter, RtlUnwind, RaiseException, GetStdHandle, TlsSetValue, TlsGetValue, TlsFree, TlsAlloc, lstrlenW, lstrlenA, lstrcpyW, lstrcpyA, lstrcmpiA, lstrcmpA, lstrcatW, WriteProcessMemory, WaitForMultipleObjects, VirtualQueryEx, VirtualQuery, VirtualProtectEx, VirtualProtect, TerminateThread, TerminateProcess, Sleep, SetThreadPriority, SetLastError, ResumeThread, ReleaseSemaphore, ReadProcessMemory, ReadFile, OpenProcess, OpenMutexW, OpenMutexA, OpenFileMappingW, OpenEventW, OpenEventA, LoadLibraryExA, LoadLibraryW, LoadLibraryA, IsBadWritePtr, IsBadReadPtr, GetWindowsDirectoryW, GetVersionExW, GetVersionExA, GetTickCount, GetThreadContext, GetSystemDirectoryW, GetVersion, GetModuleFileNameW, GetFileAttributesW, GetFileAttributesA, GetExitCodeThread, GetCurrentThread, GetCurrentProcess, GetCurrentDirectoryW, GetCurrentDirectoryA, InterlockedExchange, FormatMessageA, DuplicateHandle, DeviceIoControl, CreateThread, CreateSemaphoreA, CreateProcessW, CreateProcessA, CreatePipe, CreateMutexW, CreateMutexA, CreateFileMappingW, CreateFileMappingA, CreateFileW, CreateFileA, CreateEventW, CreateEventA, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCPInfo, InterlockedIncrement, InterlockedDecrement, GetACP, GetOEMCP, IsValidCodePage, SetHandleCount, GetFileType, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapCreate, HeapDestroy, QueryPerformanceCounter, GetSystemTimeAsFileTime, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, HeapReAlloc, InitializeCriticalSectionAndSpinCount, HeapSize, DisableThreadLibraryCalls, GetSystemDirectoryA, GetModuleHandleA, GetProcAddress, GetProcessHeap, HeapAlloc, OpenFileMappingA, MapViewOfFile, WaitForSingleObject, GetModuleFileNameA, GetCommandLineA, SetEvent, GetLastError, CloseHandle, ReleaseMutex, UnmapViewOfFile, HeapFree, GetCurrentProcessId, GetModuleHandleW, WideCharToMultiByte
user32.dll
GetUserObjectInformationA, OpenInputDesktop, TranslateMessage, MessageBoxA, GetThreadDesktop, wsprintfA, PeekMessageA, MsgWaitForMultipleObjects, DispatchMessageA, GetSystemMetrics, CloseDesktop, GetKeyboardType