Import table
advapi32.dll
RegOpenKeyExA, RegEnumKeyA, RegQueryValueExA, RegEnumValueW, RegQueryInfoKeyW, RegEnumKeyExW, RegOpenKeyExW, RegDeleteKeyW, LookupAccountSidW, ConvertSidToStringSidW, SetTokenInformation, GetSidSubAuthority, GetSidLengthRequired, InitializeSid, CreatePrivateObjectSecurity, DestroyPrivateObjectSecurity, OpenThreadToken, ImpersonateAnonymousToken, CryptCreateHash, CryptDeriveKey, CryptGenKey, CryptHashData, CryptDecrypt, CryptEncrypt, MapGenericMask, GetAclInformation, GetSecurityDescriptorDacl, InitializeAcl, AddAce, GetAce, IsValidAcl, SetSecurityDescriptorDacl, GetSecurityDescriptorSacl, AddAccessAllowedAceEx, SetSecurityDescriptorSacl, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, IsValidSecurityDescriptor, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, GetTokenInformation, ImpersonateSelf, SetThreadToken, EqualSid, IsValidSid, GetLengthSid, CopySid, RevertToSelf, RegSetValueExW, CryptDestroyKey, CryptDestroyHash, CryptReleaseContext, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegQueryValueExW
kernel32.dll
WideCharToMultiByte, IsDebuggerPresent, SetLastError, CreateFileW, GetFileSize, GetComputerNameA, GetModuleFileNameA, InterlockedExchange, CreateDirectoryW, FindFirstFileW, FindClose, SetFilePointer, GetCurrentThreadId, GetLocalTime, WriteFile, GetCurrentProcessId, ProcessIdToSessionId, GetVersionExA, DisableThreadLibraryCalls, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, lstrcmpiW, GetModuleFileNameW, GetModuleHandleW, InterlockedDecrement, InterlockedIncrement, RaiseException, lstrlenW, GetSystemDirectoryW, GetTickCount, ChangeTimerQueueTimer, CreateTimerQueueTimer, DeleteTimerQueueTimer, GetCurrentThread, GetSystemTimeAsFileTime, CloseHandle, GetVersionExW, GetLastError, LocalFree, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, GetProcAddress, LoadLibraryW, FreeLibrary, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, GetConsoleMode, GetConsoleCP, LoadLibraryA, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetACP, GetLocaleInfoA, GetThreadLocale, RtlUnwind, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, HeapFree, HeapAlloc, HeapReAlloc, VirtualProtect, VirtualAlloc, GetModuleHandleA, GetSystemInfo, VirtualQuery, GetCommandLineA, GetProcessHeap, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, HeapDestroy, HeapCreate, VirtualFree, ExitProcess, GetStdHandle, Sleep, HeapSize, GetCPInfo, GetOEMCP, SetHandleCount, GetFileType, GetStartupInfoA
ole32.dll
CoTaskMemRealloc, CoCreateInstance, OleRun, StringFromGUID2, CoTaskMemAlloc, CoRevertToSelf, CoTaskMemFree, StringFromCLSID, CoImpersonateClient
rpcrt4.dll
RpcRevertToSelf, RpcImpersonateClient
user32.dll
UnregisterClassA, CharNextW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer