Import table
advapi32.dll
CreateProcessAsUserW, RegEnumKeyExW, RegOpenKeyExA, RegEnumKeyA, RegQueryValueExA, RegSetValueExW, RegCreateKeyExW, RegDeleteValueW, RegDeleteKeyW, RegQueryInfoKeyW, RegEnumValueW, CryptReleaseContext, CryptDestroyKey, ImpersonateLoggedOnUser, LookupAccountSidW, GetSidSubAuthority, GetSidLengthRequired, InitializeSid, ReportEventW, OpenProcessToken, OpenThreadToken, GetSecurityDescriptorLength, CryptDecrypt, GetAclInformation, GetSecurityDescriptorDacl, InitializeAcl, AddAce, GetAce, IsValidAcl, SetSecurityDescriptorDacl, GetSecurityDescriptorSacl, AddAccessAllowedAceEx, SetSecurityDescriptorSacl, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, IsValidSecurityDescriptor, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, GetTokenInformation, DuplicateTokenEx, ImpersonateSelf, SetThreadToken, IsValidSid, GetLengthSid, CopySid, CloseEventLog, DeregisterEventSource, OpenEventLogW, RevertToSelf, ImpersonateAnonymousToken, RegQueryValueExW, RegOpenKeyExW, RegCloseKey
crypt32.dll
CryptDecodeObject, CryptEncodeObject
kernel32.dll
GetFileSize, CreateFileW, SetLastError, SizeofResource, LoadResource, FindResourceW, LoadLibraryExW, IsDebuggerPresent, WideCharToMultiByte, DisableThreadLibraryCalls, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, ReadFile, GetConsoleMode, GetConsoleCP, CreateDirectoryW, FindFirstFileW, FindClose, lstrcmpiW, SetFilePointer, GetModuleHandleW, GetLocalTime, WriteFile, GetCurrentProcessId, ProcessIdToSessionId, GetVersionExA, RaiseException, FreeLibrary, SleepEx, OpenThread, QueueUserAPC, GetCurrentThreadId, OpenEventW, GetTickCount, GetSystemTimeAsFileTime, GetModuleFileNameW, GetSystemDirectoryW, FormatMessageW, lstrlenA, RegisterWaitForSingleObject, GetCurrentProcess, GetComputerNameA, CreateEventW, UnregisterWait, lstrlenW, lstrcpyW, InterlockedDecrement, InterlockedIncrement, LoadLibraryW, GetProcAddress, ResetEvent, SetEvent, DeleteTimerQueueTimer, GetVersionExW, GetCurrentThread, ExitThread, Sleep, WaitForSingleObject, TerminateThread, GetLastError, CloseHandle, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, MultiByteToWideChar, LocalFree, LocalAlloc, HeapReAlloc, VirtualQuery, GetStringTypeW, GetStringTypeA, LoadLibraryA, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, HeapSize, LCMapStringW, LCMapStringA, GetSystemInfo, GetModuleHandleA, VirtualAlloc, VirtualProtect, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, RtlUnwind, HeapFree, HeapAlloc, GetThreadLocale, GetLocaleInfoA, GetACP, GetCommandLineA, GetProcessHeap, GetModuleFileNameA, CreateTimerQueueTimer, InterlockedExchange, GetOEMCP, GetCPInfo, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetStdHandle, ExitProcess, HeapCreate, HeapDestroy, VirtualFree, CreateThread
ole32.dll
CoGetStandardMarshal, StringFromCLSID, OleRun, CoCreateInstance, StringFromGUID2, CoInitializeEx, CLSIDFromString, CoCreateGuid, CoTaskMemRealloc, CoImpersonateClient, CoTaskMemFree, CoUninitialize, CoTaskMemAlloc, CoRevertToSelf
rpcrt4.dll
RpcImpersonateClient, RpcRevertToSelf
setupapi.dll
SetupDiEnumDeviceInfo, SetupDiGetDeviceInstanceIdW, CM_Get_DevNode_Status, SetupDiGetClassDevsW, SetupDiGetDeviceRegistryPropertyW, SetupDiDestroyDeviceInfoList
user32.dll
UnregisterClassA, GetThreadDesktop, PostThreadMessageW, GetUserObjectSecurity, PostMessageW, GetWindowLongW, DefWindowProcW, SetWindowLongW, DispatchMessageW, TranslateMessage, GetMessageW, CreateWindowExW, RegisterClassExW, CloseDesktop, GetWindowThreadProcessId, GetForegroundWindow, GetGUIThreadInfo, OpenInputDesktop, SetThreadDesktop, CharNextW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
wtsapi32.dll
WTSFreeMemory, WTSWaitSystemEvent, WTSEnumerateSessionsW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer