Import table
advapi32.dll
ReportEventW, RegEnumKeyExW, RegOpenKeyExA, RegEnumKeyA, RegQueryValueExA, RegSetValueExW, RegCreateKeyExW, RegDeleteValueW, RegDeleteKeyW, RegQueryInfoKeyW, RegEnumValueW, CryptReleaseContext, CryptDestroyKey, ImpersonateLoggedOnUser, CreateProcessAsUserW, LookupAccountSidW, GetSidSubAuthority, GetSidLengthRequired, InitializeSid, OpenProcessToken, OpenThreadToken, GetSecurityDescriptorLength, CryptDecrypt, GetAclInformation, GetSecurityDescriptorDacl, InitializeAcl, AddAce, GetAce, IsValidAcl, SetSecurityDescriptorDacl, GetSecurityDescriptorSacl, AddAccessAllowedAceEx, SetSecurityDescriptorSacl, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, IsValidSecurityDescriptor, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, GetTokenInformation, DuplicateTokenEx, ImpersonateSelf, SetThreadToken, IsValidSid, GetLengthSid, CopySid, CloseEventLog, DeregisterEventSource, OpenEventLogW, RevertToSelf, ImpersonateAnonymousToken, RegQueryValueExW, RegOpenKeyExW, RegCloseKey
crypt32.dll
CryptEncodeObject, CryptDecodeObject
kernel32.dll
FindFirstFileW, CreateDirectoryW, InterlockedExchange, GetModuleFileNameA, GetComputerNameA, GetFileSize, CreateFileW, SetLastError, SizeofResource, LoadResource, FindResourceW, LoadLibraryExW, IsDebuggerPresent, WideCharToMultiByte, DisableThreadLibraryCalls, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, ReadFile, GetConsoleMode, GetConsoleCP, GetStringTypeW, GetModuleHandleW, GetLocalTime, WriteFile, GetCurrentProcessId, ProcessIdToSessionId, GetVersionExA, RaiseException, FreeLibrary, SleepEx, OpenThread, QueueUserAPC, GetCurrentThreadId, OpenEventW, GetTickCount, GetModuleFileNameW, GetSystemDirectoryW, GetSystemTimeAsFileTime, RegisterWaitForSingleObject, TlsFree, FormatMessageW, lstrlenA, ResetEvent, CreateTimerQueueTimer, FindClose, TlsGetValue, UnregisterWait, UnregisterWaitEx, GetCurrentProcess, CreateEventW, TlsAlloc, DeleteTimerQueueTimer, SetEvent, lstrlenW, lstrcpyW, InterlockedDecrement, GetModuleHandleA, InterlockedIncrement, LoadLibraryW, GetProcAddress, GetVersionExW, GetCurrentThread, Sleep, WaitForSingleObject, TerminateThread, GetLastError, CloseHandle, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, MultiByteToWideChar, LocalFree, LocalAlloc, VirtualAlloc, VirtualProtect, GetStringTypeA, LoadLibraryA, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, HeapSize, LCMapStringW, LCMapStringA, GetOEMCP, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, RtlUnwind, HeapFree, HeapAlloc, GetThreadLocale, GetLocaleInfoA, GetACP, VirtualQuery, HeapReAlloc, ExitThread, CreateThread, GetCommandLineA, GetProcessHeap, lstrcmpiW, ChangeTimerQueueTimer, SetFilePointer, GetCPInfo, TlsSetValue, GetStdHandle, ExitProcess, HeapCreate, HeapDestroy, VirtualFree, GetSystemInfo
ole32.dll
CoGetStandardMarshal, StringFromCLSID, OleRun, CoCreateInstance, StringFromGUID2, CoInitializeEx, CLSIDFromString, CoCreateGuid, CoTaskMemRealloc, CoImpersonateClient, CoTaskMemFree, CoUninitialize, CoTaskMemAlloc, CoRevertToSelf
rpcrt4.dll
RpcImpersonateClient, RpcRevertToSelf
setupapi.dll
SetupDiEnumDeviceInfo, SetupDiGetDeviceInstanceIdW, CM_Get_DevNode_Status, SetupDiGetClassDevsW, SetupDiGetDeviceRegistryPropertyW, SetupDiDestroyDeviceInfoList
user32.dll
CharNextW, UnregisterClassA, PostThreadMessageW, GetUserObjectSecurity, PostMessageW, GetWindowLongW, DefWindowProcW, SetWindowLongW, DestroyWindow, DispatchMessageW, TranslateMessage, GetMessageW, CreateWindowExW, RegisterClassExW, CloseDesktop, GetWindowThreadProcessId, GetForegroundWindow, OpenInputDesktop, GetGUIThreadInfo, SetThreadDesktop, GetThreadDesktop
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
wtsapi32.dll
WTSFreeMemory, WTSWaitSystemEvent, WTSEnumerateSessionsW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer