Import table
advapi32.dll
GetSecurityDescriptorGroup, RegOpenKeyExA, RegEnumKeyA, RegQueryValueExA, RegEnumValueA, RegSetValueExW, RegDeleteValueW, ConvertStringSecurityDescriptorToSecurityDescriptorW, SetSecurityInfo, GetTokenInformation, GetSidLengthRequired, InitializeSid, GetSidSubAuthority, SetSecurityDescriptorDacl, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, CopySid, IsValidSid, GetLengthSid, OpenProcessToken, GetSecurityDescriptorLength, MakeSelfRelativeSD, InitializeSecurityDescriptor, GetSecurityDescriptorOwner, GetSecurityDescriptorDacl, GetSecurityDescriptorSacl, MakeAbsoluteSD, GetSecurityDescriptorControl, GetAclInformation, InitializeAcl, AddAce, RegQueryValueExW, RegOpenKeyExW, RegCloseKey
kernel32.dll
GetConsoleTitleW, Beep, InitializeCriticalSection, GetComputerNameA, CreateFileW, SetLastError, WriteConsoleW, InterlockedDecrement, SetConsoleCtrlHandler, SetConsoleScreenBufferSize, GetConsoleScreenBufferInfo, SetConsoleActiveScreenBuffer, CreateConsoleScreenBuffer, FreeConsole, AllocConsole, GetModuleFileNameW, SetEndOfFile, CreateFileMappingW, CreateFileA, GetWindowsDirectoryA, GetShortPathNameW, MoveFileExW, FindClose, FindNextFileW, FindFirstFileW, SetConsoleTextAttribute, CreateDirectoryW, SetConsoleTitleW, SetEnvironmentVariableA, CompareStringW, CompareStringA, FlushFileBuffers, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetLocaleInfoW, LoadLibraryA, GetConsoleMode, GetConsoleCP, IsValidCodePage, IsValidLocale, EnumSystemLocalesA, GetUserDefaultLCID, GetLocaleInfoA, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, GetModuleFileNameA, WriteFile, GetVersionExA, SetFilePointer, GetFileSize, FreeLibrary, InterlockedExchange, GetTickCount, GetLocalTime, GetProcAddress, GetCurrentProcessId, SetEvent, WaitForSingleObject, OpenEventW, CreateMutexW, OpenMutexW, MultiByteToWideChar, ReleaseMutex, GetVersionExW, UnmapViewOfFile, OpenFileMappingW, MapViewOfFile, CloseHandle, GetCurrentProcess, GlobalAddAtomW, LoadLibraryW, GetCurrentThreadId, GetLastError, GetEnvironmentVariableW, FormatMessageW, WideCharToMultiByte, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, LocalFree, GetTimeZoneInformation, GetStdHandle, ExitProcess, GetOEMCP, GetACP, VirtualFree, HeapCreate, TlsFree, TlsSetValue, TlsAlloc, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RaiseException, InterlockedIncrement, InterlockedCompareExchange, Sleep, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, VirtualProtect, VirtualAlloc, GetModuleHandleA, GetSystemInfo, VirtualQuery, GetSystemTimeAsFileTime, GetCommandLineA, LCMapStringA, LCMapStringW, GetCPInfo, GetStringTypeA, GetStringTypeW, TlsGetValue
user32.dll
GetWindow, GetWindowLongW, BroadcastSystemMessageW, PostThreadMessageW, GetDesktopWindow, IsWindowUnicode, wsprintfW, SetWindowsHookExW, FindWindowExW, UnregisterClassA, CallNextHookEx, PeekMessageW, EnumChildWindows, GetClipboardFormatNameW, UnhookWindowsHookEx, GetPropW, RemovePropW, SetPropW, PostMessageW, RegisterWindowMessageW, GetClassNameW, GetWindowTextLengthW, GetWindowTextW, GetParent, IsWindow, GetWindowThreadProcessId
userenv.dll
UnloadUserProfile
Export table
get_lastknownversion
gettraceinfo
OtsNotifyAll
OtsStartMonitor
OtsStopMonitor
settraceinfo