Import table
advapi32.dll
GetSecurityDescriptorOwner, RegSetValueExW, RegCreateKeyExW, RegDeleteValueW, RegOpenKeyExA, RegEnumKeyA, RegQueryValueExA, RegEnumValueW, ConvertStringSecurityDescriptorToSecurityDescriptorW, SetSecurityInfo, GetTokenInformation, GetSidLengthRequired, InitializeSid, GetSidSubAuthority, SetSecurityDescriptorDacl, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, CopySid, IsValidSid, GetLengthSid, OpenProcessToken, GetSecurityDescriptorLength, MakeSelfRelativeSD, InitializeSecurityDescriptor, GetSecurityDescriptorGroup, GetSecurityDescriptorDacl, GetSecurityDescriptorSacl, MakeAbsoluteSD, GetSecurityDescriptorControl, GetAclInformation, InitializeAcl, AddAce, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, RegEnumValueA
kernel32.dll
OpenEventW, SetEvent, GetLocalTime, GetTickCount, InterlockedExchange, GetSystemTimeAsFileTime, SetConsoleTitleW, GetConsoleTitleW, Beep, SetConsoleCtrlHandler, SetConsoleScreenBufferSize, GetConsoleScreenBufferInfo, SetConsoleActiveScreenBuffer, CreateConsoleScreenBuffer, FreeConsole, AllocConsole, CreateFileW, WriteConsoleW, OutputDebugStringW, GetFileSize, SetFilePointer, GetVersionExA, WriteFile, GetModuleFileNameA, GetComputerNameA, SetLastError, MoveFileExW, FindClose, FindNextFileW, FindFirstFileW, CreateMutexW, CreateDirectoryW, DisableThreadLibraryCalls, CompareStringW, CompareStringA, FlushFileBuffers, CreateFileA, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetLocaleInfoW, InitializeCriticalSectionAndSpinCount, GetConsoleMode, GetConsoleCP, IsValidLocale, EnumSystemLocalesA, GetUserDefaultLCID, GetStringTypeA, GetLocaleInfoA, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, OpenMutexW, ReleaseMutex, UnmapViewOfFile, OpenFileMappingW, MapViewOfFile, GetCurrentProcess, GetModuleHandleW, GetCurrentThreadId, GetLastError, CreateWaitableTimerW, SetWaitableTimer, FreeLibrary, CreateThread, WaitForSingleObject, GetLongPathNameW, GetEnvironmentVariableW, FormatMessageW, WideCharToMultiByte, MultiByteToWideChar, GetModuleFileNameW, InterlockedDecrement, LoadLibraryW, LoadLibraryA, GetProcAddress, GetCurrentProcessId, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, GlobalAddAtomW, GetVersionExW, CancelWaitableTimer, CloseHandle, LocalFree, InterlockedIncrement, SetConsoleTextAttribute, GetTimeZoneInformation, GetStdHandle, GetModuleHandleA, ExitProcess, VirtualFree, HeapCreate, IsValidCodePage, GetOEMCP, GetACP, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetStringTypeW, GetCPInfo, LCMapStringW, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RaiseException, InterlockedCompareExchange, Sleep, RtlUnwind, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetCommandLineA, LCMapStringA, SetEnvironmentVariableA, SetEndOfFile, CreateFileMappingW, GetWindowsDirectoryA, GetShortPathNameW
user32.dll
IsWindow, SendMessageTimeoutW, RegisterWindowMessageW, GetWindowLongW, GetWindowThreadProcessId, SetWindowsHookExW, CallNextHookEx, BroadcastSystemMessageW, UnhookWindowsHookEx, wsprintfW, IsWindowUnicode, GetWindowTextLengthW, GetWindowTextW, EnumChildWindows, PostMessageW, FindWindowExW, GetWindow, GetClassNameW, GetClipboardFormatNameW, GetDesktopWindow, GetParent, SetPropW, GetPropW, RemovePropW, InSendMessageEx, PostThreadMessageW, UnregisterClassA, PeekMessageW, EnumWindows
userenv.dll
UnloadUserProfile
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
Export table
get_lastknownversion
gettraceinfo
OtsNotifyAll
OtsStartMonitor
OtsStopMonitor
settraceinfo