Import table
advapi32.dll
RegQueryValueExA, SetTokenInformation, MapGenericMask, CryptImportKey, CryptVerifySignatureW, RegOpenKeyExA, RegEnumKeyA, RegDeleteKeyW, CryptDestroyKey, GetSidSubAuthorityCount, GetSecurityDescriptorLength, ImpersonateSelf, SetSecurityInfo, CryptCreateHash, CryptGetHashParam, CryptDestroyHash, CryptReleaseContext, CryptAcquireContextW, CryptHashData, RegCreateKeyExW, BuildTrusteeWithNameW, GetEffectiveRightsFromAclW, RegEnumKeyExW, RegQueryInfoKeyW, RegEnumValueW, RegOpenCurrentUser, ConvertStringSidToSidW, RegDeleteValueW, LookupAccountSidW, ConvertSidToStringSidW, RegSetValueExW, RevertToSelf, ImpersonateAnonymousToken, EqualSid, GetSidLengthRequired, InitializeSid, GetSidSubAuthority, GetAce, AddAce, GetAclInformation, InitializeAcl, AddAccessAllowedAce, GetTokenInformation, OpenThreadToken, OpenProcessToken, SetSecurityDescriptorDacl, SetSecurityDescriptorGroup, IsValidSid, GetLengthSid, CopySid, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, DeregisterEventSource, RegQueryValueExW, RegOpenKeyExW, RegCloseKey
crypt32.dll
CertOpenStore, CertFindCertificateInStore, CertCompareCertificateName, CryptVerifyCertificateSignature, CryptMsgClose, CryptQueryObject, CertEnumCertificatesInStore, CertFreeCertificateContext, CertCloseStore, CryptDecodeObject, CryptEncodeObject, CryptMsgGetParam
dpptutils.dll
DPFormatMessage
kernel32.dll
CreateMutexW, lstrcmpiW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetLocalTime, GetCurrentThreadId, GetModuleHandleW, GetTickCount, InterlockedExchange, WideCharToMultiByte, MultiByteToWideChar, UnregisterWait, FindResourceExW, CreateEventW, RegisterWaitForSingleObject, LoadResource, LockResource, SizeofResource, FindResourceW, WriteFile, FlushFileBuffers, CreateFileW, GetFileSize, SetFilePointer, ReadFile, InterlockedDecrement, InterlockedIncrement, LoadLibraryExW, GetVersionExW, LocalFree, GetCurrentThread, GetCurrentProcess, GetComputerNameW, RaiseException, lstrlenW, lstrcpyW, Sleep, CloseHandle, DeleteCriticalSection, ResetEvent, QueueUserWorkItem, SetEvent, GetLastError, lstrcmpA, GetModuleFileNameW, GetSystemTimeAsFileTime, LoadLibraryW, FreeLibrary, GetSystemDirectoryW, GetProcAddress, InitializeCriticalSection, EnterCriticalSection, GetStartupInfoA, WaitForSingleObject, DeleteFileW, GetFileAttributesExW, GetFileType, SetHandleCount, IsValidCodePage, GetOEMCP, GetACP, CreateFileA, SetEndOfFile, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetConsoleMode, GetConsoleCP, GetCPInfo, GetStdHandle, VirtualFree, HeapCreate, GetModuleHandleA, ExitProcess, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, TlsFree, TlsSetValue, GetLocaleInfoA, GetStringTypeW, GetStringTypeA, LCMapStringW, CompareFileTime, DisableThreadLibraryCalls, GetModuleFileNameA, GetVersionExA, FindFirstFileW, FindClose, CreateDirectoryW, GetCurrentProcessId, ProcessIdToSessionId, SetLastError, GetComputerNameA, LeaveCriticalSection, LCMapStringA, InitializeCriticalSectionAndSpinCount, LoadLibraryA, QueryPerformanceCounter, GetEnvironmentStringsW, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RtlUnwind, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetCommandLineA, TlsGetValue, TlsAlloc, FreeEnvironmentStringsW
netapi32.dll
NetUserGetInfo, NetApiBufferFree
ole32.dll
OleRun, CoTaskMemAlloc, StringFromCLSID, CoTaskMemFree, CoCreateInstance, CoImpersonateClient, CoInitializeEx, StringFromGUID2, CoTaskMemRealloc, CoRevertToSelf, CoUninitialize, CLSIDFromProgID
rpcrt4.dll
RpcRevertToSelf, RpcImpersonateClient
shlwapi.dll
PathFileExistsW, PathAppendW, wnsprintfW
user32.dll
CharNextW, CharLowerBuffW
userenv.dll
UnloadUserProfile
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wintrust.dll
WinVerifyTrustEx
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer