Import table
advapi32.dll
SetSecurityDescriptorDacl, InitializeSecurityDescriptor, FreeSid, AllocateAndInitializeSid, GetTokenInformation, GetSecurityDescriptorDacl, RegEnumKeyExW, RegDeleteValueW, RegEnumValueW, RegEnumKeyW, RegDeleteKeyW, CreateProcessAsUserW, DuplicateTokenEx, OpenProcessToken, RegSetValueExW, RegQueryValueExW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegDeleteKeyA, OpenThreadToken, SetThreadToken, RevertToSelf
kernel32.dll
GetWindowsDirectoryW, GetShortPathNameW, DeleteFileW, GetVersionExW, GetCurrentThread, LocalAlloc, InitializeCriticalSection, ResetEvent, DuplicateHandle, WaitForMultipleObjects, TerminateThread, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, GetSystemTimeAsFileTime, LocalFree, SetEvent, GetModuleFileNameW, LoadLibraryExW, WriteFile, SetEndOfFile, SetFilePointer, QueryPerformanceCounter, SetUnhandledExceptionFilter, UnhandledExceptionFilter, InterlockedCompareExchange, InterlockedExchange, lstrcpynW, lstrlenW, GetFullPathNameW, GetFileAttributesW, SetLastError, MultiByteToWideChar, WideCharToMultiByte, GetCurrentProcess, FreeLibrary, GetProcAddress, LoadLibraryW, UnmapViewOfFile, TerminateProcess, WaitForSingleObject, GetTickCount, CreateProcessW, GetSystemDirectoryW, MapViewOfFile, GetLastError, GetCurrentProcessId, GetCurrentThreadId, OpenProcess, Sleep, FindClose, FindFirstFileW, DisableThreadLibraryCalls, SetThreadPriority, CreateEventW, CreateThread, lstrcpynA, lstrlenA, AreFileApisANSI, GetFullPathNameA, GetFileAttributesA, CloseHandle, CreateFileMappingW, IsProcessorFeaturePresent
msvcr110.dll
DllMain
msvcr80.dll
DllMain
shell32.dll
SHGetMalloc, SHGetSpecialFolderLocation, SHGetDesktopFolder, SHGetPathFromIDListW, SHGetPathFromIDListA
user32.dll
LoadStringW