Import table
advapi32.dll
GetSecurityDescriptorDacl, InitializeSecurityDescriptor, FreeSid, AllocateAndInitializeSid, GetTokenInformation, RegEnumKeyExW, SetSecurityDescriptorDacl, RegDeleteValueW, RegEnumValueW, RegEnumKeyW, RegDeleteKeyW, CreateProcessAsUserW, DuplicateTokenEx, OpenProcessToken
kernel32.dll
DeleteFileW, LocalFree, GetVersionExW, GetCurrentThread, LocalAlloc, EnterCriticalSection, LeaveCriticalSection, GetSystemTimeAsFileTime, SetThreadPriority, SetEvent, InitializeCriticalSection, ResetEvent, DuplicateHandle, WaitForMultipleObjects, GetShortPathNameW, DeleteCriticalSection, GetModuleFileNameW, LoadLibraryExW, WriteFile, SetEndOfFile, SetFilePointer, QueryPerformanceCounter, SetUnhandledExceptionFilter, UnhandledExceptionFilter, InterlockedCompareExchange, InterlockedExchange, GetWindowsDirectoryW, lstrcpynW, lstrlenW, GetFullPathNameW, GetFileAttributesW, SetLastError, MultiByteToWideChar, WideCharToMultiByte, FindClose, GetCurrentProcess, FindFirstFileW, FreeLibrary, GetProcAddress, LoadLibraryW, UnmapViewOfFile, TerminateProcess, WaitForSingleObject, GetTickCount, CreateProcessW, GetSystemDirectoryW, MapViewOfFile, GetLastError, GetCurrentProcessId, GetCurrentThreadId, OpenProcess, Sleep, DisableThreadLibraryCalls, TerminateThread
msvcr80.dll
DllMain
shell32.dll
SHGetMalloc, SHGetSpecialFolderLocation, SHGetDesktopFolder
user32.dll
LoadStringW