Import table
advapi32.dll
RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegQueryInfoKeyW, RegOverridePredefKey, RegEnumKeyExW, RevertToSelf, ImpersonateLoggedOnUser, OpenProcessToken, RegEnumValueW, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, EncryptFileW, GetNamedSecurityInfoW, SetFileSecurityW, AddAce, GetSidSubAuthority, InitializeSid, InitializeAcl, GetSidLengthRequired, SetNamedSecurityInfoW, GetTokenInformation, ConvertSidToStringSidW, LookupAccountSidW, RegQueryValueExW, CryptDestroyKey, CryptGenRandom, CryptDestroyHash, CryptCreateHash, CryptHashData, CryptDeriveKey, CryptSetHashParam, CryptGetHashParam, CryptAcquireContextW, CryptReleaseContext, DuplicateTokenEx, ConvertStringSidToSidW, SetTokenInformation, GetLengthSid, CreateProcessAsUserW, GetSecurityDescriptorSacl, ConvertStringSecurityDescriptorToSecurityDescriptorA
kernel32.dll
FormatMessageW, HeapAlloc, GetProcessHeap, GlobalUnlock, GlobalLock, lstrlenA, CancelWaitableTimer, SetWaitableTimer, QueueUserAPC, GetCurrentThread, CreateWaitableTimerW, ReleaseMutex, GlobalDeleteAtom, UnmapViewOfFile, MapViewOfFile, CreateFileMappingW, GetShortPathNameW, OpenFileMappingW, CreateMutexW, GetCommandLineW, DisableThreadLibraryCalls, GetTickCount, GlobalAddAtomW, GlobalFindAtomW, GlobalGetAtomNameW, OpenProcess, SetEvent, QueueUserWorkItem, FlushInstructionCache, GetCurrentProcess, MoveFileExW, SetFileAttributesW, GetFileAttributesW, DeleteFileW, ExpandEnvironmentStringsW, GetEnvironmentVariableW, GetStringTypeExW, WideCharToMultiByte, RemoveDirectoryW, WaitForMultipleObjectsEx, FindClose, FindNextFileW, FindFirstFileW, GetStringTypeW, FreeResource, ResumeThread, CreateProcessW, CreateDirectoryW, GetFileAttributesExW, ExitProcess, Sleep, InterlockedCompareExchange, GetProcAddress, LoadLibraryW, ReadProcessMemory, SetErrorMode, GetSystemTimeAsFileTime, SystemTimeToFileTime, FileTimeToSystemTime, LocalFree, LocalFileTimeToFileTime, GetLocalTime, TryEnterCriticalSection, ResetEvent, WaitForMultipleObjects, VirtualFree, VirtualProtect, VirtualAlloc, CreateThread, TerminateThread, GetExitCodeThread, VirtualQuery, GetLongPathNameW, GetComputerNameW, GetTempPathW, ExitThread, GetThreadLocale, GetLocaleInfoW, SetFilePointerEx, GetOverlappedResult, GetFileSizeEx, DeviceIoControl, GetDiskFreeSpaceExW, GetDriveTypeW, GetLogicalDriveStringsW, GlobalMemoryStatusEx, QueryPerformanceCounter, QueryPerformanceFrequency, GetFullPathNameW, HeapFree, HeapReAlloc, HeapSize, GetSystemInfo, RtlUnwind, GetACP, GetLocaleInfoA, GetVersionExA, HeapDestroy, LoadLibraryA, IsProcessorFeaturePresent, FlushFileBuffers, ReadFile, CreateFileW, GetFileSize, SetFilePointer, WriteFile, SetEndOfFile, SetLastError, GetCurrentThreadId, GetCurrentProcessId, lstrcmpW, lstrcpynW, GetModuleHandleW, LoadLibraryExW, FreeLibrary, CreateEventW, WaitForSingleObject, InterlockedDecrement, InterlockedIncrement, GetModuleFileNameW, MultiByteToWideChar, CloseHandle, lstrcmpiW, GetLastError, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, RaiseException, lstrlenW, InterlockedExchange, LocalAlloc, GetSystemTime, CompareStringA, OpenThread, GetNumberFormatW, GetUserDefaultLCID, GetFileTime, GetVersionExW, lstrcpyW, lstrcatW, SleepEx, GetTimeZoneInformation, SystemTimeToTzSpecificLocalTime, lstrcpynA, lstrcmpA, OutputDebugStringW, OpenEventW, GlobalFree, SetThreadPriority, GlobalAlloc, GetStringTypeExA
rpcrt4.dll
NdrStubForwardingFunction, NdrStubCall2, NdrOleAllocate, NdrOleFree, IUnknown_QueryInterface_Proxy, IUnknown_AddRef_Proxy, IUnknown_Release_Proxy, CStdStubBuffer_QueryInterface, CStdStubBuffer_AddRef, CStdStubBuffer_Connect, CStdStubBuffer_Disconnect, CStdStubBuffer_Invoke, CStdStubBuffer_IsIIDSupported, CStdStubBuffer_CountRefs, CStdStubBuffer_DebugServerQueryInterface, CStdStubBuffer_DebugServerRelease, NdrDllUnregisterProxy, NdrDllRegisterProxy, NdrCStdStubBuffer2_Release, NdrCStdStubBuffer_Release, NdrDllCanUnloadNow, NdrDllGetClassObject
user32.dll
GetWindowTextW, UnregisterClassA, GetActiveWindow, SendMessageTimeoutW, IsCharAlphaW, CharUpperBuffW, GetForegroundWindow, GetWindowThreadProcessId, CharLowerBuffW, CreateWindowExW, RegisterClassExW, DestroyWindow, GetClassInfoExW, PostMessageW, PeekMessageW, CallWindowProcW, GetWindowLongW, SetWindowLongW, DefWindowProcW, TranslateMessage, DispatchMessageW, SetTimer, KillTimer, PostQuitMessage, MsgWaitForMultipleObjectsEx, GetMessageW, PostThreadMessageW, LoadStringW, MessageBoxW, wvsprintfW, wsprintfW, FindWindowW, IsWindow, SendMessageW, CharNextW, GetClassNameW, CharUpperW, CharLowerW, LoadCursorW, GetDesktopWindow, CharLowerA, GetWindowInfo, CallNextHookEx, UnhookWindowsHookEx, SetWindowsHookExW, wvsprintfA, CharNextA, MsgWaitForMultipleObjects, FindWindowExW, EnumWindows, GetLastInputInfo, OpenClipboard, EmptyClipboard, SetClipboardData, CloseClipboard, UnregisterClassW
wininet.dll
InternetCloseHandle, InternetGetConnectedState, InternetGoOnlineW, InternetOpenW, InternetSetStatusCallbackW, InternetConnectW, HttpOpenRequestW, HttpSendRequestW, InternetQueryOptionW, InternetSetOptionW, HttpQueryInfoW, InternetErrorDlg, InternetGetCookieW, InternetQueryDataAvailable, InternetReadFile
Export table
DllCanUnloadNow
DllGetClassObject
DllNotifyCore
DllRegisterServer
DllUnregisterServer
MediumIlClassFactoryMainW
RegisterComponents