Import table
advapi32.dll
OpenProcessToken, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetNamedSecurityInfoW, EncryptFileW, SetFileSecurityW, RegQueryValueExW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegEnumKeyExW, RegQueryInfoKeyW, RegEnumValueW, GetTokenInformation, LookupAccountSidW, ConvertSidToStringSidW, DuplicateTokenEx, ConvertStringSidToSidW, SetTokenInformation, GetLengthSid, CreateProcessAsUserW, GetSecurityDescriptorSacl, ConvertStringSecurityDescriptorToSecurityDescriptorA, SetNamedSecurityInfoW
gdi32.dll
GetDIBits, GetObjectW, GetCurrentObject, DeleteDC, CreateCompatibleDC, DeleteObject, SelectObject, GetDeviceCaps
kernel32.dll
GetProcessTimes, GetStringTypeExA, LoadLibraryExW, GetNumberFormatW, GetLocaleInfoW, GetUserDefaultLCID, CancelIo, ReadDirectoryChangesW, OpenThread, TryEnterCriticalSection, ReleaseMutex, CreateMutexW, SetThreadExecutionState, GetModuleHandleW, SetProcessWorkingSetSize, AssignProcessToJobObject, SetInformationJobObject, CreateJobObjectW, LocalAlloc, LoadLibraryA, GetTempPathW, GetLongPathNameW, GetModuleFileNameW, VirtualQuery, TerminateThread, GetLastError, GetVersionExW, SetErrorMode, lstrlenW, CloseHandle, FindClose, SleepEx, WaitForSingleObject, QueueUserAPC, GetLogicalDriveStringsW, lstrcpynW, ExpandEnvironmentStringsW, GetShortPathNameW, CreateProcessW, ResumeThread, GetExitCodeProcess, TerminateProcess, DeleteFileW, LoadLibraryW, GetProcAddress, FreeLibrary, FileTimeToSystemTime, GetSystemTime, FindFirstFileW, lstrcmpW, lstrcmpiW, FindNextFileW, GetCurrentThreadId, GetCurrentProcessId, RaiseException, UnmapViewOfFile, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, MultiByteToWideChar, FindResourceW, SizeofResource, LockResource, LoadResource, FindResourceExW, CreateFileW, CreateFileMappingW, MapViewOfFile, SetWaitableTimer, CancelWaitableTimer, SetEvent, CreateEventW, GetCurrentProcess, DuplicateHandle, GetCurrentThread, CreateWaitableTimerW, CreateThread, SetThreadPriority, Sleep, InterlockedExchangeAdd, SetFilePointer, ReadFile, SetEndOfFile, WriteFile, lstrlenA, DeleteCriticalSection, InitializeCriticalSection, GetFileSize, SetUnhandledExceptionFilter, GetStringTypeExW, GetTickCount, InterlockedIncrement, InterlockedDecrement, HeapAlloc, HeapFree, GetProcessHeap, HeapReAlloc, ExitProcess, GetCommandLineW, GetStartupInfoA, GetModuleHandleA, GetVersionExA, EnterCriticalSection, LeaveCriticalSection, HeapDestroy, HeapSize, WideCharToMultiByte, QueryPerformanceFrequency, QueryPerformanceCounter, SetLastError, OpenProcess, ReadProcessMemory, OutputDebugStringW, CreateDirectoryW, FlushFileBuffers, InterlockedCompareExchange, GetOverlappedResult, GetFileAttributesExW, GetFileTime, GetSystemTimeAsFileTime, SetFileTime, CompareFileTime, GetFileAttributesW, DeviceIoControl, GetSystemInfo, GetEnvironmentVariableW, SetFileAttributesW, LocalFree, RemoveDirectoryW, GetDriveTypeW, GetDiskFreeSpaceExW, QueryDosDeviceW, ResetEvent, SystemTimeToFileTime, lstrcmpA, RtlUnwind, GlobalUnlock, GlobalLock, GlobalAlloc, GlobalFree, GetComputerNameW, GetProcessWorkingSetSize
ole32.dll
CoInitialize, CoUninitialize, CoFreeUnusedLibraries, CoTaskMemAlloc, PropVariantClear, CoInitializeEx, CoCreateInstance, CLSIDFromString, CreateBindCtx, CoTaskMemFree
psapi.dll
GetProcessMemoryInfo
query.dll
LoadIFilter
shell32.dll
SHGetSpecialFolderLocation, SHBindToParent, SHGetSpecialFolderPathW, SHGetDesktopFolder
shlwapi.dll
StrChrW, StrStrIA, StrRetToStrW
user32.dll
SetWindowLongW, wsprintfW, wvsprintfW, DestroyWindow, PostQuitMessage, DefWindowProcW, CreateWindowExW, UpdateWindow, MsgWaitForMultipleObjectsEx, PostMessageW, PeekMessageW, TranslateMessage, DispatchMessageW, GetDC, ReleaseDC, GetMessageW, CharLowerW, CharUpperW, IsCharAlphaW, wvsprintfA, FindWindowExW, SendMessageTimeoutW, SendMessageW, FindWindowW, PostThreadMessageW, CharNextA, GetLastInputInfo, RegisterClassExW, CloseClipboard, SetClipboardData, OpenClipboard, IsWindow, EmptyClipboard, MessageBoxW