Import table
advapi32.dll
RegDeleteKeyW, RegCreateKeyExW, LookupAccountSidW, IsValidSid, CopySid, CryptReleaseContext, CryptDestroyKey, CryptExportKey, CryptAcquireContextW, CryptImportKey, CryptEncrypt, CryptGenKey, CryptDecrypt, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, ChangeServiceConfig2W, ConvertSidToStringSidW, GetTokenInformation, GetLengthSid, DeleteService, ControlService, OpenServiceW, CloseServiceHandle, CreateServiceW, OpenSCManagerW, RegisterServiceCtrlHandlerW, DeregisterEventSource, ReportEventW, RegisterEventSourceW, SetServiceStatus, StartServiceCtrlDispatcherW, RegQueryValueExW, GetSecurityDescriptorLength, RegOpenCurrentUser, ImpersonateLoggedOnUser, RevertToSelf, RegEnumValueW, RegEnumKeyW, RegSetValueExW, RegCloseKey, RegQueryInfoKeyW, RegEnumKeyExW, RegOpenKeyExW, RegDeleteValueW
iphlpapi.dll
GetAdaptersInfo
kernel32.dll
InitializeCriticalSection, HeapFree, GetProcessHeap, HeapAlloc, CreateThread, CreateEventW, Sleep, GetCommandLineW, LocalFree, GetCurrentThreadId, InterlockedIncrement, InterlockedDecrement, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetModuleFileNameW, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, GetLastError, RaiseException, lstrcmpiW, GetModuleHandleW, GetProcAddress, lstrlenW, FreeLibrary, WaitForSingleObject, SetEvent, CloseHandle, CreateEventA, LoadLibraryA, GetStringTypeExW, GetTimeFormatA, WideCharToMultiByte, FormatMessageA, SetEnvironmentVariableA, CompareStringW, CreateFileW, FlushFileBuffers, WriteConsoleW, SetStdHandle, GetConsoleMode, GetConsoleCP, SetFilePointer, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, IsValidCodePage, GetOEMCP, GetACP, GetTimeZoneInformation, QueryPerformanceCounter, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetLocaleInfoW, lstrlenA, GetDateFormatA, GetCurrentProcessId, ProcessIdToSessionId, GetVersionExW, GetCurrentProcess, FormatMessageW, CreateToolhelp32Snapshot, Process32FirstW, Process32NextW, OpenProcess, LoadLibraryW, HeapDestroy, HeapReAlloc, HeapSize, InterlockedCompareExchange, InterlockedExchange, GetStringTypeW, EncodePointer, DecodePointer, GetSystemTimeAsFileTime, TlsAlloc, TlsFree, TlsGetValue, OpenEventA, ResetEvent, TlsSetValue, ResumeThread, GetTickCount, SystemTimeToFileTime, WaitForMultipleObjects, SetWaitableTimer, CreateWaitableTimerA, HeapSetInformation, GetStartupInfoW, RtlUnwind, LCMapStringW, GetCPInfo, ExitThread, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, IsProcessorFeaturePresent, HeapCreate, SetLastError, ExitProcess, WriteFile, GetStdHandle
netapi32.dll
NetApiBufferFree, NetUserGetInfo
ole32.dll
CoUninitialize, CoInitializeEx, CoRevokeClassObject, CoRegisterClassObject, CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoInitializeSecurity, CoAddRefServerProcess, CoReleaseServerProcess, StringFromGUID2, CoCreateInstance, CoResumeClassObjects
user32.dll
GetMessageW, CharNextW, LoadStringW, PostThreadMessageW, CharUpperW, TranslateMessage, DispatchMessageW, MessageBoxW
userenv.dll
LoadUserProfileW, UnloadUserProfile
wininet.dll
InternetConnectW, HttpSendRequestW, InternetSetOptionW, InternetOpenW, HttpQueryInfoW, HttpOpenRequestW, InternetCloseHandle, InternetReadFile
wtsapi32.dll
WTSEnumerateSessionsW, WTSWaitSystemEvent, WTSQuerySessionInformationW, WTSFreeMemory