Import table
advapi32.dll
RegCloseKey, RegCreateKeyExW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegOpenKeyExW, RegQueryValueExW, LookupAccountNameW, RegSetValueExW, ConvertSidToStringSidW, OpenProcessToken, GetTokenInformation, CredWriteW, RegQueryValueExA, RegOpenKeyExA, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, ReportEventW, RegisterEventSourceW, DeregisterEventSource, EventWrite, OpenThreadToken, ConvertStringSidToSidW, IsValidSid, GetSidSubAuthorityCount, GetSidSubAuthority, FreeSid, EqualSid, CreateWellKnownSid, SetServiceObjectSecurity, QueryServiceStatusEx, OpenServiceW, OpenSCManagerW, DeleteService, CreateServiceW, ControlService, CloseServiceHandle, ChangeServiceConfig2W, RegQueryInfoKeyW, RegNotifyChangeKeyValue, RegEnumValueW, RegEnumKeyExW, RegDeleteValueW, RegDeleteKeyW, CreateProcessAsUserW, RegQueryValueW, RegGetValueW, RegSetKeySecurity, EnumDependentServicesW, AllocateAndInitializeSid, LookupPrivilegeValueW, AdjustTokenPrivileges
c2rui.dll
ShowStreamingCompleteToast, DestroyProgressAgent, ShowProtoHandlerInstalledUI, ShowFeatureBlockStreamingUI, ShowUpdatesInProgressProgressAgent, ShowUpdatesReadyToApplyDialog, ShowErrorBagUI, DestroyErrorBagUI, ShowRetryUI, ShowProgressUI, DestroyProgressUI, ShowProgressAgent, ShowUninstallDialog, ShowDisconnectedToast, ShowPackageLockedDialog, ShowUpdatesCompleteProgressAgent, ShowRepairDialog, CloseC2RUI, ShowDuringProcessShutDownDialog, ShowLessAggressiveProcessKillerDialog, ShowProcessKillerFailureDialog, ShowProcessKillerDialog, GetString, ShowErrorDialog, ShowRepairTypePickerDialog, ShowPartialRepairDialog, ShowProgressAgentDialog, ShowProgressAgentInstallationBlocked, ShowUpdatesAreLateProgressAgent, ShowAppNoHangUI, ConfirmOnlineRepairDialog
gdi32.dll
AddFontResourceW, SelectObject, EnumFontFamiliesExW, GetFontData, CreateFontIndirectW, DeleteObject
iphlpapi.dll
FreeMibTable, CreateSortedAddressPairs
kernel32.dll
GetFileType, CreateFileW, GetExitCodeThread, GetCurrentThreadId, WTSGetActiveConsoleSessionId, ProcessIdToSessionId, GetCurrentThread, OpenMutexW, GetSystemDefaultLCID, WaitForMultipleObjects, GetTimeZoneInformation, SystemTimeToTzSpecificLocalTime, LoadLibraryExW, FreeLibrary, GetNativeSystemInfo, GetVersionExW, GetSystemTimeAsFileTime, SetErrorMode, GetDiskFreeSpaceExW, CopyFileW, GetFileTime, CompareFileTime, LoadLibraryW, LoadLibraryA, GetModuleHandleA, GetVersion, OutputDebugStringA, GetFileAttributesW, LocalFree, GetTempPathW, SetFilePointerEx, ReadFile, GetFileSizeEx, K32GetModuleFileNameExW, K32EnumProcessModules, K32EnumProcesses, GetProcAddress, GetModuleHandleW, GetProcessId, GetPriorityClass, CreateProcessW, GetExitCodeProcess, GetLastError, InitializeCriticalSectionEx, DeleteCriticalSection, GetCurrentProcess, GetTempPathA, DeleteFileA, CompareStringEx, CreateDirectoryW, GetFileAttributesExW, SetLastError, WideCharToMultiByte, GetSystemDirectoryW, GetTempFileNameW, MoveFileExW, lstrcmpW, FindNextFileW, FindFirstFileW, WaitForSingleObjectEx, MultiByteToWideChar, FindClose, RaiseException, ExpandEnvironmentStringsA, LoadLibraryExA, FindResourceW, SizeofResource, LockResource, LoadResource, LocaleNameToLCID, CreateThread, OpenEventW, ResetEvent, IsProcessorFeaturePresent, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, DecodePointer, EncodePointer, GetStartupInfoW, InterlockedCompareExchange, InterlockedExchange, HeapFree, HeapAlloc, WerRegisterMemoryBlock, VirtualProtect, HeapSetInformation, GetProcessHeap, QueryPerformanceCounter, FormatMessageW, LeaveCriticalSection, EnterCriticalSection, WriteFile, LocalAlloc, IsWow64Process, RemoveDirectoryW, FindFirstFileExW, ExpandEnvironmentStringsW, GetWindowsDirectoryW, CloseHandle, SetEvent, WaitForSingleObject, CreateEventExW, ReleaseMutex, CreateMutexW, GetTickCount64, GlobalFree, OpenProcess, ExitProcess, TerminateProcess, SystemTimeToFileTime, GetSystemTime, Sleep, SetFileAttributesW, DeleteFileW, SetCurrentDirectoryW, GetModuleFileNameW, GetTickCount, OpenThread, GetCurrentProcessId, K32EnumProcessModulesEx, lstrlenW, CreateSemaphoreW, ReleaseSemaphore, SetEndOfFile, HeapReAlloc, GetFileSize, GetTimeFormatW, GetDateFormatW, FileTimeToSystemTime, lstrcmpiW, GetShortPathNameW, GetSystemPowerStatus, GetUserGeoID
msvcp100.dll
DllMain
msvcr100.dll
DllMain
ole32.dll
CoInitializeEx, StringFromGUID2, CoTaskMemFree, CoCreateInstance, StringFromIID, IIDFromString, CLSIDFromString, CoUninitialize, CoCreateGuid, ProgIDFromCLSID, CLSIDFromProgID
rpcrt4.dll
RpcStringBindingComposeW, RpcBindingFromStringBindingW, RpcBindingFree, NdrServerCall2, RpcServerListen, RpcServerRegisterIf2, RpcServerUnregisterIf, RpcServerUseProtseqEpW, RpcMgmtStopServerListening, RpcMgmtWaitServerListen, RpcImpersonateClient, RpcStringFreeW, RpcBindingInqAuthClientW, RpcRevertToSelf, NdrClientCall2, RpcMgmtIsServerListening, RpcBindingSetAuthInfoW, RpcServerRegisterAuthInfoW
rstrtmgr.dll
RmEndSession, RmRegisterResources, RmGetList, RmShutdown, RmRestart, RmStartSession, RmAddFilter
setupapi.dll
SetupIterateCabinetW
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wer.dll
WerReportSetParameter, WerReportAddFile, WerReportSubmit, WerReportCloseHandle, WerReportCreate
wevtapi.dll
EvtExportLog
wintrust.dll
WinVerifyTrust
ws2_32.dll
FreeAddrInfoW, GetAddrInfoW
wtsapi32.dll
WTSFreeMemory, WTSSendMessageW, WTSEnumerateSessionsW