Import table
advapi32.dll
TraceMessage, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, RegSetValueExW, RegDeleteValueW, RegCreateKeyExW, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, RegEnumKeyW, RegQueryInfoKeyW, CryptGenRandom, CryptAcquireContextW, CryptReleaseContext, GetSecurityInfo, AllocateAndInitializeSid, SetEntriesInAclW, SetSecurityInfo, FreeSid, GetSidLengthRequired, InitializeSid, GetSidSubAuthority, CheckTokenMembership, IsValidSid, GetLengthSid, CopySid, RegEnumKeyExW
cfgmgr32.dll
CM_Get_Parent, CM_Get_Device_IDW
crypt32.dll
CertVerifyCertificateChainPolicy, CertFreeCertificateChain, CertGetCertificateChain, CertGetNameStringW, CertFreeCertificateContext, CertDuplicateCertificateContext
dbghelp.dll
GetTimestampForLoadedLibrary
gdi32.dll
DeleteDC, GetObjectW, SelectObject, CreateCompatibleDC, CreateCompatibleBitmap, DeleteObject, CreateDIBSection, SetBitmapBits, GetBitmapBits, GetDeviceCaps, CreateFontIndirectW
hid.dll
HidD_GetFeature, HidD_SetFeature, HidD_FreePreparsedData, HidD_GetAttributes, HidD_GetPreparsedData, HidP_GetUsageValue, HidP_GetUsages, HidP_MaxUsageListLength, HidP_UsageListDifference, HidP_GetLinkCollectionNodes, HidD_GetHidGuid, HidP_GetCaps, HidD_SetNumInputBuffers, HidP_SetUsageValue, HidP_GetValueCaps, HidP_SetUsages, HidP_GetButtonCaps, HidP_UnsetUsages, HidP_GetSpecificButtonCaps, HidP_GetSpecificValueCaps
kernel32.dll
InterlockedCompareExchange, GetModuleHandleA, GetWindowsDirectoryW, GetVersionExW, MultiByteToWideChar, GetModuleHandleW, CreateFileW, SetLastError, WaitForMultipleObjects, CreateEventW, DeviceIoControl, GetStartupInfoW, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RaiseException, RtlUnwind, ExitThread, GetCurrentThreadId, CreateThread, Sleep, GetProcAddress, ExitProcess, WriteFile, GetStdHandle, GetModuleFileNameA, GetModuleFileNameW, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineW, SetHandleCount, GetFileType, GetStartupInfoA, DeleteCriticalSection, TlsGetValue, TlsAlloc, CloseHandle, TlsFree, InterlockedIncrement, InterlockedDecrement, HeapCreate, HeapDestroy, VirtualFree, HeapFree, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime, HeapAlloc, HeapSize, LeaveCriticalSection, EnterCriticalSection, FreeLibrary, InterlockedExchange, LoadLibraryA, InitializeCriticalSectionAndSpinCount, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, VirtualAlloc, HeapReAlloc, GetLocaleInfoW, GetLocaleInfoA, WideCharToMultiByte, SetFilePointer, GetConsoleCP, GetConsoleMode, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CreateFileA, FlushFileBuffers, CompareStringW, UnmapViewOfFile, SetEvent, ReleaseMutex, WaitForSingleObject, CreateProcessW, DuplicateHandle, CreateMutexW, MapViewOfFile, CreateFileMappingW, ExpandEnvironmentStringsW, lstrlenW, FormatMessageW, ReadFile, FindClose, FindFirstFileW, LoadLibraryW, GetFullPathNameW, lstrcmpW, InitializeCriticalSection, SystemTimeToFileTime, GetSystemTime, lstrlenA, SetProcessWorkingSetSize, FindNextFileW, DeleteFileW, GetDriveTypeW, GetLongPathNameW, GetTempPathW, GetUserDefaultUILanguage, HeapSetInformation, GetProcessHeaps, WTSGetActiveConsoleSessionId, ProcessIdToSessionId, ResetEvent, GetSystemDirectoryW, LocalFree, GetProcessHeap, SizeofResource, LockResource, LoadResource, FindResourceW, SetWaitableTimer, CreateWaitableTimerW, ReadFileEx, SleepEx, GetOverlappedResult, MulDiv, GlobalFree, GlobalUnlock, GlobalLock, GlobalAlloc, OpenProcess, QueryDosDeviceW, lstrcmpiW, QueryPerformanceFrequency, GetLastError, TlsSetValue, lstrcpynW, GetSystemDefaultLangID, GetThreadLocale, GetVersionExA, FreeEnvironmentStringsA, GetEnvironmentStrings, GetCommandLineA, SetEndOfFile, LocalFileTimeToFileTime, SetFileAttributesW, GetFileSize, IsBadWritePtr, RemoveDirectoryW, GetDiskFreeSpaceExW, InitializeCriticalSectionEx, InterlockedPushEntrySList, InterlockedPopEntrySList, InitializeSListHead, DosDateTimeToFileTime, SetFileTime, GetExitCodeProcess, FlushInstructionCache, EncodePointer, DecodePointer, GetTickCount64, IsProcessorFeaturePresent, GetCurrentThread, GetModuleHandleExW, RegisterApplicationRestart, VerSetConditionMask, VerifyVersionInfoW, CreateDirectoryW, SearchPathW, GetFileAttributesW
msimg32.dll
AlphaBlend
msvcp110.dll
DllMain
msvcr110.dll
DllMain
ole32.dll
CoInitialize, CoCreateInstance, CoUninitialize, CoCreateGuid, CreateStreamOnHGlobal, StringFromGUID2
psapi.dll
EnumProcessModules, GetModuleFileNameExW
setupapi.dll
SetupDiOpenDeviceInfoW, SetupDiOpenDevRegKey, SetupDiGetDeviceInstanceIdW, SetupDiGetClassDevsW, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceRegistryPropertyW, SetupDiDeleteDeviceInterfaceData, CM_Get_Device_IDW, SetupDiEnumDeviceInfo, CM_Get_Parent, SetupDiGetDeviceInterfaceDetailW, CM_Locate_DevNodeW, SetupDiEnumDeviceInterfaces, CM_Get_Device_ID_Size, SetupDiCreateDeviceInfoList, SetupDiOpenDeviceInterfaceW
shell32.dll
Shell_NotifyIconW, SHCreateDirectoryExW, SHGetFolderPathW, ShellExecuteExW, ShellExecuteW, SHGetSpecialFolderPathW, SHFileOperationW, ExtractIconExW
shlwapi.dll
PathRemoveBackslashW, PathRemoveExtensionW, PathRemoveFileSpecW, PathAddBackslashW, PathStripPathW, PathIsFileSpecW, SHDeleteKeyW, SHCopyKeyW, PathFindFileNameW, PathFileExistsW, PathMatchSpecW, PathGetArgsW, PathRemoveArgsW, PathIsURLW, PathStripToRootW, PathAppendW, PathIsRelativeW
sqmapi.dll
SqmStartUpload, SqmWaitForUploadComplete, SqmStartSession, SqmEndSession, SqmSetUserId, SqmWriteSharedUserId, SqmReadSharedUserId, SqmSetMachineId, SqmWriteSharedMachineId, SqmCreateNewId, SqmReadSharedMachineId, SqmSetAppVersion, SqmSetAppId, SqmIncrement, SqmAddToStreamDWord, SqmSetBool, SqmSet, SqmAddToStreamString, SqmGetSession
user32.dll
FindWindowExW, EnumWindows, RegisterShellHookWindow, GetShellWindow, GetDesktopWindow, WindowFromPoint, DeregisterShellHookWindow, RegisterRawInputDevices, GetRawInputDeviceInfoW, GetRawInputDeviceList, GetParent, MessageBoxW, OpenInputDesktop, DestroyWindow, CloseDesktop, IsWindow, RemovePropW, RegisterClassW, GetPropW, GetDC, ReleaseDC, LoadStringW, LoadImageW, GetWindowRect, GetSystemMetrics, SetWindowTextW, MsgWaitForMultipleObjectsEx, PeekMessageW, TranslateMessage, DispatchMessageW, KillTimer, SystemParametersInfoW, SetTimer, PostQuitMessage, SendMessageW, LoadCursorW, CreateWindowExW, UnregisterClassW, GetForegroundWindow, FindWindowW, SetPropW, DefWindowProcW, PostMessageW, GetClassInfoExW, RegisterClassExW, GetWindowTextW, GetWindowThreadProcessId, GetWindowLongW, GetClassNameW, GetAncestor, UpdateLayeredWindow, SetWindowPos, SetWindowLongW, GetCursorPos, IsIconic, PostThreadMessageW, RegisterWindowMessageW, GetRawInputData, MapWindowPoints, SetFocus, SendDlgItemMessageW, DialogBoxParamW, BringWindowToTop, GetMonitorInfoW, MonitorFromWindow, GetClientRect, InvalidateRect, SetForegroundWindow, IsWindowEnabled, mouse_event, IsWindowVisible, ShowWindow, GetWindow, GetLastActivePopup, EndDialog, GetDlgItem, SendInput, MapVirtualKeyW
userenv.dll
UnloadUserProfile
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
wer.dll
WerReportCloseHandle, WerReportAddDump, WerReportSubmit, WerReportSetUIOption, WerReportAddFile, WerReportCreate, WerReportSetParameter
wininet.dll
HttpQueryInfoW, HttpSendRequestW, HttpOpenRequestW, InternetCrackUrlW, InternetOpenW, InternetCloseHandle, InternetConnectW, InternetReadFile
wintrust.dll
WTHelperProvDataFromStateData, WTHelperGetProvCertFromChain, WTHelperGetProvSignerFromChain, WinVerifyTrust
ws2_32.dll
WSALookupServiceBeginW, WSALookupServiceEnd, WSALookupServiceNextW
wtsapi32.dll
WTSRegisterSessionNotification, WTSUnRegisterSessionNotification, WTSFreeMemory, WTSQuerySessionInformationW