Import table
advapi32.dll
EqualSid, RegEnumValueW, RegCloseKey, RegDeleteValueW, OpenProcessToken, AdjustTokenPrivileges, LookupPrivilegeValueW, AddAccessAllowedAce, InitializeAcl, GetSecurityInfo, GetAce, SetKernelObjectSecurity, GetTokenInformation, DuplicateTokenEx, LookupAccountNameW, OpenThreadToken, CryptAcquireContextW, SetSecurityInfo, GetSecurityDescriptorSacl, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, MakeAbsoluteSD, ConvertStringSidToSidW, CryptReleaseContext, CryptGenRandom, RegSetValueExW, RegCreateKeyExW, RegOpenKeyExW, RegQueryValueExW
gdi32.dll
GetPixel, DeleteObject
iswul.dll
_IswIpcConnect@4
kernel32.dll
SetLastError, CreateFileW, GetCurrentProcessId, WaitForSingleObject, GetLastError, InterlockedCompareExchange, FreeLibraryAndExitThread, GetModuleFileNameW, LoadLibraryW, CreateSemaphoreW, CreateThread, ReleaseSemaphore, GetFileAttributesW, GetTickCount, GetFileSize, GetThreadPriority, GetCurrentThread, SetThreadPriority, VirtualProtect, GetProcAddress, GetModuleHandleW, HeapDestroy, HeapCreate, HeapAlloc, VirtualAlloc, HeapFree, VirtualFree, SwitchToThread, DeleteFileW, Sleep, CreateDirectoryW, WriteFile, SetFileAttributesW, CloseHandle, GetCurrentThreadId, FlushFileBuffers, GlobalSize, GlobalLock, GlobalUnlock, GlobalDeleteAtom, GetSystemTimeAsFileTime, IsDebuggerPresent, GetExitCodeThread, GlobalFree, OpenFileMappingW, VirtualQuery, GetComputerNameW, GetVersion, ExitThread, GetCommandLineW, GetLocalTime, WaitForSingleObjectEx, SetEndOfFile, GetFileSizeEx, SystemTimeToFileTime, QueueUserAPC, SetFilePointerEx, CompareFileTime, QueryPerformanceCounter, QueryPerformanceFrequency, LocalAlloc, LoadLibraryA, RaiseException, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetSystemTime, GetVersionExW, GetPrivateProfileIntW, GetPrivateProfileStringW, LocalFree, OpenProcess, OpenEventW, ResetEvent, GlobalAddAtomW, FindClose, FreeLibrary, FindFirstFileW, GetEnvironmentStringsW, SetEnvironmentVariableW, GetWindowsDirectoryW, GetTempPathW, GetEnvironmentVariableW, FindNextFileW, RemoveDirectoryW, ReadFile, GetShortPathNameW, MultiByteToWideChar, CompareStringW, CompareStringA, OpenThread, GetProcessAffinityMask, GetCurrentProcess, TlsAlloc, TlsFree, TlsGetValue, TlsSetValue, OutputDebugStringW, LoadLibraryExW, ReadProcessMemory, CreateFileMappingW, MapViewOfFile, InterlockedExchange, UnmapViewOfFile, DuplicateHandle, InitializeCriticalSection, EnterCriticalSection, LeaveCriticalSection, DeleteCriticalSection, QueueUserWorkItem, CopyFileW, GetCurrentDirectoryW, CreateMutexW, ReleaseMutex, InterlockedIncrement, InterlockedDecrement, SearchPathW, MoveFileExW, FindResourceW, LoadResource, LockResource, SizeofResource, SetEvent, CreateEventW, WideCharToMultiByte, GlobalAlloc
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ntdll.dll
ZwCreateMutant, ZwOpenMutant, ZwWriteFile, RtlFormatCurrentUserKeyPath, ZwReadFile, ZwReleaseMutant, ZwCreateKey, ZwQueryVirtualMemory, ZwWaitForMultipleObjects, ZwQueryFullAttributesFile, ZwOpenKey, RtlFreeUnicodeString, ZwCreateFile, ZwOpenFile, ZwQueryInformationFile, ZwQueryValueKey, ZwReadVirtualMemory, RtlGetVersion, ZwResetEvent, ZwQueryInformationProcess, ZwYieldExecution, ZwClose, ZwFlushBuffersFile, ZwCreateEvent, ZwWaitForSingleObject, ZwDelayExecution, ZwOpenThread, ZwQueryKey, ZwQueryInformationThread, RtlReleasePebLock, RtlInitUnicodeString, ZwSetInformationFile, wcschr, sscanf, atoi, _stricmp, ZwSetValueKey, RtlAcquirePebLock, isalpha, _wcsicmp, RtlUnwind, _memicmp, ZwSetEvent, memcpy, memset, _allmul, _chkstk, _fltused, floor, wcsncpy
ole32.dll
CoInitialize, CoUninitialize
shell32.dll
CommandLineToArgvW, SHGetSpecialFolderPathW, ShellExecuteExW, ExtractAssociatedIconW
user32.dll
wsprintfW, SendMessageW, CallNextHookEx, SetWindowsHookExW, ReleaseDC, GetDC, GetWindowRect, SetWindowLongW, CreateWindowExW, RegisterClassW, PostMessageW, UnhookWindowsHookEx, FreeDDElParam, UnpackDDElParam, DefWindowProcW, GetWindowLongW, IsWindow, PostThreadMessageW, DestroyWindow, GetClassNameW, EnumThreadWindows, GetQueueStatus, GetMessageW, GetWindowThreadProcessId, FindWindowW, CharUpperBuffW, CharUpperBuffA, AllowSetForegroundWindow, SendMessageTimeoutW, CharUpperW, PeekMessageW, TranslateMessage, DispatchMessageW, MsgWaitForMultipleObjects, LoadStringW, FindWindowExW, GetDesktopWindow, CloseDesktop, OpenDesktopW, GetThreadDesktop, SetThreadDesktop, OpenInputDesktop, GetUserObjectInformationW, RegisterWindowMessageW, CharLowerBuffW, MessageBoxW, CharLowerBuffA, GetWindowTextW
ws2_32.dll
WSARecv, WSASend, WSASendTo, WSASendDisconnect, getaddrinfo, freeaddrinfo
Export table
_AfterVirtualized@0
_CreateFileSaveClient@0
_GetISWPlugin@8
_IswDllCanUnloadNow@0
_IswLog_FlushThread@4