Import table
advapi32.dll
RegCreateKeyW, GetTokenInformation, RegEnumValueW, RegOpenKeyExW, GetSecurityDescriptorSacl, SetSecurityInfo, EqualSid, RegEnumKeyW, RegCloseKey, RegDeleteValueW, RegSetValueExW, RegQueryValueExW, RegCreateKeyExW, OpenThreadToken, LookupAccountNameW, DuplicateTokenEx, SetKernelObjectSecurity, GetAce, GetSecurityInfo, InitializeAcl, AddAccessAllowedAce, LookupPrivilegeValueW, AdjustTokenPrivileges, OpenProcessToken, ConvertStringSidToSidW, MakeAbsoluteSD, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegOpenKeyW, CryptAcquireContextW, CryptGenRandom, CryptReleaseContext
gdi32.dll
GetPixel
kernel32.dll
FlushFileBuffers, GetSystemTime, SetFileAttributesW, TlsAlloc, TlsFree, TlsGetValue, LoadLibraryW, GetCommandLineW, GetLastError, GetVersionExW, WaitForMultipleObjects, CreateEventW, SetEvent, WaitForSingleObject, CloseHandle, InterlockedIncrement, InterlockedDecrement, SetLastError, Sleep, CreateFileW, GetTickCount, MoveFileExW, DeleteFileW, CopyFileW, SetFilePointer, SetEndOfFile, ReadFile, WriteFile, MoveFileW, GetFileAttributesW, SetCurrentDirectoryW, GetCurrentThreadId, RemoveDirectoryW, InterlockedCompareExchange, CreateSemaphoreW, ReleaseSemaphore, GetCurrentProcessId, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetModuleHandleW, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, TlsSetValue, GetExitCodeProcess, OpenProcess, InterlockedExchange, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, QueryPerformanceCounter, GetSystemTimeAsFileTime, LoadLibraryExW, MultiByteToWideChar, FindFirstFileW, GetProcessAffinityMask, FreeLibrary, GetModuleFileNameW, GetProcAddress, CreateFileMappingW, MapViewOfFile, UnmapViewOfFile, QueueUserWorkItem, LocalFree, GetThreadPriority, GetCurrentThread, SetThreadPriority, WaitNamedPipeW, GetCurrentDirectoryW, GetEnvironmentVariableW, VirtualAlloc, VirtualFree, OutputDebugStringW, SetEnvironmentVariableW, GetWindowsDirectoryW, GetTempPathW, CreateDirectoryW, QueryPerformanceFrequency, lstrlenA, lstrlenW, HeapCreate, HeapAlloc, HeapDestroy, WaitForSingleObjectEx, CreateMutexW, ReleaseMutex, GetLocalTime, ExitThread, CompareFileTime, QueueUserAPC, VirtualQuery, OpenFileMappingW, GlobalFree, GlobalAlloc, SystemTimeToFileTime, GlobalUnlock, GlobalLock, GlobalSize, GetPrivateProfileIntW, GetPrivateProfileStringW, GetProcessHeap, HeapFree, GetFileSizeEx, SetFilePointerEx, CompareStringW, CompareStringA, WideCharToMultiByte, FormatMessageW, DuplicateHandle, OpenEventW, SearchPathW, LocalAlloc, LoadLibraryA, RaiseException, FindClose, OpenThread, GetComputerNameW, GetVersion, GetShortPathNameW, TerminateProcess, GetFileSize, FindNextFileW
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ntdll.dll
ZwYieldExecution, ZwResetEvent, ZwQueryKey, ZwOpenEvent, RtlGetVersion, ZwQueryInformationProcess, ZwQuerySystemInformation, ZwCreateMutant, ZwOpenMutant, ZwSetInformationFile, ZwCreateFile, ZwClose, ZwQueryValueKey, ZwSetValueKey, ZwFlushBuffersFile, ZwWriteFile, ZwReadFile, RtlFormatCurrentUserKeyPath, ZwQueryInformationFile, ZwSetEvent, ZwOpenThread, ZwQueryInformationThread, ZwDelayExecution, ZwReleaseMutant, RtlInitUnicodeString, ZwCreateKey, ZwWaitForMultipleObjects, ZwQueryFullAttributesFile, ZwOpenKey, RtlFreeUnicodeString, ZwOpenFile, ZwCreateEvent, ZwWaitForSingleObject
ole32.dll
OleRun, CoCreateInstance, CoUninitialize, CoInitialize
shell32.dll
ShellExecuteExW, CommandLineToArgvW, SHGetSpecialFolderPathW, ShellExecuteW
shlwapi.dll
SHDeleteKeyW
user32.dll
GetWindowThreadProcessId, FindWindowW, ExitWindowsEx, CloseDesktop, CreateDesktopW, AllowSetForegroundWindow, FindWindowExW, SetThreadDesktop, GetThreadDesktop, GetWindowLongW, PostMessageW, EnumDesktopWindows, SendMessageW, wsprintfW, ReleaseDC, GetDC, GetWindowRect, GetDesktopWindow, CharUpperW, PeekMessageW, TranslateMessage, DispatchMessageW, MsgWaitForMultipleObjects, LoadStringW, CharLowerBuffW, MessageBoxW, RegisterWindowMessageW, CharLowerBuffA, CharUpperBuffA, CharUpperBuffW
wininet.dll
HttpSendRequestW, InternetCrackUrlW, InternetOpenW, InternetOpenUrlW, HttpOpenRequestW, InternetConnectW, InternetCloseHandle, InternetReadFile, InternetGetConnectedState
Export table
_CreateUpdClient@0
_GetISWPlugin@8
_IswDllCanUnloadNow@0
_IswLog_FlushThread@4
_IswUpdCallback@4
_TrustedDllEntry@4