Import table
advapi32.dll
RegEnumKeyW, ConvertStringSidToSidW, LookupAccountNameW, ImpersonateSelf, GetLengthSid, InitializeAcl, AddAccessAllowedAce, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, IsValidSecurityDescriptor, AccessCheck, GetTokenInformation, LookupAccountSidW, DuplicateToken, LogonUserW, ImpersonateLoggedOnUser, OpenThreadToken, RevertToSelf, AllocateAndInitializeSid, SetEntriesInAclW, FreeSid, RegNotifyChangeKeyValue, RegEnumValueW, CryptVerifySignatureW, CryptCreateHash, CryptGetUserKey, CryptGenKey, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, CryptSetProvParam, CryptReleaseContext, CryptGetHashParam, CryptGetKeyParam, CryptImportKey, CryptGetProvParam, CryptAcquireContextW, OpenProcessToken, RegOpenKeyW, RegConnectRegistryW, ConvertSidToStringSidW, CryptDeriveKey, SetThreadToken, CryptGenRandom, CryptDecrypt, CryptEncrypt, CryptHashData, CryptDestroyHash, CryptDestroyKey, RegQueryValueExW, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW
kernel32.dll
GetSystemTime, CreateEventW, FileTimeToSystemTime, FileTimeToLocalFileTime, DeleteFileW, MoveFileW, GetCurrentProcess, TryEnterCriticalSection, CreateMutexW, TerminateThread, ResetEvent, LocalAlloc, WideCharToMultiByte, GetComputerNameW, SearchPathW, GetTickCount, WaitForMultipleObjectsEx, OpenProcess, GetCurrentProcessId, CreateThread, Sleep, FindNextFileW, SetFileAttributesW, FindFirstFileW, MoveFileExW, ExpandEnvironmentStringsW, GetSystemTimeAsFileTime, GetExitCodeThread, ReleaseMutex, WaitForMultipleObjects, QueryPerformanceCounter, ExitProcess, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, GetVersionExA, GetModuleHandleA, LockResource, GetCurrentThreadId, WaitForSingleObject, GetCurrentThread, SetThreadPriority, CloseHandle, lstrlenA, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, FreeLibrary, lstrcpynW, LoadLibraryExW, DisableThreadLibraryCalls, SetEvent, OutputDebugStringA, LoadLibraryW, SetLastError, GetModuleFileNameW, lstrcatW, lstrcmpiW, LocalFree, InterlockedDecrement, InterlockedIncrement, GetLastError, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, lstrcpyW, lstrlenW, GetVersionExW, GetThreadLocale, GetLocaleInfoA, GetACP, InterlockedExchange, GetVersion, GetFileAttributesW, GetProcAddress, GetModuleHandleW, FindResourceExW
msvcr70.dll
DllMain
netapi32.dll
NetApiBufferAllocate, NetLocalGroupAddMembers, NetUserModalsGet, DsEnumerateDomainTrustsW, NetGroupGetInfo, NetQueryDisplayInformation, NetUserDel, NetLocalGroupEnum, DsGetDcNameW, NetUserAdd, NetUserGetInfo, NetUserSetInfo, NetUserChangePassword, NetServerGetInfo, NetWkstaGetInfo, NetApiBufferFree
ole32.dll
CoTaskMemFree, CoTaskMemAlloc, CoTaskMemRealloc, StringFromGUID2, CoCreateInstance, CoUninitialize, CoInitializeEx, CoInitialize, CLSIDFromProgID, StringFromCLSID, CoCreateGuid, CoCreateFreeThreadedMarshaler, CLSIDFromString
shlwapi.dll
PathFindExtensionW
user32.dll
CharNextW, MsgWaitForMultipleObjects, TranslateMessage, MsgWaitForMultipleObjectsEx, PeekMessageW, DispatchMessageW, GetActiveWindow, CharLowerW, LoadStringW, CharLowerBuffW
userenv.dll
LoadUserProfileW, UnloadUserProfile
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
ItDac_CacheStatus
ItDac_Stub