Import table
advapi32.dll
RegDeleteKeyA, RegDeleteValueA, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegEnumKeyExA, RegSetValueExA, RegCreateKeyExA, RegEnumValueA, FreeSid, AllocateAndInitializeSid, GetAce, SetKernelObjectSecurity, GetSecurityDescriptorDacl, SetSecurityInfo, InitializeAcl, AddAccessAllowedAce, ControlService, CloseServiceHandle, OpenServiceA, OpenSCManagerA, StartServiceA, IsValidSid, GetLengthSid
kernel32.dll
GetCommandLineA, GetCurrentProcess, SetPriorityClass, GetTickCount, FormatMessageA, WideCharToMultiByte, MultiByteToWideChar, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, DeleteFileA, GetWindowsDirectoryA, GetCurrentThreadId, WriteFile, SetFilePointer, GetFileSize, CreateFileA, GetCurrentProcessId, GetLocalTime, WaitForSingleObject, SetEvent, ResetEvent, CreateEventA, OpenEventA, SetThreadPriority, GetModuleFileNameA, SetLastError, GetVersionExA, GetExitCodeProcess, CreateProcessA, ReleaseMutex, CreateMutexA, lstrcpynA, lstrcatA, lstrcpyA, InterlockedIncrement, InterlockedDecrement, TerminateThread, RaiseException, RtlUnwind, ExitProcess, GetStartupInfoA, ExitThread, TlsSetValue, TlsGetValue, CreateThread, HeapAlloc, HeapFree, GetCPInfo, HeapReAlloc, LCMapStringA, LCMapStringW, GetTimeFormatA, GetDateFormatA, CompareStringA, CompareStringW, GetStringTypeA, GetStringTypeW, SetUnhandledExceptionFilter, TlsFree, TlsAlloc, QueryPerformanceCounter, GetSystemTimeAsFileTime, TerminateProcess, HeapSize, GetStdHandle, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, HeapDestroy, HeapCreate, VirtualFree, GetACP, GetOEMCP, FlushFileBuffers, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, IsBadWritePtr, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, IsBadReadPtr, IsBadCodePtr, GetTimeZoneInformation, SetStdHandle, ReadFile, GetLocaleInfoW, SetEndOfFile, SetEnvironmentVariableA, CloseHandle, GetSystemDirectoryA, GetComputerNameA, Sleep, GetModuleHandleA, LoadLibraryA, GetProcAddress, GetLastError, GetLocaleInfoA, FreeLibrary
ole32.dll
CoReleaseServerProcess, CoAddRefServerProcess
user32.dll
FindWindowA, SendMessageA
winspool.drv
DeleteMonitorA