Import table
advapi32.dll
IsValidSid, GetAce, SetKernelObjectSecurity, GetSecurityDescriptorDacl, SetSecurityInfo, AllocateAndInitializeSid, FreeSid, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegEnumValueA, RegCreateKeyExA, RegDeleteKeyA, RegSetValueExA, RegDeleteValueA, RegQueryValueExA, RegOpenKeyExA, RegEnumKeyExA, RegCloseKey, AddAccessAllowedAce, InitializeAcl, GetLengthSid
kernel32.dll
GetCurrentThreadId, GetTickCount, WriteFile, SetFilePointer, GetFileSize, GetCurrentProcessId, WideCharToMultiByte, SetLastError, ReleaseMutex, WaitForSingleObject, CreateMutexA, GetCurrentProcess, GetProcAddress, GetModuleHandleA, GetVersionExA, InterlockedDecrement, InterlockedIncrement, GetLocaleInfoA, RtlUnwind, RaiseException, ExitProcess, TlsSetValue, GetCommandLineA, HeapAlloc, GetCPInfo, HeapFree, HeapReAlloc, LCMapStringA, LCMapStringW, GetTimeFormatA, GetDateFormatA, CompareStringA, CompareStringW, GetStringTypeA, GetWindowsDirectoryA, TlsFree, TlsGetValue, TlsAlloc, SetUnhandledExceptionFilter, TerminateProcess, HeapSize, QueryPerformanceCounter, GetSystemTimeAsFileTime, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapDestroy, HeapCreate, VirtualFree, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, FlushFileBuffers, GetACP, GetOEMCP, IsBadWritePtr, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, IsBadReadPtr, IsBadCodePtr, GetTimeZoneInformation, LoadLibraryA, SetStdHandle, ReadFile, GetLocaleInfoW, SetEndOfFile, SetEnvironmentVariableA, DeleteFileA, FormatMessageA, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, CreateFileA, CloseHandle, lstrcpyA, lstrcatA, MultiByteToWideChar, GetLastError, lstrcpynA, GetSystemDirectoryA, GetLocalTime, GetModuleFileNameA, GetStringTypeW, DisableThreadLibraryCalls
Export table
GetCommandManager
GetPacketManager
InterpreterInitialize
InterpreterUninitialize