Import table
advapi32.dll
SetKernelObjectSecurity, RegEnumValueA, RegCreateKeyExA, RegEnumKeyExA, RegDeleteKeyA, RegSetValueExA, RegDeleteValueA, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, InitializeSecurityDescriptor, FreeSid, GetSecurityDescriptorDacl, SetSecurityInfo, InitializeAcl, AddAccessAllowedAce, SetSecurityDescriptorDacl, CloseServiceHandle, QueryServiceStatus, ControlService, OpenServiceA, OpenSCManagerA, StartServiceA, IsValidSid, GetLengthSid, GetAce, AllocateAndInitializeSid
kernel32.dll
FormatMessageA, WideCharToMultiByte, MultiByteToWideChar, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, DeleteFileA, GetWindowsDirectoryA, GetCurrentThreadId, WriteFile, SetFilePointer, GetFileSize, CreateFileA, GetCurrentProcessId, GetLocalTime, SetLastError, ExpandEnvironmentStringsA, GetCurrentProcess, GetVersionExA, GetExitCodeProcess, WaitForSingleObject, SetPriorityClass, CreateProcessA, SetThreadPriority, SetEvent, ResetEvent, CreateEventA, OpenEventA, ReleaseMutex, CreateMutexA, GetComputerNameA, DisconnectNamedPipe, FlushFileBuffers, WaitForMultipleObjects, GetOverlappedResult, ReadFile, ConnectNamedPipe, CreateNamedPipeA, WaitNamedPipeA, InterlockedIncrement, InterlockedDecrement, InterlockedExchange, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RaiseException, RtlUnwind, HeapFree, HeapAlloc, GetProcessHeap, GetStartupInfoA, ExitThread, CreateThread, LCMapStringA, LCMapStringW, GetCPInfo, ExitProcess, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, HeapSize, GetACP, GetOEMCP, GetStdHandle, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, HeapDestroy, HeapCreate, VirtualFree, QueryPerformanceCounter, GetSystemTimeAsFileTime, VirtualAlloc, HeapReAlloc, GetConsoleCP, GetConsoleMode, GetLocaleInfoA, GetStringTypeA, GetStringTypeW, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetStdHandle, GetLocaleInfoW, CreateFileW, SetEndOfFile, GetCommandLineA, TerminateThread, CloseHandle, GetModuleFileNameA, GetSystemDirectoryA, GetTickCount, Sleep, GetModuleHandleA, LoadLibraryA, GetProcAddress, GetLastError, FreeLibrary
user32.dll
FindWindowA, SendMessageA
winspool.drv
DeleteMonitorA