Import table
advapi32.dll
ConvertSidToStringSidW, LookupAccountNameW, RegCreateKeyExA, RegDeleteValueA, RegSetValueExA, OpenProcessToken, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, RegEnumKeyExA, RegQueryValueExW, RegEnumKeyExW, RegSetValueExW, RegCreateKeyExW, RegDeleteValueW, RegDeleteKeyW, RegOpenKeyExW, RegQueryInfoKeyW, RegEnumValueW, RegQueryValueExA, RegOpenKeyExA, RegCloseKey
kernel32.dll
LoadResource, FindResourceW, LoadLibraryExW, GetModuleHandleW, ProcessIdToSessionId, GetCurrentProcessId, GetSystemDirectoryW, LocalFree, LocalAlloc, IsBadReadPtr, FindClose, FindNextFileW, FindFirstFileW, CloseHandle, GlobalFree, GlobalAlloc, GetCurrentProcess, GetFileAttributesW, ReleaseMutex, WaitForSingleObject, GetSystemDefaultLCID, SearchPathW, IsBadWritePtr, WriteFile, SetFilePointer, ReadFile, GetFileSize, CreateFileA, GetWindowsDirectoryA, GetShortPathNameW, GetPrivateProfileStringA, GetPrivateProfileStructA, WritePrivateProfileStringA, WritePrivateProfileStructA, CopyFileW, GetTempFileNameW, MoveFileExW, SizeofResource, DeleteFileW, RemoveDirectoryW, CreateMutexW, CreateDirectoryW, GetCurrentDirectoryW, CreateFileW, OutputDebugStringW, GetLocalTime, GetCurrentThreadId, SetThreadLocale, SetEvent, OpenEventW, IsBadStringPtrW, GlobalUnlock, GlobalLock, FlushFileBuffers, GetTempPathW, LockResource, HeapFree, GetProcessHeap, SystemTimeToFileTime, GetVersionExA, LoadLibraryA, GetSystemDirectoryA, lstrlenA, GetShortPathNameA, Module32Next, Module32First, CreateToolhelp32Snapshot, OpenProcess, FindFirstFileA, GetStringTypeW, GetStringTypeA, lstrcmpiW, InterlockedDecrement, InterlockedIncrement, DeleteCriticalSection, InitializeCriticalSection, RaiseException, lstrlenW, LeaveCriticalSection, EnterCriticalSection, GetModuleFileNameW, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, GetThreadLocale, GetLocaleInfoA, GetACP, MultiByteToWideChar, WideCharToMultiByte, GetLastError, SetFileAttributesW, LCMapStringW, LCMapStringA, GetSystemTimeAsFileTime, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetConsoleMode, GetConsoleCP, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, Sleep, GetModuleFileNameA, GetStdHandle, ExitProcess, VirtualFree, HeapCreate, SetLastError, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, IsValidCodePage, GetOEMCP, GetCPInfo, GetCommandLineA, VirtualQuery, GetSystemInfo, GetModuleHandleA, VirtualAlloc, VirtualProtect, RtlUnwind, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, HeapSize, HeapReAlloc, HeapAlloc, HeapDestroy, InterlockedExchange
ole32.dll
CoGetClassObject, CreateStreamOnHGlobal, StringFromCLSID, StringFromGUID2, CLSIDFromString, CoTaskMemRealloc, CoCreateFreeThreadedMarshaler, CoInitialize, CoCreateInstance, CoTaskMemFree, CoTaskMemAlloc, CoUninitialize
rpcrt4.dll
CStdStubBuffer_DebugServerQueryInterface, CStdStubBuffer_CountRefs, CStdStubBuffer_IsIIDSupported, CStdStubBuffer_Invoke, IUnknown_QueryInterface_Proxy, CStdStubBuffer_Disconnect, CStdStubBuffer_Connect, CStdStubBuffer_AddRef, CStdStubBuffer_QueryInterface, NdrStubCall2, NdrStubForwardingFunction, IUnknown_Release_Proxy, IUnknown_AddRef_Proxy, NdrDllUnregisterProxy, NdrDllRegisterProxy, NdrCStdStubBuffer2_Release, NdrCStdStubBuffer_Release, NdrDllCanUnloadNow, NdrDllGetClassObject, NdrOleAllocate, NdrOleFree, CStdStubBuffer_DebugServerRelease
shell32.dll
SHGetFolderPathW
shlwapi.dll
SHCopyKeyW
user32.dll
wsprintfW, LoadStringW, CharNextW, UnregisterClassA
wintrust.dll
WinVerifyTrust
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer