Import table
advapi32.dll
RegQueryValueExA, RegCreateKeyA, RegEnumKeyW, CreateProcessAsUserW, RegSetValueExW, RegDeleteValueW, RegEnumValueW, RegEnumKeyExW, RegCreateKeyExA, RegSetValueExA, RegCreateKeyExW, RegDeleteValueA, RegQueryInfoKeyW, RegDeleteKeyW, OpenProcessToken, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, RegEnumKeyExA, RegOpenKeyExA, RegQueryValueExW, RegCloseKey, RegOpenKeyExW, GetSecurityDescriptorControl
comdlg32.dll
GetOpenFileNameW
kernel32.dll
DllMain
ole32.dll
CoTaskMemFree, CoTaskMemAlloc, CoInitialize, CoTaskMemRealloc, CoCreateInstance, CoDisconnectObject, StringFromGUID2, CLSIDFromString, CoGetClassObject, CoUninitialize
rpcrt4.dll
NdrOleAllocate, NdrOleFree, IUnknown_QueryInterface_Proxy, IUnknown_AddRef_Proxy, IUnknown_Release_Proxy, NdrStubForwardingFunction, NdrStubCall2, NdrDllUnregisterProxy, NdrDllRegisterProxy, NdrCStdStubBuffer2_Release, NdrDllCanUnloadNow, NdrDllGetClassObject, NdrCStdStubBuffer_Release
shell32.dll
ShellExecuteW, SHGetPathFromIDListW, SHBrowseForFolderW, SHGetMalloc, SHGetFolderPathW, SHGetSpecialFolderLocation
shlwapi.dll
AssocQueryStringW
user32.dll
CharLowerBuffW, LoadStringW, MsgWaitForMultipleObjects, TranslateMessage, PeekMessageW, DispatchMessageW, wsprintfW, LoadBitmapW, LoadIconW, LoadImageW, GetForegroundWindow, CharNextW, MonitorFromWindow, PeekMessageA, DispatchMessageA, GetSystemMetrics
wininet.dll
InternetCrackUrlW, InternetQueryOptionA
wintrust.dll
WinVerifyTrust
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer