Import table
advapi32.dll
AddAccessDeniedAceEx, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, RegQueryValueExW, RegOpenKeyW, FreeSid, RevertToSelf, ImpersonateLoggedOnUser, ConvertStringSecurityDescriptorToSecurityDescriptorW, CreateWellKnownSid, LookupPrivilegeValueW, AdjustTokenPrivileges, GetUserNameW, GetSidLengthRequired, LookupAccountNameW, ReportEventW, DeregisterEventSource, RegisterEventSourceW, SetServiceObjectSecurity, InitializeSecurityDescriptor, InitializeAcl, TraceEvent, AddAccessAllowedAceEx, SetSecurityDescriptorDacl, OpenSCManagerW, OpenServiceW, CloseServiceHandle, AllocateAndInitializeSid, OpenThreadToken, OpenProcessToken, GetLengthSid, CopySid, GetTokenInformation, GetSecurityDescriptorDacl, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, RegSetValueExW, RegEnumKeyExW, RegQueryInfoKeyW, RegEnumValueW, RegCreateKeyW, RegDeleteKeyW, RegOpenKeyExW, RegDeleteValueW, RegCloseKey, RegDisablePredefinedCache, AllocateLocallyUniqueId, SetSecurityInfo, GetSecurityInfo, SetEntriesInAclW, QueryServiceObjectSecurity, ConvertSecurityDescriptorToStringSecurityDescriptorW, EqualSid, DuplicateTokenEx
kernel32.dll
GetModuleHandleW, GetSystemTimeAsFileTime, QueryPerformanceCounter, IsDebuggerPresent, UnhandledExceptionFilter, TerminateProcess, InterlockedCompareExchange, GetOverlappedResult, CancelIo, Process32FirstW, Process32NextW, OpenThread, GetExitCodeProcess, DuplicateHandle, MultiByteToWideChar, WideCharToMultiByte, CreateToolhelp32Snapshot, Module32FirstW, GetCurrentThread, GetFileAttributesExW, LoadLibraryExW, RemoveDirectoryW, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, GetVersionExW, LoadLibraryA, GetFileSizeEx, GetFileTime, SetFilePointerEx, SetEndOfFile, WriteFile, CopyFileW, ResetEvent, InterlockedExchange, InterlockedDecrement, InterlockedIncrement, GetCurrentProcess, IsWow64Process, MoveFileExW, GetDriveTypeW, GetLogicalDrives, Sleep, SetFilePointer, ReadFile, DeleteFileW, WaitForMultipleObjects, FindClose, SignalObjectAndWait, FindFirstFileW, GetCurrentProcessId, SetLastError, OpenEventW, GetTickCount, DisconnectNamedPipe, CreateNamedPipeW, CreateFileW, OpenProcess, ProcessIdToSessionId, GetCurrentThreadId, GetModuleFileNameW, GetLastError, GetSystemDirectoryW, WaitForSingleObject, SetEvent, GetSystemTime, GetLocalTime, CreateEventW, CloseHandle, LocalFree, LocalAlloc, FreeLibrary, GetProcAddress, LoadLibraryW, SetUnhandledExceptionFilter
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoTaskMemFree, StringFromCLSID, CLSIDFromString, CoTaskMemAlloc
rpcrt4.dll
RpcRevertToSelfEx, RpcImpersonateClient, RpcServerUnregisterIfEx, RpcServerUseProtseqEpW, RpcServerRegisterIf, I_RpcBindingInqLocalClientPID, RpcMgmtStopServerListening, RpcServerListen, NdrServerCall2, UuidCreate, UuidToStringW, RpcStringFreeW
shlwapi.dll
SHCreateStreamOnFileW, SHDeleteKeyW
user32.dll
GetSystemMetrics
wtsapi32.dll
WTSFreeMemory, WTSQuerySessionInformationW, WTSQueryUserToken