Import table
advapi32.dll
RegOpenKeyExA, SetSecurityDescriptorDacl, AllocateAndInitializeSid, ConvertStringSidToSidA, FreeSid, RegCloseKey, InitializeSecurityDescriptor, RegQueryValueExA
kernel32.dll
UnmapViewOfFile, MapViewOfFile, LocalFree, OutputDebugStringA, GetLastError, CreateFileMappingA, GetProcAddress, LoadLibraryA, MultiByteToWideChar, lstrlenA, WideCharToMultiByte, lstrlenW, lstrcpynA, AreFileApisANSI, SetLastError, GetFullPathNameA, GetFileAttributesA, GetModuleHandleA, Sleep, GetCurrentThreadId, GetModuleFileNameA, ReleaseMutex, CreateMutexA, WaitForMultipleObjects, OpenEventA, OpenMutexA, OpenFileMappingA, FreeLibrary, GetVersionExA, GetCurrentProcess, GetSystemInfo, QueryPerformanceCounter, WriteFile, SetEvent, InterlockedDecrement, InterlockedCompareExchange, InterlockedExchange, EncodePointer, DecodePointer, RaiseException, RtlUnwind, GetSystemTimeAsFileTime, HeapFree, ExitThread, CreateThread, GetCommandLineA, GetModuleFileNameW, LCMapStringW, GetCPInfo, IsProcessorFeaturePresent, GetStdHandle, GetLocaleInfoW, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, GetModuleHandleW, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapSize, ExitProcess, HeapCreate, HeapDestroy, GetACP, GetOEMCP, IsValidCodePage, SetHandleCount, InitializeCriticalSectionAndSpinCount, GetFileType, GetStartupInfoW, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetStringTypeW, HeapReAlloc, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, SetFilePointer, GetConsoleCP, GetConsoleMode, SetStdHandle, WriteConsoleW, FlushFileBuffers, CreateFileW, GetStringTypeExA, LCMapStringA, LoadLibraryW, CreateEventA, WaitForSingleObject, GetTickCount, VirtualQuery, CloseHandle, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, GetCurrentProcessId, GlobalFree, InitializeCriticalSection, InterlockedIncrement, HeapAlloc
shell32.dll
SHGetDesktopFolder, SHGetPathFromIDListA, SHGetMalloc
user32.dll
GetWindowPlacement, GetWindowRect, GetWindowLongA, LoadStringA, EnumWindows, GetWindowThreadProcessId
wininet.dll
InternetCrackUrlA
Export table
NP_GetEntryPoints
NP_Initialize
NP_Shutdown