Import table
advapi32.dll
RevertToSelf, LookupAccountSidA, LookupPrivilegeValueA, AdjustTokenPrivileges, GetTokenInformation, EqualSid, InitializeAcl, AddAccessAllowedAce, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, SetSecurityDescriptorSacl, AllocateAndInitializeSid, GetLengthSid, FreeSid, CopySid, OpenThreadToken, ImpersonateLoggedOnUser, DuplicateTokenEx, OpenProcessToken, DuplicateToken, SetThreadToken, GetUserNameA
kernel32.dll
LoadLibraryA, GetSystemDirectoryA, GetWindowsDirectoryA, lstrcpyA, ExpandEnvironmentStringsA, lstrcpyW, ExpandEnvironmentStringsW, GetModuleFileNameA, GetCurrentThreadId, GetModuleFileNameW, GetSystemInfo, GetSystemTimeAsFileTime, GetTempFileNameA, GetFileSize, WriteFileEx, SetEvent, CreateFileA, CreateEventA, WaitForSingleObjectEx, ReadFile, ResetEvent, CancelIo, GetOverlappedResult, WriteFile, GetTempPathA, VirtualAlloc, VirtualFree, VirtualProtect, VirtualLock, VirtualUnlock, GetCurrentThread, FileTimeToLocalFileTime, SetErrorMode, OpenEventA, OpenMutexA, OpenSemaphoreA, CreateMutexA, CreateSemaphoreA, GetCurrentProcessId, GetTickCount, SleepEx, GetVersionExA, InterlockedExchangeAdd, InterlockedCompareExchange, OutputDebugStringA, QueryPerformanceFrequency, HeapCreate, HeapDestroy, HeapValidate, HeapReAlloc, HeapSize, PulseEvent, ReleaseMutex, OpenProcess, MultiByteToWideChar, WideCharToMultiByte, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, Sleep, GlobalMemoryStatus, ReleaseSemaphore, CreateSemaphoreW, WaitForSingleObject, GetModuleHandleW, LoadLibraryW, GetModuleHandleA, GetProcAddress, GetCurrentProcess, CloseHandle, FreeLibrary, InitializeCriticalSection, GetLastError, InterlockedExchange, GetProcessHeap, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, HeapFree, HeapAlloc, InterlockedDecrement, QueryPerformanceCounter, InterlockedIncrement, IsDebuggerPresent, DecodePointer, EncodePointer, GlobalMemoryStatusEx
msvcp100.dll
DllMain
msvcp80.dll
DllMain
msvcr100.dll
DllMain
msvcr80.dll
DllMain
shlwapi.dll
PathUnExpandEnvStringsW, PathUnExpandEnvStringsA
user32.dll
CharToOemBuffA, OemToCharBuffA, ExitWindowsEx, GetSystemMetrics, wsprintfA, CharUpperA, CharLowerA, CharUpperW, CharLowerW
version.dll
GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA
Export table
PragueLoad
PragueUnload