Import table
advapi32.dll
QueryServiceConfigW, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, OpenThreadToken, OpenProcessToken, DuplicateToken, SetThreadToken, RegDeleteValueW, RegEnumKeyW, RegDeleteKeyW, RegQueryInfoKeyW, RegEnumValueW, RegEnumKeyExW, RegSetValueExW, RegQueryValueExW, RegCreateKeyExW, RegOpenKeyExW, RegCloseKey, RevertToSelf, DeleteService, CreateServiceW, ChangeServiceConfigW, ControlService, OpenServiceW, StartServiceW, OpenSCManagerW, CloseServiceHandle
kernel32.dll
SetErrorMode, SetEndOfFile, SetLastError, QueryDosDeviceW, HeapFree, HeapAlloc, GetCurrentProcess, GetModuleHandleA, ReadFile, GetFileSize, GetModuleFileNameW, GetLocalTime, FlushFileBuffers, LoadLibraryA, GetOEMCP, GetACP, CreateFileA, SetStdHandle, GetStringTypeW, GetStringTypeA, IsBadCodePtr, IsBadReadPtr, GetLastError, GetModuleHandleW, MultiByteToWideChar, WideCharToMultiByte, WaitForMultipleObjects, CreateEventW, SetEvent, GetSystemTimeAsFileTime, GetCurrentThread, SetThreadPriority, GetVersionExW, WaitForSingleObject, TerminateThread, CreateThread, Sleep, GetVersion, GetLogicalDrives, DeviceIoControl, EnterCriticalSection, LeaveCriticalSection, LoadLibraryW, GetProcAddress, OpenProcess, FreeLibrary, DeleteCriticalSection, InitializeCriticalSection, SetFilePointer, WriteFile, LocalAlloc, LocalFree, CreateFileW, CloseHandle, SetUnhandledExceptionFilter, HeapReAlloc, InterlockedDecrement, InterlockedIncrement, RtlUnwind, GetCommandLineA, ExitProcess, TerminateProcess, HeapSize, GetModuleFileNameA, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, GetCurrentThreadId, TlsSetValue, TlsAlloc, TlsFree, TlsGetValue, LCMapStringA, LCMapStringW, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetCPInfo, GetSystemDirectoryW, DeleteFileW
user32.dll
LoadStringW, wsprintfW
Export table
exeProc
NOD32Ioctl