Import table
advapi32.dll
CryptDestroyHash, CryptGetHashParam, CryptAcquireContextW, CryptCreateHash, RegNotifyChangeKeyValue, RegDeleteValueW, RegCreateKeyExW, RegSetValueExW, CryptHashData, RegEnumValueW, RegEnumKeyW, RegDeleteKeyW, ConvertSidToStringSidW, CreateWellKnownSid, CheckTokenMembership, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegEnumKeyExW, OpenServiceW, OpenSCManagerW, QueryServiceStatusEx, CloseServiceHandle, LookupPrivilegeValueW, OpenProcessToken, CreateProcessAsUserW, GetTokenInformation, RegQueryValueExW, ConvertStringSecurityDescriptorToSecurityDescriptorA, RegOpenKeyExW, EqualSid, RegCloseKey, AllocateAndInitializeSid, InitializeSecurityDescriptor, FreeSid, AdjustTokenPrivileges, SetSecurityDescriptorDacl, CryptReleaseContext
crypt32.dll
CryptProtectData, CryptUnprotectData
iphlpapi.dll
GetAdaptersAddresses
kernel32.dll
OpenEventW, WideCharToMultiByte, DeleteCriticalSection, GetEnvironmentVariableW, GetModuleHandleW, OpenProcess, GetModuleHandleA, GetVersionExW, CreateDirectoryW, GetCurrentThreadId, CreateDirectoryA, AllocConsole, Sleep, GetTempFileNameW, WaitForMultipleObjects, LeaveCriticalSection, EnterCriticalSection, SetEnvironmentVariableW, CreateThread, CreateMutexW, MapViewOfFileEx, GetLastError, TryEnterCriticalSection, GetTempPathW, LoadLibraryW, OutputDebugStringW, CreateEventW, CloseHandle, SetEvent, ProcessIdToSessionId, GetCommandLineW, GetModuleFileNameW, CreateProcessW, GetCurrentProcess, GetSystemDirectoryW, WaitForSingleObject, FreeLibrary, CopyFileW, GetProcAddress, GetCurrentProcessId, lstrlenW, WriteFile, WaitNamedPipeW, CreateNamedPipeW, PeekNamedPipe, CreateFileW, OpenEventA, InitializeCriticalSection, ConnectNamedPipe, SetLastError, InterlockedCompareExchange, InterlockedExchange, OpenThread, TerminateThread, ResumeThread, SuspendThread, GetFileSize, GlobalFree, DeleteFileW, CreateFileMappingW, LocalFree, CreateEventA, GetCurrentDirectoryW, GetComputerNameExW, GetComputerNameW, FindFirstFileW, FindClose, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, FormatMessageW, MultiByteToWideChar, ResetEvent, GetLocaleInfoW, FindNextFileW, ReadFile, LocalAlloc, GetStartupInfoA
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
CoUninitialize, CoCreateInstance, CoInitializeEx
psapi.dll
GetModuleFileNameExW
shell32.dll
ShellExecuteW, ShellExecuteExW, SHGetFolderPathW, CommandLineToArgvW, SHGetFolderPathA
user32.dll
TranslateMessage, PostQuitMessage, CreateWindowExW, DispatchMessageW, RegisterClassW, DefWindowProcW, ExitWindowsEx, GetSystemMetrics, AllowSetForegroundWindow, FindWindowW, PostMessageW, SendMessageW, GetMessageW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
version.dll
GetFileVersionInfoSizeW, VerQueryValueW, GetFileVersionInfoW
winhttp.dll
WinHttpQueryHeaders, WinHttpConnect, WinHttpSendRequest, WinHttpGetDefaultProxyConfiguration, WinHttpOpen, WinHttpCloseHandle, WinHttpSetCredentials, WinHttpGetProxyForUrl, WinHttpGetIEProxyConfigForCurrentUser, WinHttpOpenRequest, WinHttpSetOption, WinHttpReceiveResponse, WinHttpCrackUrl
wintrust.dll
WinVerifyTrust
wtsapi32.dll
WTSFreeMemory, WTSQueryUserToken, WTSEnumerateSessionsW