Import table
advapi32.dll
CryptDestroyHash, CryptCreateHash, CryptReleaseContext, CryptAcquireContextW, CryptGetHashParam, ConvertSidToStringSidW, GetTokenInformation, OpenProcessToken, RegDeleteKeyW, RegDeleteKeyA, RegSetValueExW, RegEnumKeyExW, RegEnumKeyA, RegOpenKeyA, RegOpenKeyExW, RegEnumValueW, RegEnumValueA, RegSaveKeyA, RegOpenCurrentUser, RegQueryValueA, RegSaveKeyExW, RegDeleteValueA, RegDeleteValueW, RegQueryInfoKeyA, RegOpenKeyExA, RegCreateKeyExA, RegSaveKeyExA, RegQueryMultipleValuesA, RegQueryValueW, RegCreateKeyA, RegEnumKeyExA, RegSaveKeyW, RegQueryInfoKeyW, RegOpenKeyW, RegQueryValueExW, RegQueryValueExA, RegCreateKeyExW, RegSetValueExA, RegEnumKeyW, RegCreateKeyW, RegQueryMultipleValuesW, RegCloseKey, CryptHashData
kernel32.dll
GetNativeSystemInfo, GetVersionExW, VirtualQuery, VirtualProtect, SetThreadContext, InterlockedCompareExchange, VirtualFree, FlushInstructionCache, VirtualAlloc, SuspendThread, ResumeThread, GetSystemTimeAsFileTime, GetTickCount, GetVolumeInformationA, GetCurrentProcess, MultiByteToWideChar, WideCharToMultiByte, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, GetSystemTime, GetCurrentProcessId, GetCurrentThreadId, CreateDirectoryW, GetEnvironmentVariableW, FormatMessageW, LoadLibraryExA, GetModuleHandleA, GetModuleFileNameA, GetProcAddress, GetModuleFileNameW, GetModuleHandleExW, LoadLibraryExW, FreeLibrary, GetModuleHandleExA, GetCurrentThread, GetModuleHandleW, LoadLibraryA, DisableThreadLibraryCalls, LoadLibraryW, OutputDebugStringW, GetCommandLineW, CloseHandle, OpenEventW, SetEvent, FindResourceW, FindResourceA, GetLastError, LocalFree, LocalSize, LocalAlloc, GetThreadContext, SetLastError, Sleep, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, QueryPerformanceCounter, InterlockedExchange
msvcp90.dll
DllMain
msvcr90.dll
DllMain