Import table
advapi32.dll
OpenServiceW, SetThreadToken, DuplicateToken, GetLengthSid, AddAccessAllowedAce, SetTokenInformation, EnumServicesStatusW, QueryServiceConfigW, QueryServiceConfig2W, QueryServiceStatusEx, CloseServiceHandle, StartServiceW, OpenThreadToken, DuplicateTokenEx, CryptAcquireContextW, CryptCreateHash, CryptHashData, CryptGetHashParam, CryptDestroyHash, CryptReleaseContext, AllocateAndInitializeSid, CheckTokenMembership, FreeSid, GetTokenInformation, ConvertStringSidToSidW, LookupAccountSidW, CreateProcessAsUserW, RegOpenKeyExW, RegQueryValueExW, RegCloseKey, LookupPrivilegeValueW, OpenProcessToken, AdjustTokenPrivileges, RevertToSelf, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerExW, OpenEventLogW, ReportEventW, ControlService, OpenSCManagerW, SetServiceStatus
crypt32.dll
CryptProtectData, CryptUnprotectData
gdi32.dll
SelectObject, CreateFontW, CreateSolidBrush, SetBkColor, SetTextColor, TextOutW, GetDeviceCaps
kernel32.dll
GlobalLock, GlobalAlloc, DeleteCriticalSection, UnmapViewOfFile, TryEnterCriticalSection, MapViewOfFile, CreateFileMappingW, GlobalUnlock, OpenFileMappingW, OpenEventW, OpenMutexW, DefineDosDeviceW, QueryPerformanceCounter, GetCurrentThreadId, GetSystemTimeAsFileTime, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetStartupInfoA, GlobalFree, SuspendThread, GetModuleFileNameW, GetCurrentProcessId, ReadProcessMemory, CreateMutexW, VirtualAlloc, ExitProcess, RaiseException, VirtualFree, InitializeCriticalSectionAndSpinCount, LeaveCriticalSection, OutputDebugStringW, EnterCriticalSection, GetLastError, Sleep, ProcessIdToSessionId, HeapFree, HeapAlloc, GetProcessHeap, GetCommandLineW, WaitForMultipleObjects, TerminateThread, WaitForSingleObject, SetEvent, InterlockedExchange, CloseHandle, GetProcessTimes, OpenProcess, OpenThread, GetProcAddress, GetModuleHandleW, CreateEventW, SetThreadPriority, GetCurrentThread, InterlockedIncrement, CreateThread, GetVersionExW, GetCurrentProcess, WriteFile, SetFilePointer, CreateFileW, TerminateProcess, QueueUserWorkItem, LocalFree, SetLastError, GetLocalTime, LocalAlloc, InitializeCriticalSection, DuplicateHandle, GetTickCount, GetWindowsDirectoryW, DeleteFileW, SetEndOfFile, CopyFileW, SetFileAttributesW, GetFileAttributesW, HeapReAlloc, LoadLibraryW, GetSystemWindowsDirectoryW, HeapCreate, CancelIo, WriteProcessMemory, MulDiv, CreateProcessW
msvcrt.dll
DllMain
netapi32.dll
NetUseAdd
ntdll.dll
NtClose, NtSetInformationThread, NtDuplicateToken, NtFilterToken, NtQueryInformationToken, NtOpenProcessToken, NtOpenThreadToken, NtCompleteConnectPort, NtAcceptConnectPort, NtImpersonateClientOfPort, NtReplyWaitReceivePort, NtCreatePort, NtDuplicateObject, NtOpenProcess, NtRequestWaitReplyPort, NtConnectPort, RtlCreateSecurityDescriptor, RtlSetDaclSecurityDescriptor, NtSetInformationFile, NtQueryDirectoryFile, NtCreateFile, NtQueryInformationFile, NtReadFile, NtWriteFile, NtLoadKey, NtUnloadKey, NtOpenKey, NtLoadDriver, RtlInitString, RtlInitUnicodeString
ole32.dll
CoInitializeEx, CoInitializeSecurity, CoMarshalInterface, CoCopyProxy, CoSetProxyBlanket, CoQueryProxyBlanket, CreateStreamOnHGlobal, CoUnmarshalInterface, StringFromGUID2, CoGetObject, CoGetClassObject, CoTaskMemFree, CoUninitialize
sbiedll.dll
_SbieApi_QueryConfBool@12, SbieApi_Log, _SbieDll_PortName@0, _SbieApi_SetLsaAuthPkg@8, _SbieApi_CallZero@4, _SbieApi_GetVersion@4, SbieApi_LogEx, _SbieApi_GetUnmountHive@4, _SbieApi_EnumProcessEx@16, _SbieApi_QueryProcess@20, _SbieDll_RunFromHome@16, _SbieApi_QueryProcessInfo@8, _SbieApi_SetUserName@8, _SbieApi_IsBoxEnabled@4, _SbieDll_GetServiceRegistryValue@12, _SbieDll_FormatMessage2@12, _SbieApi_GetWork@12, _SbieApi_QueryConf@20, _SbieApi_SessionLeader@8, _SbieApi_ReloadConf@4, _SbieApi_QueryProcessPath@28, _SbieDll_FormatMessage0@4, _SbieApi_OpenProcess@8, _SbieDll_GetLanguage@4, _SbieDll_ComCreateStub@16, _SbieDll_IsOpenClsid@12, _SbieApi_CheckInternetAccess@12
secur32.dll
LsaLookupAuthenticationPackage, LsaDeregisterLogonProcess, LsaConnectUntrusted
user32.dll
BeginPaint, DefWindowProcW, DispatchMessageW, GetMessageW, ShowWindow, SetWindowPos, GetMonitorInfoW, MonitorFromWindow, CreateWindowExW, RegisterClassExW, wsprintfW, EndPaint
userenv.dll
DestroyEnvironmentBlock, CreateEnvironmentBlock