Import table
advapi32.dll
CopySid, GetLengthSid, IsValidSid, SetSecurityDescriptorOwner, SetSecurityDescriptorGroup, GetTokenInformation, AddAce, GetAce, GetAclInformation, AddAccessAllowedAce, InitializeAcl, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, TraceEvent, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, OpenProcessToken, OpenThreadToken, LookupAccountNameW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegQueryInfoKeyW, RegEnumKeyExW, RegEnumValueW, DeregisterEventSource, RegisterEventSourceW, ReportEventW, ImpersonateLoggedOnUser, GetSecurityDescriptorLength, RevertToSelf, LookupAccountSidW, CreateWellKnownSid, ConvertStringSecurityDescriptorToSecurityDescriptorA, RegQueryValueExW
kernel32.dll
GetUserDefaultUILanguage, GetSystemDefaultUILanguage, GetLocaleInfoW, CreateFileW, CreateFileMappingW, FindResourceExW, WaitForSingleObject, ReleaseMutex, OutputDebugStringW, DeleteFileA, FlushViewOfFile, GetLocalTime, CreateFileA, FormatMessageW, FileTimeToSystemTime, SystemTimeToTzSpecificLocalTime, GetTimeFormatW, LocalFree, SetPriorityClass, GetPriorityClass, SetLastError, ExpandEnvironmentStringsW, UnhandledExceptionFilter, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, OutputDebugStringA, InterlockedCompareExchange, Sleep, lstrlenA, InterlockedExchange, GetVersionExA, HeapSetInformation, GetCurrentProcessId, SetErrorMode, GetHandleInformation, GlobalAlloc, GlobalFree, MapViewOfFile, GlobalLock, GlobalUnlock, UnmapViewOfFile, SetEvent, WaitForMultipleObjects, GetModuleFileNameW, SearchPathW, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, VerifyVersionInfoW, MultiByteToWideChar, FreeLibrary, lstrcmpiW, LeaveCriticalSection, EnterCriticalSection, lstrlenW, InterlockedDecrement, GetCurrentThread, CloseHandle, GetCurrentProcess, GetProcessTimes, InterlockedIncrement, GetVersionExW, GetModuleHandleW, GetProcAddress, WideCharToMultiByte, GetLastError, DeleteCriticalSection, InitializeCriticalSection, RaiseException, CopyFileA
msshooks.dll
LoadMSSearchHooks
msvcrt.dll
DllMain
ntdll.dll
RtlUnwind, VerSetConditionMask
ole32.dll
CoCreateInstance, CoInitializeEx, CoInitializeSecurity, CoGetMarshalSizeMax, CreateStreamOnHGlobal, CoMarshalInterface, CoUninitialize, CoTaskMemRealloc, CoTaskMemAlloc, StringFromCLSID, CoTaskMemFree, CoReleaseMarshalData
shlwapi.dll
SHRegGetValueW
user32.dll
UnregisterClassA, LoadStringW, CharNextW