Import table
advapi32.dll
LookupPrivilegeValueW, SetFileSecurityW, SetFileSecurityA, OpenProcessToken, AdjustTokenPrivileges, RegQueryValueExW, RegCloseKey, RegOpenKeyExW
kernel32.dll
SetLastError, GetLastError, GetVersionExW, WideCharToMultiByte, MultiByteToWideChar, SizeofResource, LockResource, LoadResource, FindResourceW, FindResourceExW, GetProcAddress, GetModuleHandleW, lstrlenA, lstrlenW, GetVersion, DeleteFileW, FreeLibrary, LoadLibraryW, CloseHandle, FlushFileBuffers, SetFilePointer, SetEndOfFile, SetFileTime, GetFileType, CreateFileA, CreateFileW, ReadFile, GetStdHandle, WriteFile, GetModuleFileNameA, GetCPInfo, Sleep, LocalFileTimeToFileTime, SystemTimeToFileTime, FileTimeToSystemTime, FileTimeToLocalFileTime, GetCurrentProcess, GetFileAttributesA, GetFileAttributesW, SetFileAttributesA, SetFileAttributesW, GetFullPathNameA, DeviceIoControl, CreateDirectoryA, CreateDirectoryW, MoveFileA, FindClose, FindNextFileA, FindFirstFileA, FindNextFileW, FindFirstFileW, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, SetStdHandle, InterlockedExchange, CreateMutexW, InitializeCriticalSection, IsDBCSLeadByte, LCMapStringW, GetConsoleMode, GetConsoleCP, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, HeapCreate, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RaiseException, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, DecodePointer, EncodePointer, RtlUnwind, GetCurrentThreadId, GetCommandLineA, ExitProcess, GetSystemTimeAsFileTime, DeleteFileA, WriteConsoleW, GetModuleFileNameW, IsProcessorFeaturePresent, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, TerminateProcess, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, InterlockedIncrement, InterlockedDecrement, SetHandleCount, GetStartupInfoW, GetACP, GetOEMCP, IsValidCodePage, GetStringTypeW, GetLocaleInfoW
shlwapi.dll
UrlEscapeW
urlmon.dll
IsValidURL
user32.dll
CharToOemBuffA, OemToCharBuffA, CharUpperW, CharLowerW, OemToCharA
winhttp.dll
WinHttpOpen, WinHttpCloseHandle, WinHttpConnect, WinHttpOpenRequest, WinHttpSendRequest, WinHttpReceiveResponse, WinHttpQueryHeaders, WinHttpQueryAuthSchemes, WinHttpSetCredentials, WinHttpQueryDataAvailable, WinHttpReadData
Export table
_FirewallUpdate@88
GetNextVersionNumber
ProxyGetNextVersionNumber
SetSpursLoggingCallback
SpursDownload
SpursProxyDownload
ThreatUpdate
ThreatUpdateViaProxy