Import table
advapi32.dll
RegOpenKeyExW, RegDeleteValueW, CryptCreateHash, CryptReleaseContext, CryptAcquireContextW, CryptGetHashParam, CryptHashData, CryptDestroyHash, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegCloseKey, RegCreateKeyExW, RegDeleteKeyW
crypt32.dll
CryptBinaryToStringA
kernel32.dll
LoadResource, FindResourceW, LoadLibraryExW, SetThreadLocale, GetThreadLocale, LockResource, FindResourceExW, CloseHandle, SetEvent, WaitForSingleObject, WideCharToMultiByte, CreateEventW, Sleep, CreateThread, ResetEvent, GetSystemTime, GetLocaleInfoW, GetGeoInfoW, lstrlenA, SystemTimeToFileTime, LCMapStringW, LCMapStringA, SizeofResource, MultiByteToWideChar, FreeLibrary, GetModuleFileNameW, lstrcmpiW, GetModuleHandleW, GetProcAddress, GetLastError, LeaveCriticalSection, EnterCriticalSection, lstrlenW, InterlockedDecrement, InterlockedIncrement, DisableThreadLibraryCalls, DeleteCriticalSection, ReadFile, FlushFileBuffers, CreateFileA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetConsoleMode, GetConsoleCP, SetFilePointer, InitializeCriticalSectionAndSpinCount, LoadLibraryA, GetSystemTimeAsFileTime, GetStringTypeA, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, GetModuleHandleA, GetLocaleInfoA, GetStringTypeW, InitializeCriticalSection, RaiseException, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, LocalFree, RtlUnwind, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, GetCurrentThreadId, GetCommandLineA, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, ExitProcess, VirtualFree, HeapCreate, WriteFile, GetStdHandle, GetModuleFileNameA, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, CreateFileW, LoadLibraryW, GetStartupInfoW, IsProcessorFeaturePresent, EncodePointer, DecodePointer, GetPrivateProfileStringW, InterlockedExchange
ole32.dll
CoInitializeEx, StringFromGUID2, CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoCreateInstance, CoUninitialize, CreateStreamOnHGlobal, OleRun, CoSetProxyBlanket, CoCreateFreeThreadedMarshaler, CoWaitForMultipleHandles, CoCreateGuid
shlwapi.dll
StrStrW, PathRemoveFileSpecW, PathAppendW
user32.dll
CharNextW, DispatchMessageW, PeekMessageW, MsgWaitForMultipleObjects
winhttp.dll
WinHttpCrackUrl
Export table
DllCanUnloadNow
DllGetClassObject
DllInstall
DllRegisterServer
DllUnregisterServer