Import table
advapi32.dll
AdjustTokenPrivileges, DuplicateTokenEx, OpenProcessToken, ImpersonateLoggedOnUser, EventRegister, EventUnregister, EventWrite, RegCloseKey, RegSetValueExW, RegCreateKeyExW, RegQueryValueExW, RegOpenKeyExW, CreateWellKnownSid, IsValidSid, SetTokenInformation, RevertToSelf, GetTokenInformation, EnumServicesStatusExW, CloseServiceHandle, QueryServiceConfigW, OpenServiceW, StartServiceW, OpenSCManagerW, ControlService, CloseThreadWaitChainSession, GetThreadWaitChain, OpenThreadWaitChainSession, LookupAccountSidW, LookupPrivilegeValueW, OpenThreadToken
comctl32.dll
CreateStatusWindowW, ImageList_ReplaceIcon, ImageList_SetIconSize, ImageList_Remove, ImageList_Create, HIMAGELIST_QueryInterface, ImageList_Destroy
credui.dll
CredUIPromptForCredentialsW
gdi32.dll
CreateCompatibleDC, GetObjectW, GetCurrentObject, CreateFontIndirectW, GetCharWidth32W, SetBkColor, CreateCompatibleBitmap, Rectangle, SetBkMode, SetTextColor, GetDeviceCaps, DeleteDC, BitBlt, SelectObject, MoveToEx, LineTo, DeleteObject, CreatePen, GetStockObject, CreateDIBSection, CreateRectRgn, CreateSolidBrush, GetTextExtentPoint32W
iphlpapi.dll
GetAdaptersAddresses, GetIfEntry2, NhGetInterfaceNameFromDeviceGuid
kernel32.dll
GetExitCodeThread, GetNumaHighestNodeNumber, OpenProcess, QueryFullProcessImageNameW, LocalFree, GetModuleFileNameW, GetTimeFormatW, GetPriorityClass, DuplicateHandle, CreateFileW, GetTempPathW, MultiByteToWideChar, lstrlenA, GetThreadTimes, CallbackMayRunLong, TrySubmitThreadpoolCallback, SetEvent, lstrcmpW, Thread32Next, OpenThread, Thread32First, CreateToolhelp32Snapshot, Sleep, GetComputerNameW, GetCommandLineW, DelayLoadFailureHook, InterlockedCompareExchange, LoadLibraryExA, ReadProcessMemory, lstrcmpiW, GetTickCount, lstrlenW, CompareStringW, GetNumberFormatW, GetLocaleInfoW, HeapSize, MulDiv, HeapReAlloc, FormatMessageW, HeapSetInformation, SetPriorityClass, GetCurrentProcessId, ProcessIdToSessionId, CloseThreadpoolCleanupGroup, GetErrorMode, SetErrorMode, CreateThreadpoolCleanupGroup, CreateEventW, SetProcessShutdownParameters, DeviceIoControl, SetLastError, ExpandEnvironmentStringsW, CreateProcessW, GetCurrentDirectoryW, IsWow64Process, GetCurrentThreadId, TerminateProcess, CreateMutexW, WaitForSingleObject, LoadLibraryW, GetProcAddress, FreeLibrary, GetLastError, GetProcessHeap, HeapAlloc, GetCurrentProcess, HeapFree, GetVersionExW, ReleaseMutex, CloseHandle, CreateThread, CloseThreadpoolCleanupGroupMembers, GetLogicalProcessorInformationEx, FindResourceExW, LoadResource, LockResource, UnhandledExceptionFilter, GetSystemTimeAsFileTime, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedExchange, LoadLibraryA, QueueUserWorkItem, GetProcessAffinityMask, SetProcessAffinityMask, LocalAlloc, GetCurrentThread
msvcrt.dll
DllMain
ntdll.dll
NtOpenFile, RtlTryEnterCriticalSection, NtOpenThread, NtClose, NtOpenThreadToken, RtlTimeToElapsedTimeFields, NtSetInformationFile, RtlEnterCriticalSection, NtQueryInformationProcess, RtlInitUnicodeString, NtQueryTimerResolution, RtlNtStatusToDosError, RtlDeleteCriticalSection, RtlInitializeCriticalSection, WinSqmAddToStream, NtQuerySystemInformation, NtQueryInformationToken, NtOpenProcessToken, RtlLeaveCriticalSection, NtSetInformationProcess
pcwum.dll
PcwCreateQuery, PcwAddQueryItem, PcwCollectData
secur32.dll
GetUserNameExW
shell32.dll
ShellAboutW, ShellExecuteExW, SHOpenFolderAndSelectItems, SHParseDisplayName, CommandLineToArgvW, DuplicateIcon, Shell_NotifyIconW
shlwapi.dll
PathAppendW, PathRemoveExtensionW, PathAddExtensionW, StrStrW, StrFormatByteSizeW, StrCmpIW, StrDupW
user32.dll
IsIconic, DispatchMessageW, TranslateMessage, IsDialogMessageW, TranslateAcceleratorW, GetMessageW, ChangeWindowMessageFilterEx, CreateDialogParamW, MessageBoxW, RegisterWindowMessageW, SetProcessDPIAware, DrawTextW, CreateWindowExW, UpdateWindow, InvalidateRect, GetSysColor, GetDlgCtrlID, AppendMenuW, EnableMenuItem, DeleteMenu, GetSystemMetrics, EndDialog, DialogBoxParamW, SetScrollInfo, SetScrollPos, GetScrollInfo, SetDlgItemTextW, TrackPopupMenuEx, EnableWindow, GetWindowTextW, CharLowerBuffW, GetGuiResources, ShowWindowAsync, EndTask, IsWindowVisible, SetThreadDesktop, IsHungAppWindow, GetClassLongW, IsZoomed, GetWindow, SetMenuDefaultItem, CloseDesktop, EnumDesktopWindows, OpenDesktopW, SwitchToThisWindow, IsWindow, GetLastActivePopup, CascadeWindows, TileWindows, GetDesktopWindow, EnumDesktopsW, GetProcessWindowStation, GetCursorPos, PeekMessageW, CheckDlgButton, IsDlgButtonChecked, GetWindowTextLengthW, SetRect, SetCursor, LoadCursorW, MsgWaitForMultipleObjects, DefWindowProcW, MoveWindow, RedrawWindow, GetMenuItemID, MessageBeep, KillTimer, DestroyIcon, GetMenuItemInfoW, GetDialogBaseUnits, GetThreadDesktop, LoadIconW, SetTimer, GetForegroundWindow, PostThreadMessageW, InternalGetWindowText, PostQuitMessage, FindWindowW, GetWindowThreadProcessId, AllowSetForegroundWindow, SendMessageTimeoutW, SystemParametersInfoW, LoadMenuW, GetSubMenu, RemoveMenu, DestroyMenu, GetKeyState, GetFocus, GetClassNameW, SetFocus, GetParent, MonitorFromPoint, GetMonitorInfoW, LoadAcceleratorsW, LoadImageW, OpenIcon, SetForegroundWindow, DestroyWindow, PostMessageW, GetShellWindow, ShowWindow, BeginDeferWindowPos, GetWindowRect, DeferWindowPos, EndDeferWindowPos, SetWindowPos, SetMenu, GetDlgItem, MapWindowPoints, SendMessageW, GetMenu, CheckMenuRadioItem, CheckMenuItem, LoadStringW, SetWindowTextW, GetClassInfoW, RegisterClassW, GetDC, ReleaseDC, GetSysColorBrush, GetClientRect, FillRect, GetWindowLongW, SetWindowLongW, CallWindowProcW, GetNextDlgTabItem, GhostWindowFromHungWindow, HungWindowFromGhostWindow, EnumWindowStationsW, OpenWindowStationW, ChangeWindowMessageFilter, SetProcessWindowStation, CloseWindowStation, MonitorFromRect, BeginPaint, EndPaint, DrawEdge, SetMenuItemInfoW, SetMenuInfo, EnumWindows
uxtheme.dll
SetWindowTheme, IsThemeActive
vdmdbg.dll
VDMTerminateTaskWOW, VDMEnumTaskWOWEx
wevtapi.dll
EvtClose, EvtSubscribe