Import table
advapi32.dll
CryptAcquireContextW, CryptDeriveKey, GetSidIdentifierAuthority, InitializeSid, GetSidSubAuthority, AllocateAndInitializeSid, FreeSid, GetSidLengthRequired, LsaNtStatusToWinError, LsaQueryInformationPolicy, ConvertSidToStringSidW, ConvertStringSidToSidW, LookupAccountSidW, LsaFreeMemory, LogonUserW, LsaOpenPolicy, CryptGenRandom, IsTextUnicode, CryptAcquireContextA, CryptGenKey, RegOpenKeyExW, RegCreateKeyExW, CryptGetHashParam, CryptHashData, CryptCreateHash, CryptDestroyHash, CryptSetKeyParam, CryptDestroyKey, CryptGetKeyParam, CryptEncrypt, CryptDecrypt, CryptReleaseContext, RegSetValueExW, RegQueryValueExW, RegDeleteValueW, RegCloseKey, CryptGetUserKey, CryptImportKey, GetSidSubAuthorityCount, DeregisterEventSource, RegisterEventSourceW, CopySid, GetLengthSid, IsValidSid, GetTokenInformation, DuplicateTokenEx, CreateProcessAsUserW, RegisterServiceCtrlHandlerW, OpenSCManagerW, CloseServiceHandle, ReportEventW, QueryServiceStatus, StartServiceCtrlDispatcherW, RegDeleteKeyW, SetServiceStatus, DeleteService, ControlService, OpenServiceW, ChangeServiceConfig2W, CreateServiceW
kernel32.dll
GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, IsDebuggerPresent, lstrcmpW, QueryPerformanceCounter, LocalFree, lstrlenW, SetUnhandledExceptionFilter, InterlockedCompareExchange, Sleep, InterlockedExchange, DeleteCriticalSection, InitializeCriticalSection, lstrcmpiW, GetComputerNameW, MultiByteToWideChar, InterlockedIncrement, GetModuleHandleW, GetModuleFileNameW, CreateThread, SetFilePointer, GetFileSize, FormatMessageW, HeapFree, HeapAlloc, GetProcessHeap, SetLastError, WriteFile, GetSystemTime, CreateEventA, CreateFileA, LocalAlloc, GetProcAddress, FreeLibrary, LoadLibraryA, GetACP, GetLocaleInfoA, GetThreadLocale, GetVersionExA, lstrlenA, WideCharToMultiByte, ReadFile, CreateFileW, DeviceIoControl, CloseHandle, InterlockedDecrement, CreateMutexW, ReleaseMutex, GetLastError, OutputDebugStringA, GetModuleFileNameA, ExpandEnvironmentStringsW, LoadLibraryW, CreateDirectoryA, GetVersionExW, WaitForSingleObject, RaiseException, GetTimeZoneInformation, DeleteFileW, FindClose, FindNextFileW, FindFirstFileW, GetLocalTime, OutputDebugStringW, CreateDirectoryW, CreateMutexA, GetSystemDefaultLCID, RemoveDirectoryW, CopyFileW, GetLocaleInfoW, SetEvent, CreateEventW, GetLogicalDrives, TerminateThread, GetExitCodeThread, GetFileInformationByHandle, FileTimeToDosDateTime, SystemTimeToFileTime, HeapDestroy, HeapReAlloc, HeapSize, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, GetStartupInfoW, GetCommandLineW, GetStdHandle, FreeConsole, SetConsoleCtrlHandler, AllocConsole, WTSGetActiveConsoleSessionId, FlushInstructionCache, OpenEventW, QueueUserWorkItem, GetTempFileNameW, GetTempPathW, GetExitCodeProcess, CreateProcessW, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, LeaveCriticalSection, EnterCriticalSection, SetErrorMode, WaitForMultipleObjects, GetDriveTypeW
mscoree.dll
DllMain
msvcp80.dll
DllMain
msvcp90.dll
DllMain
msvcr80.dll
DllMain
msvcr90.dll
DllMain
netapi32.dll
NetUserModalsGet, NetApiBufferFree, DsGetDcNameW
ole32.dll
OleRun, CoCreateInstance, CoInitialize, CLSIDFromProgID, CLSIDFromString, CoSetProxyBlanket, CoInitializeSecurity, CoInitializeEx, CoUninitialize, CoResumeClassObjects
setupapi.dll
CM_Get_Child, CM_Get_Sibling, SetupDiEnumDeviceInfo, SetupDiGetDeviceInterfaceDetailA, CM_Get_Device_IDA, SetupDiGetClassDevsA, SetupDiOpenDeviceInfoA, SetupDiEnumDeviceInterfaces, SetupDiDestroyDeviceInfoList, SetupDiGetClassDevsW, SetupDiGetDeviceInstanceIdW, SetupDiSetClassInstallParamsW, SetupDiGetDeviceInterfaceDetailW, SetupDiOpenDeviceInfoW, SetupIterateCabinetW, CM_Get_Device_IDW, SetupDiCallClassInstaller, CM_Reenumerate_DevNode
shell32.dll
SHGetFolderPathA, SHGetFolderPathW, CommandLineToArgvW
shlwapi.dll
PathFileExistsA, PathIsDirectoryA, PathAppendA, PathAppendW, PathRemoveFileSpecW, StrTrimA
super20.dll
SuperComputeChallenge, SuperInitializeBlob, SuperInitializeParameters, SuperUninitialize, SuperInitialize, SuperComputeRecoveryPassword
user32.dll
UnregisterClassW, CharLowerBuffW, wsprintfW, PostMessageW, DefWindowProcW, SetWindowLongW, GetWindowLongW, CreateWindowExW, CallWindowProcW, SetTimer, KillTimer, CharNextW, IsWindow, MsgWaitForMultipleObjects, PeekMessageW, TranslateMessage, DispatchMessageW, PostQuitMessage, SendMessageW, LoadCursorW, GetClassInfoExW, RegisterClassExW, UnregisterClassA, GetKeyboardLayoutNameW, RegisterWindowMessageW
userenv.dll
UnloadUserProfile, DestroyEnvironmentBlock, CreateEnvironmentBlock
version.dll
GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW
wcr10.dll
WCR_Pbkdf2Compute, WCR_RandomBytes, WCR_AesEncrypt, WCR_StreamDestroy, WCR_AesDestroy, WCR_Initialize, WCR_Uninitialize, WCR_RsaPrivateDecrypt, WCR_RsaPrivateEncrypt, WCR_RsaCreateFromPKCS8, WCR_StreamCreateOnBuffer, WCR_AesCreate, WCR_AesDecrypt, WCR_Crc32Compute, WCR_StringToByteArray, WCR_SuperEncryptBlob, WCR_SuperInitializeParameters, WCR_SuperPbspRsnToBase32, WCR_SuperComputeRecoveryPassword, WCR_StreamPosition, WCR_Sha256Compute, WCR_RsaDestroy, WCR_StreamRead, WCR_StreamSeek, WCR_StreamLength, WCR_RsaPublicEncrypt, WCR_RsaCreateFromX509, WCR_GetLastError
wintrust.dll
WinVerifyTrust
wtsapi32.dll
WTSQueryUserToken, WTSRegisterSessionNotification, WTSUnRegisterSessionNotification