Import table
advapi32.dll
CheckTokenMembership, FreeSid, OpenProcessToken, DuplicateTokenEx, ImpersonateLoggedOnUser, QueryServiceObjectSecurity, GetSecurityDescriptorDacl, BuildExplicitAccessWithNameW, SetEntriesInAclW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, SetServiceObjectSecurity, ControlService, DeleteService, CreateServiceW, ChangeServiceConfig2W, StartServiceW, QueryServiceStatus, OpenSCManagerW, OpenServiceW, ChangeServiceConfigW, CloseServiceHandle, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, RegisterEventSourceW, ReportEventW, DeregisterEventSource, SetServiceStatus, RevertToSelf, CreateProcessAsUserW, LookupPrivilegeValueW, AdjustTokenPrivileges, ConvertSidToStringSidW, GetTokenInformation, GetLengthSid, CopySid, RegQueryValueExW, RegEnumKeyExW, RegCloseKey, AllocateAndInitializeSid, RegOpenKeyExW
dbghelp.dll
SymInitialize, SymCleanup, SymGetLineFromAddr, UnDecorateSymbolName, SymGetSymFromAddr64, SymGetModuleBase, SymFunctionTableAccess, StackWalk, SymSetOptions
kernel32.dll
WriteConsoleW, FreeLibrary, LoadLibraryW, SetConsoleCtrlHandler, IsValidLocale, SetStdHandle, SetEndOfFile, CompareStringW, SetEnvironmentVariableA, GetCurrentProcess, GetProcessHeap, HeapAlloc, LocalFree, HeapFree, GetModuleFileNameW, GetTempPathW, MoveFileW, DeleteFileW, CreateEventW, WaitForSingleObject, GetSystemTimeAsFileTime, CreateDirectoryW, CreateFileW, WriteFile, QueueUserWorkItem, GetLastError, InterlockedDecrement, OpenEventW, SetEvent, CloseHandle, Sleep, GetModuleHandleW, GetProcAddress, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, GetDriveTypeW, InitializeCriticalSection, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, HeapReAlloc, HeapQueryInformation, SetCurrentDirectoryW, GetCurrentDirectoryW, CreateFileA, PeekNamedPipe, GetFileInformationByHandle, GetFullPathNameA, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, SetFilePointer, GetConsoleMode, GetConsoleCP, FatalAppExitA, lstrlenW, SetUnhandledExceptionFilter, CopyFileA, GetCurrentThread, RtlCaptureContext, FormatMessageA, GetCurrentDirectoryA, GetModuleFileNameA, WTSGetActiveConsoleSessionId, OpenProcess, Process32NextW, ProcessIdToSessionId, Process32FirstW, CreateToolhelp32Snapshot, CreateProcessW, MultiByteToWideChar, WideCharToMultiByte, CreateNamedPipeW, LocalAlloc, DisconnectNamedPipe, FlushFileBuffers, TerminateThread, ConnectNamedPipe, CreateThread, GetFileAttributesW, IsWow64Process, GetVersionExW, GetLocaleInfoW, ReadFile, GetFileSize, WaitNamedPipeW, InterlockedIncrement, GetStringTypeW, InterlockedCompareExchange, InterlockedExchange, EncodePointer, DecodePointer, RtlUnwind, RaiseException, GetCommandLineW, HeapSetInformation, FindClose, FileTimeToSystemTime, FileTimeToLocalFileTime, GetDriveTypeA, FindFirstFileExA, GetTimeFormatA, GetDateFormatA, LCMapStringW, GetCPInfo, IsProcessorFeaturePresent, UnhandledExceptionFilter, IsDebuggerPresent, TerminateProcess, GetTimeZoneInformation, GetStdHandle, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, SetLastError, GetCurrentThreadId, HeapCreate, HeapDestroy, HeapSize, ExitProcess, GetACP, GetOEMCP, IsValidCodePage, SetHandleCount, InitializeCriticalSectionAndSpinCount, GetFileType, GetStartupInfoW, lstrlenA
ole32.dll
CLSIDFromProgID, CoCreateGuid, CoUninitialize, CoInitialize, CoCreateInstance
psapi.dll
GetProcessMemoryInfo
rpcrt4.dll
RpcStringFreeW, UuidToStringW
shell32.dll
SHGetFolderPathW
shlwapi.dll
PathFindFileNameW, UrlEscapeW, PathFileExistsW
user32.dll
wsprintfW
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock
wtsapi32.dll
WTSQueryUserToken