Import table
advapi32.dll
ImpersonateNamedPipeClient, ImpersonateLoggedOnUser, RevertToSelf, EqualSid, SetSecurityInfo, GetSecurityDescriptorSacl, SetSecurityDescriptorDacl, InitializeSecurityDescriptor, MakeAbsoluteSD, ConvertStringSidToSidW, OpenProcessToken, AdjustTokenPrivileges, LookupPrivilegeValueW, AddAccessAllowedAce, InitializeAcl, GetSecurityInfo, GetAce, SetKernelObjectSecurity, LookupAccountNameW, DuplicateTokenEx, OpenThreadToken, GetTokenInformation, RegDeleteKeyW, RegEnumKeyW, RegSetValueExW, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, RegCreateKeyExW, RegEnumValueW, RegDeleteValueW, CryptGenRandom, CryptAcquireContextW, CryptReleaseContext
gdi32.dll
GetObjectW, DeleteDC, CreateCompatibleDC, CreateCompatibleBitmap, BitBlt, GetPixel, SelectObject, GetBitmapBits, DeleteObject
kernel32.dll
GetLocaleInfoW, RaiseException, LoadLibraryA, LocalAlloc, GetThreadLocale, ReadProcessMemory, GetExitCodeThread, CreateThread, GetPrivateProfileIntW, GetPrivateProfileStringW, GetVersionExW, WideCharToMultiByte, LocalFree, GetComputerNameW, GlobalLock, GlobalSize, VirtualQuery, OpenFileMappingW, GlobalFree, GlobalAlloc, GlobalUnlock, GetFileSize, GetShortPathNameW, WaitNamedPipeW, WaitForMultipleObjects, CreateNamedPipeW, ConnectNamedPipe, DisconnectNamedPipe, FlushFileBuffers, GetCurrentThread, GetThreadPriority, OutputDebugStringW, GetWindowsDirectoryW, SetEnvironmentVariableW, WaitForSingleObject, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, ExpandEnvironmentStringsW, InitializeCriticalSectionAndSpinCount, InterlockedExchange, CreateEventW, SetEvent, CloseHandle, GetCurrentThreadId, InterlockedCompareExchange, Sleep, GetLastError, SetLastError, InterlockedIncrement, InterlockedDecrement, GetTickCount, DisableThreadLibraryCalls, GetCurrentProcessId, ResetEvent, GetModuleFileNameW, GetProcAddress, GetVersion, GetFileAttributesW, GetModuleHandleW, GetModuleHandleA, LoadLibraryW, FreeLibrary, OutputDebugStringA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, QueryPerformanceCounter, GetSystemTimeAsFileTime, DeleteFileW, GetFileSizeEx, SetFilePointerEx, WriteFile, GetCommandLineW, CompareFileTime, GetEnvironmentVariableW, HeapFree, CreateDirectoryW, GetSystemTime, QueueUserAPC, ReadFile, CreateFileW, CreateMutexW, ExitThread, SetEndOfFile, HeapAlloc, WaitForSingleObjectEx, SetThreadPriority, GetLocalTime, DuplicateHandle, SystemTimeToFileTime, ReleaseMutex, GetTempPathW, HeapDestroy, MoveFileExW, HeapCreate, OpenThread, QueryPerformanceFrequency, CreateFileMappingW, MapViewOfFile, UnmapViewOfFile, QueueUserWorkItem, VirtualAlloc, VirtualFree, GetCurrentDirectoryW, CopyFileW, TlsAlloc, TlsFree, TlsGetValue, TlsSetValue, GetProcessAffinityMask, LoadLibraryExW, OpenEventW, MultiByteToWideChar, CompareStringW, CompareStringA, FindFirstFileW, FindClose, SearchPathW, GetEnvironmentStringsW
msimg32.dll
AlphaBlend
msvcp80.dll
DllMain
msvcr80.dll
DllMain
ntdll.dll
ZwCreateKey, ZwReadFile, ZwCreateMutant, ZwQueryInformationFile, RtlInitUnicodeString, ZwFlushBuffersFile, ZwQueryInformationThread, ZwWriteFile, ZwQueryFullAttributesFile, ZwSetInformationFile, ZwYieldExecution, RtlFormatCurrentUserKeyPath, ZwResetEvent, RtlGetVersion, ZwOpenThread, ZwDelayExecution, ZwQueryKey, ZwOpenEvent, ZwQueryValueKey, ZwQueryObject, ZwSignalAndWaitForSingleObject, ZwCreateSection, ZwMapViewOfSection, ZwReleaseSemaphore, ZwDeviceIoControlFile, ZwCreateSemaphore, ZwDuplicateObject, ZwUnmapViewOfSection, ZwCreateEvent, ZwOpenKey, ZwReleaseMutant, ZwSetValueKey, ZwCreateFile, ZwWaitForMultipleObjects, ZwWaitForSingleObject, ZwClose, RtlFreeUnicodeString, ZwQueryInformationProcess, ZwOpenMutant, ZwOpenFile, ZwSetEvent
ole32.dll
CoUninitialize, CoInitialize, CoCreateGuid
shell32.dll
SHGetSpecialFolderPathW, ExtractIconExW
shlwapi.dll
SHDeleteKeyW, PathCompactPathExW, AssocQueryStringW
user32.dll
OpenInputDesktop, SetThreadDesktop, GetThreadDesktop, OpenDesktopW, CloseDesktop, GetDesktopWindow, GetUserObjectInformationW, CharUpperBuffW, CharUpperBuffA, CharLowerBuffA, GetMessagePos, GetIconInfo, GetCursor, GetWindow, GetTopWindow, UnregisterClassW, RegisterClassExW, CreateWindowExW, PostThreadMessageW, DestroyWindow, GetWindowTextW, GetClassNameW, EnumThreadWindows, GetQueueStatus, GetMessageW, CharUpperW, LoadStringW, SetWindowPos, DispatchMessageW, TranslateMessage, PeekMessageW, MessageBoxW, CharLowerBuffW, SetFocus, GetWindowThreadProcessId, SetForegroundWindow, GetDC, RemovePropW, UpdateWindow, EnableWindow, SetLayeredWindowAttributes, SetWindowLongW, SetParent, ShowWindow, GetWindowLongW, SetTimer, SetPropW, GetPropW, KillTimer, GetSystemMetrics, IsWindowVisible, FindWindowExW, ReleaseDC, GetWindowDC, PostMessageW, DefWindowProcW, wsprintfW, GetParent, RegisterWindowMessageW, InvalidateRect, GetClientRect, MsgWaitForMultipleObjects, DestroyIcon, AllowSetForegroundWindow, GetWindowRect, WindowFromPoint, GetFocus, SendMessageW, CallNextHookEx, UnhookWindowsHookEx, SetWindowsHookExW, LoadCursorW, SetClassLongW
wininet.dll
InternetCrackUrlW
Export table
_IswLog_FlushThread@4
DllCanUnloadNow
getTrustChecker
getTrustChecketAltFFApi
releaseTrustChecker