Import table
advapi32.dll
RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, OpenSCManagerW, OpenServiceW, QueryServiceStatus, CloseServiceHandle, ConvertStringSecurityDescriptorToSecurityDescriptorW, ImpersonateLoggedOnUser, DuplicateTokenEx, CreateProcessAsUserW, RevertToSelf, RegNotifyChangeKeyValue, StartServiceW, OpenProcessToken
kernel32.dll
CreateEventW, GetExitCodeProcess, WaitForMultipleObjects, LeaveCriticalSection, GetLastError, EnterCriticalSection, InitializeCriticalSection, SetEvent, CloseHandle, SetProcessWorkingSetSize, GetCurrentProcess, OutputDebugStringW, Sleep, OpenMutexW, CreateMutexW, GetCurrentDirectoryW, OpenEventW, GetPrivateProfileStringW, GetFileAttributesW, CreateDirectoryW, LocalFree, CreateToolhelp32Snapshot, Process32FirstW, ProcessIdToSessionId, Process32NextW, OpenProcess, ResetEvent, GetFullPathNameW, InterlockedExchange, InterlockedCompareExchange, GetStartupInfoW, SetUnhandledExceptionFilter, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, IsDebuggerPresent, SetLastError, DeleteCriticalSection
msvcp80.dll
DllMain
msvcr80.dll
DllMain
shell32.dll
CommandLineToArgvW
user32.dll
CloseDesktop, GetProcessWindowStation, OpenDesktopW, SetProcessWindowStation, OpenWindowStationW, CloseWindowStation
userenv.dll
CreateEnvironmentBlock, DestroyEnvironmentBlock