Import table
kernel32.dll
WaitForSingleObject, IsBadReadPtr, GetLastError, CloseHandle, SetEndOfFile, WriteFile, ReadFile, GetFileSizeEx, CreateFileW, Sleep, WideCharToMultiByte, UnmapViewOfFile, MapViewOfFile, FreeLibrary, GetProcAddress, LoadLibraryW, GetModuleFileNameW, GetModuleHandleW, FindNextFileW, FindClose, FindFirstFileW, ResetEvent, SetEvent, CreateEventW, SetEnvironmentVariableA, GetDriveTypeA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, HeapSize, IsValidCodePage, GetOEMCP, GetACP, GetCurrentDirectoryA, GetModuleFileNameA, HeapCreate, HeapDestroy, SetLastError, PeekNamedPipe, GetFileInformationByHandle, SetStdHandle, GetStartupInfoA, SetHandleCount, ExitProcess, GetModuleHandleA, CreateThread, ExitThread, SetEnvironmentVariableW, GetConsoleMode, GetConsoleCP, CreateDirectoryW, CreateDirectoryA, HeapReAlloc, GetFullPathNameW, GetCommandLineA, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, GetDriveTypeW, FileTimeToLocalFileTime, FileTimeToSystemTime, RaiseException, RtlUnwind, GetVersionExA, GetStringTypeA, LCMapStringA, GetLocaleInfoA, GetFileSize, InterlockedDecrement, InterlockedIncrement, InterlockedExchangeAdd, GetTimeZoneInformation, OpenThread, GetThreadContext, SuspendThread, GetSystemInfo, IsBadWritePtr, IsBadStringPtrA, OutputDebugStringW, GetTickCount, SetFilePointer, FlushFileBuffers, GetFileAttributesW, SetFileAttributesW, GetDiskFreeSpaceExW, GetFileAttributesExW, MultiByteToWideChar, VirtualAlloc, VirtualFree, LocalFree, FormatMessageA, LoadLibraryExW, HeapAlloc, GetProcessHeap, HeapFree, QueryPerformanceFrequency, QueryPerformanceCounter, GetCurrentThread, CreateMutexW, ReleaseMutex, SetThreadPriority, GetCurrentThreadId, CreateFileMappingA, CreateFileA, DeleteFileW, VirtualQuery, GetSystemTime, GetStdHandle, lstrcpynA, GetCPInfo, GetStringTypeW, LCMapStringW, CompareStringA, CompareStringW, MulDiv, LoadLibraryA, GetSystemTimeAsFileTime, GetThreadTimes, GetFileType, GetCurrentProcessId, GetCurrentProcess, TlsAlloc, TlsGetValue, IsDebuggerPresent, TlsFree, TlsSetValue, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, CreateSemaphoreA, ReleaseSemaphore, OutputDebugStringA, ResumeThread
remediation.dll
RemServiceStop, RemServiceStart, RemProcessResume, RemProcessSuspend, RemProcessKill, RemProcessSnapshot, RemRegistryGetUserKey, RemRegistryGetUserKeyCount, RemServiceDisable, RemRegistryValueSet, RemRegistryValueGet, RemRegistryEnumValue, RemRegistryEnumKey, RemRegistryKeyQueryInfo, RemRegistryTreeDelete, RemRegistryKeyDelete, RemRegistryKeyCreate, RemFolderFindFileClose, RemFolderFindNextFile, RemFolderFindFirstFile, RemFolderCopy, RemFolderDelete, RemFolderCreate, RemFileGetExpandedPath, RemFileGetExpandedPathCount, RemFileSetAttrib, RemFileGetAttrib, RemFileGetADSInfo, RemFileCopy, RemFileDelete, RemFileRemoveChunk, RemFileAppend, RemFileInsertChunk, RemFileTruncate, RemFileWrite, RemServiceEnable, RemServiceDelete, RemServicePause, RemServiceResume, RemServiceQueryStatus, RemSystemGetScheduledJobsEnum, RemSystemDeleteScheduledJob, RemShutdown, RemInitialize, RemFileRead, RemFileSeek, RemFileClose, RemFileOpen, RemSystemExec, RemRegistryValueDelete
user32.dll
CheckDlgButton, MapVirtualKeyA, CharUpperA, OemToCharA, CharLowerA, CharLowerBuffA, IsCharAlphaA, VkKeyScanA
winmm.dll
timeGetTime