Import table
kernel32.dll
IsBadReadPtr, GetLastError, DeleteFileW, FindFirstFileW, FindClose, CloseHandle, SetEndOfFile, WriteFile, ReadFile, GetFileSizeEx, CreateFileW, lstrcpyW, lstrlenW, WideCharToMultiByte, UnmapViewOfFile, MapViewOfFile, CreateFileMappingW, FreeLibrary, FindNextFileW, GetProcAddress, LoadLibraryW, GetModuleFileNameW, GetModuleHandleW, GetFileAttributesExW, LoadLibraryA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetEnvironmentVariableA, GetTimeZoneInformation, GetCurrentProcessId, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, HeapSize, GetOEMCP, GetCurrentDirectoryA, GetModuleFileNameA, ExitProcess, HeapCreate, HeapDestroy, IsDebuggerPresent, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, SetUnhandledExceptionFilter, SetLastError, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetModuleHandleA, PeekNamedPipe, GetFileInformationByHandle, SetStdHandle, GetStartupInfoA, SetHandleCount, GetDriveTypeA, EnterCriticalSection, LeaveCriticalSection, OutputDebugStringW, InitializeCriticalSection, DeleteCriticalSection, GetCurrentThreadId, GetTickCount, SetFilePointer, InterlockedIncrement, GetDiskFreeSpaceExA, GetDiskFreeSpaceExW, GetFileSize, FlushFileBuffers, GetFullPathNameW, GetFileAttributesW, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, MultiByteToWideChar, VirtualAlloc, VirtualFree, IsBadWritePtr, LocalFree, FormatMessageA, LoadLibraryExW, CreateFileA, QueryPerformanceFrequency, QueryPerformanceCounter, Sleep, HeapAlloc, GetProcessHeap, HeapFree, CreateFileMappingA, GetSystemInfo, IsBadStringPtrA, lstrcpynW, GetVersion, CreateEventW, SearchPathW, VirtualQuery, GetStartupInfoW, GetStdHandle, GetACP, GetVersionExA, ResetEvent, InterlockedDecrement, WaitForSingleObject, SetEvent, InterlockedExchangeAdd, GetFileType, GetStringTypeW, LCMapStringW, GetCPInfo, CompareStringA, CompareStringW, GetLocaleInfoA, LCMapStringA, GetStringTypeA, RtlUnwind, RaiseException, GetDriveTypeW, GetCommandLineA, GetSystemTimeAsFileTime, HeapReAlloc, CreateDirectoryA, CreateDirectoryW, GetConsoleCP, GetConsoleMode, SetEnvironmentVariableW
remediation.dll
RemServiceResume, RemServicePause, RemServiceDelete, RemServiceEnable, RemServiceDisable, RemServiceStop, RemServiceStart, RemProcessResume, RemProcessSuspend, RemProcessKill, RemProcessSnapshot, RemRegistryGetUserKey, RemRegistryGetUserKeyCount, RemRegistryValueDelete, RemRegistryValueSet, RemRegistryValueGet, RemRegistryEnumValue, RemRegistryEnumKey, RemRegistryKeyQueryInfo, RemRegistryKeyDelete, RemRegistryKeyCreate, RemServiceQueryStatus, RemFolderFindNextFile, RemFolderFindFirstFile, RemFolderCopy, RemFolderDelete, RemFolderCreate, RemFileGetExpandedPath, RemFileGetExpandedPathCount, RemFileSetAttrib, RemFileGetAttrib, RemFileGetADSInfo, RemFileCopy, RemFileDelete, RemFileRemoveChunk, RemFileAppend, RemFileInsertChunk, RemFileTruncate, RemFileWrite, RemFileRead, RemFileSeek, RemFileClose, RemFileOpen, RemSystemExec, RemShutdown, RemInitialize, RemFolderFindFileClose
user32.dll
CharLowerW, wsprintfW, CheckDlgButton