Import table
kernel32.dll
IsBadReadPtr, GetLastError, CloseHandle, GetFileSize, CreateFileW, GetShortPathNameW, GetLongPathNameW, SetEndOfFile, WriteFile, ReadFile, GetFileSizeEx, GetTickCount, Sleep, WideCharToMultiByte, MultiByteToWideChar, IsBadStringPtrA, UnmapViewOfFile, MapViewOfFile, FreeLibrary, GetProcAddress, LoadLibraryW, FindNextFileW, FindClose, FindFirstFileW, GetModuleFileNameW, GetModuleHandleW, RemoveDirectoryW, ReleaseSemaphore, CreateSemaphoreA, OpenThread, SuspendThread, GetThreadContext, ResumeThread, GetThreadTimes, SetEnvironmentVariableA, LoadLibraryA, GetDriveTypeA, GetCurrentDirectoryA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, GetTimeZoneInformation, GetCurrentProcessId, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, HeapSize, VirtualQuery, IsValidCodePage, GetOEMCP, GetACP, GetModuleFileNameA, ExitProcess, HeapCreate, HeapDestroy, SetLastError, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetModuleHandleA, SetStdHandle, GetStartupInfoA, SetHandleCount, GetDateFormatA, GetTimeFormatA, CreateThread, ExitThread, SetEnvironmentVariableW, GetConsoleMode, GetConsoleCP, PeekNamedPipe, GetFileInformationByHandle, FileTimeToLocalFileTime, FileTimeToSystemTime, CreateDirectoryW, CreateDirectoryA, CreateFileA, CreateFileMappingA, OutputDebugStringW, SetFilePointer, FlushFileBuffers, GetFileAttributesW, SetFileAttributesW, GetFileAttributesExW, GetDiskFreeSpaceExW, IsBadWritePtr, VirtualAlloc, VirtualFree, LocalFree, FormatMessageA, LoadLibraryExW, HeapAlloc, GetProcessHeap, HeapFree, QueryPerformanceFrequency, QueryPerformanceCounter, GetCurrentThread, GetSystemInfo, GetSystemTime, GetStdHandle, lstrcpynA, GetCPInfo, GetStringTypeW, LCMapStringW, CompareStringA, CompareStringW, MulDiv, CreateMutexW, WaitForSingleObject, ReleaseMutex, SetThreadPriority, GetCurrentThreadId, CreateEventW, SetEvent, ResetEvent, DeleteFileW, OutputDebugStringA, InterlockedIncrement, InterlockedDecrement, GetFileType, GetLocaleInfoA, InitializeCriticalSection, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, LCMapStringA, GetStringTypeA, GetVersionExA, RtlUnwind, RaiseException, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCommandLineA, GetSystemTimeAsFileTime, HeapReAlloc, GetFullPathNameW, InterlockedExchangeAdd, InterlockedCompareExchange, GetTempPathA, TryEnterCriticalSection, GetTempFileNameA, DeleteFileA, VirtualProtect, CreateFileMappingW, GetDiskFreeSpaceW
remediation.dll
RemRegistryKeyCreate, RemGetLogicalDriveCount, RemGetLogicalDrive, RemFolderFindFileClose, RemFolderFindNextFile, RemFolderFindFirstFile, RemFolderCopy, RemFolderDelete, RemFolderCreate, RemFolderExists, RemFileXlateFromDrivePrefix, RemFileIsProtected, RemFileGetAbbreviatedPath, RemFileGetAbbreviatedPathCount, RemFileGetExpandedPath, RemRegistryKeyDelete, RemFileSetAttrib, RemFileGetAttrib, RemFileGetADSInfo, RemFileCopy, RemFileDelete, RemFileRemoveChunk, RemRegistryTreeDelete, RemRegistryKeyQueryInfo, RemRegistryEnumKey, RemRegistryEnumValue, RemRegistryValueGet, RemRegistryValueSet, RemRegistryValueDelete, RemRegistryGetUserKeyCount, RemRegistryGetUserKey, RemProcessSnapshot, RemProcessKill, RemProcessSuspend, RemProcessResume, RemProcessIsRunningAsWow64, RemServiceStart, RemServiceStop, RemServiceDisable, RemServiceEnable, RemServiceDelete, RemServicePause, RemServiceResume, RemServiceQueryStatus, RemSystemGetScheduledJobsEnum, RemSystemDeleteScheduledJob, RemGetEnvironmentVariable, RemGetOSVersion, RemScanDerivatives, RemShutdown, RemInitialize, RemFileAppend, RemFileInsertChunk, RemFileTruncate, RemFileExists, RemFileWrite, RemFileRead, RemFileSeek, RemFileClose, RemFileOpen, RemSystemExec, RemFileGetExpandedPathCount, RemGetProcessorArchitecture
user32.dll
CheckDlgButton, OemToCharA, CharLowerA, CharLowerBuffA, IsCharAlphaA, VkKeyScanA, MapVirtualKeyA, CharUpperA
winmm.dll
timeGetTime