Import table
advapi32.dll
RegCloseKey, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, GetFileSecurityA, RegGetKeySecurity, GetFileSecurityW, AccessCheck, MapGenericMask, EqualSid, GetTokenInformation, DuplicateToken, OpenProcessToken, OpenThreadToken, CheckTokenMembership, IsValidSid, FreeSid, AllocateAndInitializeSid, AdjustTokenPrivileges, LookupPrivilegeValueA
kernel32.dll
HeapSize, FlushFileBuffers, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, HeapReAlloc, SetStdHandle, GetOEMCP, GetStringTypeW, GetStringTypeA, VirtualAlloc, VirtualProtect, GetCPInfo, GetLocaleInfoA, WriteFile, UnhandledExceptionFilter, VirtualFree, HeapCreate, HeapDestroy, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetModuleFileNameA, HeapAlloc, HeapFree, TerminateProcess, ExitProcess, SetFilePointer, GetStartupInfoA, GetFileType, GetStdHandle, SetHandleCount, TlsFree, SetLastError, TlsAlloc, LCMapStringW, LCMapStringA, VirtualQuery, InterlockedExchange, GetCommandLineA, GetCurrentThreadId, RtlUnwind, GetSystemInfo, SetErrorMode, GetVersionExA, GetVolumeInformationW, CreateFileW, GetProcAddress, GetModuleHandleA, FindClose, FindFirstFileW, GetLastError, FreeLibrary, LoadLibraryA, GetFileAttributesW, SetFileAttributesW, GetSystemDirectoryW, CreateDirectoryW, TlsSetValue, TlsGetValue, GetACP, CloseHandle, GetCurrentProcess, GetCurrentThread, MultiByteToWideChar, WideCharToMultiByte, DeviceIoControl, LeaveCriticalSection, EnterCriticalSection, CreateFileA, GetDriveTypeA, LocalFileTimeToFileTime, DosDateTimeToFileTime, GetSystemDirectoryA, GetCurrentDirectoryW, GetPrivateProfileStringW, DeleteCriticalSection, InitializeCriticalSection, GetModuleHandleW, LoadLibraryExW, SetEndOfFile, LoadLibraryExA
Export table
ADSFindFirstScan
ADSInitAndOpen
AHSFindFirstScan
AHSInitAndOpen
ARSFindFirstScan
ARSInitAndOpen
DIRFindFirstScan
DIRInitAndOpen
DISFindFirstScan
DISInitAndOpen
getEnvironmentStrings
RAWFindFirstScan
RAWInitAndOpen