Import table
advapi32.dll
RegEnumValueW, OpenProcessToken, GetTokenInformation, DuplicateTokenEx, AllocateAndInitializeSid, EqualSid, CreateProcessAsUserW, LookupPrivilegeValueW, AdjustTokenPrivileges, RegisterEventSourceW, ReportEventW, DeregisterEventSource, RegDeleteKeyW, RegEnumKeyExW, CreateWellKnownSid, InitializeAcl, AddAccessAllowedAce, InitializeSecurityDescriptor, GetSecurityDescriptorControl, SetServiceStatus, ControlService, StartServiceW, DeleteService, OpenSCManagerW, OpenServiceW, StartServiceCtrlDispatcherW, ChangeServiceConfig2W, RegisterServiceCtrlHandlerExW, CreateServiceW, CloseServiceHandle, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, LookupPrivilegeValueA, GetKernelObjectSecurity, SetKernelObjectSecurity, IsValidSecurityDescriptor, GetSecurityDescriptorDacl, IsValidAcl, GetSecurityDescriptorSacl, GetSecurityDescriptorOwner, IsValidSid, GetSecurityDescriptorGroup, SetFileSecurityW, SetSecurityDescriptorDacl
dbghelp.dll
MiniDumpWriteDump
kernel32.dll
MoveFileA, GetCurrentDirectoryA, DeleteFileA, CreateDirectoryA, CloseHandle, Sleep, InterlockedDecrement, FindResourceExW, FindResourceW, SizeofResource, LockResource, LoadResource, GetTempPathW, GetTempFileNameW, FindFirstFileW, FindNextFileW, FindClose, RemoveDirectoryW, GetPrivateProfileStringW, GetFullPathNameW, GetPrivateProfileSectionNamesW, WritePrivateProfileStringW, GlobalAlloc, GlobalFree, GetVersionExW, GetCurrentProcess, GetLastError, TerminateProcess, CreateProcessW, GetExitCodeProcess, WaitForMultipleObjects, WaitForSingleObject, MultiByteToWideChar, WideCharToMultiByte, ExpandEnvironmentStringsW, EnterCriticalSection, GetLocalTime, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, OutputDebugStringW, WriteConsoleW, GetStdHandle, CreateFileW, WriteFile, SetFilePointer, GetCurrentDirectoryW, SetCurrentDirectoryW, DeleteFileW, GetCurrentThreadId, GetCurrentProcessId, SetUnhandledExceptionFilter, CreateThread, GetFileSize, ReadFile, lstrlenA, GetTickCount, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RaiseException, GetVersionExA, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, UnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, GetCPInfo, InterlockedIncrement, GetOEMCP, IsValidCodePage, GetModuleHandleA, GetProcAddress, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, ExitProcess, GetModuleFileNameA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, GetCommandLineW, SetHandleCount, GetFileType, GetStartupInfoA, HeapCreate, VirtualFree, QueryPerformanceCounter, GetSystemTimeAsFileTime, VirtualAlloc, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, LoadLibraryA, GetConsoleCP, GetConsoleMode, FlushFileBuffers, GetTimeZoneInformation, GetLocaleInfoW, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, CreateFileA, CompareStringA, CompareStringW, SetEnvironmentVariableA, lstrcpyA, GlobalLock, GlobalUnlock, FindFirstFileA, FindNextFileA, GetVersion, LocalFileTimeToFileTime, FileTimeToSystemTime, FileTimeToLocalFileTime, SetEndOfFile, SetFileTime, GetDriveTypeA, GetVolumeInformationA, GetFullPathNameA, DosDateTimeToFileTime, SetFileAttributesA, GetFileAttributesA, GetFileTime, SetVolumeLabelA, ReleaseMutex, CreateMutexA, lstrcpynA, lstrcmpiA, CopyFileW, GetModuleFileNameW, SystemTimeToFileTime, lstrcmpiW, SetEnvironmentVariableW
ole32.dll
CoInitializeSecurity, CoUninitialize, CoCreateInstance, CoSetProxyBlanket, OleRun, CoInitialize
shell32.dll
SHCreateDirectoryExW
shlwapi.dll
PathFileExistsW
user32.dll
TranslateMessage, SendMessageW, TranslateAcceleratorW, GetMessageW, UnregisterClassA, OemToCharA, DispatchMessageW, CharToOemA
userenv.dll
DestroyEnvironmentBlock, CreateEnvironmentBlock
wininet.dll
InternetReadFile, InternetOpenUrlW, InternetCloseHandle, InternetOpenW, HttpQueryInfoW
wtsapi32.dll
WTSEnumerateSessionsW, WTSQueryUserToken, WTSFreeMemory