Import table
advapi32.dll
RegOpenKeyExW, RegCloseKey, UnregisterTraceGuids, RegisterTraceGuidsW, GetTraceLoggerHandle, GetTraceEnableLevel, GetTraceEnableFlags, EncryptFileW, OpenEncryptedFileRawW, WriteEncryptedFileRaw, ConvertStringSecurityDescriptorToSecurityDescriptorW, SetFileSecurityW, CloseEncryptedFileRaw, RegDisablePredefinedCache, ReadEncryptedFileRaw, RegisterEventSourceW, ReportEventW, DeregisterEventSource, SetServiceStatus, RegQueryValueExW, SetThreadToken, RevertToSelf, OpenThreadToken, GetUserNameW, TraceMessage, RegisterServiceCtrlHandlerW, ImpersonateLoggedOnUser
crypt32.dll
CertFreeCertificateContext, CertAddSerializedElementToStore, CryptProtectMemory, CryptUnprotectMemory
kernel32.dll
DeleteCriticalSection, DisableThreadLibraryCalls, InitializeCriticalSection, LocalFree, LocalAlloc, GetLastError, LocalLock, FindClose, LocalUnlock, SetLastError, LeaveCriticalSection, EnterCriticalSection, DosPathToSessionPathW, DefineDosDeviceW, QueryDosDeviceW, GetCurrentThread, CloseHandle, DeviceIoControl, LocalReAlloc, LocalSize, WaitForSingleObject, Sleep, CloseThreadpool, CloseThreadpoolCleanupGroup, CloseThreadpoolCleanupGroupMembers, InterlockedDecrement, GetCurrentThreadId, TrySubmitThreadpoolCallback, InterlockedIncrement, CreateThread, CreateThreadpoolCleanupGroup, SetThreadpoolThreadMaximum, SetThreadpoolThreadMinimum, CreateThreadpool, lstrlenW, GetTickCount, WideCharToMultiByte, GlobalFree, ReadFile, SetFilePointer, IdnToAscii, GetVersionExW, SetEvent, GetSystemTime, SystemTimeToFileTime, FileTimeToSystemTime, CreateFileW, WriteFile, CreateEventW, GetFileInformationByHandle, lstrcmpW, UnregisterWait, FreeLibrary, GetProcAddress, LoadLibraryW, MultiByteToWideChar, InterlockedExchange, InterlockedCompareExchange, QueryPerformanceCounter, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, FindFirstFileW, DeleteFileW, FindNextFileW, GetTempPathW, CreateDirectoryW
msvcrt.dll
DllMain
ntdll.dll
RtlIntegerToUnicodeString, NtCreateFile, NtClose, NtQueryInformationToken, RtlTimeFieldsToTime, NtQueryInformationProcess, NtQueryInformationFile, RtlDosPathNameToNtPathName_U, RtlFreeHeap, RtlDeleteResource, NtOpenThreadToken, NtOpenProcessToken, DbgBreakPoint, NtOpenFile, NtFsControlFile, RtlInitializeResource, RtlAppendUnicodeStringToString, RtlInitUnicodeString, RtlNtStatusToDosError, RtlAcquireResourceExclusive, RtlReleaseResource, RtlCopyLuid, NtSetInformationThread, NtAdjustPrivilegesToken, NtDuplicateToken
ole32.dll
CoInitializeEx, CoUninitialize, CoCreateInstance
rpcrt4.dll
RpcServerUseProtseqEpW, RpcServerRegisterIfEx, RpcBindingServerFromClient, RpcBindingToStringBindingW, RpcStringBindingParseW, I_RpcBindingIsClientLocal, RpcBindingFree, RpcStringFreeW, NdrServerCall2, RpcImpersonateClient, RpcRevertToSelf, RpcServerUnregisterIf
secur32.dll
GetUserNameExW, GetUserNameExA
urlmon.dll
CreateUri
winhttp.dll
WinHttpSetStatusCallback, WinHttpCreateUrl, WinHttpConnect, WinHttpTimeToSystemTime, WinHttpTimeFromSystemTime, WinHttpGetProxyForUrl, WinHttpCloseHandle, WinHttpReadData, WinHttpAddRequestHeaders, WinHttpSetOption, WinHttpOpen, WinHttpSendRequest, WinHttpReceiveResponse, WinHttpQueryAuthSchemes, WinHttpQueryHeaders, WinHttpOpenRequest, WinHttpQueryOption, WinHttpSetCredentials, WinHttpGetIEProxyConfigForCurrentUser, WinHttpWriteData
Export table
DavClose
DavInit
ServiceMain
SvchostPushServiceGlobals