Import table
advapi32.dll
EventRegister, EventUnregister, TraceMessage, GetTraceEnableFlags, GetTraceEnableLevel, GetTraceLoggerHandle, RegisterTraceGuidsW, UnregisterTraceGuids, EventWrite, RegCloseKey, RegOpenKeyExW, QueryServiceStatusEx, ControlService, SetServiceStatus, CloseServiceHandle, OpenServiceW, OpenSCManagerW, DeleteService, ChangeServiceConfig2W, CreateServiceW, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, GetSecurityDescriptorControl, MakeAbsoluteSD, GetSecurityDescriptorSacl, GetSecurityDescriptorDacl, GetSecurityDescriptorGroup, GetSecurityDescriptorOwner, InitializeSecurityDescriptor, RegDeleteValueW, RegCreateKeyExW, RegQueryValueExW, RegSetValueExW, GetLengthSid, IsValidSid, CopySid, AddAce, InitializeAcl, GetAclInformation, SetSecurityDescriptorDacl, ConvertSecurityDescriptorToStringSecurityDescriptorW, ConvertStringSidToSidW, RegSetKeySecurity, ConvertStringSecurityDescriptorToSecurityDescriptorW, EqualSid, GetNamedSecurityInfoW, RegEnumKeyExW, RegNotifyChangeKeyValue, RegGetValueW, DeregisterEventSource, ReportEventW, RegisterEventSourceW, FreeSid, SetNamedSecurityInfoW, SetEntriesInAclW, AllocateAndInitializeSid, LsaClose, LsaFreeMemory, LsaLookupNames2, LsaOpenPolicy, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, ConvertSidToStringSidW, ImpersonateLoggedOnUser, RevertToSelf, OpenProcessToken, GetTokenInformation, TraceEvent, LookupAccountSidW, ChangeServiceConfigW, StartServiceW, SetSecurityInfo, GetAce, GetSecurityInfo, SetSecurityDescriptorControl, LookupAccountNameW
iphlpapi.dll
GetAdaptersAddresses, GetIpForwardTable, NotifyAddrChange, GetBestInterfaceEx, GetIpNetEntry2, SendARP, ResolveIpNetEntry2, CancelIPChangeNotify, GetIpAddrTable
kernel32.dll
InterlockedExchange, EnterCriticalSection, LeaveCriticalSection, IsDebuggerPresent, GetModuleFileNameW, LocalFree, IsWow64Process, GetCurrentProcess, lstrcmpW, ResetEvent, SetProcessWorkingSetSize, DeleteTimerQueueEx, DeleteTimerQueueTimer, CreateTimerQueue, CreateTimerQueueTimer, ChangeTimerQueueTimer, InterlockedExchangeAdd, CompareStringOrdinal, MultiByteToWideChar, WriteFile, CreateFileW, CompareStringA, MulDiv, GetLongPathNameW, CreateEventW, GetFileAttributesW, RemoveDirectoryW, UnregisterWaitEx, DeleteFileW, CopyFileW, RegisterWaitForSingleObject, FindNextFileW, FindFirstFileW, QueueUserWorkItem, FormatMessageW, lstrcmpiW, CreateThread, WaitForMultipleObjects, GetStringTypeExW, GetDynamicTimeZoneInformation, GetComputerNameW, WideCharToMultiByte, lstrlenA, LocalAlloc, HeapFree, GetProcessHeap, GetProductInfo, GetVersionExW, GetTempPathW, DelayLoadFailureHook, GetProcAddress, FreeLibrary, LoadLibraryExA, PowerCreateRequest, InterlockedCompareExchange64, SetLastError, GetTickCount64, PowerClearRequest, PowerSetRequest, WaitForSingleObject, Sleep, GetTickCount, GetLastError, InterlockedCompareExchange, HeapSetInformation, CompareStringW, OpenEventW, SetEvent, InterlockedDecrement, InterlockedIncrement, lstrlenW, ExitProcess, GetCommandLineW, GetStartupInfoW, RegSetValueExA, RegQueryValueExA, RegCreateKeyExA, GetLocalTime, GlobalMemoryStatus, GetDiskFreeSpaceA, GetEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsW, FreeEnvironmentStringsA, DeviceIoControl, GetModuleHandleA, LoadLibraryA, OpenMutexW, CreateMutexW, ReleaseMutex, GetFileAttributesExW, CompareFileTime, FreeLibraryAndExitThread, DuplicateHandle, LoadLibraryExW, FreeResource, GetFileSize, GetThreadPriority, SetThreadPriority, FileTimeToSystemTime, FileTimeToDosDateTime, FindClose, GetTempFileNameW, GlobalFree, ExpandEnvironmentStringsW, VirtualFree, OpenFileMappingW, VirtualAlloc, GetCurrentThread, SetFileAttributesW, CreateDirectoryW, GetFileSizeEx, SetFilePointerEx, ReadFile, HeapDestroy, HeapAlloc, HeapReAlloc, HeapSize, CloseHandle, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSection, RaiseException, GetFullPathNameW, QueryPerformanceCounter, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, InitializeCriticalSectionAndSpinCount, CreateFileMappingW, MapViewOfFile, GetSystemTime, SystemTimeToFileTime, UnmapViewOfFile, RegEnumValueW, RegQueryInfoKeyW, RegGetKeySecurity, GetModuleHandleW, LoadLibraryW, OutputDebugStringA, SetUnhandledExceptionFilter, GetVersionExA
msvcrt.dll
DllMain
ntdll.dll
NtQuerySystemTime, RtlFreeHeap, RtlAllocateHeap, RtlIpv4StringToAddressExW, RtlInitUnicodeString, RtlInitString, NtAllocateLocallyUniqueId, RtlFreeUnicodeString, RtlNtStatusToDosError
ole32.dll
CoInitializeSecurity, CoInitializeEx, CoSetProxyBlanket, CoTaskMemFree, CoUninitialize, PropVariantClear, CoMarshalInterface, CreateStreamOnHGlobal, CoReleaseMarshalData, CoUnmarshalInterface, IIDFromString, CoTaskMemAlloc, PropVariantCopy, StringFromGUID2, CoCreateGuid, CoCreateInstance
shlwapi.dll
PathFileExistsW, StrCmpNW, PathFindFileNameW, StrStrIW, PathAppendW, HashData
user32.dll
wvsprintfA, CharLowerBuffW, CharUpperBuffW, PeekMessageW, DispatchMessageW, CharNextA, TranslateMessage, MsgWaitForMultipleObjects, MsgWaitForMultipleObjectsEx, RegisterPowerSettingNotification, CharUpperW, wvsprintfW, UnregisterPowerSettingNotification, UnregisterClassA
userenv.dll
RegisterGPNotification, UnregisterGPNotification
wtsapi32.dll
WTSFreeMemory, WTSEnumerateSessionsW, WTSQuerySessionInformationW