! / 1634761632 0 38558 ` -/1,22223l3l334V4V445F5F556J6J667T7T778|8|999~9~99:r:r::;\;\;;<><><<=(=(==>>>>???t?t??@f@f@@ATATAABLBLBBCJCJCCDDDDDDE4E4EEF4F4FFG*G*GGHHHHI I IIIIJlJlJJKXKXKKL@L@LLM M MMNNNNO0O0OOP$P$PPQQQQRRRRSSSSTTT~T~TTUlUlUUVZVZVVWBWBWWX(X(XXYYY|Y|YYZlZlZZ[V[V[[\:\:\\]]]]^$^$^^_2_2__`@`@``aNaNaabRbRbbc:c:ccdNdNdde:e:eef.f.ffgggggghphphhiLiLiij,j,jjk k kkkklrlrllmbmbmmnPnPnno:o:oop p ppppqvqvqqr^r^rrs:s:sst.t.ttuuuzuzuuvvvvvvwXwXwwxBxBxxy"y"yyzzztztzz{\{\{{|D|D||}4}4}}~~~~~~rr``FF((hhNN::||XX00``@@~~ttddPP88jjPP66hhRR::ZZNNDDHH@@22**xxffddPPLL88,,  rr^^LL66""  ffFF&&rrhh\\<<**rrTT22ĬĬňňhhDDǰǰ$$ȘȘ  ɀɀ||hhXXXX88ββ**ϦϦ**ЦЦ$$ђђzzZZ@@԰԰,,՚՚֜֜הה؎؎rrppjj``TT88ިި  ߖߖ~~rrbbZZBB22``<<**ppRR<<@@(($$((rrjjTT6622llXXRRHH22zzZZ<<,,~~``LL66       | |   d d   B B   " "    xxVV44bb@@ttbb@@((nnZZJJ,,|| \ \  !<!<!!""""""#l#l##$P$P$$%.%.%%& & &z&z&&'^'^''(P(P(()P)P))*B*B**+6+6++,(,(,,---r-r--.^.^../J/J//0:0:001.1.112&2&223333334j4j445V5V556F6F667<7<778080889(9(99:$:$::;;;;;;@>@>>?,?,??@$@$@@AAApApAABHBHBBC.C.CCDDDDDDE`E`EEFNFNFFGJGJGGHBHBHHI.I.IIJJJJJJ__IMPORT_DESCRIPTOR_advapi32__NULL_IMPORT_DESCRIPTORadvapi32_NULL_THUNK_DATA_AbortSystemShutdownA@4__imp__AbortSystemShutdownA@4_AbortSystemShutdownW@4__imp__AbortSystemShutdownW@4_AccessCheck@32__imp__AccessCheck@32_AccessCheckAndAuditAlarmA@44__imp__AccessCheckAndAuditAlarmA@44_AccessCheckAndAuditAlarmW@44__imp__AccessCheckAndAuditAlarmW@44_AccessCheckByType@44__imp__AccessCheckByType@44_AccessCheckByTypeAndAuditAlarmA@64__imp__AccessCheckByTypeAndAuditAlarmA@64_AccessCheckByTypeAndAuditAlarmW@64__imp__AccessCheckByTypeAndAuditAlarmW@64_AccessCheckByTypeResultList@44__imp__AccessCheckByTypeResultList@44_AccessCheckByTypeResultListAndAuditAlarmA@64__imp__AccessCheckByTypeResultListAndAuditAlarmA@64_AccessCheckByTypeResultListAndAuditAlarmByHandleA@68__imp__AccessCheckByTypeResultListAndAuditAlarmByHandleA@68_AccessCheckByTypeResultListAndAuditAlarmByHandleW@68__imp__AccessCheckByTypeResultListAndAuditAlarmByHandleW@68_AccessCheckByTypeResultListAndAuditAlarmW@64__imp__AccessCheckByTypeResultListAndAuditAlarmW@64_AddAccessAllowedAce@16__imp__AddAccessAllowedAce@16_AddAccessAllowedAceEx@20__imp__AddAccessAllowedAceEx@20_AddAccessAllowedObjectAce@28__imp__AddAccessAllowedObjectAce@28_AddAccessDeniedAce@16__imp__AddAccessDeniedAce@16_AddAccessDeniedAceEx@20__imp__AddAccessDeniedAceEx@20_AddAccessDeniedObjectAce@28__imp__AddAccessDeniedObjectAce@28_AddAce@20__imp__AddAce@20_AddAuditAccessAce@24__imp__AddAuditAccessAce@24_AddAuditAccessAceEx@28__imp__AddAuditAccessAceEx@28_AddAuditAccessObjectAce@36__imp__AddAuditAccessObjectAce@36_AddConditionalAce@32__imp__AddConditionalAce@32_AddMandatoryAce@20__imp__AddMandatoryAce@20_AddUsersToEncryptedFile@8__imp__AddUsersToEncryptedFile@8_AdjustTokenGroups@24__imp__AdjustTokenGroups@24_AdjustTokenPrivileges@24__imp__AdjustTokenPrivileges@24_AllocateAndInitializeSid@44__imp__AllocateAndInitializeSid@44_AllocateLocallyUniqueId@4__imp__AllocateLocallyUniqueId@4_AreAllAccessesGranted@8__imp__AreAllAccessesGranted@8_AreAnyAccessesGranted@8__imp__AreAnyAccessesGranted@8_AuditComputeEffectivePolicyBySid@16__imp__AuditComputeEffectivePolicyBySid@16_AuditComputeEffectivePolicyByToken@16__imp__AuditComputeEffectivePolicyByToken@16_AuditEnumerateCategories@8__imp__AuditEnumerateCategories@8_AuditEnumeratePerUserPolicy@4__imp__AuditEnumeratePerUserPolicy@4_AuditEnumerateSubCategories@16__imp__AuditEnumerateSubCategories@16_AuditFree@4__imp__AuditFree@4_AuditLookupCategoryGuidFromCategoryId@8__imp__AuditLookupCategoryGuidFromCategoryId@8_AuditLookupCategoryIdFromCategoryGuid@8__imp__AuditLookupCategoryIdFromCategoryGuid@8_AuditLookupCategoryNameA@8__imp__AuditLookupCategoryNameA@8_AuditLookupCategoryNameW@8__imp__AuditLookupCategoryNameW@8_AuditLookupSubCategoryNameA@8__imp__AuditLookupSubCategoryNameA@8_AuditLookupSubCategoryNameW@8__imp__AuditLookupSubCategoryNameW@8_AuditQueryGlobalSaclA@8__imp__AuditQueryGlobalSaclA@8_AuditQueryGlobalSaclW@8__imp__AuditQueryGlobalSaclW@8_AuditQueryPerUserPolicy@16__imp__AuditQueryPerUserPolicy@16_AuditQuerySecurity@8__imp__AuditQuerySecurity@8_AuditQuerySystemPolicy@12__imp__AuditQuerySystemPolicy@12_AuditSetGlobalSaclA@8__imp__AuditSetGlobalSaclA@8_AuditSetGlobalSaclW@8__imp__AuditSetGlobalSaclW@8_AuditSetPerUserPolicy@12__imp__AuditSetPerUserPolicy@12_AuditSetSecurity@8__imp__AuditSetSecurity@8_AuditSetSystemPolicy@8__imp__AuditSetSystemPolicy@8_BackupEventLogA@8__imp__BackupEventLogA@8_BackupEventLogW@8__imp__BackupEventLogW@8_BuildExplicitAccessWithNameA@20__imp__BuildExplicitAccessWithNameA@20_BuildExplicitAccessWithNameW@20__imp__BuildExplicitAccessWithNameW@20_BuildImpersonateExplicitAccessWithNameA@24__imp__BuildImpersonateExplicitAccessWithNameA@24_BuildImpersonateExplicitAccessWithNameW@24__imp__BuildImpersonateExplicitAccessWithNameW@24_BuildImpersonateTrusteeA@8__imp__BuildImpersonateTrusteeA@8_BuildImpersonateTrusteeW@8__imp__BuildImpersonateTrusteeW@8_BuildSecurityDescriptorA@36__imp__BuildSecurityDescriptorA@36_BuildSecurityDescriptorW@36__imp__BuildSecurityDescriptorW@36_BuildTrusteeWithNameA@8__imp__BuildTrusteeWithNameA@8_BuildTrusteeWithNameW@8__imp__BuildTrusteeWithNameW@8_BuildTrusteeWithObjectsAndNameA@24__imp__BuildTrusteeWithObjectsAndNameA@24_BuildTrusteeWithObjectsAndNameW@24__imp__BuildTrusteeWithObjectsAndNameW@24_BuildTrusteeWithObjectsAndSidA@20__imp__BuildTrusteeWithObjectsAndSidA@20_BuildTrusteeWithObjectsAndSidW@20__imp__BuildTrusteeWithObjectsAndSidW@20_BuildTrusteeWithSidA@8__imp__BuildTrusteeWithSidA@8_BuildTrusteeWithSidW@8__imp__BuildTrusteeWithSidW@8_ChangeServiceConfig2A@12__imp__ChangeServiceConfig2A@12_ChangeServiceConfig2W@12__imp__ChangeServiceConfig2W@12_ChangeServiceConfigA@44__imp__ChangeServiceConfigA@44_ChangeServiceConfigW@44__imp__ChangeServiceConfigW@44_CheckForHiberboot@8__imp__CheckForHiberboot@8_CheckTokenMembership@12__imp__CheckTokenMembership@12_ClearEventLogA@8__imp__ClearEventLogA@8_ClearEventLogW@8__imp__ClearEventLogW@8_CloseEncryptedFileRaw@4__imp__CloseEncryptedFileRaw@4_CloseEventLog@4__imp__CloseEventLog@4_CloseServiceHandle@4__imp__CloseServiceHandle@4_CloseThreadWaitChainSession@4__imp__CloseThreadWaitChainSession@4_CloseTrace@8__imp__CloseTrace@8_CommandLineFromMsiDescriptor@12__imp__CommandLineFromMsiDescriptor@12_ControlService@12__imp__ControlService@12_ControlServiceExA@16__imp__ControlServiceExA@16_ControlServiceExW@16__imp__ControlServiceExW@16_ControlTraceA@20__imp__ControlTraceA@20_ControlTraceW@20__imp__ControlTraceW@20_ConvertSecurityDescriptorToStringSecurityDescriptorA@20__imp__ConvertSecurityDescriptorToStringSecurityDescriptorA@20_ConvertSecurityDescriptorToStringSecurityDescriptorW@20__imp__ConvertSecurityDescriptorToStringSecurityDescriptorW@20_ConvertSidToStringSidA@8__imp__ConvertSidToStringSidA@8_ConvertSidToStringSidW@8__imp__ConvertSidToStringSidW@8_ConvertStringSecurityDescriptorToSecurityDescriptorA@16__imp__ConvertStringSecurityDescriptorToSecurityDescriptorA@16_ConvertStringSecurityDescriptorToSecurityDescriptorW@16__imp__ConvertStringSecurityDescriptorToSecurityDescriptorW@16_ConvertStringSidToSidA@8__imp__ConvertStringSidToSidA@8_ConvertStringSidToSidW@8__imp__ConvertStringSidToSidW@8_ConvertToAutoInheritPrivateObjectSecurity@24__imp__ConvertToAutoInheritPrivateObjectSecurity@24_CopySid@12__imp__CopySid@12_CreatePrivateObjectSecurity@24__imp__CreatePrivateObjectSecurity@24_CreatePrivateObjectSecurityEx@32__imp__CreatePrivateObjectSecurityEx@32_CreatePrivateObjectSecurityWithMultipleInheritance@36__imp__CreatePrivateObjectSecurityWithMultipleInheritance@36_CreateProcessAsUserA@44__imp__CreateProcessAsUserA@44_CreateProcessAsUserW@44__imp__CreateProcessAsUserW@44_CreateProcessWithLogonW@44__imp__CreateProcessWithLogonW@44_CreateProcessWithTokenW@36__imp__CreateProcessWithTokenW@36_CreateRestrictedToken@36__imp__CreateRestrictedToken@36_CreateServiceA@52__imp__CreateServiceA@52_CreateServiceW@52__imp__CreateServiceW@52_CreateTraceInstanceId@8__imp__CreateTraceInstanceId@8_CreateWellKnownSid@16__imp__CreateWellKnownSid@16_CredDeleteA@12__imp__CredDeleteA@12_CredDeleteW@12__imp__CredDeleteW@12_CredEnumerateA@16__imp__CredEnumerateA@16_CredEnumerateW@16__imp__CredEnumerateW@16_CredFindBestCredentialA@16__imp__CredFindBestCredentialA@16_CredFindBestCredentialW@16__imp__CredFindBestCredentialW@16_CredFree@4__imp__CredFree@4_CredGetSessionTypes@8__imp__CredGetSessionTypes@8_CredGetTargetInfoA@12__imp__CredGetTargetInfoA@12_CredGetTargetInfoW@12__imp__CredGetTargetInfoW@12_CredIsMarshaledCredentialA@4__imp__CredIsMarshaledCredentialA@4_CredIsMarshaledCredentialW@4__imp__CredIsMarshaledCredentialW@4_CredIsProtectedA@8__imp__CredIsProtectedA@8_CredIsProtectedW@8__imp__CredIsProtectedW@8_CredMarshalCredentialA@12__imp__CredMarshalCredentialA@12_CredMarshalCredentialW@12__imp__CredMarshalCredentialW@12_CredProtectA@24__imp__CredProtectA@24_CredProtectW@24__imp__CredProtectW@24_CredReadA@16__imp__CredReadA@16_CredReadDomainCredentialsA@16__imp__CredReadDomainCredentialsA@16_CredReadDomainCredentialsW@16__imp__CredReadDomainCredentialsW@16_CredReadW@16__imp__CredReadW@16_CredRenameA@16__imp__CredRenameA@16_CredRenameW@16__imp__CredRenameW@16_CredUnmarshalCredentialA@12__imp__CredUnmarshalCredentialA@12_CredUnmarshalCredentialW@12__imp__CredUnmarshalCredentialW@12_CredUnprotectA@20__imp__CredUnprotectA@20_CredUnprotectW@20__imp__CredUnprotectW@20_CredWriteA@8__imp__CredWriteA@8_CredWriteDomainCredentialsA@12__imp__CredWriteDomainCredentialsA@12_CredWriteDomainCredentialsW@12__imp__CredWriteDomainCredentialsW@12_CredWriteW@8__imp__CredWriteW@8_CryptAcquireContextA@20__imp__CryptAcquireContextA@20_CryptAcquireContextW@20__imp__CryptAcquireContextW@20_CryptContextAddRef@12__imp__CryptContextAddRef@12_CryptCreateHash@20__imp__CryptCreateHash@20_CryptDecrypt@24__imp__CryptDecrypt@24_CryptDeriveKey@20__imp__CryptDeriveKey@20_CryptDestroyHash@4__imp__CryptDestroyHash@4_CryptDestroyKey@4__imp__CryptDestroyKey@4_CryptDuplicateHash@16__imp__CryptDuplicateHash@16_CryptDuplicateKey@16__imp__CryptDuplicateKey@16_CryptEncrypt@28__imp__CryptEncrypt@28_CryptEnumProviderTypesA@24__imp__CryptEnumProviderTypesA@24_CryptEnumProviderTypesW@24__imp__CryptEnumProviderTypesW@24_CryptEnumProvidersA@24__imp__CryptEnumProvidersA@24_CryptEnumProvidersW@24__imp__CryptEnumProvidersW@24_CryptExportKey@24__imp__CryptExportKey@24_CryptGenKey@16__imp__CryptGenKey@16_CryptGenRandom@12__imp__CryptGenRandom@12_CryptGetDefaultProviderA@20__imp__CryptGetDefaultProviderA@20_CryptGetDefaultProviderW@20__imp__CryptGetDefaultProviderW@20_CryptGetHashParam@20__imp__CryptGetHashParam@20_CryptGetKeyParam@20__imp__CryptGetKeyParam@20_CryptGetProvParam@20__imp__CryptGetProvParam@20_CryptGetUserKey@12__imp__CryptGetUserKey@12_CryptHashData@16__imp__CryptHashData@16_CryptHashSessionKey@12__imp__CryptHashSessionKey@12_CryptImportKey@24__imp__CryptImportKey@24_CryptReleaseContext@8__imp__CryptReleaseContext@8_CryptSetHashParam@16__imp__CryptSetHashParam@16_CryptSetKeyParam@16__imp__CryptSetKeyParam@16_CryptSetProvParam@16__imp__CryptSetProvParam@16_CryptSetProviderA@8__imp__CryptSetProviderA@8_CryptSetProviderExA@16__imp__CryptSetProviderExA@16_CryptSetProviderExW@16__imp__CryptSetProviderExW@16_CryptSetProviderW@8__imp__CryptSetProviderW@8_CryptSignHashA@24__imp__CryptSignHashA@24_CryptSignHashW@24__imp__CryptSignHashW@24_CryptVerifySignatureA@24__imp__CryptVerifySignatureA@24_CryptVerifySignatureW@24__imp__CryptVerifySignatureW@24_CveEventWrite@8__imp__CveEventWrite@8_DecryptFileA@8__imp__DecryptFileA@8_DecryptFileW@8__imp__DecryptFileW@8_DeleteAce@8__imp__DeleteAce@8_DeleteService@4__imp__DeleteService@4_DeregisterEventSource@4__imp__DeregisterEventSource@4_DestroyPrivateObjectSecurity@4__imp__DestroyPrivateObjectSecurity@4_DuplicateEncryptionInfoFile@20__imp__DuplicateEncryptionInfoFile@20_DuplicateToken@12__imp__DuplicateToken@12_DuplicateTokenEx@24__imp__DuplicateTokenEx@24_EnableTrace@24__imp__EnableTrace@24_EnableTraceEx@48__imp__EnableTraceEx@48_EnableTraceEx2@44__imp__EnableTraceEx2@44_EncryptFileA@4__imp__EncryptFileA@4_EncryptFileW@4__imp__EncryptFileW@4_EncryptionDisable@8__imp__EncryptionDisable@8_EnumDependentServicesA@24__imp__EnumDependentServicesA@24_EnumDependentServicesW@24__imp__EnumDependentServicesW@24_EnumDynamicTimeZoneInformation@8__imp__EnumDynamicTimeZoneInformation@8_EnumServicesStatusA@32__imp__EnumServicesStatusA@32_EnumServicesStatusExA@40__imp__EnumServicesStatusExA@40_EnumServicesStatusExW@40__imp__EnumServicesStatusExW@40_EnumServicesStatusW@32__imp__EnumServicesStatusW@32_EnumerateTraceGuids@12__imp__EnumerateTraceGuids@12_EnumerateTraceGuidsEx@24__imp__EnumerateTraceGuidsEx@24_EqualDomainSid@12__imp__EqualDomainSid@12_EqualPrefixSid@8__imp__EqualPrefixSid@8_EqualSid@8__imp__EqualSid@8_EventAccessControl@20__imp__EventAccessControl@20_EventAccessQuery@12__imp__EventAccessQuery@12_EventAccessRemove@4__imp__EventAccessRemove@4_EventActivityIdControl@8__imp__EventActivityIdControl@8_EventEnabled@12__imp__EventEnabled@12_EventProviderEnabled@20__imp__EventProviderEnabled@20_EventRegister@16__imp__EventRegister@16_EventSetInformation@20__imp__EventSetInformation@20_EventUnregister@8__imp__EventUnregister@8_EventWrite@20__imp__EventWrite@20_EventWriteEx@40__imp__EventWriteEx@40_EventWriteString@24__imp__EventWriteString@24_EventWriteTransfer@28__imp__EventWriteTransfer@28_FileEncryptionStatusA@8__imp__FileEncryptionStatusA@8_FileEncryptionStatusW@8__imp__FileEncryptionStatusW@8_FindFirstFreeAce@8__imp__FindFirstFreeAce@8_FlushTraceA@16__imp__FlushTraceA@16_FlushTraceW@16__imp__FlushTraceW@16_FreeEncryptedFileMetadata@4__imp__FreeEncryptedFileMetadata@4_FreeEncryptionCertificateHashList@4__imp__FreeEncryptionCertificateHashList@4_FreeInheritedFromArray@12__imp__FreeInheritedFromArray@12_FreeSid@4__imp__FreeSid@4_GetAce@12__imp__GetAce@12_GetAclInformation@16__imp__GetAclInformation@16_GetAuditedPermissionsFromAclA@16__imp__GetAuditedPermissionsFromAclA@16_GetAuditedPermissionsFromAclW@16__imp__GetAuditedPermissionsFromAclW@16_GetCurrentHwProfileA@4__imp__GetCurrentHwProfileA@4_GetCurrentHwProfileW@4__imp__GetCurrentHwProfileW@4_GetDynamicTimeZoneInformationEffectiveYears@12__imp__GetDynamicTimeZoneInformationEffectiveYears@12_GetEffectiveRightsFromAclA@12__imp__GetEffectiveRightsFromAclA@12_GetEffectiveRightsFromAclW@12__imp__GetEffectiveRightsFromAclW@12_GetEncryptedFileMetadata@12__imp__GetEncryptedFileMetadata@12_GetEventLogInformation@20__imp__GetEventLogInformation@20_GetExplicitEntriesFromAclA@12__imp__GetExplicitEntriesFromAclA@12_GetExplicitEntriesFromAclW@12__imp__GetExplicitEntriesFromAclW@12_GetFileSecurityA@20__imp__GetFileSecurityA@20_GetFileSecurityW@20__imp__GetFileSecurityW@20_GetInheritanceSourceA@40__imp__GetInheritanceSourceA@40_GetInheritanceSourceW@40__imp__GetInheritanceSourceW@40_GetKernelObjectSecurity@20__imp__GetKernelObjectSecurity@20_GetLengthSid@4__imp__GetLengthSid@4_GetLocalManagedApplicationData@12__imp__GetLocalManagedApplicationData@12_GetLocalManagedApplications@12__imp__GetLocalManagedApplications@12_GetManagedApplicationCategories@8__imp__GetManagedApplicationCategories@8_GetManagedApplications@20__imp__GetManagedApplications@20_GetMultipleTrusteeA@4__imp__GetMultipleTrusteeA@4_GetMultipleTrusteeOperationA@4__imp__GetMultipleTrusteeOperationA@4_GetMultipleTrusteeOperationW@4__imp__GetMultipleTrusteeOperationW@4_GetMultipleTrusteeW@4__imp__GetMultipleTrusteeW@4_GetNamedSecurityInfoA@32__imp__GetNamedSecurityInfoA@32_GetNamedSecurityInfoW@32__imp__GetNamedSecurityInfoW@32_GetNumberOfEventLogRecords@8__imp__GetNumberOfEventLogRecords@8_GetOldestEventLogRecord@8__imp__GetOldestEventLogRecord@8_GetPrivateObjectSecurity@20__imp__GetPrivateObjectSecurity@20_GetSecurityDescriptorControl@12__imp__GetSecurityDescriptorControl@12_GetSecurityDescriptorDacl@16__imp__GetSecurityDescriptorDacl@16_GetSecurityDescriptorGroup@12__imp__GetSecurityDescriptorGroup@12_GetSecurityDescriptorLength@4__imp__GetSecurityDescriptorLength@4_GetSecurityDescriptorOwner@12__imp__GetSecurityDescriptorOwner@12_GetSecurityDescriptorRMControl@8__imp__GetSecurityDescriptorRMControl@8_GetSecurityDescriptorSacl@16__imp__GetSecurityDescriptorSacl@16_GetSecurityInfo@32__imp__GetSecurityInfo@32_GetServiceDisplayNameA@16__imp__GetServiceDisplayNameA@16_GetServiceDisplayNameW@16__imp__GetServiceDisplayNameW@16_GetServiceKeyNameA@16__imp__GetServiceKeyNameA@16_GetServiceKeyNameW@16__imp__GetServiceKeyNameW@16_GetSidIdentifierAuthority@4__imp__GetSidIdentifierAuthority@4_GetSidLengthRequired@4__imp__GetSidLengthRequired@4_GetSidSubAuthority@8__imp__GetSidSubAuthority@8_GetSidSubAuthorityCount@4__imp__GetSidSubAuthorityCount@4_GetThreadWaitChain@28__imp__GetThreadWaitChain@28_GetTokenInformation@20__imp__GetTokenInformation@20_GetTraceEnableFlags@8__imp__GetTraceEnableFlags@8_GetTraceEnableLevel@8__imp__GetTraceEnableLevel@8_GetTraceLoggerHandle@4__imp__GetTraceLoggerHandle@4_GetTrusteeFormA@4__imp__GetTrusteeFormA@4_GetTrusteeFormW@4__imp__GetTrusteeFormW@4_GetTrusteeNameA@4__imp__GetTrusteeNameA@4_GetTrusteeNameW@4__imp__GetTrusteeNameW@4_GetTrusteeTypeA@4__imp__GetTrusteeTypeA@4_GetTrusteeTypeW@4__imp__GetTrusteeTypeW@4_GetUserNameA@8__imp__GetUserNameA@8_GetUserNameW@8__imp__GetUserNameW@8_GetWindowsAccountDomainSid@12__imp__GetWindowsAccountDomainSid@12_ImpersonateAnonymousToken@4__imp__ImpersonateAnonymousToken@4_ImpersonateLoggedOnUser@4__imp__ImpersonateLoggedOnUser@4_ImpersonateNamedPipeClient@4__imp__ImpersonateNamedPipeClient@4_ImpersonateSelf@4__imp__ImpersonateSelf@4_InitializeAcl@12__imp__InitializeAcl@12_InitializeSecurityDescriptor@8__imp__InitializeSecurityDescriptor@8_InitializeSid@12__imp__InitializeSid@12_InitiateShutdownA@20__imp__InitiateShutdownA@20_InitiateShutdownW@20__imp__InitiateShutdownW@20_InitiateSystemShutdownA@20__imp__InitiateSystemShutdownA@20_InitiateSystemShutdownExA@24__imp__InitiateSystemShutdownExA@24_InitiateSystemShutdownExW@24__imp__InitiateSystemShutdownExW@24_InitiateSystemShutdownW@20__imp__InitiateSystemShutdownW@20_InstallApplication@4__imp__InstallApplication@4_IsTextUnicode@12__imp__IsTextUnicode@12_IsTokenRestricted@4__imp__IsTokenRestricted@4_IsTokenUntrusted@4__imp__IsTokenUntrusted@4_IsValidAcl@4__imp__IsValidAcl@4_IsValidSecurityDescriptor@4__imp__IsValidSecurityDescriptor@4_IsValidSid@4__imp__IsValidSid@4_IsWellKnownSid@8__imp__IsWellKnownSid@8_LockServiceDatabase@4__imp__LockServiceDatabase@4_LogonUserA@24__imp__LogonUserA@24_LogonUserExA@40__imp__LogonUserExA@40_LogonUserExW@40__imp__LogonUserExW@40_LogonUserW@24__imp__LogonUserW@24_LookupAccountNameA@28__imp__LookupAccountNameA@28_LookupAccountNameW@28__imp__LookupAccountNameW@28_LookupAccountSidA@28__imp__LookupAccountSidA@28_LookupAccountSidW@28__imp__LookupAccountSidW@28_LookupPrivilegeDisplayNameA@20__imp__LookupPrivilegeDisplayNameA@20_LookupPrivilegeDisplayNameW@20__imp__LookupPrivilegeDisplayNameW@20_LookupPrivilegeNameA@16__imp__LookupPrivilegeNameA@16_LookupPrivilegeNameW@16__imp__LookupPrivilegeNameW@16_LookupPrivilegeValueA@12__imp__LookupPrivilegeValueA@12_LookupPrivilegeValueW@12__imp__LookupPrivilegeValueW@12_LookupSecurityDescriptorPartsA@28__imp__LookupSecurityDescriptorPartsA@28_LookupSecurityDescriptorPartsW@28__imp__LookupSecurityDescriptorPartsW@28_LsaAddAccountRights@16__imp__LsaAddAccountRights@16_LsaClose@4__imp__LsaClose@4_LsaCreateTrustedDomainEx@20__imp__LsaCreateTrustedDomainEx@20_LsaDeleteTrustedDomain@8__imp__LsaDeleteTrustedDomain@8_LsaEnumerateAccountRights@16__imp__LsaEnumerateAccountRights@16_LsaEnumerateAccountsWithUserRight@16__imp__LsaEnumerateAccountsWithUserRight@16_LsaEnumerateTrustedDomains@20__imp__LsaEnumerateTrustedDomains@20_LsaEnumerateTrustedDomainsEx@20__imp__LsaEnumerateTrustedDomainsEx@20_LsaFreeMemory@4__imp__LsaFreeMemory@4_LsaGetAppliedCAPIDs@12__imp__LsaGetAppliedCAPIDs@12_LsaLookupNames@20__imp__LsaLookupNames@20_LsaLookupNames2@24__imp__LsaLookupNames2@24_LsaLookupSids@20__imp__LsaLookupSids@20_LsaLookupSids2@24__imp__LsaLookupSids2@24_LsaNtStatusToWinError@4__imp__LsaNtStatusToWinError@4_LsaOpenPolicy@16__imp__LsaOpenPolicy@16_LsaOpenTrustedDomainByName@16__imp__LsaOpenTrustedDomainByName@16_LsaQueryCAPs@16__imp__LsaQueryCAPs@16_LsaQueryDomainInformationPolicy@12__imp__LsaQueryDomainInformationPolicy@12_LsaQueryForestTrustInformation@12__imp__LsaQueryForestTrustInformation@12_LsaQueryInformationPolicy@12__imp__LsaQueryInformationPolicy@12_LsaQueryTrustedDomainInfo@16__imp__LsaQueryTrustedDomainInfo@16_LsaQueryTrustedDomainInfoByName@16__imp__LsaQueryTrustedDomainInfoByName@16_LsaRemoveAccountRights@20__imp__LsaRemoveAccountRights@20_LsaRetrievePrivateData@12__imp__LsaRetrievePrivateData@12_LsaSetCAPs@12__imp__LsaSetCAPs@12_LsaSetDomainInformationPolicy@12__imp__LsaSetDomainInformationPolicy@12_LsaSetForestTrustInformation@20__imp__LsaSetForestTrustInformation@20_LsaSetInformationPolicy@12__imp__LsaSetInformationPolicy@12_LsaSetTrustedDomainInfoByName@16__imp__LsaSetTrustedDomainInfoByName@16_LsaSetTrustedDomainInformation@16__imp__LsaSetTrustedDomainInformation@16_LsaStorePrivateData@12__imp__LsaStorePrivateData@12_MSChapSrvChangePassword@28__imp__MSChapSrvChangePassword@28_MSChapSrvChangePassword2@28__imp__MSChapSrvChangePassword2@28_MakeAbsoluteSD@44__imp__MakeAbsoluteSD@44_MakeSelfRelativeSD@12__imp__MakeSelfRelativeSD@12_MapGenericMask@8__imp__MapGenericMask@8_NotifyBootConfigStatus@4__imp__NotifyBootConfigStatus@4_NotifyChangeEventLog@8__imp__NotifyChangeEventLog@8_NotifyServiceStatusChangeA@12__imp__NotifyServiceStatusChangeA@12_NotifyServiceStatusChangeW@12__imp__NotifyServiceStatusChangeW@12_ObjectCloseAuditAlarmA@12__imp__ObjectCloseAuditAlarmA@12_ObjectCloseAuditAlarmW@12__imp__ObjectCloseAuditAlarmW@12_ObjectDeleteAuditAlarmA@12__imp__ObjectDeleteAuditAlarmA@12_ObjectDeleteAuditAlarmW@12__imp__ObjectDeleteAuditAlarmW@12_ObjectOpenAuditAlarmA@48__imp__ObjectOpenAuditAlarmA@48_ObjectOpenAuditAlarmW@48__imp__ObjectOpenAuditAlarmW@48_ObjectPrivilegeAuditAlarmA@24__imp__ObjectPrivilegeAuditAlarmA@24_ObjectPrivilegeAuditAlarmW@24__imp__ObjectPrivilegeAuditAlarmW@24_OpenBackupEventLogA@8__imp__OpenBackupEventLogA@8_OpenBackupEventLogW@8__imp__OpenBackupEventLogW@8_OpenEncryptedFileRawA@12__imp__OpenEncryptedFileRawA@12_OpenEncryptedFileRawW@12__imp__OpenEncryptedFileRawW@12_OpenEventLogA@8__imp__OpenEventLogA@8_OpenEventLogW@8__imp__OpenEventLogW@8_OpenProcessToken@12__imp__OpenProcessToken@12_OpenSCManagerA@12__imp__OpenSCManagerA@12_OpenSCManagerW@12__imp__OpenSCManagerW@12_OpenServiceA@12__imp__OpenServiceA@12_OpenServiceW@12__imp__OpenServiceW@12_OpenThreadToken@16__imp__OpenThreadToken@16_OpenThreadWaitChainSession@8__imp__OpenThreadWaitChainSession@8_OpenTraceA@4__imp__OpenTraceA@4_OpenTraceW@4__imp__OpenTraceW@4_OperationEnd@4__imp__OperationEnd@4_OperationStart@4__imp__OperationStart@4_PerfAddCounters@12__imp__PerfAddCounters@12_PerfCloseQueryHandle@4__imp__PerfCloseQueryHandle@4_PerfCreateInstance@16__imp__PerfCreateInstance@16_PerfDecrementULongCounterValue@16__imp__PerfDecrementULongCounterValue@16_PerfDecrementULongLongCounterValue@20__imp__PerfDecrementULongLongCounterValue@20_PerfDeleteCounters@12__imp__PerfDeleteCounters@12_PerfDeleteInstance@8__imp__PerfDeleteInstance@8_PerfEnumerateCounterSet@16__imp__PerfEnumerateCounterSet@16_PerfEnumerateCounterSetInstances@20__imp__PerfEnumerateCounterSetInstances@20_PerfIncrementULongCounterValue@16__imp__PerfIncrementULongCounterValue@16_PerfIncrementULongLongCounterValue@20__imp__PerfIncrementULongLongCounterValue@20_PerfOpenQueryHandle@8__imp__PerfOpenQueryHandle@8_PerfQueryCounterData@16__imp__PerfQueryCounterData@16_PerfQueryCounterInfo@16__imp__PerfQueryCounterInfo@16_PerfQueryCounterSetRegistrationInfo@28__imp__PerfQueryCounterSetRegistrationInfo@28_PerfQueryInstance@16__imp__PerfQueryInstance@16_PerfSetCounterRefValue@16__imp__PerfSetCounterRefValue@16_PerfSetCounterSetInfo@12__imp__PerfSetCounterSetInfo@12_PerfSetULongCounterValue@16__imp__PerfSetULongCounterValue@16_PerfSetULongLongCounterValue@20__imp__PerfSetULongLongCounterValue@20_PerfStartProvider@12__imp__PerfStartProvider@12_PerfStartProviderEx@12__imp__PerfStartProviderEx@12_PerfStopProvider@4__imp__PerfStopProvider@4_PrivilegeCheck@12__imp__PrivilegeCheck@12_PrivilegedServiceAuditAlarmA@20__imp__PrivilegedServiceAuditAlarmA@20_PrivilegedServiceAuditAlarmW@20__imp__PrivilegedServiceAuditAlarmW@20_ProcessTrace@16__imp__ProcessTrace@16_QueryAllTracesA@12__imp__QueryAllTracesA@12_QueryAllTracesW@12__imp__QueryAllTracesW@12_QueryRecoveryAgentsOnEncryptedFile@8__imp__QueryRecoveryAgentsOnEncryptedFile@8_QuerySecurityAccessMask@8__imp__QuerySecurityAccessMask@8_QueryServiceConfig2A@20__imp__QueryServiceConfig2A@20_QueryServiceConfig2W@20__imp__QueryServiceConfig2W@20_QueryServiceConfigA@16__imp__QueryServiceConfigA@16_QueryServiceConfigW@16__imp__QueryServiceConfigW@16_QueryServiceDynamicInformation@12__imp__QueryServiceDynamicInformation@12_QueryServiceLockStatusA@16__imp__QueryServiceLockStatusA@16_QueryServiceLockStatusW@16__imp__QueryServiceLockStatusW@16_QueryServiceObjectSecurity@20__imp__QueryServiceObjectSecurity@20_QueryServiceStatus@8__imp__QueryServiceStatus@8_QueryServiceStatusEx@20__imp__QueryServiceStatusEx@20_QueryTraceA@16__imp__QueryTraceA@16_QueryTraceProcessingHandle@32__imp__QueryTraceProcessingHandle@32_QueryTraceW@16__imp__QueryTraceW@16_QueryUsersOnEncryptedFile@8__imp__QueryUsersOnEncryptedFile@8_ReadEncryptedFileRaw@12__imp__ReadEncryptedFileRaw@12_ReadEventLogA@28__imp__ReadEventLogA@28_ReadEventLogW@28__imp__ReadEventLogW@28_RegCloseKey@4__imp__RegCloseKey@4_RegConnectRegistryA@12__imp__RegConnectRegistryA@12_RegConnectRegistryExA@16__imp__RegConnectRegistryExA@16_RegConnectRegistryExW@16__imp__RegConnectRegistryExW@16_RegConnectRegistryW@12__imp__RegConnectRegistryW@12_RegCopyTreeA@12__imp__RegCopyTreeA@12_RegCopyTreeW@12__imp__RegCopyTreeW@12_RegCreateKeyA@12__imp__RegCreateKeyA@12_RegCreateKeyExA@36__imp__RegCreateKeyExA@36_RegCreateKeyExW@36__imp__RegCreateKeyExW@36_RegCreateKeyTransactedA@44__imp__RegCreateKeyTransactedA@44_RegCreateKeyTransactedW@44__imp__RegCreateKeyTransactedW@44_RegCreateKeyW@12__imp__RegCreateKeyW@12_RegDeleteKeyA@8__imp__RegDeleteKeyA@8_RegDeleteKeyExA@16__imp__RegDeleteKeyExA@16_RegDeleteKeyExW@16__imp__RegDeleteKeyExW@16_RegDeleteKeyTransactedA@24__imp__RegDeleteKeyTransactedA@24_RegDeleteKeyTransactedW@24__imp__RegDeleteKeyTransactedW@24_RegDeleteKeyValueA@12__imp__RegDeleteKeyValueA@12_RegDeleteKeyValueW@12__imp__RegDeleteKeyValueW@12_RegDeleteKeyW@8__imp__RegDeleteKeyW@8_RegDeleteTreeA@8__imp__RegDeleteTreeA@8_RegDeleteTreeW@8__imp__RegDeleteTreeW@8_RegDeleteValueA@8__imp__RegDeleteValueA@8_RegDeleteValueW@8__imp__RegDeleteValueW@8_RegDisablePredefinedCache@0__imp__RegDisablePredefinedCache@0_RegDisablePredefinedCacheEx@0__imp__RegDisablePredefinedCacheEx@0_RegDisableReflectionKey@4__imp__RegDisableReflectionKey@4_RegEnableReflectionKey@4__imp__RegEnableReflectionKey@4_RegEnumKeyA@16__imp__RegEnumKeyA@16_RegEnumKeyExA@32__imp__RegEnumKeyExA@32_RegEnumKeyExW@32__imp__RegEnumKeyExW@32_RegEnumKeyW@16__imp__RegEnumKeyW@16_RegEnumValueA@32__imp__RegEnumValueA@32_RegEnumValueW@32__imp__RegEnumValueW@32_RegFlushKey@4__imp__RegFlushKey@4_RegGetKeySecurity@16__imp__RegGetKeySecurity@16_RegGetValueA@28__imp__RegGetValueA@28_RegGetValueW@28__imp__RegGetValueW@28_RegLoadAppKeyA@20__imp__RegLoadAppKeyA@20_RegLoadAppKeyW@20__imp__RegLoadAppKeyW@20_RegLoadKeyA@12__imp__RegLoadKeyA@12_RegLoadKeyW@12__imp__RegLoadKeyW@12_RegLoadMUIStringA@28__imp__RegLoadMUIStringA@28_RegLoadMUIStringW@28__imp__RegLoadMUIStringW@28_RegNotifyChangeKeyValue@20__imp__RegNotifyChangeKeyValue@20_RegOpenCurrentUser@8__imp__RegOpenCurrentUser@8_RegOpenKeyA@12__imp__RegOpenKeyA@12_RegOpenKeyExA@20__imp__RegOpenKeyExA@20_RegOpenKeyExW@20__imp__RegOpenKeyExW@20_RegOpenKeyTransactedA@28__imp__RegOpenKeyTransactedA@28_RegOpenKeyTransactedW@28__imp__RegOpenKeyTransactedW@28_RegOpenKeyW@12__imp__RegOpenKeyW@12_RegOpenUserClassesRoot@16__imp__RegOpenUserClassesRoot@16_RegOverridePredefKey@8__imp__RegOverridePredefKey@8_RegQueryInfoKeyA@48__imp__RegQueryInfoKeyA@48_RegQueryInfoKeyW@48__imp__RegQueryInfoKeyW@48_RegQueryMultipleValuesA@20__imp__RegQueryMultipleValuesA@20_RegQueryMultipleValuesW@20__imp__RegQueryMultipleValuesW@20_RegQueryReflectionKey@8__imp__RegQueryReflectionKey@8_RegQueryValueA@16__imp__RegQueryValueA@16_RegQueryValueExA@24__imp__RegQueryValueExA@24_RegQueryValueExW@24__imp__RegQueryValueExW@24_RegQueryValueW@16__imp__RegQueryValueW@16_RegRenameKey@12__imp__RegRenameKey@12_RegReplaceKeyA@16__imp__RegReplaceKeyA@16_RegReplaceKeyW@16__imp__RegReplaceKeyW@16_RegRestoreKeyA@12__imp__RegRestoreKeyA@12_RegRestoreKeyW@12__imp__RegRestoreKeyW@12_RegSaveKeyA@12__imp__RegSaveKeyA@12_RegSaveKeyExA@16__imp__RegSaveKeyExA@16_RegSaveKeyExW@16__imp__RegSaveKeyExW@16_RegSaveKeyW@12__imp__RegSaveKeyW@12_RegSetKeySecurity@12__imp__RegSetKeySecurity@12_RegSetKeyValueA@24__imp__RegSetKeyValueA@24_RegSetKeyValueW@24__imp__RegSetKeyValueW@24_RegSetValueA@20__imp__RegSetValueA@20_RegSetValueExA@24__imp__RegSetValueExA@24_RegSetValueExW@24__imp__RegSetValueExW@24_RegSetValueW@20__imp__RegSetValueW@20_RegUnLoadKeyA@8__imp__RegUnLoadKeyA@8_RegUnLoadKeyW@8__imp__RegUnLoadKeyW@8_RegisterEventSourceA@8__imp__RegisterEventSourceA@8_RegisterEventSourceW@8__imp__RegisterEventSourceW@8_RegisterServiceCtrlHandlerA@8__imp__RegisterServiceCtrlHandlerA@8_RegisterServiceCtrlHandlerExA@12__imp__RegisterServiceCtrlHandlerExA@12_RegisterServiceCtrlHandlerExW@12__imp__RegisterServiceCtrlHandlerExW@12_RegisterServiceCtrlHandlerW@8__imp__RegisterServiceCtrlHandlerW@8_RegisterTraceGuidsA@32__imp__RegisterTraceGuidsA@32_RegisterTraceGuidsW@32__imp__RegisterTraceGuidsW@32_RegisterWaitChainCOMCallback@8__imp__RegisterWaitChainCOMCallback@8_RemoveTraceCallback@4__imp__RemoveTraceCallback@4_RemoveUsersFromEncryptedFile@8__imp__RemoveUsersFromEncryptedFile@8_ReportEventA@36__imp__ReportEventA@36_ReportEventW@36__imp__ReportEventW@36_RevertToSelf@0__imp__RevertToSelf@0_SaferCloseLevel@4__imp__SaferCloseLevel@4_SaferComputeTokenFromLevel@20__imp__SaferComputeTokenFromLevel@20_SaferCreateLevel@20__imp__SaferCreateLevel@20_SaferGetLevelInformation@20__imp__SaferGetLevelInformation@20_SaferGetPolicyInformation@24__imp__SaferGetPolicyInformation@24_SaferIdentifyLevel@16__imp__SaferIdentifyLevel@16_SaferRecordEventLogEntry@12__imp__SaferRecordEventLogEntry@12_SaferSetLevelInformation@16__imp__SaferSetLevelInformation@16_SaferSetPolicyInformation@20__imp__SaferSetPolicyInformation@20_SaferiIsExecutableFileType@8__imp__SaferiIsExecutableFileType@8_SetAclInformation@16__imp__SetAclInformation@16_SetEncryptedFileMetadata@24__imp__SetEncryptedFileMetadata@24_SetEntriesInAclA@16__imp__SetEntriesInAclA@16_SetEntriesInAclW@16__imp__SetEntriesInAclW@16_SetFileSecurityA@12__imp__SetFileSecurityA@12_SetFileSecurityW@12__imp__SetFileSecurityW@12_SetKernelObjectSecurity@12__imp__SetKernelObjectSecurity@12_SetNamedSecurityInfoA@28__imp__SetNamedSecurityInfoA@28_SetNamedSecurityInfoW@28__imp__SetNamedSecurityInfoW@28_SetPrivateObjectSecurity@20__imp__SetPrivateObjectSecurity@20_SetPrivateObjectSecurityEx@24__imp__SetPrivateObjectSecurityEx@24_SetSecurityAccessMask@8__imp__SetSecurityAccessMask@8_SetSecurityDescriptorControl@12__imp__SetSecurityDescriptorControl@12_SetSecurityDescriptorDacl@16__imp__SetSecurityDescriptorDacl@16_SetSecurityDescriptorGroup@12__imp__SetSecurityDescriptorGroup@12_SetSecurityDescriptorOwner@12__imp__SetSecurityDescriptorOwner@12_SetSecurityDescriptorRMControl@8__imp__SetSecurityDescriptorRMControl@8_SetSecurityDescriptorSacl@16__imp__SetSecurityDescriptorSacl@16_SetSecurityInfo@28__imp__SetSecurityInfo@28_SetServiceBits@16__imp__SetServiceBits@16_SetServiceObjectSecurity@12__imp__SetServiceObjectSecurity@12_SetServiceStatus@8__imp__SetServiceStatus@8_SetThreadToken@8__imp__SetThreadToken@8_SetTokenInformation@16__imp__SetTokenInformation@16_SetTraceCallback@8__imp__SetTraceCallback@8_SetUserFileEncryptionKey@4__imp__SetUserFileEncryptionKey@4_SetUserFileEncryptionKeyEx@16__imp__SetUserFileEncryptionKeyEx@16_StartServiceA@12__imp__StartServiceA@12_StartServiceCtrlDispatcherA@4__imp__StartServiceCtrlDispatcherA@4_StartServiceCtrlDispatcherW@4__imp__StartServiceCtrlDispatcherW@4_StartServiceW@12__imp__StartServiceW@12_StartTraceA@12__imp__StartTraceA@12_StartTraceW@12__imp__StartTraceW@12_StopTraceA@16__imp__StopTraceA@16_StopTraceW@16__imp__StopTraceW@16_SystemFunction036@8__imp__SystemFunction036@8_SystemFunction040@12__imp__SystemFunction040@12_SystemFunction041@12__imp__SystemFunction041@12_TraceEvent@12__imp__TraceEvent@12_TraceEventInstance@20__imp__TraceEventInstance@20_TraceMessage@20__imp__TraceMessage@20_TraceMessageVa@24__imp__TraceMessageVa@24_TraceQueryInformation@24__imp__TraceQueryInformation@24_TraceSetInformation@20__imp__TraceSetInformation@20_TreeResetNamedSecurityInfoA@44__imp__TreeResetNamedSecurityInfoA@44_TreeResetNamedSecurityInfoW@44__imp__TreeResetNamedSecurityInfoW@44_TreeSetNamedSecurityInfoA@44__imp__TreeSetNamedSecurityInfoA@44_TreeSetNamedSecurityInfoW@44__imp__TreeSetNamedSecurityInfoW@44_UninstallApplication@8__imp__UninstallApplication@8_UnlockServiceDatabase@4__imp__UnlockServiceDatabase@4_UnregisterTraceGuids@8__imp__UnregisterTraceGuids@8_UpdateTraceA@16__imp__UpdateTraceA@16_UpdateTraceW@16__imp__UpdateTraceW@16_WaitServiceState@16__imp__WaitServiceState@16_WriteEncryptedFileRaw@12__imp__WriteEncryptedFileRaw@12/ 1634761632 0 38568 ` d-/,122l33V44F55J66T77|89~99r::\;;><<(==>>?t??f@@TAALBBJCCDDD4EE4FF*GGHH IIIlJJXKK@LL MMNN0OO$PPQQRRSST~TTlUUZVVBWW(XXY|YYlZZV[[:\\]]$^^2__@``NaaRbb:ccNdd:ee.ffgggphhLii,jj kkkrllbmmPnn:oo pppvqq^rr:ss.ttuzuuvvvXwwBxx"yyztzz\{{D||4}}~~~r`ҀF(h܄Ną:|XƉ0Ѝ`@~tdڒPȓ8jPƗ6hܚRț:ZΟNΠDHĢ@2*xfdܩPΪL8, r^ҳL´6" fָF&rh\̽<*rT2hD$ |hXX8**$zZ@,rpj`T8 ~rbZB2`<*pR<@($(rjT62lXRH2zZ<,~`L6   |  d  B  "   xV4b@tb@(nZJ,|\  >,??$@@ApAAHBB.CCDDD`EENFFJGGBHH.IIJJJ  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[]\_^`abcdefghijklmnopqsrtuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcd  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[]\_^`abcdefghijklmnopqsrtuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcd_AbortSystemShutdownA@4_AbortSystemShutdownW@4_AccessCheck@32_AccessCheckAndAuditAlarmA@44_AccessCheckAndAuditAlarmW@44_AccessCheckByType@44_AccessCheckByTypeAndAuditAlarmA@64_AccessCheckByTypeAndAuditAlarmW@64_AccessCheckByTypeResultList@44_AccessCheckByTypeResultListAndAuditAlarmA@64_AccessCheckByTypeResultListAndAuditAlarmByHandleA@68_AccessCheckByTypeResultListAndAuditAlarmByHandleW@68_AccessCheckByTypeResultListAndAuditAlarmW@64_AddAccessAllowedAce@16_AddAccessAllowedAceEx@20_AddAccessAllowedObjectAce@28_AddAccessDeniedAce@16_AddAccessDeniedAceEx@20_AddAccessDeniedObjectAce@28_AddAce@20_AddAuditAccessAce@24_AddAuditAccessAceEx@28_AddAuditAccessObjectAce@36_AddConditionalAce@32_AddMandatoryAce@20_AddUsersToEncryptedFile@8_AdjustTokenGroups@24_AdjustTokenPrivileges@24_AllocateAndInitializeSid@44_AllocateLocallyUniqueId@4_AreAllAccessesGranted@8_AreAnyAccessesGranted@8_AuditComputeEffectivePolicyBySid@16_AuditComputeEffectivePolicyByToken@16_AuditEnumerateCategories@8_AuditEnumeratePerUserPolicy@4_AuditEnumerateSubCategories@16_AuditFree@4_AuditLookupCategoryGuidFromCategoryId@8_AuditLookupCategoryIdFromCategoryGuid@8_AuditLookupCategoryNameA@8_AuditLookupCategoryNameW@8_AuditLookupSubCategoryNameA@8_AuditLookupSubCategoryNameW@8_AuditQueryGlobalSaclA@8_AuditQueryGlobalSaclW@8_AuditQueryPerUserPolicy@16_AuditQuerySecurity@8_AuditQuerySystemPolicy@12_AuditSetGlobalSaclA@8_AuditSetGlobalSaclW@8_AuditSetPerUserPolicy@12_AuditSetSecurity@8_AuditSetSystemPolicy@8_BackupEventLogA@8_BackupEventLogW@8_BuildExplicitAccessWithNameA@20_BuildExplicitAccessWithNameW@20_BuildImpersonateExplicitAccessWithNameA@24_BuildImpersonateExplicitAccessWithNameW@24_BuildImpersonateTrusteeA@8_BuildImpersonateTrusteeW@8_BuildSecurityDescriptorA@36_BuildSecurityDescriptorW@36_BuildTrusteeWithNameA@8_BuildTrusteeWithNameW@8_BuildTrusteeWithObjectsAndNameA@24_BuildTrusteeWithObjectsAndNameW@24_BuildTrusteeWithObjectsAndSidA@20_BuildTrusteeWithObjectsAndSidW@20_BuildTrusteeWithSidA@8_BuildTrusteeWithSidW@8_ChangeServiceConfig2A@12_ChangeServiceConfig2W@12_ChangeServiceConfigA@44_ChangeServiceConfigW@44_CheckForHiberboot@8_CheckTokenMembership@12_ClearEventLogA@8_ClearEventLogW@8_CloseEncryptedFileRaw@4_CloseEventLog@4_CloseServiceHandle@4_CloseThreadWaitChainSession@4_CloseTrace@8_CommandLineFromMsiDescriptor@12_ControlService@12_ControlServiceExA@16_ControlServiceExW@16_ControlTraceA@20_ControlTraceW@20_ConvertSecurityDescriptorToStringSecurityDescriptorA@20_ConvertSecurityDescriptorToStringSecurityDescriptorW@20_ConvertSidToStringSidA@8_ConvertSidToStringSidW@8_ConvertStringSecurityDescriptorToSecurityDescriptorA@16_ConvertStringSecurityDescriptorToSecurityDescriptorW@16_ConvertStringSidToSidA@8_ConvertStringSidToSidW@8_ConvertToAutoInheritPrivateObjectSecurity@24_CopySid@12_CreatePrivateObjectSecurity@24_CreatePrivateObjectSecurityEx@32_CreatePrivateObjectSecurityWithMultipleInheritance@36_CreateProcessAsUserA@44_CreateProcessAsUserW@44_CreateProcessWithLogonW@44_CreateProcessWithTokenW@36_CreateRestrictedToken@36_CreateServiceA@52_CreateServiceW@52_CreateTraceInstanceId@8_CreateWellKnownSid@16_CredDeleteA@12_CredDeleteW@12_CredEnumerateA@16_CredEnumerateW@16_CredFindBestCredentialA@16_CredFindBestCredentialW@16_CredFree@4_CredGetSessionTypes@8_CredGetTargetInfoA@12_CredGetTargetInfoW@12_CredIsMarshaledCredentialA@4_CredIsMarshaledCredentialW@4_CredIsProtectedA@8_CredIsProtectedW@8_CredMarshalCredentialA@12_CredMarshalCredentialW@12_CredProtectA@24_CredProtectW@24_CredReadA@16_CredReadDomainCredentialsA@16_CredReadDomainCredentialsW@16_CredReadW@16_CredRenameA@16_CredRenameW@16_CredUnmarshalCredentialA@12_CredUnmarshalCredentialW@12_CredUnprotectA@20_CredUnprotectW@20_CredWriteA@8_CredWriteDomainCredentialsA@12_CredWriteDomainCredentialsW@12_CredWriteW@8_CryptAcquireContextA@20_CryptAcquireContextW@20_CryptContextAddRef@12_CryptCreateHash@20_CryptDecrypt@24_CryptDeriveKey@20_CryptDestroyHash@4_CryptDestroyKey@4_CryptDuplicateHash@16_CryptDuplicateKey@16_CryptEncrypt@28_CryptEnumProviderTypesA@24_CryptEnumProviderTypesW@24_CryptEnumProvidersA@24_CryptEnumProvidersW@24_CryptExportKey@24_CryptGenKey@16_CryptGenRandom@12_CryptGetDefaultProviderA@20_CryptGetDefaultProviderW@20_CryptGetHashParam@20_CryptGetKeyParam@20_CryptGetProvParam@20_CryptGetUserKey@12_CryptHashData@16_CryptHashSessionKey@12_CryptImportKey@24_CryptReleaseContext@8_CryptSetHashParam@16_CryptSetKeyParam@16_CryptSetProvParam@16_CryptSetProviderA@8_CryptSetProviderExA@16_CryptSetProviderExW@16_CryptSetProviderW@8_CryptSignHashA@24_CryptSignHashW@24_CryptVerifySignatureA@24_CryptVerifySignatureW@24_CveEventWrite@8_DecryptFileA@8_DecryptFileW@8_DeleteAce@8_DeleteService@4_DeregisterEventSource@4_DestroyPrivateObjectSecurity@4_DuplicateEncryptionInfoFile@20_DuplicateToken@12_DuplicateTokenEx@24_EnableTrace@24_EnableTraceEx2@44_EnableTraceEx@48_EncryptFileA@4_EncryptFileW@4_EncryptionDisable@8_EnumDependentServicesA@24_EnumDependentServicesW@24_EnumDynamicTimeZoneInformation@8_EnumServicesStatusA@32_EnumServicesStatusExA@40_EnumServicesStatusExW@40_EnumServicesStatusW@32_EnumerateTraceGuids@12_EnumerateTraceGuidsEx@24_EqualDomainSid@12_EqualPrefixSid@8_EqualSid@8_EventAccessControl@20_EventAccessQuery@12_EventAccessRemove@4_EventActivityIdControl@8_EventEnabled@12_EventProviderEnabled@20_EventRegister@16_EventSetInformation@20_EventUnregister@8_EventWrite@20_EventWriteEx@40_EventWriteString@24_EventWriteTransfer@28_FileEncryptionStatusA@8_FileEncryptionStatusW@8_FindFirstFreeAce@8_FlushTraceA@16_FlushTraceW@16_FreeEncryptedFileMetadata@4_FreeEncryptionCertificateHashList@4_FreeInheritedFromArray@12_FreeSid@4_GetAce@12_GetAclInformation@16_GetAuditedPermissionsFromAclA@16_GetAuditedPermissionsFromAclW@16_GetCurrentHwProfileA@4_GetCurrentHwProfileW@4_GetDynamicTimeZoneInformationEffectiveYears@12_GetEffectiveRightsFromAclA@12_GetEffectiveRightsFromAclW@12_GetEncryptedFileMetadata@12_GetEventLogInformation@20_GetExplicitEntriesFromAclA@12_GetExplicitEntriesFromAclW@12_GetFileSecurityA@20_GetFileSecurityW@20_GetInheritanceSourceA@40_GetInheritanceSourceW@40_GetKernelObjectSecurity@20_GetLengthSid@4_GetLocalManagedApplicationData@12_GetLocalManagedApplications@12_GetManagedApplicationCategories@8_GetManagedApplications@20_GetMultipleTrusteeA@4_GetMultipleTrusteeOperationA@4_GetMultipleTrusteeOperationW@4_GetMultipleTrusteeW@4_GetNamedSecurityInfoA@32_GetNamedSecurityInfoW@32_GetNumberOfEventLogRecords@8_GetOldestEventLogRecord@8_GetPrivateObjectSecurity@20_GetSecurityDescriptorControl@12_GetSecurityDescriptorDacl@16_GetSecurityDescriptorGroup@12_GetSecurityDescriptorLength@4_GetSecurityDescriptorOwner@12_GetSecurityDescriptorRMControl@8_GetSecurityDescriptorSacl@16_GetSecurityInfo@32_GetServiceDisplayNameA@16_GetServiceDisplayNameW@16_GetServiceKeyNameA@16_GetServiceKeyNameW@16_GetSidIdentifierAuthority@4_GetSidLengthRequired@4_GetSidSubAuthority@8_GetSidSubAuthorityCount@4_GetThreadWaitChain@28_GetTokenInformation@20_GetTraceEnableFlags@8_GetTraceEnableLevel@8_GetTraceLoggerHandle@4_GetTrusteeFormA@4_GetTrusteeFormW@4_GetTrusteeNameA@4_GetTrusteeNameW@4_GetTrusteeTypeA@4_GetTrusteeTypeW@4_GetUserNameA@8_GetUserNameW@8_GetWindowsAccountDomainSid@12_ImpersonateAnonymousToken@4_ImpersonateLoggedOnUser@4_ImpersonateNamedPipeClient@4_ImpersonateSelf@4_InitializeAcl@12_InitializeSecurityDescriptor@8_InitializeSid@12_InitiateShutdownA@20_InitiateShutdownW@20_InitiateSystemShutdownA@20_InitiateSystemShutdownExA@24_InitiateSystemShutdownExW@24_InitiateSystemShutdownW@20_InstallApplication@4_IsTextUnicode@12_IsTokenRestricted@4_IsTokenUntrusted@4_IsValidAcl@4_IsValidSecurityDescriptor@4_IsValidSid@4_IsWellKnownSid@8_LockServiceDatabase@4_LogonUserA@24_LogonUserExA@40_LogonUserExW@40_LogonUserW@24_LookupAccountNameA@28_LookupAccountNameW@28_LookupAccountSidA@28_LookupAccountSidW@28_LookupPrivilegeDisplayNameA@20_LookupPrivilegeDisplayNameW@20_LookupPrivilegeNameA@16_LookupPrivilegeNameW@16_LookupPrivilegeValueA@12_LookupPrivilegeValueW@12_LookupSecurityDescriptorPartsA@28_LookupSecurityDescriptorPartsW@28_LsaAddAccountRights@16_LsaClose@4_LsaCreateTrustedDomainEx@20_LsaDeleteTrustedDomain@8_LsaEnumerateAccountRights@16_LsaEnumerateAccountsWithUserRight@16_LsaEnumerateTrustedDomains@20_LsaEnumerateTrustedDomainsEx@20_LsaFreeMemory@4_LsaGetAppliedCAPIDs@12_LsaLookupNames2@24_LsaLookupNames@20_LsaLookupSids2@24_LsaLookupSids@20_LsaNtStatusToWinError@4_LsaOpenPolicy@16_LsaOpenTrustedDomainByName@16_LsaQueryCAPs@16_LsaQueryDomainInformationPolicy@12_LsaQueryForestTrustInformation@12_LsaQueryInformationPolicy@12_LsaQueryTrustedDomainInfo@16_LsaQueryTrustedDomainInfoByName@16_LsaRemoveAccountRights@20_LsaRetrievePrivateData@12_LsaSetCAPs@12_LsaSetDomainInformationPolicy@12_LsaSetForestTrustInformation@20_LsaSetInformationPolicy@12_LsaSetTrustedDomainInfoByName@16_LsaSetTrustedDomainInformation@16_LsaStorePrivateData@12_MSChapSrvChangePassword2@28_MSChapSrvChangePassword@28_MakeAbsoluteSD@44_MakeSelfRelativeSD@12_MapGenericMask@8_NotifyBootConfigStatus@4_NotifyChangeEventLog@8_NotifyServiceStatusChangeA@12_NotifyServiceStatusChangeW@12_ObjectCloseAuditAlarmA@12_ObjectCloseAuditAlarmW@12_ObjectDeleteAuditAlarmA@12_ObjectDeleteAuditAlarmW@12_ObjectOpenAuditAlarmA@48_ObjectOpenAuditAlarmW@48_ObjectPrivilegeAuditAlarmA@24_ObjectPrivilegeAuditAlarmW@24_OpenBackupEventLogA@8_OpenBackupEventLogW@8_OpenEncryptedFileRawA@12_OpenEncryptedFileRawW@12_OpenEventLogA@8_OpenEventLogW@8_OpenProcessToken@12_OpenSCManagerA@12_OpenSCManagerW@12_OpenServiceA@12_OpenServiceW@12_OpenThreadToken@16_OpenThreadWaitChainSession@8_OpenTraceA@4_OpenTraceW@4_OperationEnd@4_OperationStart@4_PerfAddCounters@12_PerfCloseQueryHandle@4_PerfCreateInstance@16_PerfDecrementULongCounterValue@16_PerfDecrementULongLongCounterValue@20_PerfDeleteCounters@12_PerfDeleteInstance@8_PerfEnumerateCounterSet@16_PerfEnumerateCounterSetInstances@20_PerfIncrementULongCounterValue@16_PerfIncrementULongLongCounterValue@20_PerfOpenQueryHandle@8_PerfQueryCounterData@16_PerfQueryCounterInfo@16_PerfQueryCounterSetRegistrationInfo@28_PerfQueryInstance@16_PerfSetCounterRefValue@16_PerfSetCounterSetInfo@12_PerfSetULongCounterValue@16_PerfSetULongLongCounterValue@20_PerfStartProvider@12_PerfStartProviderEx@12_PerfStopProvider@4_PrivilegeCheck@12_PrivilegedServiceAuditAlarmA@20_PrivilegedServiceAuditAlarmW@20_ProcessTrace@16_QueryAllTracesA@12_QueryAllTracesW@12_QueryRecoveryAgentsOnEncryptedFile@8_QuerySecurityAccessMask@8_QueryServiceConfig2A@20_QueryServiceConfig2W@20_QueryServiceConfigA@16_QueryServiceConfigW@16_QueryServiceDynamicInformation@12_QueryServiceLockStatusA@16_QueryServiceLockStatusW@16_QueryServiceObjectSecurity@20_QueryServiceStatus@8_QueryServiceStatusEx@20_QueryTraceA@16_QueryTraceProcessingHandle@32_QueryTraceW@16_QueryUsersOnEncryptedFile@8_ReadEncryptedFileRaw@12_ReadEventLogA@28_ReadEventLogW@28_RegCloseKey@4_RegConnectRegistryA@12_RegConnectRegistryExA@16_RegConnectRegistryExW@16_RegConnectRegistryW@12_RegCopyTreeA@12_RegCopyTreeW@12_RegCreateKeyA@12_RegCreateKeyExA@36_RegCreateKeyExW@36_RegCreateKeyTransactedA@44_RegCreateKeyTransactedW@44_RegCreateKeyW@12_RegDeleteKeyA@8_RegDeleteKeyExA@16_RegDeleteKeyExW@16_RegDeleteKeyTransactedA@24_RegDeleteKeyTransactedW@24_RegDeleteKeyValueA@12_RegDeleteKeyValueW@12_RegDeleteKeyW@8_RegDeleteTreeA@8_RegDeleteTreeW@8_RegDeleteValueA@8_RegDeleteValueW@8_RegDisablePredefinedCache@0_RegDisablePredefinedCacheEx@0_RegDisableReflectionKey@4_RegEnableReflectionKey@4_RegEnumKeyA@16_RegEnumKeyExA@32_RegEnumKeyExW@32_RegEnumKeyW@16_RegEnumValueA@32_RegEnumValueW@32_RegFlushKey@4_RegGetKeySecurity@16_RegGetValueA@28_RegGetValueW@28_RegLoadAppKeyA@20_RegLoadAppKeyW@20_RegLoadKeyA@12_RegLoadKeyW@12_RegLoadMUIStringA@28_RegLoadMUIStringW@28_RegNotifyChangeKeyValue@20_RegOpenCurrentUser@8_RegOpenKeyA@12_RegOpenKeyExA@20_RegOpenKeyExW@20_RegOpenKeyTransactedA@28_RegOpenKeyTransactedW@28_RegOpenKeyW@12_RegOpenUserClassesRoot@16_RegOverridePredefKey@8_RegQueryInfoKeyA@48_RegQueryInfoKeyW@48_RegQueryMultipleValuesA@20_RegQueryMultipleValuesW@20_RegQueryReflectionKey@8_RegQueryValueA@16_RegQueryValueExA@24_RegQueryValueExW@24_RegQueryValueW@16_RegRenameKey@12_RegReplaceKeyA@16_RegReplaceKeyW@16_RegRestoreKeyA@12_RegRestoreKeyW@12_RegSaveKeyA@12_RegSaveKeyExA@16_RegSaveKeyExW@16_RegSaveKeyW@12_RegSetKeySecurity@12_RegSetKeyValueA@24_RegSetKeyValueW@24_RegSetValueA@20_RegSetValueExA@24_RegSetValueExW@24_RegSetValueW@20_RegUnLoadKeyA@8_RegUnLoadKeyW@8_RegisterEventSourceA@8_RegisterEventSourceW@8_RegisterServiceCtrlHandlerA@8_RegisterServiceCtrlHandlerExA@12_RegisterServiceCtrlHandlerExW@12_RegisterServiceCtrlHandlerW@8_RegisterTraceGuidsA@32_RegisterTraceGuidsW@32_RegisterWaitChainCOMCallback@8_RemoveTraceCallback@4_RemoveUsersFromEncryptedFile@8_ReportEventA@36_ReportEventW@36_RevertToSelf@0_SaferCloseLevel@4_SaferComputeTokenFromLevel@20_SaferCreateLevel@20_SaferGetLevelInformation@20_SaferGetPolicyInformation@24_SaferIdentifyLevel@16_SaferRecordEventLogEntry@12_SaferSetLevelInformation@16_SaferSetPolicyInformation@20_SaferiIsExecutableFileType@8_SetAclInformation@16_SetEncryptedFileMetadata@24_SetEntriesInAclA@16_SetEntriesInAclW@16_SetFileSecurityA@12_SetFileSecurityW@12_SetKernelObjectSecurity@12_SetNamedSecurityInfoA@28_SetNamedSecurityInfoW@28_SetPrivateObjectSecurity@20_SetPrivateObjectSecurityEx@24_SetSecurityAccessMask@8_SetSecurityDescriptorControl@12_SetSecurityDescriptorDacl@16_SetSecurityDescriptorGroup@12_SetSecurityDescriptorOwner@12_SetSecurityDescriptorRMControl@8_SetSecurityDescriptorSacl@16_SetSecurityInfo@28_SetServiceBits@16_SetServiceObjectSecurity@12_SetServiceStatus@8_SetThreadToken@8_SetTokenInformation@16_SetTraceCallback@8_SetUserFileEncryptionKey@4_SetUserFileEncryptionKeyEx@16_StartServiceA@12_StartServiceCtrlDispatcherA@4_StartServiceCtrlDispatcherW@4_StartServiceW@12_StartTraceA@12_StartTraceW@12_StopTraceA@16_StopTraceW@16_SystemFunction036@8_SystemFunction040@12_SystemFunction041@12_TraceEvent@12_TraceEventInstance@20_TraceMessage@20_TraceMessageVa@24_TraceQueryInformation@24_TraceSetInformation@20_TreeResetNamedSecurityInfoA@44_TreeResetNamedSecurityInfoW@44_TreeSetNamedSecurityInfoA@44_TreeSetNamedSecurityInfoW@44_UninstallApplication@8_UnlockServiceDatabase@4_UnregisterTraceGuids@8_UpdateTraceA@16_UpdateTraceW@16_WaitServiceState@16_WriteEncryptedFileRaw@12__IMPORT_DESCRIPTOR_advapi32__NULL_IMPORT_DESCRIPTOR__imp__AbortSystemShutdownA@4__imp__AbortSystemShutdownW@4__imp__AccessCheck@32__imp__AccessCheckAndAuditAlarmA@44__imp__AccessCheckAndAuditAlarmW@44__imp__AccessCheckByType@44__imp__AccessCheckByTypeAndAuditAlarmA@64__imp__AccessCheckByTypeAndAuditAlarmW@64__imp__AccessCheckByTypeResultList@44__imp__AccessCheckByTypeResultListAndAuditAlarmA@64__imp__AccessCheckByTypeResultListAndAuditAlarmByHandleA@68__imp__AccessCheckByTypeResultListAndAuditAlarmByHandleW@68__imp__AccessCheckByTypeResultListAndAuditAlarmW@64__imp__AddAccessAllowedAce@16__imp__AddAccessAllowedAceEx@20__imp__AddAccessAllowedObjectAce@28__imp__AddAccessDeniedAce@16__imp__AddAccessDeniedAceEx@20__imp__AddAccessDeniedObjectAce@28__imp__AddAce@20__imp__AddAuditAccessAce@24__imp__AddAuditAccessAceEx@28__imp__AddAuditAccessObjectAce@36__imp__AddConditionalAce@32__imp__AddMandatoryAce@20__imp__AddUsersToEncryptedFile@8__imp__AdjustTokenGroups@24__imp__AdjustTokenPrivileges@24__imp__AllocateAndInitializeSid@44__imp__AllocateLocallyUniqueId@4__imp__AreAllAccessesGranted@8__imp__AreAnyAccessesGranted@8__imp__AuditComputeEffectivePolicyBySid@16__imp__AuditComputeEffectivePolicyByToken@16__imp__AuditEnumerateCategories@8__imp__AuditEnumeratePerUserPolicy@4__imp__AuditEnumerateSubCategories@16__imp__AuditFree@4__imp__AuditLookupCategoryGuidFromCategoryId@8__imp__AuditLookupCategoryIdFromCategoryGuid@8__imp__AuditLookupCategoryNameA@8__imp__AuditLookupCategoryNameW@8__imp__AuditLookupSubCategoryNameA@8__imp__AuditLookupSubCategoryNameW@8__imp__AuditQueryGlobalSaclA@8__imp__AuditQueryGlobalSaclW@8__imp__AuditQueryPerUserPolicy@16__imp__AuditQuerySecurity@8__imp__AuditQuerySystemPolicy@12__imp__AuditSetGlobalSaclA@8__imp__AuditSetGlobalSaclW@8__imp__AuditSetPerUserPolicy@12__imp__AuditSetSecurity@8__imp__AuditSetSystemPolicy@8__imp__BackupEventLogA@8__imp__BackupEventLogW@8__imp__BuildExplicitAccessWithNameA@20__imp__BuildExplicitAccessWithNameW@20__imp__BuildImpersonateExplicitAccessWithNameA@24__imp__BuildImpersonateExplicitAccessWithNameW@24__imp__BuildImpersonateTrusteeA@8__imp__BuildImpersonateTrusteeW@8__imp__BuildSecurityDescriptorA@36__imp__BuildSecurityDescriptorW@36__imp__BuildTrusteeWithNameA@8__imp__BuildTrusteeWithNameW@8__imp__BuildTrusteeWithObjectsAndNameA@24__imp__BuildTrusteeWithObjectsAndNameW@24__imp__BuildTrusteeWithObjectsAndSidA@20__imp__BuildTrusteeWithObjectsAndSidW@20__imp__BuildTrusteeWithSidA@8__imp__BuildTrusteeWithSidW@8__imp__ChangeServiceConfig2A@12__imp__ChangeServiceConfig2W@12__imp__ChangeServiceConfigA@44__imp__ChangeServiceConfigW@44__imp__CheckForHiberboot@8__imp__CheckTokenMembership@12__imp__ClearEventLogA@8__imp__ClearEventLogW@8__imp__CloseEncryptedFileRaw@4__imp__CloseEventLog@4__imp__CloseServiceHandle@4__imp__CloseThreadWaitChainSession@4__imp__CloseTrace@8__imp__CommandLineFromMsiDescriptor@12__imp__ControlService@12__imp__ControlServiceExA@16__imp__ControlServiceExW@16__imp__ControlTraceA@20__imp__ControlTraceW@20__imp__ConvertSecurityDescriptorToStringSecurityDescriptorA@20__imp__ConvertSecurityDescriptorToStringSecurityDescriptorW@20__imp__ConvertSidToStringSidA@8__imp__ConvertSidToStringSidW@8__imp__ConvertStringSecurityDescriptorToSecurityDescriptorA@16__imp__ConvertStringSecurityDescriptorToSecurityDescriptorW@16__imp__ConvertStringSidToSidA@8__imp__ConvertStringSidToSidW@8__imp__ConvertToAutoInheritPrivateObjectSecurity@24__imp__CopySid@12__imp__CreatePrivateObjectSecurity@24__imp__CreatePrivateObjectSecurityEx@32__imp__CreatePrivateObjectSecurityWithMultipleInheritance@36__imp__CreateProcessAsUserA@44__imp__CreateProcessAsUserW@44__imp__CreateProcessWithLogonW@44__imp__CreateProcessWithTokenW@36__imp__CreateRestrictedToken@36__imp__CreateServiceA@52__imp__CreateServiceW@52__imp__CreateTraceInstanceId@8__imp__CreateWellKnownSid@16__imp__CredDeleteA@12__imp__CredDeleteW@12__imp__CredEnumerateA@16__imp__CredEnumerateW@16__imp__CredFindBestCredentialA@16__imp__CredFindBestCredentialW@16__imp__CredFree@4__imp__CredGetSessionTypes@8__imp__CredGetTargetInfoA@12__imp__CredGetTargetInfoW@12__imp__CredIsMarshaledCredentialA@4__imp__CredIsMarshaledCredentialW@4__imp__CredIsProtectedA@8__imp__CredIsProtectedW@8__imp__CredMarshalCredentialA@12__imp__CredMarshalCredentialW@12__imp__CredProtectA@24__imp__CredProtectW@24__imp__CredReadA@16__imp__CredReadDomainCredentialsA@16__imp__CredReadDomainCredentialsW@16__imp__CredReadW@16__imp__CredRenameA@16__imp__CredRenameW@16__imp__CredUnmarshalCredentialA@12__imp__CredUnmarshalCredentialW@12__imp__CredUnprotectA@20__imp__CredUnprotectW@20__imp__CredWriteA@8__imp__CredWriteDomainCredentialsA@12__imp__CredWriteDomainCredentialsW@12__imp__CredWriteW@8__imp__CryptAcquireContextA@20__imp__CryptAcquireContextW@20__imp__CryptContextAddRef@12__imp__CryptCreateHash@20__imp__CryptDecrypt@24__imp__CryptDeriveKey@20__imp__CryptDestroyHash@4__imp__CryptDestroyKey@4__imp__CryptDuplicateHash@16__imp__CryptDuplicateKey@16__imp__CryptEncrypt@28__imp__CryptEnumProviderTypesA@24__imp__CryptEnumProviderTypesW@24__imp__CryptEnumProvidersA@24__imp__CryptEnumProvidersW@24__imp__CryptExportKey@24__imp__CryptGenKey@16__imp__CryptGenRandom@12__imp__CryptGetDefaultProviderA@20__imp__CryptGetDefaultProviderW@20__imp__CryptGetHashParam@20__imp__CryptGetKeyParam@20__imp__CryptGetProvParam@20__imp__CryptGetUserKey@12__imp__CryptHashData@16__imp__CryptHashSessionKey@12__imp__CryptImportKey@24__imp__CryptReleaseContext@8__imp__CryptSetHashParam@16__imp__CryptSetKeyParam@16__imp__CryptSetProvParam@16__imp__CryptSetProviderA@8__imp__CryptSetProviderExA@16__imp__CryptSetProviderExW@16__imp__CryptSetProviderW@8__imp__CryptSignHashA@24__imp__CryptSignHashW@24__imp__CryptVerifySignatureA@24__imp__CryptVerifySignatureW@24__imp__CveEventWrite@8__imp__DecryptFileA@8__imp__DecryptFileW@8__imp__DeleteAce@8__imp__DeleteService@4__imp__DeregisterEventSource@4__imp__DestroyPrivateObjectSecurity@4__imp__DuplicateEncryptionInfoFile@20__imp__DuplicateToken@12__imp__DuplicateTokenEx@24__imp__EnableTrace@24__imp__EnableTraceEx2@44__imp__EnableTraceEx@48__imp__EncryptFileA@4__imp__EncryptFileW@4__imp__EncryptionDisable@8__imp__EnumDependentServicesA@24__imp__EnumDependentServicesW@24__imp__EnumDynamicTimeZoneInformation@8__imp__EnumServicesStatusA@32__imp__EnumServicesStatusExA@40__imp__EnumServicesStatusExW@40__imp__EnumServicesStatusW@32__imp__EnumerateTraceGuids@12__imp__EnumerateTraceGuidsEx@24__imp__EqualDomainSid@12__imp__EqualPrefixSid@8__imp__EqualSid@8__imp__EventAccessControl@20__imp__EventAccessQuery@12__imp__EventAccessRemove@4__imp__EventActivityIdControl@8__imp__EventEnabled@12__imp__EventProviderEnabled@20__imp__EventRegister@16__imp__EventSetInformation@20__imp__EventUnregister@8__imp__EventWrite@20__imp__EventWriteEx@40__imp__EventWriteString@24__imp__EventWriteTransfer@28__imp__FileEncryptionStatusA@8__imp__FileEncryptionStatusW@8__imp__FindFirstFreeAce@8__imp__FlushTraceA@16__imp__FlushTraceW@16__imp__FreeEncryptedFileMetadata@4__imp__FreeEncryptionCertificateHashList@4__imp__FreeInheritedFromArray@12__imp__FreeSid@4__imp__GetAce@12__imp__GetAclInformation@16__imp__GetAuditedPermissionsFromAclA@16__imp__GetAuditedPermissionsFromAclW@16__imp__GetCurrentHwProfileA@4__imp__GetCurrentHwProfileW@4__imp__GetDynamicTimeZoneInformationEffectiveYears@12__imp__GetEffectiveRightsFromAclA@12__imp__GetEffectiveRightsFromAclW@12__imp__GetEncryptedFileMetadata@12__imp__GetEventLogInformation@20__imp__GetExplicitEntriesFromAclA@12__imp__GetExplicitEntriesFromAclW@12__imp__GetFileSecurityA@20__imp__GetFileSecurityW@20__imp__GetInheritanceSourceA@40__imp__GetInheritanceSourceW@40__imp__GetKernelObjectSecurity@20__imp__GetLengthSid@4__imp__GetLocalManagedApplicationData@12__imp__GetLocalManagedApplications@12__imp__GetManagedApplicationCategories@8__imp__GetManagedApplications@20__imp__GetMultipleTrusteeA@4__imp__GetMultipleTrusteeOperationA@4__imp__GetMultipleTrusteeOperationW@4__imp__GetMultipleTrusteeW@4__imp__GetNamedSecurityInfoA@32__imp__GetNamedSecurityInfoW@32__imp__GetNumberOfEventLogRecords@8__imp__GetOldestEventLogRecord@8__imp__GetPrivateObjectSecurity@20__imp__GetSecurityDescriptorControl@12__imp__GetSecurityDescriptorDacl@16__imp__GetSecurityDescriptorGroup@12__imp__GetSecurityDescriptorLength@4__imp__GetSecurityDescriptorOwner@12__imp__GetSecurityDescriptorRMControl@8__imp__GetSecurityDescriptorSacl@16__imp__GetSecurityInfo@32__imp__GetServiceDisplayNameA@16__imp__GetServiceDisplayNameW@16__imp__GetServiceKeyNameA@16__imp__GetServiceKeyNameW@16__imp__GetSidIdentifierAuthority@4__imp__GetSidLengthRequired@4__imp__GetSidSubAuthority@8__imp__GetSidSubAuthorityCount@4__imp__GetThreadWaitChain@28__imp__GetTokenInformation@20__imp__GetTraceEnableFlags@8__imp__GetTraceEnableLevel@8__imp__GetTraceLoggerHandle@4__imp__GetTrusteeFormA@4__imp__GetTrusteeFormW@4__imp__GetTrusteeNameA@4__imp__GetTrusteeNameW@4__imp__GetTrusteeTypeA@4__imp__GetTrusteeTypeW@4__imp__GetUserNameA@8__imp__GetUserNameW@8__imp__GetWindowsAccountDomainSid@12__imp__ImpersonateAnonymousToken@4__imp__ImpersonateLoggedOnUser@4__imp__ImpersonateNamedPipeClient@4__imp__ImpersonateSelf@4__imp__InitializeAcl@12__imp__InitializeSecurityDescriptor@8__imp__InitializeSid@12__imp__InitiateShutdownA@20__imp__InitiateShutdownW@20__imp__InitiateSystemShutdownA@20__imp__InitiateSystemShutdownExA@24__imp__InitiateSystemShutdownExW@24__imp__InitiateSystemShutdownW@20__imp__InstallApplication@4__imp__IsTextUnicode@12__imp__IsTokenRestricted@4__imp__IsTokenUntrusted@4__imp__IsValidAcl@4__imp__IsValidSecurityDescriptor@4__imp__IsValidSid@4__imp__IsWellKnownSid@8__imp__LockServiceDatabase@4__imp__LogonUserA@24__imp__LogonUserExA@40__imp__LogonUserExW@40__imp__LogonUserW@24__imp__LookupAccountNameA@28__imp__LookupAccountNameW@28__imp__LookupAccountSidA@28__imp__LookupAccountSidW@28__imp__LookupPrivilegeDisplayNameA@20__imp__LookupPrivilegeDisplayNameW@20__imp__LookupPrivilegeNameA@16__imp__LookupPrivilegeNameW@16__imp__LookupPrivilegeValueA@12__imp__LookupPrivilegeValueW@12__imp__LookupSecurityDescriptorPartsA@28__imp__LookupSecurityDescriptorPartsW@28__imp__LsaAddAccountRights@16__imp__LsaClose@4__imp__LsaCreateTrustedDomainEx@20__imp__LsaDeleteTrustedDomain@8__imp__LsaEnumerateAccountRights@16__imp__LsaEnumerateAccountsWithUserRight@16__imp__LsaEnumerateTrustedDomains@20__imp__LsaEnumerateTrustedDomainsEx@20__imp__LsaFreeMemory@4__imp__LsaGetAppliedCAPIDs@12__imp__LsaLookupNames2@24__imp__LsaLookupNames@20__imp__LsaLookupSids2@24__imp__LsaLookupSids@20__imp__LsaNtStatusToWinError@4__imp__LsaOpenPolicy@16__imp__LsaOpenTrustedDomainByName@16__imp__LsaQueryCAPs@16__imp__LsaQueryDomainInformationPolicy@12__imp__LsaQueryForestTrustInformation@12__imp__LsaQueryInformationPolicy@12__imp__LsaQueryTrustedDomainInfo@16__imp__LsaQueryTrustedDomainInfoByName@16__imp__LsaRemoveAccountRights@20__imp__LsaRetrievePrivateData@12__imp__LsaSetCAPs@12__imp__LsaSetDomainInformationPolicy@12__imp__LsaSetForestTrustInformation@20__imp__LsaSetInformationPolicy@12__imp__LsaSetTrustedDomainInfoByName@16__imp__LsaSetTrustedDomainInformation@16__imp__LsaStorePrivateData@12__imp__MSChapSrvChangePassword2@28__imp__MSChapSrvChangePassword@28__imp__MakeAbsoluteSD@44__imp__MakeSelfRelativeSD@12__imp__MapGenericMask@8__imp__NotifyBootConfigStatus@4__imp__NotifyChangeEventLog@8__imp__NotifyServiceStatusChangeA@12__imp__NotifyServiceStatusChangeW@12__imp__ObjectCloseAuditAlarmA@12__imp__ObjectCloseAuditAlarmW@12__imp__ObjectDeleteAuditAlarmA@12__imp__ObjectDeleteAuditAlarmW@12__imp__ObjectOpenAuditAlarmA@48__imp__ObjectOpenAuditAlarmW@48__imp__ObjectPrivilegeAuditAlarmA@24__imp__ObjectPrivilegeAuditAlarmW@24__imp__OpenBackupEventLogA@8__imp__OpenBackupEventLogW@8__imp__OpenEncryptedFileRawA@12__imp__OpenEncryptedFileRawW@12__imp__OpenEventLogA@8__imp__OpenEventLogW@8__imp__OpenProcessToken@12__imp__OpenSCManagerA@12__imp__OpenSCManagerW@12__imp__OpenServiceA@12__imp__OpenServiceW@12__imp__OpenThreadToken@16__imp__OpenThreadWaitChainSession@8__imp__OpenTraceA@4__imp__OpenTraceW@4__imp__OperationEnd@4__imp__OperationStart@4__imp__PerfAddCounters@12__imp__PerfCloseQueryHandle@4__imp__PerfCreateInstance@16__imp__PerfDecrementULongCounterValue@16__imp__PerfDecrementULongLongCounterValue@20__imp__PerfDeleteCounters@12__imp__PerfDeleteInstance@8__imp__PerfEnumerateCounterSet@16__imp__PerfEnumerateCounterSetInstances@20__imp__PerfIncrementULongCounterValue@16__imp__PerfIncrementULongLongCounterValue@20__imp__PerfOpenQueryHandle@8__imp__PerfQueryCounterData@16__imp__PerfQueryCounterInfo@16__imp__PerfQueryCounterSetRegistrationInfo@28__imp__PerfQueryInstance@16__imp__PerfSetCounterRefValue@16__imp__PerfSetCounterSetInfo@12__imp__PerfSetULongCounterValue@16__imp__PerfSetULongLongCounterValue@20__imp__PerfStartProvider@12__imp__PerfStartProviderEx@12__imp__PerfStopProvider@4__imp__PrivilegeCheck@12__imp__PrivilegedServiceAuditAlarmA@20__imp__PrivilegedServiceAuditAlarmW@20__imp__ProcessTrace@16__imp__QueryAllTracesA@12__imp__QueryAllTracesW@12__imp__QueryRecoveryAgentsOnEncryptedFile@8__imp__QuerySecurityAccessMask@8__imp__QueryServiceConfig2A@20__imp__QueryServiceConfig2W@20__imp__QueryServiceConfigA@16__imp__QueryServiceConfigW@16__imp__QueryServiceDynamicInformation@12__imp__QueryServiceLockStatusA@16__imp__QueryServiceLockStatusW@16__imp__QueryServiceObjectSecurity@20__imp__QueryServiceStatus@8__imp__QueryServiceStatusEx@20__imp__QueryTraceA@16__imp__QueryTraceProcessingHandle@32__imp__QueryTraceW@16__imp__QueryUsersOnEncryptedFile@8__imp__ReadEncryptedFileRaw@12__imp__ReadEventLogA@28__imp__ReadEventLogW@28__imp__RegCloseKey@4__imp__RegConnectRegistryA@12__imp__RegConnectRegistryExA@16__imp__RegConnectRegistryExW@16__imp__RegConnectRegistryW@12__imp__RegCopyTreeA@12__imp__RegCopyTreeW@12__imp__RegCreateKeyA@12__imp__RegCreateKeyExA@36__imp__RegCreateKeyExW@36__imp__RegCreateKeyTransactedA@44__imp__RegCreateKeyTransactedW@44__imp__RegCreateKeyW@12__imp__RegDeleteKeyA@8__imp__RegDeleteKeyExA@16__imp__RegDeleteKeyExW@16__imp__RegDeleteKeyTransactedA@24__imp__RegDeleteKeyTransactedW@24__imp__RegDeleteKeyValueA@12__imp__RegDeleteKeyValueW@12__imp__RegDeleteKeyW@8__imp__RegDeleteTreeA@8__imp__RegDeleteTreeW@8__imp__RegDeleteValueA@8__imp__RegDeleteValueW@8__imp__RegDisablePredefinedCache@0__imp__RegDisablePredefinedCacheEx@0__imp__RegDisableReflectionKey@4__imp__RegEnableReflectionKey@4__imp__RegEnumKeyA@16__imp__RegEnumKeyExA@32__imp__RegEnumKeyExW@32__imp__RegEnumKeyW@16__imp__RegEnumValueA@32__imp__RegEnumValueW@32__imp__RegFlushKey@4__imp__RegGetKeySecurity@16__imp__RegGetValueA@28__imp__RegGetValueW@28__imp__RegLoadAppKeyA@20__imp__RegLoadAppKeyW@20__imp__RegLoadKeyA@12__imp__RegLoadKeyW@12__imp__RegLoadMUIStringA@28__imp__RegLoadMUIStringW@28__imp__RegNotifyChangeKeyValue@20__imp__RegOpenCurrentUser@8__imp__RegOpenKeyA@12__imp__RegOpenKeyExA@20__imp__RegOpenKeyExW@20__imp__RegOpenKeyTransactedA@28__imp__RegOpenKeyTransactedW@28__imp__RegOpenKeyW@12__imp__RegOpenUserClassesRoot@16__imp__RegOverridePredefKey@8__imp__RegQueryInfoKeyA@48__imp__RegQueryInfoKeyW@48__imp__RegQueryMultipleValuesA@20__imp__RegQueryMultipleValuesW@20__imp__RegQueryReflectionKey@8__imp__RegQueryValueA@16__imp__RegQueryValueExA@24__imp__RegQueryValueExW@24__imp__RegQueryValueW@16__imp__RegRenameKey@12__imp__RegReplaceKeyA@16__imp__RegReplaceKeyW@16__imp__RegRestoreKeyA@12__imp__RegRestoreKeyW@12__imp__RegSaveKeyA@12__imp__RegSaveKeyExA@16__imp__RegSaveKeyExW@16__imp__RegSaveKeyW@12__imp__RegSetKeySecurity@12__imp__RegSetKeyValueA@24__imp__RegSetKeyValueW@24__imp__RegSetValueA@20__imp__RegSetValueExA@24__imp__RegSetValueExW@24__imp__RegSetValueW@20__imp__RegUnLoadKeyA@8__imp__RegUnLoadKeyW@8__imp__RegisterEventSourceA@8__imp__RegisterEventSourceW@8__imp__RegisterServiceCtrlHandlerA@8__imp__RegisterServiceCtrlHandlerExA@12__imp__RegisterServiceCtrlHandlerExW@12__imp__RegisterServiceCtrlHandlerW@8__imp__RegisterTraceGuidsA@32__imp__RegisterTraceGuidsW@32__imp__RegisterWaitChainCOMCallback@8__imp__RemoveTraceCallback@4__imp__RemoveUsersFromEncryptedFile@8__imp__ReportEventA@36__imp__ReportEventW@36__imp__RevertToSelf@0__imp__SaferCloseLevel@4__imp__SaferComputeTokenFromLevel@20__imp__SaferCreateLevel@20__imp__SaferGetLevelInformation@20__imp__SaferGetPolicyInformation@24__imp__SaferIdentifyLevel@16__imp__SaferRecordEventLogEntry@12__imp__SaferSetLevelInformation@16__imp__SaferSetPolicyInformation@20__imp__SaferiIsExecutableFileType@8__imp__SetAclInformation@16__imp__SetEncryptedFileMetadata@24__imp__SetEntriesInAclA@16__imp__SetEntriesInAclW@16__imp__SetFileSecurityA@12__imp__SetFileSecurityW@12__imp__SetKernelObjectSecurity@12__imp__SetNamedSecurityInfoA@28__imp__SetNamedSecurityInfoW@28__imp__SetPrivateObjectSecurity@20__imp__SetPrivateObjectSecurityEx@24__imp__SetSecurityAccessMask@8__imp__SetSecurityDescriptorControl@12__imp__SetSecurityDescriptorDacl@16__imp__SetSecurityDescriptorGroup@12__imp__SetSecurityDescriptorOwner@12__imp__SetSecurityDescriptorRMControl@8__imp__SetSecurityDescriptorSacl@16__imp__SetSecurityInfo@28__imp__SetServiceBits@16__imp__SetServiceObjectSecurity@12__imp__SetServiceStatus@8__imp__SetThreadToken@8__imp__SetTokenInformation@16__imp__SetTraceCallback@8__imp__SetUserFileEncryptionKey@4__imp__SetUserFileEncryptionKeyEx@16__imp__StartServiceA@12__imp__StartServiceCtrlDispatcherA@4__imp__StartServiceCtrlDispatcherW@4__imp__StartServiceW@12__imp__StartTraceA@12__imp__StartTraceW@12__imp__StopTraceA@16__imp__StopTraceW@16__imp__SystemFunction036@8__imp__SystemFunction040@12__imp__SystemFunction041@12__imp__TraceEvent@12__imp__TraceEventInstance@20__imp__TraceMessage@20__imp__TraceMessageVa@24__imp__TraceQueryInformation@24__imp__TraceSetInformation@20__imp__TreeResetNamedSecurityInfoA@44__imp__TreeResetNamedSecurityInfoW@44__imp__TreeSetNamedSecurityInfoA@44__imp__TreeSetNamedSecurityInfoW@44__imp__UninstallApplication@8__imp__UnlockServiceDatabase@4__imp__UnregisterTraceGuids@8__imp__UpdateTraceA@16__imp__UpdateTraceW@16__imp__WaitServiceState@16__imp__WriteEncryptedFileRaw@12advapi32_NULL_THUNK_DATAadvapi32.dll/ 1634761632 0 498 ` L{pa.debug$SB@B.idata$2@0.idata$6@  advapi32.dll'@wMicrosoft (R) LINK advapi32.dll@comp.id@w.idata$2@h.idata$6.idata$4@h.idata$5@h!:T__IMPORT_DESCRIPTOR_advapi32__NULL_IMPORT_DESCRIPTORadvapi32_NULL_THUNK_DATAadvapi32.dll/ 1634761632 0 251 ` L{pa.debug$SBd@B.idata$3@0 advapi32.dll'@wMicrosoft (R) LINK@comp.id@w__NULL_IMPORT_DESCRIPTOR advapi32.dll/ 1634761632 0 280 ` L{pa.debug$SB@B.idata$5@0.idata$4@0 advapi32.dll'@wMicrosoft (R) LINK@comp.id@wadvapi32_NULL_THUNK_DATAadvapi32.dll/ 1634761632 0 57 ` L{pa% _AbortSystemShutdownA@4advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _AbortSystemShutdownW@4advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _AccessCheck@32advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+ _AccessCheckAndAuditAlarmA@44advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+ _AccessCheckAndAuditAlarmW@44advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _AccessCheckByType@44advapi32.dll advapi32.dll/ 1634761632 0 69 ` L{pa1 _AccessCheckByTypeAndAuditAlarmA@64advapi32.dll advapi32.dll/ 1634761632 0 69 ` L{pa1 _AccessCheckByTypeAndAuditAlarmW@64advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa- _AccessCheckByTypeResultList@44advapi32.dll advapi32.dll/ 1634761632 0 79 ` L{pa; _AccessCheckByTypeResultListAndAuditAlarmA@64advapi32.dll advapi32.dll/ 1634761632 0 87 ` L{paC _AccessCheckByTypeResultListAndAuditAlarmByHandleA@68advapi32.dll advapi32.dll/ 1634761632 0 87 ` L{paC _AccessCheckByTypeResultListAndAuditAlarmByHandleW@68advapi32.dll advapi32.dll/ 1634761632 0 79 ` L{pa; _AccessCheckByTypeResultListAndAuditAlarmW@64advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _AddAccessAllowedAce@16advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _AddAccessAllowedAceEx@20advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+ _AddAccessAllowedObjectAce@28advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _AddAccessDeniedAce@16advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _AddAccessDeniedAceEx@20advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _AddAccessDeniedObjectAce@28advapi32.dlladvapi32.dll/ 1634761632 0 44 ` L{pa _AddAce@20advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _AddAuditAccessAce@24advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _AddAuditAccessAceEx@28advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _AddAuditAccessObjectAce@36advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _AddConditionalAce@32advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _AddMandatoryAce@20advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _AddUsersToEncryptedFile@8advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _AdjustTokenGroups@24advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _AdjustTokenPrivileges@24advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa* _AllocateAndInitializeSid@44advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _AllocateLocallyUniqueId@4advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _AreAllAccessesGranted@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _AreAnyAccessesGranted@8advapi32.dlladvapi32.dll/ 1634761632 0 70 ` L{pa2 _AuditComputeEffectivePolicyBySid@16advapi32.dlladvapi32.dll/ 1634761632 0 72 ` L{pa4! _AuditComputeEffectivePolicyByToken@16advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)" _AuditEnumerateCategories@8advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,# _AuditEnumeratePerUserPolicy@4advapi32.dlladvapi32.dll/ 1634761632 0 65 ` L{pa-$ _AuditEnumerateSubCategories@16advapi32.dll advapi32.dll/ 1634761632 0 46 ` L{pa% _AuditFree@4advapi32.dlladvapi32.dll/ 1634761632 0 74 ` L{pa6& _AuditLookupCategoryGuidFromCategoryId@8advapi32.dlladvapi32.dll/ 1634761632 0 74 ` L{pa6' _AuditLookupCategoryIdFromCategoryGuid@8advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)( _AuditLookupCategoryNameA@8advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)) _AuditLookupCategoryNameW@8advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,* _AuditLookupSubCategoryNameA@8advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,+ _AuditLookupSubCategoryNameW@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&, _AuditQueryGlobalSaclA@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&- _AuditQueryGlobalSaclW@8advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa). _AuditQueryPerUserPolicy@16advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#/ _AuditQuerySecurity@8advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa(0 _AuditQuerySystemPolicy@12advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$1 _AuditSetGlobalSaclA@8advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$2 _AuditSetGlobalSaclW@8advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'3 _AuditSetPerUserPolicy@12advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!4 _AuditSetSecurity@8advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa%5 _AuditSetSystemPolicy@8advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa 6 _BackupEventLogA@8advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa 7 _BackupEventLogW@8advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa.8 _BuildExplicitAccessWithNameA@20advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa.9 _BuildExplicitAccessWithNameW@20advapi32.dlladvapi32.dll/ 1634761632 0 77 ` L{pa9: _BuildImpersonateExplicitAccessWithNameA@24advapi32.dll advapi32.dll/ 1634761632 0 77 ` L{pa9; _BuildImpersonateExplicitAccessWithNameW@24advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)< _BuildImpersonateTrusteeA@8advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)= _BuildImpersonateTrusteeW@8advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa*> _BuildSecurityDescriptorA@36advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*? _BuildSecurityDescriptorW@36advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&@ _BuildTrusteeWithNameA@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&A _BuildTrusteeWithNameW@8advapi32.dlladvapi32.dll/ 1634761632 0 69 ` L{pa1B _BuildTrusteeWithObjectsAndNameA@24advapi32.dll advapi32.dll/ 1634761632 0 69 ` L{pa1C _BuildTrusteeWithObjectsAndNameW@24advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0D _BuildTrusteeWithObjectsAndSidA@20advapi32.dlladvapi32.dll/ 1634761632 0 68 ` L{pa0E _BuildTrusteeWithObjectsAndSidW@20advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa%F _BuildTrusteeWithSidA@8advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa%G _BuildTrusteeWithSidW@8advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'H _ChangeServiceConfig2A@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'I _ChangeServiceConfig2W@12advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa&J _ChangeServiceConfigA@44advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&K _ChangeServiceConfigW@44advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa"L _CheckForHiberboot@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&M _CheckTokenMembership@12advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{paN _ClearEventLogA@8advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{paO _ClearEventLogW@8advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa&P _CloseEncryptedFileRaw@4advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{paQ _CloseEventLog@4advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa#R _CloseServiceHandle@4advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,S _CloseThreadWaitChainSession@4advapi32.dlladvapi32.dll/ 1634761632 0 47 ` L{paT _CloseTrace@8advapi32.dll advapi32.dll/ 1634761632 0 66 ` L{pa.U _CommandLineFromMsiDescriptor@12advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa V _ControlService@12advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa#W _ControlServiceExA@16advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#X _ControlServiceExW@16advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{paY _ControlTraceA@20advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{paZ _ControlTraceW@20advapi32.dll advapi32.dll/ 1634761632 0 90 ` L{paF[ _ConvertSecurityDescriptorToStringSecurityDescriptorA@20advapi32.dlladvapi32.dll/ 1634761632 0 90 ` L{paF\ _ConvertSecurityDescriptorToStringSecurityDescriptorW@20advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'] _ConvertSidToStringSidA@8advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'^ _ConvertSidToStringSidW@8advapi32.dll advapi32.dll/ 1634761632 0 90 ` L{paF_ _ConvertStringSecurityDescriptorToSecurityDescriptorA@16advapi32.dlladvapi32.dll/ 1634761632 0 90 ` L{paF` _ConvertStringSecurityDescriptorToSecurityDescriptorW@16advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'a _ConvertStringSidToSidA@8advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'b _ConvertStringSidToSidW@8advapi32.dll advapi32.dll/ 1634761632 0 79 ` L{pa;c _ConvertToAutoInheritPrivateObjectSecurity@24advapi32.dll advapi32.dll/ 1634761632 0 45 ` L{pad _CopySid@12advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa-e _CreatePrivateObjectSecurity@24advapi32.dll advapi32.dll/ 1634761632 0 67 ` L{pa/f _CreatePrivateObjectSecurityEx@32advapi32.dll advapi32.dll/ 1634761632 0 88 ` L{paDg _CreatePrivateObjectSecurityWithMultipleInheritance@36advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&h _CreateProcessAsUserA@44advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&i _CreateProcessAsUserW@44advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)j _CreateProcessWithLogonW@44advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)k _CreateProcessWithTokenW@36advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'l _CreateRestrictedToken@36advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa m _CreateServiceA@52advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa n _CreateServiceW@52advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&o _CreateTraceInstanceId@8advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$p _CreateWellKnownSid@16advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{paq _CredDeleteA@12advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{par _CredDeleteW@12advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa s _CredEnumerateA@16advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa t _CredEnumerateW@16advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)u _CredFindBestCredentialA@16advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)v _CredFindBestCredentialW@16advapi32.dll advapi32.dll/ 1634761632 0 45 ` L{paw _CredFree@4advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$x _CredGetSessionTypes@8advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$y _CredGetTargetInfoA@12advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$z _CredGetTargetInfoW@12advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+{ _CredIsMarshaledCredentialA@4advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+| _CredIsMarshaledCredentialW@4advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!} _CredIsProtectedA@8advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!~ _CredIsProtectedW@8advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _CredMarshalCredentialA@12advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _CredMarshalCredentialW@12advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _CredProtectA@24advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _CredProtectW@24advapi32.dlladvapi32.dll/ 1634761632 0 47 ` L{pa _CredReadA@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa, _CredReadDomainCredentialsA@16advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa, _CredReadDomainCredentialsW@16advapi32.dlladvapi32.dll/ 1634761632 0 47 ` L{pa _CredReadW@16advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _CredRenameA@16advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _CredRenameW@16advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa* _CredUnmarshalCredentialA@12advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _CredUnmarshalCredentialW@12advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa _CredUnprotectA@20advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa _CredUnprotectW@20advapi32.dlladvapi32.dll/ 1634761632 0 47 ` L{pa _CredWriteA@8advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa- _CredWriteDomainCredentialsA@12advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa- _CredWriteDomainCredentialsW@12advapi32.dll advapi32.dll/ 1634761632 0 47 ` L{pa _CredWriteW@8advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa& _CryptAcquireContextA@20advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _CryptAcquireContextW@20advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _CryptContextAddRef@12advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa! _CryptCreateHash@20advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _CryptDecrypt@24advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa _CryptDeriveKey@20advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa! _CryptDestroyHash@4advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _CryptDestroyKey@4advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _CryptDuplicateHash@16advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _CryptDuplicateKey@16advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _CryptEncrypt@28advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa) _CryptEnumProviderTypesA@24advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _CryptEnumProviderTypesW@24advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _CryptEnumProvidersA@24advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _CryptEnumProvidersW@24advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _CryptExportKey@24advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _CryptGenKey@16advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _CryptGenRandom@12advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _CryptGetDefaultProviderA@20advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _CryptGetDefaultProviderW@20advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _CryptGetHashParam@20advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa" _CryptGetKeyParam@20advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _CryptGetProvParam@20advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _CryptGetUserKey@12advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _CryptHashData@16advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _CryptHashSessionKey@12advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _CryptImportKey@24advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _CryptReleaseContext@8advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _CryptSetHashParam@16advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa" _CryptSetKeyParam@16advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _CryptSetProvParam@16advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa" _CryptSetProviderA@8advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _CryptSetProviderExA@16advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _CryptSetProviderExW@16advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa" _CryptSetProviderW@8advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa _CryptSignHashA@24advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa _CryptSignHashW@24advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _CryptVerifySignatureA@24advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _CryptVerifySignatureW@24advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _CveEventWrite@8advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _DecryptFileA@8advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _DecryptFileW@8advapi32.dll advapi32.dll/ 1634761632 0 46 ` L{pa _DeleteAce@8advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _DeleteService@4advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _DeregisterEventSource@4advapi32.dlladvapi32.dll/ 1634761632 0 65 ` L{pa- _DestroyPrivateObjectSecurity@4advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa- _DuplicateEncryptionInfoFile@20advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _DuplicateToken@12advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _DuplicateTokenEx@24advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _EnableTrace@24advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _EnableTraceEx2@44advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa _EnableTraceEx@48advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _EncryptFileA@4advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _EncryptFileW@4advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa" _EncryptionDisable@8advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _EnumDependentServicesA@24advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _EnumDependentServicesW@24advapi32.dlladvapi32.dll/ 1634761632 0 67 ` L{pa/ _EnumDynamicTimeZoneInformation@8advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _EnumServicesStatusA@32advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _EnumServicesStatusExA@40advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _EnumServicesStatusExW@40advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _EnumServicesStatusW@32advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _EnumerateTraceGuids@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _EnumerateTraceGuidsEx@24advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _EqualDomainSid@12advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa _EqualPrefixSid@8advapi32.dll advapi32.dll/ 1634761632 0 45 ` L{pa _EqualSid@8advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _EventAccessControl@20advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _EventAccessQuery@12advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _EventAccessRemove@4advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _EventActivityIdControl@8advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _EventEnabled@12advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _EventProviderEnabled@20advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa _EventRegister@16advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _EventSetInformation@20advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa _EventUnregister@8advapi32.dlladvapi32.dll/ 1634761632 0 48 ` L{pa _EventWrite@20advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _EventWriteEx@40advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _EventWriteString@24advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _EventWriteTransfer@28advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _FileEncryptionStatusA@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _FileEncryptionStatusW@8advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa! _FindFirstFreeAce@8advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _FlushTraceA@16advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _FlushTraceW@16advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa* _FreeEncryptedFileMetadata@4advapi32.dlladvapi32.dll/ 1634761632 0 70 ` L{pa2 _FreeEncryptionCertificateHashList@4advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _FreeInheritedFromArray@12advapi32.dlladvapi32.dll/ 1634761632 0 44 ` L{pa _FreeSid@4advapi32.dlladvapi32.dll/ 1634761632 0 44 ` L{pa _GetAce@12advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _GetAclInformation@16advapi32.dll advapi32.dll/ 1634761632 0 67 ` L{pa/ _GetAuditedPermissionsFromAclA@16advapi32.dll advapi32.dll/ 1634761632 0 67 ` L{pa/ _GetAuditedPermissionsFromAclW@16advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _GetCurrentHwProfileA@4advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _GetCurrentHwProfileW@4advapi32.dll advapi32.dll/ 1634761632 0 81 ` L{pa= _GetDynamicTimeZoneInformationEffectiveYears@12advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa, _GetEffectiveRightsFromAclA@12advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa, _GetEffectiveRightsFromAclW@12advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _GetEncryptedFileMetadata@12advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _GetEventLogInformation@20advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa, _GetExplicitEntriesFromAclA@12advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa, _GetExplicitEntriesFromAclW@12advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _GetFileSecurityA@20advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _GetFileSecurityW@20advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _GetInheritanceSourceA@40advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _GetInheritanceSourceW@40advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _GetKernelObjectSecurity@20advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _GetLengthSid@4advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0 _GetLocalManagedApplicationData@12advapi32.dlladvapi32.dll/ 1634761632 0 65 ` L{pa- _GetLocalManagedApplications@12advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0 _GetManagedApplicationCategories@8advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _GetManagedApplications@20advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _GetMultipleTrusteeA@4advapi32.dlladvapi32.dll/ 1634761632 0 65 ` L{pa- _GetMultipleTrusteeOperationA@4advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa- _GetMultipleTrusteeOperationW@4advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _GetMultipleTrusteeW@4advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _GetNamedSecurityInfoA@32advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _GetNamedSecurityInfoW@32advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+ _GetNumberOfEventLogRecords@8advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _GetOldestEventLogRecord@8advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*  _GetPrivateObjectSecurity@20advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa.  _GetSecurityDescriptorControl@12advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+  _GetSecurityDescriptorDacl@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,  _GetSecurityDescriptorGroup@12advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,  _GetSecurityDescriptorLength@4advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa, _GetSecurityDescriptorOwner@12advapi32.dlladvapi32.dll/ 1634761632 0 67 ` L{pa/ _GetSecurityDescriptorRMControl@8advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+ _GetSecurityDescriptorSacl@16advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _GetSecurityInfo@32advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _GetServiceDisplayNameA@16advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _GetServiceDisplayNameW@16advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _GetServiceKeyNameA@16advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _GetServiceKeyNameW@16advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _GetSidIdentifierAuthority@4advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _GetSidLengthRequired@4advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _GetSidSubAuthority@8advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _GetSidSubAuthorityCount@4advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _GetThreadWaitChain@28advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _GetTokenInformation@20advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _GetTraceEnableFlags@8advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _GetTraceEnableLevel@8advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _GetTraceLoggerHandle@4advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa  _GetTrusteeFormA@4advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _GetTrusteeFormW@4advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa ! _GetTrusteeNameA@4advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa " _GetTrusteeNameW@4advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa # _GetTrusteeTypeA@4advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa $ _GetTrusteeTypeW@4advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa% _GetUserNameA@8advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa& _GetUserNameW@8advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,' _GetWindowsAccountDomainSid@12advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*( _ImpersonateAnonymousToken@4advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa() _ImpersonateLoggedOnUser@4advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+* _ImpersonateNamedPipeClient@4advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa + _ImpersonateSelf@4advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa, _InitializeAcl@12advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa-- _InitializeSecurityDescriptor@8advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa. _InitializeSid@12advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#/ _InitiateShutdownA@20advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#0 _InitiateShutdownW@20advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)1 _InitiateSystemShutdownA@20advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+2 _InitiateSystemShutdownExA@24advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+3 _InitiateSystemShutdownExW@24advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)4 _InitiateSystemShutdownW@20advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#5 _InstallApplication@4advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa6 _IsTextUnicode@12advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa"7 _IsTokenRestricted@4advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa!8 _IsTokenUntrusted@4advapi32.dll advapi32.dll/ 1634761632 0 47 ` L{pa9 _IsValidAcl@4advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa*: _IsValidSecurityDescriptor@4advapi32.dlladvapi32.dll/ 1634761632 0 47 ` L{pa; _IsValidSid@4advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa< _IsWellKnownSid@8advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$= _LockServiceDatabase@4advapi32.dlladvapi32.dll/ 1634761632 0 48 ` L{pa> _LogonUserA@24advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa? _LogonUserExA@40advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa@ _LogonUserExW@40advapi32.dlladvapi32.dll/ 1634761632 0 48 ` L{paA _LogonUserW@24advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$B _LookupAccountNameA@28advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$C _LookupAccountNameW@28advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa#D _LookupAccountSidA@28advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#E _LookupAccountSidW@28advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa-F _LookupPrivilegeDisplayNameA@20advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa-G _LookupPrivilegeDisplayNameW@20advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa&H _LookupPrivilegeNameA@16advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&I _LookupPrivilegeNameW@16advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'J _LookupPrivilegeValueA@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'K _LookupPrivilegeValueW@12advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0L _LookupSecurityDescriptorPartsA@28advapi32.dlladvapi32.dll/ 1634761632 0 68 ` L{pa0M _LookupSecurityDescriptorPartsW@28advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa%N _LsaAddAccountRights@16advapi32.dll advapi32.dll/ 1634761632 0 45 ` L{paO _LsaClose@4advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa*P _LsaCreateTrustedDomainEx@20advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'Q _LsaDeleteTrustedDomain@8advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+R _LsaEnumerateAccountRights@16advapi32.dll advapi32.dll/ 1634761632 0 71 ` L{pa3S _LsaEnumerateAccountsWithUserRight@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,T _LsaEnumerateTrustedDomains@20advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa.U _LsaEnumerateTrustedDomainsEx@20advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{paV _LsaFreeMemory@4advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa%W _LsaGetAppliedCAPIDs@12advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!Y _LsaLookupNames2@24advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa X _LsaLookupNames@20advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa [ _LsaLookupSids2@24advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{paZ _LsaLookupSids@20advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa&\ _LsaNtStatusToWinError@4advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa] _LsaOpenPolicy@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,^ _LsaOpenTrustedDomainByName@16advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa_ _LsaQueryCAPs@16advapi32.dlladvapi32.dll/ 1634761632 0 69 ` L{pa1` _LsaQueryDomainInformationPolicy@12advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0a _LsaQueryForestTrustInformation@12advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+b _LsaQueryInformationPolicy@12advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+c _LsaQueryTrustedDomainInfo@16advapi32.dll advapi32.dll/ 1634761632 0 69 ` L{pa1d _LsaQueryTrustedDomainInfoByName@16advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa(e _LsaRemoveAccountRights@20advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa(f _LsaRetrievePrivateData@12advapi32.dlladvapi32.dll/ 1634761632 0 48 ` L{pag _LsaSetCAPs@12advapi32.dlladvapi32.dll/ 1634761632 0 67 ` L{pa/h _LsaSetDomainInformationPolicy@12advapi32.dll advapi32.dll/ 1634761632 0 66 ` L{pa.i _LsaSetForestTrustInformation@20advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)j _LsaSetInformationPolicy@12advapi32.dll advapi32.dll/ 1634761632 0 67 ` L{pa/k _LsaSetTrustedDomainInfoByName@16advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0l _LsaSetTrustedDomainInformation@16advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa%m _LsaStorePrivateData@12advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa*o _MSChapSrvChangePassword2@28advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)n _MSChapSrvChangePassword@28advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa p _MakeAbsoluteSD@44advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$q _MakeSelfRelativeSD@12advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{par _MapGenericMask@8advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa's _NotifyBootConfigStatus@4advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa%t _NotifyChangeEventLog@8advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,u _NotifyServiceStatusChangeA@12advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,v _NotifyServiceStatusChangeW@12advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa(w _ObjectCloseAuditAlarmA@12advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa(x _ObjectCloseAuditAlarmW@12advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)y _ObjectDeleteAuditAlarmA@12advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)z _ObjectDeleteAuditAlarmW@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'{ _ObjectOpenAuditAlarmA@48advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'| _ObjectOpenAuditAlarmW@48advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,} _ObjectPrivilegeAuditAlarmA@24advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,~ _ObjectPrivilegeAuditAlarmW@24advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _OpenBackupEventLogA@8advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _OpenBackupEventLogW@8advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _OpenEncryptedFileRawA@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _OpenEncryptedFileRawW@12advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _OpenEventLogA@8advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _OpenEventLogW@8advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _OpenProcessToken@12advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _OpenSCManagerA@12advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _OpenSCManagerW@12advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _OpenServiceA@12advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _OpenServiceW@12advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa! _OpenThreadToken@16advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+ _OpenThreadWaitChainSession@8advapi32.dll advapi32.dll/ 1634761632 0 47 ` L{pa _OpenTraceA@4advapi32.dll advapi32.dll/ 1634761632 0 47 ` L{pa _OpenTraceW@4advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _OperationEnd@4advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _OperationStart@4advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _PerfAddCounters@12advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _PerfCloseQueryHandle@4advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _PerfCreateInstance@16advapi32.dlladvapi32.dll/ 1634761632 0 68 ` L{pa0 _PerfDecrementULongCounterValue@16advapi32.dlladvapi32.dll/ 1634761632 0 72 ` L{pa4 _PerfDecrementULongLongCounterValue@20advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _PerfDeleteCounters@12advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _PerfDeleteInstance@8advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _PerfEnumerateCounterSet@16advapi32.dll advapi32.dll/ 1634761632 0 70 ` L{pa2 _PerfEnumerateCounterSetInstances@20advapi32.dlladvapi32.dll/ 1634761632 0 68 ` L{pa0 _PerfIncrementULongCounterValue@16advapi32.dlladvapi32.dll/ 1634761632 0 72 ` L{pa4 _PerfIncrementULongLongCounterValue@20advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _PerfOpenQueryHandle@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _PerfQueryCounterData@16advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _PerfQueryCounterInfo@16advapi32.dlladvapi32.dll/ 1634761632 0 73 ` L{pa5 _PerfQueryCounterSetRegistrationInfo@28advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _PerfQueryInstance@16advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _PerfSetCounterRefValue@16advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _PerfSetCounterSetInfo@12advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa* _PerfSetULongCounterValue@16advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa. _PerfSetULongLongCounterValue@20advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _PerfStartProvider@12advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _PerfStartProviderEx@12advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _PerfStopProvider@4advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa  _PrivilegeCheck@12advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa. _PrivilegedServiceAuditAlarmA@20advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa. _PrivilegedServiceAuditAlarmW@20advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _ProcessTrace@16advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa! _QueryAllTracesA@12advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _QueryAllTracesW@12advapi32.dll advapi32.dll/ 1634761632 0 71 ` L{pa3 _QueryRecoveryAgentsOnEncryptedFile@8advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _QuerySecurityAccessMask@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _QueryServiceConfig2A@20advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _QueryServiceConfig2W@20advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _QueryServiceConfigA@16advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _QueryServiceConfigW@16advapi32.dll advapi32.dll/ 1634761632 0 68 ` L{pa0 _QueryServiceDynamicInformation@12advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa) _QueryServiceLockStatusA@16advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _QueryServiceLockStatusW@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa, _QueryServiceObjectSecurity@20advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _QueryServiceStatus@8advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa& _QueryServiceStatusEx@20advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _QueryTraceA@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa, _QueryTraceProcessingHandle@32advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _QueryTraceW@16advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa* _QueryUsersOnEncryptedFile@8advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa& _ReadEncryptedFileRaw@12advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa _ReadEventLogA@28advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _ReadEventLogW@28advapi32.dll advapi32.dll/ 1634761632 0 48 ` L{pa _RegCloseKey@4advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _RegConnectRegistryA@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _RegConnectRegistryExA@16advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _RegConnectRegistryExW@16advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _RegConnectRegistryW@12advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _RegCopyTreeA@12advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegCopyTreeW@12advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa _RegCreateKeyA@12advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _RegCreateKeyExA@36advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _RegCreateKeyExW@36advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _RegCreateKeyTransactedA@44advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _RegCreateKeyTransactedW@44advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegCreateKeyW@12advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _RegDeleteKeyA@8advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa! _RegDeleteKeyExA@16advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa! _RegDeleteKeyExW@16advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _RegDeleteKeyTransactedA@24advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _RegDeleteKeyTransactedW@24advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _RegDeleteKeyValueA@12advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$ _RegDeleteKeyValueW@12advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegDeleteKeyW@8advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{pa _RegDeleteTreeA@8advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegDeleteTreeW@8advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa  _RegDeleteValueA@8advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegDeleteValueW@8advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa* _RegDisablePredefinedCache@0advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa, _RegDisablePredefinedCacheEx@0advapi32.dlladvapi32.dll/ 1634761632 0 60 ` L{pa( _RegDisableReflectionKey@4advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa' _RegEnableReflectionKey@4advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _RegEnumKeyA@16advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegEnumKeyExA@32advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegEnumKeyExW@32advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _RegEnumKeyW@16advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegEnumValueA@32advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegEnumValueW@32advapi32.dll advapi32.dll/ 1634761632 0 48 ` L{pa _RegFlushKey@4advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa# _RegGetKeySecurity@16advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _RegGetValueA@28advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegGetValueW@28advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegLoadAppKeyA@20advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegLoadAppKeyW@20advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _RegLoadKeyA@12advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _RegLoadKeyW@12advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _RegLoadMUIStringA@28advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _RegLoadMUIStringW@28advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _RegNotifyChangeKeyValue@20advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa# _RegOpenCurrentUser@8advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _RegOpenKeyA@12advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegOpenKeyExA@20advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegOpenKeyExW@20advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _RegOpenKeyTransactedA@28advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa' _RegOpenKeyTransactedW@28advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _RegOpenKeyW@12advapi32.dll advapi32.dll/ 1634761632 0 60 ` L{pa( _RegOpenUserClassesRoot@16advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _RegOverridePredefKey@8advapi32.dll advapi32.dll/ 1634761632 0 54 ` L{pa" _RegQueryInfoKeyA@48advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _RegQueryInfoKeyW@48advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa) _RegQueryMultipleValuesA@20advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa) _RegQueryMultipleValuesW@20advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa& _RegQueryReflectionKey@8advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegQueryValueA@16advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _RegQueryValueExA@24advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa" _RegQueryValueExW@24advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegQueryValueW@16advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegRenameKey@12advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegReplaceKeyA@16advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegReplaceKeyW@16advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegRestoreKeyA@12advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegRestoreKeyW@12advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _RegSaveKeyA@12advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegSaveKeyExA@16advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa _RegSaveKeyExW@16advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{pa _RegSaveKeyW@12advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#  _RegSetKeySecurity@12advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!  _RegSetKeyValueA@24advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!  _RegSetKeyValueW@24advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa  _RegSetValueA@20advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegSetValueExA@24advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa  _RegSetValueExW@24advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegSetValueW@20advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegUnLoadKeyA@8advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _RegUnLoadKeyW@8advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _RegisterEventSourceA@8advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _RegisterEventSourceW@8advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa, _RegisterServiceCtrlHandlerA@8advapi32.dlladvapi32.dll/ 1634761632 0 67 ` L{pa/ _RegisterServiceCtrlHandlerExA@12advapi32.dll advapi32.dll/ 1634761632 0 67 ` L{pa/ _RegisterServiceCtrlHandlerExW@12advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa, _RegisterServiceCtrlHandlerW@8advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa% _RegisterTraceGuidsA@32advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa% _RegisterTraceGuidsW@32advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa- _RegisterWaitChainCOMCallback@8advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$ _RemoveTraceCallback@4advapi32.dlladvapi32.dll/ 1634761632 0 65 ` L{pa- _RemoveUsersFromEncryptedFile@8advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa _ReportEventA@36advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa _ReportEventW@36advapi32.dlladvapi32.dll/ 1634761632 0 49 ` L{pa _RevertToSelf@0advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa  _SaferCloseLevel@4advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,! _SaferComputeTokenFromLevel@20advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa"" _SaferCreateLevel@20advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*# _SaferGetLevelInformation@20advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+$ _SaferGetPolicyInformation@24advapi32.dll advapi32.dll/ 1634761632 0 56 ` L{pa$% _SaferIdentifyLevel@16advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*& _SaferRecordEventLogEntry@12advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*' _SaferSetLevelInformation@16advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+( _SaferSetPolicyInformation@20advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+) _SaferiIsExecutableFileType@8advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#* _SetAclInformation@16advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa*+ _SetEncryptedFileMetadata@24advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa", _SetEntriesInAclA@16advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa"- _SetEntriesInAclW@16advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa". _SetFileSecurityA@12advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa"/ _SetFileSecurityW@12advapi32.dlladvapi32.dll/ 1634761632 0 61 ` L{pa)0 _SetKernelObjectSecurity@12advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'1 _SetNamedSecurityInfoA@28advapi32.dll advapi32.dll/ 1634761632 0 59 ` L{pa'2 _SetNamedSecurityInfoW@28advapi32.dll advapi32.dll/ 1634761632 0 62 ` L{pa*3 _SetPrivateObjectSecurity@20advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,4 _SetPrivateObjectSecurityEx@24advapi32.dlladvapi32.dll/ 1634761632 0 58 ` L{pa&5 _SetSecurityAccessMask@8advapi32.dlladvapi32.dll/ 1634761632 0 66 ` L{pa.6 _SetSecurityDescriptorControl@12advapi32.dlladvapi32.dll/ 1634761632 0 63 ` L{pa+7 _SetSecurityDescriptorDacl@16advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,8 _SetSecurityDescriptorGroup@12advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,9 _SetSecurityDescriptorOwner@12advapi32.dlladvapi32.dll/ 1634761632 0 67 ` L{pa/: _SetSecurityDescriptorRMControl@8advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+; _SetSecurityDescriptorSacl@16advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!< _SetSecurityInfo@28advapi32.dll advapi32.dll/ 1634761632 0 52 ` L{pa = _SetServiceBits@16advapi32.dlladvapi32.dll/ 1634761632 0 62 ` L{pa*> _SetServiceObjectSecurity@12advapi32.dlladvapi32.dll/ 1634761632 0 53 ` L{pa!? _SetServiceStatus@8advapi32.dll advapi32.dll/ 1634761632 0 51 ` L{pa@ _SetThreadToken@8advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa%A _SetTokenInformation@16advapi32.dll advapi32.dll/ 1634761632 0 53 ` L{pa!B _SetTraceCallback@8advapi32.dll advapi32.dll/ 1634761632 0 61 ` L{pa)C _SetUserFileEncryptionKey@4advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,D _SetUserFileEncryptionKeyEx@16advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{paE _StartServiceA@12advapi32.dll advapi32.dll/ 1634761632 0 64 ` L{pa,F _StartServiceCtrlDispatcherA@4advapi32.dlladvapi32.dll/ 1634761632 0 64 ` L{pa,G _StartServiceCtrlDispatcherW@4advapi32.dlladvapi32.dll/ 1634761632 0 51 ` L{paH _StartServiceW@12advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{paI _StartTraceA@12advapi32.dll advapi32.dll/ 1634761632 0 49 ` L{paJ _StartTraceW@12advapi32.dll advapi32.dll/ 1634761632 0 48 ` L{paK _StopTraceA@16advapi32.dlladvapi32.dll/ 1634761632 0 48 ` L{paL _StopTraceW@16advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa"M _SystemFunction036@8advapi32.dlladvapi32.dll/ 1634761632 0 55 ` L{pa#N _SystemFunction040@12advapi32.dll advapi32.dll/ 1634761632 0 55 ` L{pa#O _SystemFunction041@12advapi32.dll advapi32.dll/ 1634761632 0 48 ` L{paP _TraceEvent@12advapi32.dlladvapi32.dll/ 1634761632 0 56 ` L{pa$Q _TraceEventInstance@20advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{paR _TraceMessage@20advapi32.dlladvapi32.dll/ 1634761632 0 52 ` L{pa S _TraceMessageVa@24advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'T _TraceQueryInformation@24advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa%U _TraceSetInformation@20advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa-V _TreeResetNamedSecurityInfoA@44advapi32.dll advapi32.dll/ 1634761632 0 65 ` L{pa-W _TreeResetNamedSecurityInfoW@44advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+X _TreeSetNamedSecurityInfoA@44advapi32.dll advapi32.dll/ 1634761632 0 63 ` L{pa+Y _TreeSetNamedSecurityInfoW@44advapi32.dll advapi32.dll/ 1634761632 0 57 ` L{pa%Z _UninstallApplication@8advapi32.dll advapi32.dll/ 1634761632 0 58 ` L{pa&[ _UnlockServiceDatabase@4advapi32.dlladvapi32.dll/ 1634761632 0 57 ` L{pa%\ _UnregisterTraceGuids@8advapi32.dll advapi32.dll/ 1634761632 0 50 ` L{pa] _UpdateTraceA@16advapi32.dlladvapi32.dll/ 1634761632 0 50 ` L{pa^ _UpdateTraceW@16advapi32.dlladvapi32.dll/ 1634761632 0 54 ` L{pa"_ _WaitServiceState@16advapi32.dlladvapi32.dll/ 1634761632 0 59 ` L{pa'` _WriteEncryptedFileRaw@12advapi32.dll