库 KERNEL32.DLL:
• 0x4201bc - WriteProcessMemory
• 0x4201c0 - WriteFile
• 0x4201c4 - WinExec
• 0x4201c8 - VirtualFreeEx
• 0x4201cc - VirtualAllocEx
• 0x4201d0 - UpdateResourceA
• 0x4201d4 - TerminateProcess
• 0x4201d8 - SuspendThread
• 0x4201dc - Sleep
• 0x4201e0 - SizeofResource
• 0x4201e4 - SetThreadContext
• 0x4201e8 - SetLastError
• 0x4201ec - SetFileTime
• 0x4201f0 - SetFilePointer
• 0x4201f4 - SetFileAttributesA
• 0x4201f8 - SetEndOfFile
• 0x4201fc - ResumeThread
• 0x420200 - ReadFile
• 0x420204 - OpenProcess
• 0x420208 - OpenFileMappingA
• 0x42020c - MoveFileA
• 0x420210 - MapViewOfFile
• 0x420214 - LockResource
• 0x420218 - LoadResource
• 0x42021c - LoadLibraryExA
• 0x420220 - LoadLibraryA
• 0x420224 - IsBadReadPtr
• 0x420228 - GlobalFree
• 0x42022c - GlobalAlloc
• 0x420230 - GetWindowsDirectoryA
• 0x420234 - GetVersionExA
• 0x420238 - GetUserDefaultLangID
• 0x42023c - GetThreadContext
• 0x420240 - GetTempPathA
• 0x420244 - GetTempFileNameA
• 0x420248 - GetSystemDirectoryA
• 0x42024c - GetProcAddress
• 0x420250 - GetModuleHandleA
• 0x420254 - GetLocalTime
• 0x420258 - GetFileTime
• 0x42025c - GetFileSize
• 0x420260 - GetFileAttributesA
• 0x420264 - GetDriveTypeA
• 0x420268 - GetCurrentProcessId
• 0x42026c - GetCurrentProcess
• 0x420270 - GetComputerNameA
• 0x420274 - GetACP
• 0x420278 - FreeResource
• 0x42027c - FreeLibrary
• 0x420280 - FindResourceA
• 0x420284 - FindNextFileA
• 0x420288 - FindFirstFileA
• 0x42028c - FindClose
• 0x420290 - FileTimeToLocalFileTime
• 0x420294 - FileTimeToDosDateTime
• 0x420298 - ExitProcess
• 0x42029c - EndUpdateResourceA
• 0x4202a0 - DuplicateHandle
• 0x4202a4 - DeleteFileA
• 0x4202a8 - CreateThread
• 0x4202ac - CreateProcessA
• 0x4202b0 - CreateFileMappingA
• 0x4202b4 - CreateFileA
• 0x4202b8 - CreateDirectoryA
• 0x4202bc - CopyFileA
• 0x4202c0 - CompareStringA
• 0x4202c4 - CloseHandle
• 0x4202c8 - BeginUpdateResourceA
库 KERNEL32.DLL:
• 0x420104 - DeleteCriticalSection
• 0x420108 - LeaveCriticalSection
• 0x42010c - EnterCriticalSection
• 0x420110 - InitializeCriticalSection
• 0x420114 - VirtualFree
• 0x420118 - VirtualAlloc
• 0x42011c - LocalFree
• 0x420120 - LocalAlloc
• 0x420124 - GetVersion
• 0x420128 - GetCurrentThreadId
• 0x42012c - MultiByteToWideChar
• 0x420130 - GetThreadLocale
• 0x420134 - GetStartupInfoA
• 0x420138 - GetModuleFileNameA
• 0x42013c - GetLocaleInfoA
• 0x420140 - GetCommandLineA
• 0x420144 - FreeLibrary
• 0x420148 - ExitProcess
• 0x42014c - WriteFile
• 0x420150 - UnhandledExceptionFilter
• 0x420154 - RtlUnwind
• 0x420158 - RaiseException
• 0x42015c - GetStdHandle
库 user32.dll:
• 0x4202fc - CreateWindowExA
• 0x420300 - UpdateWindow
• 0x420304 - TranslateMessage
• 0x420308 - SendMessageA
• 0x42030c - RegisterClassA
• 0x420310 - PostThreadMessageA
• 0x420314 - PostMessageA
• 0x420318 - PeekMessageA
• 0x42031c - LoadCursorA
• 0x420320 - GetWindowTextA
• 0x420324 - GetMessageA
• 0x420328 - FindWindowExA
• 0x42032c - FindWindowA
• 0x420330 - DispatchMessageA
• 0x420334 - DefWindowProcA