Generated by JEB on 2019/08/01
PE: C:\Windows\System32\shsetup.dll Base=0x180000000 SHA-256=53C6C448A0B1767CBA23C5C380D03CE4F1FC952A4FC5E87D829D602627C22FD7
PDB: shsetup.pdb GUID={C49CF449-F90E-6786-0AFD559029B11809} Age=1
1283 located named symbols:
0x18001E550: "__cdecl _DELAY_IMPORT_DESCRIPTOR_SHCORE_dll" __DELAY_IMPORT_DESCRIPTOR_SHCORE_dll
0x1800145E8: "__cdecl _imp_SetComputerNameExW" __imp_SetComputerNameExW
0x1800132A3: "__cdecl _imp_load_FindWindowW" __imp_load_FindWindowW
0x180018B30: "ShowHideClientApp" ??_C@_1CE@DOCKLEIF@?$AAS?$AAh?$AAo?$AAw?$AAH?$AAi?$AAd?$AAe?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAA?$AAp?$AAp?$AA?$AA@
0x180019E10: "SetupDisplayedEula" ??_C@_1CG@KBMJEECP@?$AAS?$AAe?$AAt?$AAu?$AAp?$AAD?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AAe?$AAd?$AAE?$AAu?$AAl?$AAa?$AA?$AA@
0x180014010: "const Microsoft::WRL::RuntimeClass<struct Microsoft::WRL::RuntimeClassFlags<2>,struct IFileSystemBindData,struct IFileSystemBindData2>::`vftable'{for `Microsoft::WRL::Details::ImplementsHelper<struct Microsoft::WRL::RuntimeClassFlags<2>,1,struct IFileSystemBindData2>'}" ??_7?$RuntimeClass@U?$RuntimeClassFlags@$01@WRL@Microsoft@@UIFileSystemBindData@@UIFileSystemBindData2@@@WRL@Microsoft@@6B?$ImplementsHelper@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00UIFileSystemBindData2@@@Details@12@@
0x180013212: "__cdecl _tailMerge_ext_ms_win_ntuser_message_l1_1_0_dll" __tailMerge_ext_ms_win_ntuser_message_l1_1_0_dll
0x180021730: "bool (__cdecl* __ptr64 wil::g_pfnIsDebuggerPresent)(void)" ?g_pfnIsDebuggerPresent@wil@@3P6A_NXZEA
0x180015514: "1" ??_C@_13JGCMLPCH@?$AA1?$AA?$AA@
0x1800186D8: "OEMShowIcons" ??_C@_1BK@IIPJLBHO@?$AAO?$AAE?$AAM?$AAS?$AAh?$AAo?$AAw?$AAI?$AAc?$AAo?$AAn?$AAs?$AA?$AA@
0x180012924: "__cdecl _raise_securityfailure" __raise_securityfailure
0x180017FC0: "Software\Microsoft\Windows\Curre" ??_C@_1HI@BEGLNFHN@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18000DE50: ProcessTimeZone
0x180014310: api-ms-win-core-file-l1-1-0_NULL_THUNK_DATA
0x180021610: "__cdecl _hmod__api_ms_win_shlwapi_ie_l1_1_0_dll" __hmod__api_ms_win_shlwapi_ie_l1_1_0_dll
0x180014638: "__cdecl _imp_GetSecurityDescriptorOwner" __imp_GetSecurityDescriptorOwner
0x180016820: "[Shell Unattend] Delete active s" ??_C@_0DL@OOAJJJAF@?$FLShell?5Unattend?$FN?5Delete?5active?5s@
0x180007454: "void __cdecl wil::details::ReportFailure_Hr(void * __ptr64,unsigned int,char const * __ptr64,char const * __ptr64,char const * __ptr64,void * __ptr64,enum wil::FailureType,long)" ?ReportFailure_Hr@details@wil@@YAXPEAXIPEBD110W4FailureType@2@J@Z
0x180012CF0: "__cdecl FindPESection" _FindPESection
0x18001EBEC: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-sysinfo-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-sysinfo-l1-2-0
0x1800171F0: "[Shell Unattend] Display: failed" ??_C@_0GA@GALMJOFI@?$FLShell?5Unattend?$FN?5Display?3?5failed@
0x180017D58: "h" ??_C@_13CACJPPAP@?$AAh?$AA?$AA@
0x18001A550: "Software\Microsoft\Windows\Curre" ??_C@_1HK@FGNAAKIM@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18000E780: SHUnattendedSetupA
0x180018E10: "ShowMediaCenter" ??_C@_1CA@OCPBNHEG@?$AAS?$AAh?$AAo?$AAw?$AAM?$AAe?$AAd?$AAi?$AAa?$AAC?$AAe?$AAn?$AAt?$AAe?$AAr?$AA?$AA@
0x180014228: "__cdecl _imp_CoCreateGuid" __imp_CoCreateGuid
0x180014270: "__cdecl _imp_OutputDebugStringW" __imp_OutputDebugStringW
0x1800177E0: "[Shell Unattend] Service %ls is " ??_C@_0FA@CHGLFAAC@?$FLShell?5Unattend?$FN?5Service?5?$CFls?5is?5@
0x1800195B0: "[Shell Unattend] LogonCommands: " ??_C@_0DO@NOIPMPGN@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180019620: "[Shell Unattend] LogonCommands: " ??_C@_0ED@FKBCMLOE@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x1800032F0: "long __cdecl StringCchCatW(unsigned short * __ptr64,unsigned __int64,unsigned short const * __ptr64)" ?StringCchCatW@@YAJPEAG_KPEBG@Z
0x180014238: "__cdecl _imp_CoInitializeEx" __imp_CoInitializeEx
0x180012390: "__cdecl _delayLoadHelper2" __delayLoadHelper2
0x180014538: "__cdecl _imp_CompareStringOrdinal" __imp_CompareStringOrdinal
0x18001ED90: "__cdecl _IMPORT_DESCRIPTOR_ntdll" __IMPORT_DESCRIPTOR_ntdll
0x18001AB28: "ShowOnlyQuickLaunchDeskBand" ??_C@_1DI@ECCGPLAN@?$AAS?$AAh?$AAo?$AAw?$AAO?$AAn?$AAl?$AAy?$AAQ?$AAu?$AAi?$AAc?$AAk?$AAL?$AAa?$AAu?$AAn?$AAc?$AAh?$AAD?$AAe?$AAs?$AAk?$AAB?$AAa?$AAn?$AAd?$AA?$AA@
0x18001E678: ext-ms-win-rtcore-ntuser-sysparams-l1-1-0_NULL_THUNK_DATA_DLN
0x180016468: "SeTakeOwnershipPrivilege" ??_C@_1DC@DAFGHJAD@?$AAS?$AAe?$AAT?$AAa?$AAk?$AAe?$AAO?$AAw?$AAn?$AAe?$AAr?$AAs?$AAh?$AAi?$AAp?$AAP?$AAr?$AAi?$AAv?$AAi?$AAl?$AAe?$AAg?$AAe?$AA?$AA@
0x180006794: "long __cdecl StringCchCopyExW(unsigned short * __ptr64,unsigned __int64,unsigned short const * __ptr64,unsigned short * __ptr64 * __ptr64,unsigned __int64 * __ptr64,unsigned long)" ?StringCchCopyExW@@YAJPEAG_KPEBGPEAPEAGPEA_KK@Z
0x18001EC00: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-com-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-com-l1-1-0
0x1800146C8: api-ms-win-security-provider-l1-1-0_NULL_THUNK_DATA
0x1800179B0: "DefaultUser" ??_C@_1BI@HJLEODIJ@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?$AA@
0x18001BB68: "SystemOperators" ??_C@_1CA@HBGHPIJK@?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AAO?$AAp?$AAe?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x1800185A8: "onecore\shell\shprep\oem.cpp" ??_C@_1DK@LIIPBJLF@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAo?$AAe?$AAm?$AA?4?$AAc?$AAp?$AAp?$AA?$AA@
0x18001EA58: WDSCORE_NULL_THUNK_DATA_DLB
0x18001D1D0: "\Registry\Machine\SOFTWARE\Micro" ??_C@_1IM@PFCAPAFC@?$AA?2?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?2?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AA?2?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo@
0x1800216BC: "long volatile `int __cdecl wil::details::RecordException(long)'::`2'::s_hrErrorLast" ?s_hrErrorLast@?1??RecordException@details@wil@@YAHJ@Z@4JC
0x18001A8C8: "[shsetup] Deleting contents of '" ??_C@_0CF@OHLHCAFE@?$FLshsetup?$FN?5Deleting?5contents?5of?5?8@
0x18001EA28: ext-ms-win-shell-shell32-l1-2-2_NULL_THUNK_DATA_DLB
0x180016D80: "[Shell Unattend] Display: Reques" ??_C@_0EO@PJOHBIJO@?$FLShell?5Unattend?$FN?5Display?3?5Reques@
0x180016AC0: "_CopyProfile" ??_C@_1BK@FEFMENAK@?$AA_?$AAC?$AAo?$AAp?$AAy?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x180021020: "__cdecl _security_cookie_complement" __security_cookie_complement
0x18001C058: "[Shell Unattend] UserAccounts: c" ??_C@_0DF@JGGNGEAB@?$FLShell?5Unattend?$FN?5UserAccounts?3?5c@
0x180019EF0: "UnattendSetTimeZone" ??_C@_1CI@MPCEGONG@?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAS?$AAe?$AAt?$AAT?$AAi?$AAm?$AAe?$AAZ?$AAo?$AAn?$AAe?$AA?$AA@
0x1800173F0: "SERVICE_CONTINUE_PENDING" ??_C@_1DC@GNJODFEK@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAC?$AAO?$AAN?$AAT?$AAI?$AAN?$AAU?$AAE?$AA_?$AAP?$AAE?$AAN?$AAD?$AAI?$AAN?$AAG?$AA?$AA@
0x180013206: "__cdecl _imp_load_PostMessageW" __imp_load_PostMessageW
0x180023110: "__cdecl _imp_SHEmptyRecycleBinW" __imp_SHEmptyRecycleBinW
0x180017198: "RefreshRate" ??_C@_1BI@HENCMKNA@?$AAR?$AAe?$AAf?$AAr?$AAe?$AAs?$AAh?$AAR?$AAa?$AAt?$AAe?$AA?$AA@
0x180019990: "onecore\shell\shprep\sysprep.cpp" ??_C@_1EC@JKPKNMEA@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAs?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AA?4?$AAc?$AAp?$AAp@
0x1800191D0: "[Shell Unattend] ProductKey: '%l" ??_C@_0EB@BHJCCEMO@?$FLShell?5Unattend?$FN?5ProductKey?3?5?8?$CFl@
0x18001C018: "Description" ??_C@_1BI@DLMANABL@?$AAD?$AAe?$AAs?$AAc?$AAr?$AAi?$AAp?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x180015500: "Password" ??_C@_1BC@LBMJCFCO@?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x1800168A0: "DefaultUser\Control Panel\Deskto" ??_C@_1EE@JIMBAJCA@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?2?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl?$AA?5?$AAP?$AAa?$AAn?$AAe?$AAl?$AA?2?$AAD?$AAe?$AAs?$AAk?$AAt?$AAo@
0x18001241C: "__cdecl CRT_INIT" _CRT_INIT
0x18002175C: "__cdecl _@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUwhUhvxfirgbUorxvmhrmtUhkkUkpvbUkpvbrmhghUoryUlyquivUznwGEUhgwzucOlyq@pkeyinsts" __@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUwhUhvxfirgbUorxvmhrmtUhkkUkpvbUkpvbrmhghUoryUlyquivUznwGEUhgwzucOlyq@pkeyinsts
0x180014400: "__cdecl _imp_GetCurrentThreadId" __imp_GetCurrentThreadId
0x1800143D0: "__cdecl _imp_PathCchAddBackslash" __imp_PathCchAddBackslash
0x180007664: "void __cdecl wil::details::in1diag3::_FailFast_GetLastError(void * __ptr64,unsigned int,char const * __ptr64)" ?_FailFast_GetLastError@in1diag3@details@wil@@YAXPEAXIPEBD@Z
0x180015360: "[Shell Unattend] AutoLogon faile" ??_C@_0EF@BAFJPNJP@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x18001C8E8: "TurnOnPasswordComplexityPolicy" ??_C@_1DO@KAKKPOPI@?$AAT?$AAu?$AAr?$AAn?$AAO?$AAn?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AAC?$AAo?$AAm?$AAp?$AAl?$AAe?$AAx?$AAi?$AAt?$AAy?$AAP?$AAo?$AAl?$AAi?$AAc?$AAy?$AA?$AA@
0x1800130EB: "__cdecl _imp_load_NetUserModalsGet" __imp_load_NetUserModalsGet
0x180014868: "__cdecl _imp_RtlWriteRegistryValue" __imp_RtlWriteRegistryValue
0x180012F0D: "__cdecl _CxxFrameHandler3" __CxxFrameHandler3
0x180014680: "__cdecl _imp_LookupAccountSidW" __imp_LookupAccountSidW
0x1800108EC: GenerateRandomChars
0x18001A1B0: "Software\Microsoft\Windows\Curre" ??_C@_1GG@BOCMHPKL@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180014898: "__cdecl _imp_RtlInitUnicodeString" __imp_RtlInitUnicodeString
0x18001BBE0: "RemoteDesktopUsers" ??_C@_1CG@BKOAANCC@?$AAR?$AAe?$AAm?$AAo?$AAt?$AAe?$AAD?$AAe?$AAs?$AAk?$AAt?$AAo?$AAp?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x180014AE0: "__cdecl _sz_ext_ms_win_ntuser_window_l1_1_0_dll" __sz_ext_ms_win_ntuser_window_l1_1_0_dll
0x180023140: "__cdecl _imp_NetUserSetInfo" __imp_NetUserSetInfo
0x180017DA0: "_FixSubdirPath" ??_C@_1BO@GOHOBKKF@?$AA_?$AAF?$AAi?$AAx?$AAS?$AAu?$AAb?$AAd?$AAi?$AAr?$AAP?$AAa?$AAt?$AAh?$AA?$AA@
0x18001D260: "UseDpiScaling" ??_C@_1BM@FJKBLKPF@?$AAU?$AAs?$AAe?$AAD?$AAp?$AAi?$AAS?$AAc?$AAa?$AAl?$AAi?$AAn?$AAg?$AA?$AA@
0x180013890: "__cdecl guard_dispatch_icall_nop" _guard_dispatch_icall_nop
0x18001E5E8: USERENV_NULL_THUNK_DATA_DLN
0x180013444: "__cdecl _imp_load_ChangeDisplaySettingsExW" __imp_load_ChangeDisplaySettingsExW
0x180023068: "__cdecl _imp_CurrentIP" __imp_CurrentIP
0x1800160A0: "\ntuser.dat" ??_C@_1BI@IPDNBFCO@?$AA?2?$AAn?$AAt?$AAu?$AAs?$AAe?$AAr?$AA?4?$AAd?$AAa?$AAt?$AA?$AA@
0x180012FB1: "__cdecl _imp_load_NetUserSetInfo" __imp_load_NetUserSetInfo
0x1800052C8: "private: static long __cdecl OOBEServiceHelper::_WaitForServiceState(unsigned short const * __ptr64,struct SC_HANDLE__ * __ptr64,unsigned long)" ?_WaitForServiceState@OOBEServiceHelper@@CAJPEBGPEAUSC_HANDLE__@@K@Z
0x180014CC0: "onecore\shell\shprep\autologon.c" ??_C@_1EG@EFHKMLNL@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAa?$AAu?$AAt?$AAo?$AAl?$AAo?$AAg?$AAo?$AAn?$AA?4?$AAc@
0x180018528: "__cdecl GUID_00000000_0000_0000_c000_000000000046" _GUID_00000000_0000_0000_c000_000000000046
0x180015750: "[Shell Unattend] AutoLogon faile" ??_C@_0EB@FPKIJNNP@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x1800146F8: "__cdecl _imp_StartServiceW" __imp_StartServiceW
0x1800131AC: "__cdecl _imp_load_SamOpenDomain" __imp_load_SamOpenDomain
0x18001C3F0: "AdministratorPassword" ??_C@_1CM@NJGMPMPN@?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x18001CEF8: "EtwEventEnabled" ??_C@_0BA@MIAFEPPA@EtwEventEnabled?$AA@
0x18000CD48: "void __cdecl CleanUpNotificationSettings(void)" ?CleanUpNotificationSettings@@YAXXZ
0x180009FD0: "[thunk]:public: virtual unsigned long __cdecl Microsoft::WRL::Details::RuntimeClassImpl<struct Microsoft::WRL::RuntimeClassFlags<2>,1,0,0,struct IFileSystemBindData,struct IFileSystemBindData2>::Release`adjustor{8}' (void) __ptr64" ?Release@?$RuntimeClassImpl@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00$0A@$0A@UIFileSystemBindData@@UIFileSystemBindData2@@@Details@WRL@Microsoft@@W7EAAKXZ
0x18001B378: "__cdecl GUID_424bed78_ef88_4b7c_945c_b8cf46d56e20" _GUID_424bed78_ef88_4b7c_945c_b8cf46d56e20
0x18001C300: "_ProcessAccountsInDomain" ??_C@_1DC@KCBJNPHM@?$AA_?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAs?$AAI?$AAn?$AAD?$AAo?$AAm?$AAa?$AAi?$AAn?$AA?$AA@
0x180014648: "__cdecl _imp_GetSidIdentifierAuthority" __imp_GetSidIdentifierAuthority
0x180014880: "__cdecl _imp_ZwEnumerateKey" __imp_ZwEnumerateKey
0x18001B0D8: "[shsetup] VMMode: successfully s" ??_C@_0DF@OOONOAOC@?$FLshsetup?$FN?5VMMode?3?5successfully?5s@
0x180017970: "ntuser.dat" ??_C@_1BG@GGGJEJIH@?$AAn?$AAt?$AAu?$AAs?$AAe?$AAr?$AA?4?$AAd?$AAa?$AAt?$AA?$AA@
0x18001AA88: "Shows Desktop.lnk" ??_C@_1CE@CFGFIAMP@?$AAS?$AAh?$AAo?$AAw?$AAs?$AA?5?$AAD?$AAe?$AAs?$AAk?$AAt?$AAo?$AAp?$AA?4?$AAl?$AAn?$AAk?$AA?$AA@
0x180019E40: "SetupDisplayedLanguageSelection" ??_C@_1EA@KCIHLPPG@?$AAS?$AAe?$AAt?$AAu?$AAp?$AAD?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AAe?$AAd?$AAL?$AAa?$AAn?$AAg?$AAu?$AAa?$AAg?$AAe?$AAS?$AAe?$AAl?$AAe?$AAc?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x180015038: "DefaultUserName" ??_C@_1CA@CPAFHNCF@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x180021000: "class wil::details_abi::ProcessLocalStorage<struct wil::details_abi::ProcessLocalData> wil::details::g_processLocalData" ?g_processLocalData@details@wil@@3V?$ProcessLocalStorage@UProcessLocalData@details_abi@wil@@@details_abi@2@A
0x18001CD80: "pkeyconfig-csvlk.xrm-ms" ??_C@_1DA@KJEJBCOA@?$AAp?$AAk?$AAe?$AAy?$AAc?$AAo?$AAn?$AAf?$AAi?$AAg?$AA?9?$AAc?$AAs?$AAv?$AAl?$AAk?$AA?4?$AAx?$AAr?$AAm?$AA?9?$AAm?$AAs?$AA?$AA@
0x1800175C8: "[Shell Unattend] QueryServiceSta" ??_C@_0DG@PEEKNHIJ@?$FLShell?5Unattend?$FN?5QueryServiceSta@
0x1800230E0: "__cdecl _imp_ChangeDisplaySettingsExW" __imp_ChangeDisplaySettingsExW
0x180006CF4: "void __cdecl wil::details::WilRaiseFailFastException(struct _EXCEPTION_RECORD * __ptr64,struct _CONTEXT * __ptr64,unsigned long)" ?WilRaiseFailFastException@details@wil@@YAXPEAU_EXCEPTION_RECORD@@PEAU_CONTEXT@@K@Z
0x1800174F8: "SERVICE_STOPPED" ??_C@_1CA@HGBIIHJJ@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAS?$AAT?$AAO?$AAP?$AAP?$AAE?$AAD?$AA?$AA@
0x18001A3A0: "Software\Microsoft\Windows\Curre" ??_C@_1HI@NHAKHLBN@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180014450: "__cdecl _imp_RegLoadKeyW" __imp_RegLoadKeyW
0x180018548: "" ??_C@_00CNPNBAHC@?$AA@
0x1800171B0: "DPI" ??_C@_17NNJIPDMB@?$AAD?$AAP?$AAI?$AA?$AA@
0x180016AE0: "[Shell Unattend] _CopyToDefaultP" ??_C@_0DI@BMPMFOMH@?$FLShell?5Unattend?$FN?5_CopyToDefaultP@
0x18001B710: "System\CurrentControlSet\Control" ??_C@_1GK@FNMBCEDO@?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe?$AAn?$AAt?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl?$AAS?$AAe?$AAt?$AA?2?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl@
0x180023038: "__cdecl _imp_SHGlobalCounterIncrement" __imp_SHGlobalCounterIncrement
0x18001D2E8: "__cdecl _pfnDliFailureHook2" __pfnDliFailureHook2
0x180018720: "[Shell Unattend] ClientApplicati" ??_C@_0EL@FJGICLFH@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x180014380: "__cdecl _imp_GetModuleFileNameA" __imp_GetModuleFileNameA
0x18001E4D0: "__cdecl _DELAY_IMPORT_DESCRIPTOR_ext_ms_win_shell_shell32_l1_2_0_dll" __DELAY_IMPORT_DESCRIPTOR_ext_ms_win_shell_shell32_l1_2_0_dll
0x1800184C0: "Local\SM0:%d:%d:%hs" ??_C@_1CI@EOLMILME@?$AAL?$AAo?$AAc?$AAa?$AAl?$AA?2?$AAS?$AAM?$AA0?$AA?3?$AA?$CF?$AAd?$AA?3?$AA?$CF?$AAd?$AA?3?$AA?$CF?$AAh?$AAs?$AA?$AA@
0x1800215D0: "__cdecl _hmod__USERENV_dll" __hmod__USERENV_dll
0x18001E4F0: "__cdecl _DELAY_IMPORT_DESCRIPTOR_ext_ms_win_shell_shell32_l1_2_2_dll" __DELAY_IMPORT_DESCRIPTOR_ext_ms_win_shell_shell32_l1_2_2_dll
0x180011B90: "public: static long __cdecl CGlobalHelpersT<class CEmptyType>::GetStringCchLength<unsigned long>(unsigned short const * __ptr64,unsigned long * __ptr64,unsigned long)" ??$GetStringCchLength@K@?$CGlobalHelpersT@VCEmptyType@@@@SAJPEBGPEAKK@Z
0x180021760: "class wil::details_abi::ThreadLocalStorage<class wil::details::ThreadFailureCallbackHolder * __ptr64> wil::details::g_threadFailureCallbacks" ?g_threadFailureCallbacks@details@wil@@3V?$ThreadLocalStorage@PEAVThreadFailureCallbackHolder@details@wil@@@details_abi@2@A
0x18001B880: "[Shell Unattend] TimeZone: Time " ??_C@_0DD@EJFMLCNG@?$FLShell?5Unattend?$FN?5TimeZone?3?5Time?5@
0x180012F32: "__cdecl _tailMerge_samcli_dll" __tailMerge_samcli_dll
0x180023100: ext-ms-win-shell-shell32-l1-2-0_NULL_THUNK_DATA_DLA
0x18001C2B0: "[Shell Unattend] UserAccounts: f" ??_C@_0EK@BDIMGFLP@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x18001EC14: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-file-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-file-l1-1-0
0x180015310: "[Shell Unattend] AutoLogon faile" ??_C@_0EJ@CGGFCPPG@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x18001A850: "TEMP" ??_C@_19LFDMGLCC@?$AAT?$AAE?$AAM?$AAP?$AA?$AA@
0x180002754: "struct tagLOG_PARTIAL_MSG * __ptr64 __cdecl ConstructPartialMsgW(unsigned long,char const * __ptr64,...)" ?ConstructPartialMsgW@@YAPEAUtagLOG_PARTIAL_MSG@@KPEBDZZ
0x180009400: "public: virtual unsigned long __cdecl Microsoft::WRL::Details::RuntimeClassImpl<struct Microsoft::WRL::RuntimeClassFlags<2>,1,0,0,struct IFileSystemBindData,struct IFileSystemBindData2>::Release(void) __ptr64" ?Release@?$RuntimeClassImpl@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00$0A@$0A@UIFileSystemBindData@@UIFileSystemBindData2@@@Details@WRL@Microsoft@@UEAAKXZ
0x1800046C4: "long __cdecl SHRegAllocString(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,unsigned short * __ptr64 * __ptr64)" ?SHRegAllocString@@YAJPEAUHKEY__@@PEBG1PEAPEAG@Z
0x180014358: api-ms-win-core-heap-l2-1-0_NULL_THUNK_DATA
0x18001C090: "[Shell Unattend] UserAccounts: f" ??_C@_0EN@MKEKIGGH@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180015090: "[Shell Unattend] AutoLogon faile" ??_C@_0EK@HNHFBNKA@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x180014F98: "[Shell Unattend] AutoLogon: Usin" ??_C@_0DA@FLFDOGOC@?$FLShell?5Unattend?$FN?5AutoLogon?3?5Usin@
0x1800147B0: "__cdecl _imp_wcschr" __imp_wcschr
0x18001ADE8: "[shsetup] CleanupAdministratorPa" ??_C@_0DJ@HIGOMBGP@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x180014D10: "[Shell Unattend] AutoLogon Passw" ??_C@_0CK@LNDFIGAB@?$FLShell?5Unattend?$FN?5AutoLogon?5Passw@
0x180016058: "S-1-5-20" ??_C@_1BC@BNEOOHKE@?$AAS?$AA?9?$AA1?$AA?9?$AA5?$AA?9?$AA2?$AA0?$AA?$AA@
0x1800145C0: "__cdecl _imp_GetLocalTime" __imp_GetLocalTime
0x1800148B8: "__cdecl _guard_dispatch_icall_fptr" __guard_dispatch_icall_fptr
0x1800216AC: "long volatile `int __cdecl wil::details::RecordLog(long)'::`2'::s_hrErrorLast" ?s_hrErrorLast@?1??RecordLog@details@wil@@YAHJ@Z@4JC
0x18001ADA0: "[shsetup] CleanupAdministratorPa" ??_C@_0EI@KHGHGBKF@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x180017988: "SeRestorePrivilege" ??_C@_1CG@LMBBLCJG@?$AAS?$AAe?$AAR?$AAe?$AAs?$AAt?$AAo?$AAr?$AAe?$AAP?$AAr?$AAi?$AAv?$AAi?$AAl?$AAe?$AAg?$AAe?$AA?$AA@
0x180015A58: "RegisteredOrganization" ??_C@_1CO@HPHLILLD@?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAe?$AAr?$AAe?$AAd?$AAO?$AAr?$AAg?$AAa?$AAn?$AAi?$AAz?$AAa?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x18001361B: "__cdecl _imp_load_WdsSetupLogMessageW" __imp_load_WdsSetupLogMessageW
0x18001A9F0: "AllUsersProfile" ??_C@_1CA@IINHEHJM@?$AAA?$AAl?$AAl?$AAU?$AAs?$AAe?$AAr?$AAs?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x180015058: "[Shell Unattend] WinLogon Defaul" ??_C@_0DH@DKJMGEH@?$FLShell?5Unattend?$FN?5WinLogon?5Defaul@
0x1800192A8: "_MigrateRunCommand" ??_C@_1CG@FKDFMKP@?$AA_?$AAM?$AAi?$AAg?$AAr?$AAa?$AAt?$AAe?$AAR?$AAu?$AAn?$AAC?$AAo?$AAm?$AAm?$AAa?$AAn?$AAd?$AA?$AA@
0x180017C88: "Msg:[%ws] " ??_C@_1BG@MCLOHHAM@?$AAM?$AAs?$AAg?$AA?3?$AA?$FL?$AA?$CF?$AAw?$AAs?$AA?$FN?$AA?5?$AA?$AA@
0x18001B1D0: "[Shell Unattend] Couldn't write " ??_C@_0EP@PLPCPIKC@?$FLShell?5Unattend?$FN?5Couldn?8t?5write?5@
0x1800144F0: "__cdecl _imp_PathIsRelativeW" __imp_PathIsRelativeW
0x1800143B0: "__cdecl _imp_FormatMessageW" __imp_FormatMessageW
0x1800186F8: "IconsVisible" ??_C@_1BK@LNFJJLH@?$AAI?$AAc?$AAo?$AAn?$AAs?$AAV?$AAi?$AAs?$AAi?$AAb?$AAl?$AAe?$AA?$AA@
0x180007A10: "public: __cdecl wil::details_abi::ThreadLocalData::~ThreadLocalData(void) __ptr64" ??1ThreadLocalData@details_abi@wil@@QEAA@XZ
0x1800172A0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NE@MCEEPGOA@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180014360: "__cdecl _imp_GetModuleHandleExW" __imp_GetModuleHandleExW
0x18001B780: "[Shell Unattend] TimeZone: Disab" ??_C@_0DM@MMCPNDFJ@?$FLShell?5Unattend?$FN?5TimeZone?3?5Disab@
0x18001EE08: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-string-obsolete-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-string-obsolete-l1-1-0
0x18001AC90: "Software\Classes\Local Settings\" ??_C@_1KK@HCPINNHH@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAC?$AAl?$AAa?$AAs?$AAs?$AAe?$AAs?$AA?2?$AAL?$AAo?$AAc?$AAa?$AAl?$AA?5?$AAS?$AAe?$AAt?$AAt?$AAi?$AAn?$AAg?$AAs?$AA?2@
0x180017060: "Software\Microsoft\Windows NT\Cu" ??_C@_1MI@JANHNCBJ@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180014720: "__cdecl _imp_QueryServiceStatus" __imp_QueryServiceStatus
0x180017880: "[Shell Unattend] OpenService fai" ??_C@_0CN@IHDJMHHC@?$FLShell?5Unattend?$FN?5OpenService?5fai@
0x180016F10: "[Shell Unattend] Display: Attemp" ??_C@_0DK@DBPIPKEK@?$FLShell?5Unattend?$FN?5Display?3?5Attemp@
0x180014770: api-ms-win-shcore-sysinfo-l1-1-0_NULL_THUNK_DATA
0x180012CD8: "__cdecl XcptFilter" _XcptFilter
0x18001A8F0: "[shsetup] SHCreateItemFromParsin" ??_C@_0DP@PPOEAIAP@?$FLshsetup?$FN?5SHCreateItemFromParsin@
0x180011AEC: "long __cdecl STRAPI_CreateN(unsigned short const * __ptr64,unsigned __int64,unsigned short * __ptr64 * __ptr64)" ?STRAPI_CreateN@@YAJPEBG_KPEAPEAG@Z
0x1800148C0: "__cdecl _xc_a" __xc_a
0x18000D880: Sysprep_Generalize_Shell
0x18001C9F0: "[Shell Unattend] UserAccounts: f" ??_C@_0ED@FPHIECDF@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x1800216C0: "void (__cdecl* __ptr64 wil::details::g_pfnOriginateCallback)(struct wil::FailureInfo const & __ptr64)" ?g_pfnOriginateCallback@details@wil@@3P6AXAEBUFailureInfo@2@@ZEA
0x18001B990: "oobeSystem" ??_C@_1BG@HNJJNBMA@?$AAo?$AAo?$AAb?$AAe?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?$AA@
0x180018C70: "SOFTWARE\Clients\StartMenuIntern" ??_C@_1HI@FEDDJKIL@?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAs?$AA?2?$AAS?$AAt?$AAa?$AAr?$AAt?$AAM?$AAe?$AAn?$AAu?$AAI?$AAn?$AAt?$AAe?$AAr?$AAn@
0x180017BB8: "ReturnHr" ??_C@_08KFPKLAKH@ReturnHr?$AA@
0x18001BDD0: "Dhcp" ??_C@_19GNHFFGDF@?$AAD?$AAh?$AAc?$AAp?$AA?$AA@
0x18001BE30: "[Shell Unattend] UserAccounts: w" ??_C@_0FD@GOEHELCD@?$FLShell?5Unattend?$FN?5UserAccounts?3?5w@
0x18000A700: ProcessClientApps
0x1800164A0: "O:BAD:(A;CI;GA;;;BA)(A;CI;GA;;;S" ??_C@_1EG@PGIJJNHK@?$AAO?$AA?3?$AAB?$AAA?$AAD?$AA?3?$AA?$CI?$AAA?$AA?$DL?$AAC?$AAI?$AA?$DL?$AAG?$AAA?$AA?$DL?$AA?$DL?$AA?$DL?$AAB?$AAA?$AA?$CJ?$AA?$CI?$AAA?$AA?$DL?$AAC?$AAI?$AA?$DL?$AAG?$AAA?$AA?$DL?$AA?$DL?$AA?$DL?$AAS@
0x180009470: "public: virtual long __cdecl Microsoft::WRL::Details::RuntimeClassImpl<struct Microsoft::WRL::RuntimeClassFlags<2>,1,0,0,struct IFileSystemBindData,struct IFileSystemBindData2>::QueryInterface(struct _GUID const & __ptr64,void * __ptr64 * __ptr64) __ptr64" ?QueryInterface@?$RuntimeClassImpl@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00$0A@$0A@UIFileSystemBindData@@UIFileSystemBindData2@@@Details@WRL@Microsoft@@UEAAJAEBU_GUID@@PEAPEAX@Z
0x18001ED40: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-timezone-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-timezone-l1-1-0
0x180007C88: "public: static bool __cdecl wil::details::ThreadFailureCallbackHolder::GetThreadContext(struct wil::FailureInfo * __ptr64,class wil::details::ThreadFailureCallbackHolder * __ptr64,char * __ptr64,unsigned __int64)" ?GetThreadContext@ThreadFailureCallbackHolder@details@wil@@SA_NPEAUFailureInfo@3@PEAV123@PEAD_K@Z
0x180016980: "[Shell Unattend] TakeOwnerAndDel" ??_C@_0DI@ODIFJOOI@?$FLShell?5Unattend?$FN?5TakeOwnerAndDel@
0x180017CF8: "RaiseFailFastException" ??_C@_0BH@EEDPADAA@RaiseFailFastException?$AA@
0x1800145B8: "__cdecl _imp_GetComputerNameExW" __imp_GetComputerNameExW
0x180004FF0: ProcessDisplaySettings
0x18001EA18: ext-ms-win-shell-shell32-l1-2-0_NULL_THUNK_DATA_DLB
0x180014870: "__cdecl _imp_RtlAppendUnicodeStringToString" __imp_RtlAppendUnicodeStringToString
0x180009C88: "unsigned char * __ptr64 __cdecl wil::details::WriteResultString<char const * __ptr64>(unsigned char * __ptr64,unsigned char * __ptr64,char const * __ptr64,char const * __ptr64 * __ptr64)" ??$WriteResultString@PEBD@details@wil@@YAPEAEPEAE0PEBDPEAPEBD@Z
0x180023000: "__cdecl _imp_SamSetInformationDomain" __imp_SamSetInformationDomain
0x1800146B8: api-ms-win-security-lsapolicy-l1-1-0_NULL_THUNK_DATA
0x180008050: "public: virtual long __cdecl wil::FileSystemBindData::GetJunctionCLSID(struct _GUID * __ptr64) __ptr64" ?GetJunctionCLSID@FileSystemBindData@wil@@UEAAJPEAU_GUID@@@Z
0x18001EDE0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-shlwapi-legacy-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-shlwapi-legacy-l1-1-0
0x18001A218: "ExplorerStartupTraceRecorded" ??_C@_1DK@BLCCDNEF@?$AAE?$AAx?$AAp?$AAl?$AAo?$AAr?$AAe?$AAr?$AAS?$AAt?$AAa?$AAr?$AAt?$AAu?$AAp?$AAT?$AAr?$AAa?$AAc?$AAe?$AAR?$AAe?$AAc?$AAo?$AAr?$AAd?$AAe?$AAd?$AA?$AA@
0x1800190F0: "[Shell Unattend] ProductKey: fai" ??_C@_0GG@EEPBNOOP@?$FLShell?5Unattend?$FN?5ProductKey?3?5fai@
0x180023008: "__cdecl _imp_SamOpenDomain" __imp_SamOpenDomain
0x180018E30: "SOFTWARE\Clients\Media\Windows M" ??_C@_1HA@FECAPAAK@?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAs?$AA?2?$AAM?$AAe?$AAd?$AAi?$AAa?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAM@
0x180014340: api-ms-win-core-heap-l1-1-0_NULL_THUNK_DATA
0x180017830: "[Shell Unattend] Failed to wait " ??_C@_0EM@MLGBDMIG@?$FLShell?5Unattend?$FN?5Failed?5to?5wait?5@
0x180005C88: CreateDirectoryWHelper
0x180012EE9: "__cdecl lock" _lock
0x180023138: "__cdecl _imp_NetLocalGroupAddMembers" __imp_NetLocalGroupAddMembers
0x180021738: g_pfnResultLoggingCallback
0x18001AC78: "IconStreams" ??_C@_1BI@MDFCPDBG@?$AAI?$AAc?$AAo?$AAn?$AAS?$AAt?$AAr?$AAe?$AAa?$AAm?$AAs?$AA?$AA@
0x180017700: "OOBEServiceHelper::_ControlServi" ??_C@_1EG@OKPMKGGN@?$AAO?$AAO?$AAB?$AAE?$AAS?$AAe?$AAr?$AAv?$AAi?$AAc?$AAe?$AAH?$AAe?$AAl?$AAp?$AAe?$AAr?$AA?3?$AA?3?$AA_?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl?$AAS?$AAe?$AAr?$AAv?$AAi@
0x18001B428: "MUI_Std" ??_C@_1BA@INFDCOPL@?$AAM?$AAU?$AAI?$AA_?$AAS?$AAt?$AAd?$AA?$AA@
0x180017BD0: "FailFast" ??_C@_08IAOKKAJK@FailFast?$AA@
0x180018578: "_SetDefaultAppForType" ??_C@_1CM@GBHNFKKM@?$AA_?$AAS?$AAe?$AAt?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAA?$AAp?$AAp?$AAF?$AAo?$AAr?$AAT?$AAy?$AAp?$AAe?$AA?$AA@
0x1800137BB: "__cdecl callnewh" _callnewh
0x180014C18: BHID_StorageEnum
0x1800142F8: "__cdecl _imp_DeleteFileW" __imp_DeleteFileW
0x180017380: "internal\onecoreshell\inc\oobese" ??_C@_1FM@BAGPELFI@?$AAi?$AAn?$AAt?$AAe?$AAr?$AAn?$AAa?$AAl?$AA?2?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAi?$AAn?$AAc?$AA?2?$AAo?$AAo?$AAb?$AAe?$AAs?$AAe@
0x180019270: "CommandLine" ??_C@_1BI@LPJNJKGA@?$AAC?$AAo?$AAm?$AAm?$AAa?$AAn?$AAd?$AAL?$AAi?$AAn?$AAe?$AA?$AA@
0x180014A30: "__cdecl _guard_iat_table" __guard_iat_table
0x1800143F0: api-ms-win-core-processenvironment-l1-1-0_NULL_THUNK_DATA
0x18001C730: "[Shell Unattend] UserAccounts: f" ??_C@_0GE@GLKNIMKP@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x1800185F0: "[Shell Unattend] ClientApplicati" ??_C@_0FI@MDHDDAFG@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x180021718: "bool wil::details::g_resultMessageCallbackSet" ?g_resultMessageCallbackSet@details@wil@@3_NA
0x180013856: memcpy
0x18001B0A8: "SetVMModeFlagForOOBE" ??_C@_1CK@KPHAEJJO@?$AAS?$AAe?$AAt?$AAV?$AAM?$AAM?$AAo?$AAd?$AAe?$AAF?$AAl?$AAa?$AAg?$AAF?$AAo?$AAr?$AAO?$AAO?$AAB?$AAE?$AA?$AA@
0x1800194D0: "RequiresUserInput" ??_C@_1CE@JPPNDMEP@?$AAR?$AAe?$AAq?$AAu?$AAi?$AAr?$AAe?$AAs?$AAU?$AAs?$AAe?$AAr?$AAI?$AAn?$AAp?$AAu?$AAt?$AA?$AA@
0x1800188E0: "JavaVM" ??_C@_1O@FKICLFMF@?$AAJ?$AAa?$AAv?$AAa?$AAV?$AAM?$AA?$AA@
0x18001A9C8: "[shsetup] Deleting temp files fo" ??_C@_0CI@IJNLMFNI@?$FLshsetup?$FN?5Deleting?5temp?5files?5fo@
0x180016070: "ProfileImagePath" ??_C@_1CC@CGAFIBB@?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AAI?$AAm?$AAa?$AAg?$AAe?$AAP?$AAa?$AAt?$AAh?$AA?$AA@
0x180014390: "__cdecl _imp_LoadLibraryExW" __imp_LoadLibraryExW
0x180007AA8: "public: void __cdecl wil::details_abi::ThreadLocalData::SetLastError(struct wil::FailureInfo const & __ptr64) __ptr64" ?SetLastError@ThreadLocalData@details_abi@wil@@QEAAXAEBUFailureInfo@3@@Z
0x180017B88: "kernelbase.dll" ??_C@_1BO@MFOKJHPK@?$AAk?$AAe?$AAr?$AAn?$AAe?$AAl?$AAb?$AAa?$AAs?$AAe?$AA?4?$AAd?$AAl?$AAl?$AA?$AA@
0x180014840: "__cdecl _imp_memset" __imp_memset
0x18001E4B0: "__cdecl _DELAY_IMPORT_DESCRIPTOR_ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll
0x18001A4D0: "FavoritesChanges" ??_C@_1CC@MPCDBDCB@?$AAF?$AAa?$AAv?$AAo?$AAr?$AAi?$AAt?$AAe?$AAs?$AAC?$AAh?$AAa?$AAn?$AAg?$AAe?$AAs?$AA?$AA@
0x180014578: "__cdecl _imp_WaitForSingleObjectEx" __imp_WaitForSingleObjectEx
0x180012EBB: "__cdecl initterm" _initterm
0x180010340: ProcessVMMode
0x180014A80: "__cdecl _sz_netutils_dll" __sz_netutils_dll
0x180015688: "[Shell Unattend] AutoLogon disab" ??_C@_0CE@BLCIJEPM@?$FLShell?5Unattend?$FN?5AutoLogon?5disab@
0x18001EBC4: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-sysinfo-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-sysinfo-l1-1-0
0x1800217F8: "__cdecl _dyn_tls_init_callback" __dyn_tls_init_callback
0x1800189D0: "ProcessClientApps" ??_C@_1CE@HDIOKNOA@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAA?$AAp?$AAp?$AAs?$AA?$AA@
0x1800162C8: "[Shell Unattend] Falling back to" ??_C@_0DO@GCKMFPHP@?$FLShell?5Unattend?$FN?5Falling?5back?5to@
0x180018AE0: "ShowIconsCommand" ??_C@_1CC@FEDNJNME@?$AAS?$AAh?$AAo?$AAw?$AAI?$AAc?$AAo?$AAn?$AAs?$AAC?$AAo?$AAm?$AAm?$AAa?$AAn?$AAd?$AA?$AA@
0x18000951C: ?create@?$semaphore_t@V?$unique_storage@U?$resource_policy@PEAXP6AXPEAX@Z$1?CloseHandle@details@wil@@YAX0@ZU?$integral_constant@_K$0A@@wistd@@PEAX$0A@$$T@details@wil@@@details@wil@@Uerr_returncode_policy@3@@wil@@QEAAJJJPEBGKPEAU_SECURITY_ATTRIBUTES@@@Z
0x1800145A0: "__cdecl _imp_Sleep" __imp_Sleep
0x180023130: "__cdecl _imp_NetUserModalsGet" __imp_NetUserModalsGet
0x1800131D0: "__cdecl _imp_load_SamSetInformationDomain" __imp_load_SamSetInformationDomain
0x18000C330: "void __cdecl DeleteTempFiles(struct HKEY__ * __ptr64,unsigned short const * __ptr64)" ?DeleteTempFiles@@YAXPEAUHKEY__@@PEBG@Z
0x180014910: "__cdecl _xi_z" __xi_z
0x1800216B4: "long volatile `int __cdecl wil::details::RecordReturn(long)'::`2'::s_hrErrorLast" ?s_hrErrorLast@?1??RecordReturn@details@wil@@YAHJ@Z@4JC
0x1800136B8: "__cdecl _imp_load_ConstructPartialMsgVW" __imp_load_ConstructPartialMsgVW
0x1800142B8: "__cdecl _imp_UnhandledExceptionFilter" __imp_UnhandledExceptionFilter
0x1800216C8: g_pfnThrowPlatformException
0x180019220: "[Shell Unattend] ProductKey: fai" ??_C@_0EL@MINKPGJL@?$FLShell?5Unattend?$FN?5ProductKey?3?5fai@
0x18000781C: "public: void __cdecl wil::details_abi::ThreadLocalFailureInfo::Set(struct wil::FailureInfo const & __ptr64,unsigned int) __ptr64" ?Set@ThreadLocalFailureInfo@details_abi@wil@@QEAAXAEBUFailureInfo@3@I@Z
0x180021648: "long volatile `void __cdecl wil::details::LogFailure(void * __ptr64,unsigned int,char const * __ptr64,char const * __ptr64,char const * __ptr64,void * __ptr64,enum wil::FailureType,long,unsigned short const * __ptr64,bool,unsigned short * __ptr64,unsigned __int64,char * __ptr64,unsigned __int64,struct wil::FailureInfo * __ptr64)'::`2'::s_failureId" ?s_failureId@?1??LogFailure@details@wil@@YAXPEAXIPEBD110W4FailureType@3@JPEBG_NPEAG_KPEAD6PEAUFailureInfo@3@@Z@4JC
0x1800146A8: "__cdecl _imp_LsaStorePrivateData" __imp_LsaStorePrivateData
0x180016FB8: "[Shell Unattend] Display: DPI Sc" ??_C@_0DA@HONGGLIE@?$FLShell?5Unattend?$FN?5Display?3?5DPI?5Sc@
0x18001CFB0: "\Registry\Machine\System\Current" ??_C@_1HM@GPAJIAJC@?$AA?2?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?2?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AA?2?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe?$AAn?$AAt@
0x180012EC7: "__cdecl _C_specific_handler" __C_specific_handler
0x180014548: "__cdecl _imp_lstrlenW" __imp_lstrlenW
0x180016738: "AppReadinessLogonComplete" ??_C@_1DE@ONBGENEE@?$AAA?$AAp?$AAp?$AAR?$AAe?$AAa?$AAd?$AAi?$AAn?$AAe?$AAs?$AAs?$AAL?$AAo?$AAg?$AAo?$AAn?$AAC?$AAo?$AAm?$AAp?$AAl?$AAe?$AAt?$AAe?$AA?$AA@
0x18001BC48: "PerfMonitoringUsers" ??_C@_1CI@KPANKPD@?$AAP?$AAe?$AAr?$AAf?$AAM?$AAo?$AAn?$AAi?$AAt?$AAo?$AAr?$AAi?$AAn?$AAg?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x1800145B0: "__cdecl _imp_SetLocalTime" __imp_SetLocalTime
0x180015570: "Software\Microsoft\Windows\Curre" ??_C@_1GK@NCFHOLAK@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180023088: WDSCORE_NULL_THUNK_DATA_DLA
0x180017CF0: "
" ??_C@_13LBAGMAIH@?$AA?6?$AA?$AA@
0x180014590: "__cdecl _imp_CreateSemaphoreExW" __imp_CreateSemaphoreExW
0x180021729: "bool wil::g_fIsDebuggerPresent" ?g_fIsDebuggerPresent@wil@@3_NA
0x180006C9C: "int __cdecl wil::details::RecordReturn(long)" ?RecordReturn@details@wil@@YAHJ@Z
0x180012F26: "__cdecl _imp_load_NetUserGetInfo" __imp_load_NetUserGetInfo
0x180023118: ext-ms-win-shell-shell32-l1-2-2_NULL_THUNK_DATA_DLA
0x180023128: netutils_NULL_THUNK_DATA_DLA
0x18001E950: netutils_NULL_THUNK_DATA_DLB
0x18001C5A0: "ProcessUserAccounts" ??_C@_1CI@IMIOOLJD@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAU?$AAs?$AAe?$AAr?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAs?$AA?$AA@
0x180014800: "__cdecl _imp__onexit" __imp__onexit
0x18001E6B8: netutils_NULL_THUNK_DATA_DLN
0x18001AF10: "[shsetup] CleanupAdministratorPa" ??_C@_0EO@NECHIKNA@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x180015C58: "*" ??_C@_13BBDEGPLJ@?$AA?$CK?$AA?$AA@
0x180013862: memmove
0x18001AE78: "[shsetup] CleanupAdministratorPa" ??_C@_0DJ@EOPLKINM@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x180018050: "[Shell Unattend] FolderLocations" ??_C@_0DI@IMECMDGI@?$FLShell?5Unattend?$FN?5FolderLocations@
0x180014328: "__cdecl _imp_HeapFree" __imp_HeapFree
0x180014528: "__cdecl _imp_StrCmpIW" __imp_StrCmpIW
0x180014530: api-ms-win-core-shlwapi-obsolete-l1-1-0_NULL_THUNK_DATA
0x18001B388: "__cdecl GUID_ae449c7f_1eba_4deb_9a62_1be3cb45010e" _GUID_ae449c7f_1eba_4deb_9a62_1be3cb45010e
0x180018650: "[Shell Unattend] ClientApplicati" ??_C@_0EM@BINKANEI@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x180015968: "RegisteredOwner" ??_C@_1CA@HIKLBPIH@?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAe?$AAr?$AAe?$AAd?$AAO?$AAw?$AAn?$AAe?$AAr?$AA?$AA@
0x180017D10: "RtlDllShutdownInProgress" ??_C@_0BJ@FLFGNKIC@RtlDllShutdownInProgress?$AA@
0x180015F60: "[Shell Unattend] ComputerName: f" ??_C@_0EP@PMLJCCDD@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x18000AB00: ProcessOptionalComponents
0x180012DD3: malloc
0x1800150E0: "[Shell Unattend] AutoLogon faile" ??_C@_0ED@GOCLEKLL@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x180014700: "__cdecl _imp_OpenServiceW" __imp_OpenServiceW
0x180015538: "UnattendSetAutologon" ??_C@_1CK@PDCMHOII@?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAS?$AAe?$AAt?$AAA?$AAu?$AAt?$AAo?$AAl?$AAo?$AAg?$AAo?$AAn?$AA?$AA@
0x180014320: api-ms-win-core-handle-l1-1-0_NULL_THUNK_DATA
0x180016CC0: "onecore\shell\shprep\display.cpp" ??_C@_1EC@DPNOKDPE@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAd?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AA?4?$AAc?$AAp?$AAp@
0x1800154F0: "Enabled" ??_C@_1BA@NPJPKIM@?$AAE?$AAn?$AAa?$AAb?$AAl?$AAe?$AAd?$AA?$AA@
0x18001E450: "__cdecl _DELAY_IMPORT_DESCRIPTOR_ext_ms_win_ntuser_message_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_ext_ms_win_ntuser_message_l1_1_0_dll
0x180014470: "__cdecl _imp_RegCloseKey" __imp_RegCloseKey
0x18001B5C8: "[Shell Unattend] TimeZone: Unkno" ??_C@_0DN@NNEHCMLC@?$FLShell?5Unattend?$FN?5TimeZone?3?5Unkno@
0x1800142E8: "__cdecl _imp_GetVolumeInformationW" __imp_GetVolumeInformationW
0x1800137EC: "__cdecl _GSHandlerCheckCommon" __GSHandlerCheckCommon
0x180014D40: "[Shell Unattend] AutoLogon LsaSt" ??_C@_0EA@OMIGCJME@?$FLShell?5Unattend?$FN?5AutoLogon?5LsaSt@
0x18001B0A0: "vm" ??_C@_15FKAKJPFO@?$AAv?$AAm?$AA?$AA@
0x180016678: "UserSignedIn" ??_C@_1BK@CCBJKGCI@?$AAU?$AAs?$AAe?$AAr?$AAS?$AAi?$AAg?$AAn?$AAe?$AAd?$AAI?$AAn?$AA?$AA@
0x1800230C8: "__cdecl _imp_CreateBindCtx" __imp_CreateBindCtx
0x18001BA40: "onecore\shell\shprep\unattend.cp" ??_C@_1EE@EMLFCGNP@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAu?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AA?4?$AAc?$AAp@
0x180014468: "__cdecl _imp_RegEnumKeyExW" __imp_RegEnumKeyExW
0x180017D2C: "wil" ??_C@_03KGBNGMMC@wil?$AA@
0x1800136EE: "__cdecl _imp_load_SHGlobalCounterIncrement" __imp_load_SHGlobalCounterIncrement
0x180019EA0: "EnableFeatureUpdate" ??_C@_1CI@FNNHOLIF@?$AAE?$AAn?$AAa?$AAb?$AAl?$AAe?$AAF?$AAe?$AAa?$AAt?$AAu?$AAr?$AAe?$AAU?$AAp?$AAd?$AAa?$AAt?$AAe?$AA?$AA@
0x1800216D0: "void (__cdecl* __ptr64 wil::details::g_pfnThrowResultException)(struct wil::FailureInfo const & __ptr64)" ?g_pfnThrowResultException@details@wil@@3P6AXAEBUFailureInfo@2@@ZEA
0x1800187F0: "[Shell Unattend] ClientApplicati" ??_C@_0EF@KMBDMFMM@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x18001304E: "__cdecl _imp_load_GetDefaultUserProfileDirectoryW" __imp_load_GetDefaultUserProfileDirectoryW
0x1800182A8: "[Shell Unattend] FolderLocations" ??_C@_0DO@EHKFMMFF@?$FLShell?5Unattend?$FN?5FolderLocations@
0x180019B10: "HideOnlineAccountScreens" ??_C@_1DC@MCBFJIEP@?$AAH?$AAi?$AAd?$AAe?$AAO?$AAn?$AAl?$AAi?$AAn?$AAe?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAS?$AAc?$AAr?$AAe?$AAe?$AAn?$AAs?$AA?$AA@
0x180017F40: "[Shell Unattend] FolderLocations" ??_C@_0EA@DKLBDHOD@?$FLShell?5Unattend?$FN?5FolderLocations@
0x180014458: "__cdecl _imp_RegUnLoadKeyW" __imp_RegUnLoadKeyW
0x180016288: "[Shell Unattend] Couldn't get cu" ??_C@_0DN@IFAALCOA@?$FLShell?5Unattend?$FN?5Couldn?8t?5get?5cu@
0x180014540: api-ms-win-core-string-l1-1-0_NULL_THUNK_DATA
0x18001B190: "WriteSysprepUserToRegistry" ??_C@_1DG@MDPFLFAL@?$AAW?$AAr?$AAi?$AAt?$AAe?$AAS?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AAU?$AAs?$AAe?$AAr?$AAT?$AAo?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?$AA@
0x180019560: "[Shell Unattend] LogonCommands: " ??_C@_0EM@KPGPKKBO@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180016EC0: "refresh rate" ??_C@_1BK@IBJNOGBC@?$AAr?$AAe?$AAf?$AAr?$AAe?$AAs?$AAh?$AA?5?$AAr?$AAa?$AAt?$AAe?$AA?$AA@
0x18001EC28: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-security-base-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-security-base-l1-1-0
0x18001E9E0: ext-ms-win-ntuser-window-l1-1-0_NULL_THUNK_DATA_DLB
0x1800230D0: ext-ms-win-ole32-bindctx-l1-1-0_NULL_THUNK_DATA_DLA
0x18001A838: "Environment" ??_C@_1BI@GGNGIFIL@?$AAE?$AAn?$AAv?$AAi?$AAr?$AAo?$AAn?$AAm?$AAe?$AAn?$AAt?$AA?$AA@
0x180014460: "__cdecl _imp_RegSetValueExW" __imp_RegSetValueExW
0x180012CE4: "__cdecl amsg_exit" _amsg_exit
0x1800147B8: "__cdecl _imp__callnewh" __imp__callnewh
0x180013627: "__cdecl _tailMerge_wdscore_dll" __tailMerge_wdscore_dll
0x180013456: "__cdecl _imp_load_SHCreateItemFromParsingName" __imp_load_SHCreateItemFromParsingName
0x18001B9D8: "%windir%\Panther\UnattendGC" ??_C@_1DI@MEGHDGIK@?$AA?$CF?$AAw?$AAi?$AAn?$AAd?$AAi?$AAr?$AA?$CF?$AA?2?$AAP?$AAa?$AAn?$AAt?$AAh?$AAe?$AAr?$AA?2?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAG?$AAC?$AA?$AA@
0x180021754: "private: static long CBreakOnFailureT<class CEmptyType>::g_hResultToBreakOn" ?g_hResultToBreakOn@?$CBreakOnFailureT@VCEmptyType@@@@0JA
0x18001C220: "[Shell Unattend] UserAccounts: f" ??_C@_0EK@PACNBCDD@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180014408: "__cdecl _imp_ExitProcess" __imp_ExitProcess
0x180005F14: PathReplaceHelper
0x18001D2E4: "__cdecl _DefaultResolveDelayLoadedAPIFlags" __DefaultResolveDelayLoadedAPIFlags
0x18001A720: "Last used time" ??_C@_1BO@KACCGGDC@?$AAL?$AAa?$AAs?$AAt?$AA?5?$AAu?$AAs?$AAe?$AAd?$AA?5?$AAt?$AAi?$AAm?$AAe?$AA?$AA@
0x180019C00: "Software\Microsoft\Windows\Curre" ??_C@_1GM@KKPOEDNJ@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001BCB0: "IUsers" ??_C@_1O@NPGGJAGJ@?$AAI?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x1800110D4: "public: static long __cdecl CRegUtilT<void * __ptr64,struct CRegType,0,1>::SetValue(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,void const * __ptr64,unsigned long)" ?SetValue@?$CRegUtilT@PEAXUCRegType@@$0A@$00@@SAJPEAUHKEY__@@PEBG1PEBXK@Z
0x180014268: "__cdecl _imp_DebugBreak" __imp_DebugBreak
0x18001C990: "[Shell Unattend] UserAccounts: f" ??_C@_0FG@HDBCJDAJ@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180018D70: "ShowWindowsMediaPlayer" ??_C@_1CO@LKDNNHPM@?$AAS?$AAh?$AAo?$AAw?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AAM?$AAe?$AAd?$AAi?$AAa?$AAP?$AAl?$AAa?$AAy?$AAe?$AAr?$AA?$AA@
0x180023078: "__cdecl _imp_ConstructPartialMsgVW" __imp_ConstructPartialMsgVW
0x1800097A4: "public: void __cdecl wil::details_abi::ProcessLocalStorageData<struct wil::details_abi::ProcessLocalData>::Release(void) __ptr64" ?Release@?$ProcessLocalStorageData@UProcessLocalData@details_abi@wil@@@details_abi@wil@@QEAAXXZ
0x18001310F: "__cdecl _imp_load_NetUserAdd" __imp_load_NetUserAdd
0x1800169C0: "DefaultUser\Software\Microsoft\W" ??_C@_1IG@DKFJJKE@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?2?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW@
0x1800144B8: "__cdecl _imp_SHRegGetBoolUSValueW" __imp_SHRegGetBoolUSValueW
0x18001BB18: "Guests" ??_C@_1O@EKPBDEAP@?$AAG?$AAu?$AAe?$AAs?$AAt?$AAs?$AA?$AA@
0x18000CA70: "void __cdecl SanitizeDeskBands(void)" ?SanitizeDeskBands@@YAXXZ
0x180008030: "public: virtual long __cdecl wil::FileSystemBindData::SetJunctionCLSID(struct _GUID const & __ptr64) __ptr64" ?SetJunctionCLSID@FileSystemBindData@wil@@UEAAJAEBU_GUID@@@Z
0x180014570: "__cdecl _imp_ReleaseSemaphore" __imp_ReleaseSemaphore
0x180014A40: "struct std::nothrow_t const std::nothrow" ?nothrow@std@@3Unothrow_t@1@B
0x180017908: "onecore\shell\shprep\dll.cpp" ??_C@_1DK@NHKHIBCH@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAd?$AAl?$AAl?$AA?4?$AAc?$AAp?$AAp?$AA?$AA@
0x180011DBC: "public: static long __cdecl CImmutableStringsT<unsigned short,class CImmutableStringsPolicyDefault>::CreateCchBufferN(unsigned short,unsigned long,unsigned short * __ptr64 * __ptr64)" ?CreateCchBufferN@?$CImmutableStringsT@GVCImmutableStringsPolicyDefault@@@@SAJGKPEAPEAG@Z
0x1800143A8: "__cdecl _imp_GetACP" __imp_GetACP
0x1800193A0: "[Shell Unattend] LogonCommands: " ??_C@_0EL@HJJHLBOD@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180015A00: "[Shell Unattend] ComputerName: F" ??_C@_0FB@GJJFDBEH@?$FLShell?5Unattend?$FN?5ComputerName?3?5F@
0x180006EA0: "void __cdecl wil::details::DebugBreak(void)" ?DebugBreak@details@wil@@YAXXZ
0x180014BF8: GUID_NULL
0x180014550: "__cdecl _imp_lstrcmpiW" __imp_lstrcmpiW
0x180014828: "__cdecl _imp__lock" __imp__lock
0x180014760: api-ms-win-shcore-registry-l1-1-0_NULL_THUNK_DATA
0x180012C6C: atexit
0x180012108: "public: static void __cdecl CBreakOnFailureT<class CEmptyType>::CheckToBreakOnFailure(long)" ?CheckToBreakOnFailure@?$CBreakOnFailureT@VCEmptyType@@@@SAXJ@Z
0x180016770: "DefaultUser\SOFTWARE\Microsoft\A" ??_C@_1FI@LMGCNIDG@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?2?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAA@
0x18001CA90: "[Shell Unattend] UserAccounts: f" ??_C@_0EK@HONNNANJ@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x18001C150: "[Shell Unattend] UserAccounts: N" ??_C@_0EM@FPKFHANL@?$FLShell?5Unattend?$FN?5UserAccounts?3?5N@
0x180023148: "__cdecl _imp_NetUserGetInfo" __imp_NetUserGetInfo
0x1800216E0: "bool wil::details::g_processShutdownInProgress" ?g_processShutdownInProgress@details@wil@@3_NA
0x180010764: "public: __cdecl CAutoPrivilegeEnable::~CAutoPrivilegeEnable(void) __ptr64" ??1CAutoPrivilegeEnable@@QEAA@XZ
0x1800216B8: "long volatile `int __cdecl wil::details::RecordException(long)'::`2'::s_cErrorCount" ?s_cErrorCount@?1??RecordException@details@wil@@YAHJ@Z@4JC
0x18001CEC8: "EtwEventRegister" ??_C@_0BB@DHHHEAKO@EtwEventRegister?$AA@
0x180006CB8: "int __cdecl wil::details::RecordLog(long)" ?RecordLog@details@wil@@YAHJ@Z
0x18001AB90: "Software\Microsoft\Windows\Curre" ??_C@_1JK@JGNAGOMO@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180014240: "__cdecl _imp_CoUninitialize" __imp_CoUninitialize
0x180014628: "__cdecl _imp_GetSidLengthRequired" __imp_GetSidLengthRequired
0x180007348: "void __cdecl wil::details::ReportFailure(void * __ptr64,unsigned int,char const * __ptr64,char const * __ptr64,char const * __ptr64,void * __ptr64,enum wil::FailureType,long,unsigned short const * __ptr64,enum wil::details::ReportFailureOptions)" ?ReportFailure@details@wil@@YAXPEAXIPEBD110W4FailureType@2@JPEBGW4ReportFailureOptions@12@@Z
0x180018890: "StartMenuInternet" ??_C@_1CE@NCMLLGCH@?$AAS?$AAt?$AAa?$AAr?$AAt?$AAM?$AAe?$AAn?$AAu?$AAI?$AAn?$AAt?$AAe?$AAr?$AAn?$AAe?$AAt?$AA?$AA@
0x180011320: "public: static long __cdecl CMiscHelpersT<class CEmptyType>::AppendToSystemPath(unsigned short const * __ptr64,unsigned short * __ptr64 * __ptr64)" ?AppendToSystemPath@?$CMiscHelpersT@VCEmptyType@@@@SAJPEBGPEAPEAG@Z
0x180017F10: "_PostMoveProfiles" ??_C@_1CE@OHCMOGLP@?$AA_?$AAP?$AAo?$AAs?$AAt?$AAM?$AAo?$AAv?$AAe?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AAs?$AA?$AA@
0x18000FEF8: TurnOnPasswordComplexityPolicy
0x180021640: "class wil::details_abi::ProcessLocalStorage<struct wil::details_abi::ProcessLocalData> * __ptr64 __ptr64 wil::details_abi::g_pProcessLocalData" ?g_pProcessLocalData@details_abi@wil@@3PEAV?$ProcessLocalStorage@UProcessLocalData@details_abi@wil@@@12@EA
0x1800163C8: "[Shell Unattend] CopyProfileDire" ??_C@_0DP@OENGOFPJ@?$FLShell?5Unattend?$FN?5CopyProfileDire@
0x1800144A0: api-ms-win-core-registry-l1-1-0_NULL_THUNK_DATA
0x18001BC08: "NetworkConfigurationOperators" ??_C@_1DM@ODEBHINI@?$AAN?$AAe?$AAt?$AAw?$AAo?$AAr?$AAk?$AAC?$AAo?$AAn?$AAf?$AAi?$AAg?$AAu?$AAr?$AAa?$AAt?$AAi?$AAo?$AAn?$AAO?$AAp?$AAe?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x180019670: "[Shell Unattend] LogonCommands: " ??_C@_0EP@MLMLMNBK@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180016DD0: "[Shell Unattend] Display: Succes" ??_C@_0EI@KHNFJJCF@?$FLShell?5Unattend?$FN?5Display?3?5Succes@
0x18001A740: "Software\Microsoft\Windows\Curre" ??_C@_1IM@OHOJCPLG@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180014BD0: "__cdecl _sz_api_ms_win_shlwapi_ie_l1_1_0_dll" __sz_api_ms_win_shlwapi_ie_l1_1_0_dll
0x180015268: "_SetAutoLogonCount" ??_C@_1CG@HKBPLNDE@?$AA_?$AAS?$AAe?$AAt?$AAA?$AAu?$AAt?$AAo?$AAL?$AAo?$AAg?$AAo?$AAn?$AAC?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x1800176B0: "[Shell Unattend] Service entered" ??_C@_0FA@MHNJFGIH@?$FLShell?5Unattend?$FN?5Service?5entered@
0x18000FD30: ProcessUserAccounts
0x1800142C8: api-ms-win-core-errorhandling-l1-1-0_NULL_THUNK_DATA
0x18001C3C0: "\AdministratorPassword" ??_C@_1CO@IMHGAADK@?$AA?2?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x1800136CA: "__cdecl _imp_load_WdsSetupLogInit" __imp_load_WdsSetupLogInit
0x180017DC0: "onecore\shell\shprep\folderlocat" ??_C@_1FC@JBOOAOEI@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAf?$AAo?$AAl?$AAd?$AAe?$AAr?$AAl?$AAo?$AAc?$AAa?$AAt@
0x18001BDE0: "Netlogon" ??_C@_1BC@HOFONEPN@?$AAN?$AAe?$AAt?$AAl?$AAo?$AAg?$AAo?$AAn?$AA?$AA@
0x180018408: "ProgramData" ??_C@_1BI@PCFBINBH@?$AAP?$AAr?$AAo?$AAg?$AAr?$AAa?$AAm?$AAD?$AAa?$AAt?$AAa?$AA?$AA@
0x1800143F8: "__cdecl _imp_GetCurrentProcess" __imp_GetCurrentProcess
0x180016F90: "[Shell Unattend] Display: DPI se" ??_C@_0CI@ONFIIILI@?$FLShell?5Unattend?$FN?5Display?3?5DPI?5se@
0x180012F01: "__cdecl _dllonexit" __dllonexit
0x180014058: "const Microsoft::WRL::RuntimeClass<struct Microsoft::WRL::RuntimeClassFlags<2>,struct IFileSystemBindData,struct IFileSystemBindData2>::`vftable'{for `IFileSystemBindData'}" ??_7?$RuntimeClass@U?$RuntimeClassFlags@$01@WRL@Microsoft@@UIFileSystemBindData@@UIFileSystemBindData2@@@WRL@Microsoft@@6BIFileSystemBindData@@@
0x180014660: "__cdecl _imp_InitializeSid" __imp_InitializeSid
0x180009938: "public: void * __ptr64 __cdecl wil::details_abi::ProcessLocalStorageData<struct wil::details_abi::ProcessLocalData>::`scalar deleting destructor'(unsigned int) __ptr64" ??_G?$ProcessLocalStorageData@UProcessLocalData@details_abi@wil@@@details_abi@wil@@QEAAPEAXI@Z
0x180017498: "SERVICE_START_PENDING" ??_C@_1CM@JKILMMJN@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAS?$AAT?$AAA?$AAR?$AAT?$AA_?$AAP?$AAE?$AAN?$AAD?$AAI?$AAN?$AAG?$AA?$AA@
0x18001AA38: "[shsetup] SanitizeDeskBands ente" ??_C@_0CE@GPGPCFEO@?$FLshsetup?$FN?5SanitizeDeskBands?5ente@
0x18001D030: "\Software\Fonts" ??_C@_1CA@ENCHOKJC@?$AA?2?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAF?$AAo?$AAn?$AAt?$AAs?$AA?$AA@
0x180023050: "__cdecl _imp_CopyProfileDirectoryEx2" __imp_CopyProfileDirectoryEx2
0x18001E410: "__cdecl _DELAY_IMPORT_DESCRIPTOR_USERENV_dll" __DELAY_IMPORT_DESCRIPTOR_USERENV_dll
0x18001A7D0: "Recent" ??_C@_1O@CMKINKFN@?$AAR?$AAe?$AAc?$AAe?$AAn?$AAt?$AA?$AA@
0x1800215E8: "__cdecl _hmod__ext_ms_win_ntuser_window_l1_1_0_dll" __hmod__ext_ms_win_ntuser_window_l1_1_0_dll
0x180015FB0: "Software\Microsoft\Windows NT\Cu" ??_C@_1HC@HGGIFEHH@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x1800217D8: "__cdecl _native_startup_lock" __native_startup_lock
0x1800167C8: "Installed Components" ??_C@_1CK@DLFIIIAE@?$AAI?$AAn?$AAs?$AAt?$AAa?$AAl?$AAl?$AAe?$AAd?$AA?5?$AAC?$AAo?$AAm?$AAp?$AAo?$AAn?$AAe?$AAn?$AAt?$AAs?$AA?$AA@
0x180014510: "__cdecl _imp_StrCmpLogicalW" __imp_StrCmpLogicalW
0x180005C68: DllMain
0x1800080A0: "public: virtual void * __ptr64 __cdecl wil::FileSystemBindData::`vector deleting destructor'(unsigned int) __ptr64" ??_EFileSystemBindData@wil@@UEAAPEAXI@Z
0x1800092B0: ProcessFolderLocations
0x180001FD0: ProcessAutoLogon
0x180017EA0: "[Shell Unattend] FolderLocations" ??_C@_0EL@MDMKPMEE@?$FLShell?5Unattend?$FN?5FolderLocations@
0x18001312D: "__cdecl _tailMerge_samlib_dll" __tailMerge_samlib_dll
0x180021720: "bool (__cdecl* __ptr64 wil::g_pfnWilFailFast)(struct wil::FailureInfo const & __ptr64)" ?g_pfnWilFailFast@wil@@3P6A_NAEBUFailureInfo@1@@ZEA
0x180017A18: "[Shell Unattend] Decoded passwor" ??_C@_0CC@KNMEHAPO@?$FLShell?5Unattend?$FN?5Decoded?5passwor@
0x180016458: "USERS\" ??_C@_1O@KCFIFJCI@?$AAU?$AAS?$AAE?$AAR?$AAS?$AA?2?$AA?$AA@
0x1800216A8: "long volatile `int __cdecl wil::details::RecordLog(long)'::`2'::s_cErrorCount" ?s_cErrorCount@?1??RecordLog@details@wil@@YAHJ@Z@4JC
0x180021030: "private: static long volatile wil::details::ThreadFailureCallbackHolder::s_telemetryId" ?s_telemetryId@ThreadFailureCallbackHolder@details@wil@@0JC
0x18001A4B8: "Favorites" ??_C@_1BE@PDPMPIAC@?$AAF?$AAa?$AAv?$AAo?$AAr?$AAi?$AAt?$AAe?$AAs?$AA?$AA@
0x180019AC0: "ProtectYourPC" ??_C@_1BM@NLBFJEFP@?$AAP?$AAr?$AAo?$AAt?$AAe?$AAc?$AAt?$AAY?$AAo?$AAu?$AAr?$AAP?$AAC?$AA?$AA@
0x18001C1A0: "[Shell Unattend] UserAccounts: N" ??_C@_0EM@LBKHHOPN@?$FLShell?5Unattend?$FN?5UserAccounts?3?5N@
0x18001CB50: "ProcessVMMode" ??_C@_1BM@OANHOGMN@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAV?$AAM?$AAM?$AAo?$AAd?$AAe?$AA?$AA@
0x180016B58: "CopyProfile" ??_C@_1BI@LLBDFDNJ@?$AAC?$AAo?$AAp?$AAy?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x180016B70: "ProcessCopyProfile" ??_C@_1CG@IKCFANHM@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAC?$AAo?$AAp?$AAy?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x18001EBD8: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-string-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-string-l1-1-0
0x180021660: "char * `char const * __ptr64 __cdecl wil::details::GetCurrentModuleName(void)'::`2'::s_szModule" ?s_szModule@?1??GetCurrentModuleName@details@wil@@YAPEBDXZ@4PADA
0x180014820: "__cdecl _imp___C_specific_handler" __imp___C_specific_handler
0x180011AAC: "long __cdecl STRAPI_Format(unsigned short * __ptr64 * __ptr64,unsigned short const * __ptr64,...)" ?STRAPI_Format@@YAJPEAPEAGPEBGZZ
0x18001CB20: "AdministratorProfile" ??_C@_1CK@IHKLIPKA@?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x18001CCA8: "%s\%s" ??_C@_1M@DFKENGJN@?$AA?$CF?$AAs?$AA?2?$AA?$CF?$AAs?$AA?$AA@
0x1800144C8: "__cdecl _imp_RtlCaptureContext" __imp_RtlCaptureContext
0x180013121: "__cdecl _imp_load_SamConnect" __imp_load_SamConnect
0x180014398: api-ms-win-core-libraryloader-l1-2-0_NULL_THUNK_DATA
0x180017570: "[Shell Unattend] Beginning wait " ??_C@_0FH@DFOHAIKK@?$FLShell?5Unattend?$FN?5Beginning?5wait?5@
0x1800198F0: "[Shell Unattend] LogonCommands: " ??_C@_0GM@MPAJJCNN@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180017E50: "[Shell Unattend] FolderLocations" ??_C@_0EP@LBBLCLAG@?$FLShell?5Unattend?$FN?5FolderLocations@
0x1800215F8: "__cdecl _hmod__ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll" __hmod__ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll
0x180019C70: "Health" ??_C@_1O@DLBFDOGG@?$AAH?$AAe?$AAa?$AAl?$AAt?$AAh?$AA?$AA@
0x18001CAE0: "SkipAdministratorProfileRemoval" ??_C@_1EA@IEPIJFOP@?$AAS?$AAk?$AAi?$AAp?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AAR?$AAe?$AAm?$AAo?$AAv?$AAa?$AAl?$AA?$AA@
0x1800171B8: "ProcessDisplaySettings" ??_C@_1CO@PHNIHDK@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAD?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AAS?$AAe?$AAt?$AAt?$AAi?$AAn?$AAg?$AAs?$AA?$AA@
0x18001AB60: "[shsetup] SanitizeDeskBands exit" ??_C@_0CB@BECHCACJ@?$FLshsetup?$FN?5SanitizeDeskBands?5exit@
0x180014750: "__cdecl _imp_SHDeleteKeyW" __imp_SHDeleteKeyW
0x1800143D8: "__cdecl _imp_PathCchRemoveFileSpec" __imp_PathCchRemoveFileSpec
0x1800142C0: "__cdecl _imp_GetLastError" __imp_GetLastError
0x18001377C: "void * __ptr64 __cdecl operator new(unsigned __int64)" ??2@YAPEAX_K@Z
0x180009FA0: "[thunk]:public: virtual unsigned long __cdecl Microsoft::WRL::Details::RuntimeClassImpl<struct Microsoft::WRL::RuntimeClassFlags<2>,1,0,0,struct IFileSystemBindData,struct IFileSystemBindData2>::AddRef`adjustor{8}' (void) __ptr64" ?AddRef@?$RuntimeClassImpl@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00$0A@$0A@UIFileSystemBindData@@UIFileSystemBindData2@@@Details@WRL@Microsoft@@W7EAAKXZ
0x1800146D8: "__cdecl _imp_ConvertSidToStringSidW" __imp_ConvertSidToStringSidW
0x18001BE88: "[Shell Unattend] UserAccounts: a" ??_C@_0DK@FFLHHLOI@?$FLShell?5Unattend?$FN?5UserAccounts?3?5a@
0x180021628: "__cdecl _@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUhsvooUhskivkUwooUlyquivUznwGEUkireOlyq@shsetup" __@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUhsvooUhskivkUwooUlyquivUznwGEUkireOlyq@shsetup
0x180013590: "__cdecl _imp_load_SHStringFromGUIDW" __imp_load_SHStringFromGUIDW
0x180021010: "__cdecl _native_dllmain_reason" __native_dllmain_reason
0x1800137C8: "__cdecl _GSHandlerCheck" __GSHandlerCheck
0x180014588: "__cdecl _imp_OpenSemaphoreW" __imp_OpenSemaphoreW
0x180017A40: "[Shell Unattend] Failed to decod" ??_C@_0DF@BDMEDLFF@?$FLShell?5Unattend?$FN?5Failed?5to?5decod@
0x180014F40: "Administrator" ??_C@_1BM@LGMDCJGP@?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AA?$AA@
0x1800144B0: api-ms-win-core-registry-l2-1-0_NULL_THUNK_DATA
0x18001BBC8: "Replicator" ??_C@_1BG@BKFGOPDB@?$AAR?$AAe?$AAp?$AAl?$AAi?$AAc?$AAa?$AAt?$AAo?$AAr?$AA?$AA@
0x180015250: "LogonCount" ??_C@_1BG@IIOLFGCM@?$AAL?$AAo?$AAg?$AAo?$AAn?$AAC?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x180004470: ProcessCopyProfile
0x180014C50: "__cdecl _sz_WDSCORE_dll" __sz_WDSCORE_dll
0x18001B9C0: "auditUser" ??_C@_1BE@JLIBHMOF@?$AAa?$AAu?$AAd?$AAi?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?$AA@
0x180021620: "__cdecl _hmod__SHCORE_dll" __hmod__SHCORE_dll
0x18000E440: SHUnattendedSetupW
0x180019B48: "HideLocalAccountScreen" ??_C@_1CO@FMJOMI@?$AAH?$AAi?$AAd?$AAe?$AAL?$AAo?$AAc?$AAa?$AAl?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAS?$AAc?$AAr?$AAe?$AAe?$AAn?$AA?$AA@
0x180014850: "__cdecl _imp_NtDeviceIoControlFile" __imp_NtDeviceIoControlFile
0x180018518: "__cdecl GUID_3acf075f_71db_4afa_81f0_3fc4fdf2a5b8" _GUID_3acf075f_71db_4afa_81f0_3fc4fdf2a5b8
0x180017D70: "File System Bind Data" ??_C@_1CM@OEOFPOFO@?$AAF?$AAi?$AAl?$AAe?$AA?5?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?5?$AAB?$AAi?$AAn?$AAd?$AA?5?$AAD?$AAa?$AAt?$AAa?$AA?$AA@
0x18001AFB0: "[shsetup] CleanupAdministratorPa" ??_C@_0FO@PHOBIPNH@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x18001C370: "[Shell Unattend] UserAccounts: f" ??_C@_0EL@POIOCNFD@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x18001B2E8: "Sysprep_Generalize_Shell" ??_C@_1DC@CBJHKMJE@?$AAS?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AA_?$AAG?$AAe?$AAn?$AAe?$AAr?$AAa?$AAl?$AAi?$AAz?$AAe?$AA_?$AAS?$AAh?$AAe?$AAl?$AAl?$AA?$AA@
0x18001B350: "[shsetup] Sysprep_Generalize_She" ??_C@_0CI@PKAMIDMB@?$FLshsetup?$FN?5Sysprep_Generalize_She@
0x180011598: "public: static long __cdecl CRegUtilT<unsigned short * __ptr64,struct CRegType,0,1>::SetValue(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,unsigned long)" ?SetValue@?$CRegUtilT@PEAGUCRegType@@$0A@$00@@SAJPEAUHKEY__@@PEBG11K@Z
0x18001EEBC: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-0
0x180014430: "__cdecl _imp_GetCurrentProcessId" __imp_GetCurrentProcessId
0x180008000: "public: virtual long __cdecl wil::FileSystemBindData::SetFileID(union _LARGE_INTEGER) __ptr64" ?SetFileID@FileSystemBindData@wil@@UEAAJT_LARGE_INTEGER@@@Z
0x180014580: "__cdecl _imp_WaitForSingleObject" __imp_WaitForSingleObject
0x18001ECB4: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-security-lsalookup-l2-1-0" __IMPORT_DESCRIPTOR_api-ms-win-security-lsalookup-l2-1-0
0x180016720: "LogonWork" ??_C@_1BE@CAAMJHGC@?$AAL?$AAo?$AAg?$AAo?$AAn?$AAW?$AAo?$AAr?$AAk?$AA?$AA@
0x180010C2C: GetWindowsPKeyInfo
0x18001BD30: "onecore\shell\shprep\useraccount" ??_C@_1EM@FIEEJCNA@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAu?$AAs?$AAe?$AAr?$AAa?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt@
0x18001EDB8: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-shcore-registry-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-shcore-registry-l1-1-0
0x18001C640: "Software\Microsoft\Windows NT\Cu" ??_C@_1PA@PCGPNLN@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x1800198B8: "ProcessLogonCommands" ??_C@_1CK@CBEMECFE@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAL?$AAo?$AAg?$AAo?$AAn?$AAC?$AAo?$AAm?$AAm?$AAa?$AAn?$AAd?$AAs?$AA?$AA@
0x18001B2C0: "[shsetup] Sysprep_Cleanup_Shell " ??_C@_0CF@BCPPNPPE@?$FLshsetup?$FN?5Sysprep_Cleanup_Shell?5@
0x180015138: "_SetDefaultDomainName" ??_C@_1CM@FACJKHKC@?$AA_?$AAS?$AAe?$AAt?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAD?$AAo?$AAm?$AAa?$AAi?$AAn?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x180014500: api-ms-win-core-shlwapi-legacy-l1-1-0_NULL_THUNK_DATA
0x180014498: "__cdecl _imp_RegDeleteValueW" __imp_RegDeleteValueW
0x18001D2E4: "__cdecl _ResolveDelayLoadedAPIFlags" __ResolveDelayLoadedAPIFlags
0x180012DA0: "__cdecl ValidateImageBase" _ValidateImageBase
0x18001AA60: "DoNotCleanTaskBar" ??_C@_1CE@FIIDNBPN@?$AAD?$AAo?$AAN?$AAo?$AAt?$AAC?$AAl?$AAe?$AAa?$AAn?$AAT?$AAa?$AAs?$AAk?$AAB?$AAa?$AAr?$AA?$AA@
0x1800146B0: "__cdecl _imp_LsaQueryInformationPolicy" __imp_LsaQueryInformationPolicy
0x18001A2A0: "Software\Microsoft\Windows\Curre" ??_C@_1HM@IBJAAIHM@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001B398: "__cdecl GUID_70629033_e363_4a28_a567_0db78006e6d7" _GUID_70629033_e363_4a28_a567_0db78006e6d7
0x18001A930: "[shsetup] IFileOperation::Perfor" ??_C@_0DM@LAGGBFBH@?$FLshsetup?$FN?5IFileOperation?3?3Perfor@
0x180014C90: "_SetDefaultPassword" ??_C@_1CI@CLPBLNJE@?$AA_?$AAS?$AAe?$AAt?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x180015990: "Software\Microsoft\Windows NT\Cu" ??_C@_1FK@MPJNMLLM@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180012C8C: "void * __ptr64 __cdecl operator new(unsigned __int64,struct std::nothrow_t const & __ptr64)" ??2@YAPEAX_KAEBUnothrow_t@std@@@Z
0x180002650: "long __cdecl StringCchCopyW(unsigned short * __ptr64,unsigned __int64,unsigned short const * __ptr64)" ?StringCchCopyW@@YAJPEAG_KPEBG@Z
0x180021630: "class wil::details_abi::ThreadLocalStorage<class wil::details::ThreadFailureCallbackHolder * __ptr64> * __ptr64 __ptr64 wil::details::g_pThreadFailureCallbacks" ?g_pThreadFailureCallbacks@details@wil@@3PEAV?$ThreadLocalStorage@PEAVThreadFailureCallbackHolder@details@wil@@@details_abi@2@EA
0x1800186A0: "\InstallInfo" ??_C@_1BK@BJGFELIK@?$AA?2?$AAI?$AAn?$AAs?$AAt?$AAa?$AAl?$AAl?$AAI?$AAn?$AAf?$AAo?$AA?$AA@
0x180003258: "long __cdecl StringCchCopyNW(unsigned short * __ptr64,unsigned __int64,unsigned short const * __ptr64,unsigned __int64)" ?StringCchCopyNW@@YAJPEAG_KPEBG1@Z
0x18001D1B0: "Overrode" ??_C@_1BC@PMAEGNKH@?$AAO?$AAv?$AAe?$AAr?$AAr?$AAo?$AAd?$AAe?$AA?$AA@
0x180006EB0: "void __cdecl wil::details::WilDynamicLoadRaiseFailFastException(struct _EXCEPTION_RECORD * __ptr64,struct _CONTEXT * __ptr64,unsigned long)" ?WilDynamicLoadRaiseFailFastException@details@wil@@YAXPEAU_EXCEPTION_RECORD@@PEAU_CONTEXT@@K@Z
0x18001AE30: "[shsetup] CleanupAdministratorPa" ??_C@_0EH@BOBGGDAN@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x180023020: "__cdecl _imp_SamConnect" __imp_SamConnect
0x18001B3B0: "Software\Microsoft\Windows NT\Cu" ??_C@_1HC@CFENPOPD@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x18001BB88: "PrintOperators" ??_C@_1BO@JCEMONPK@?$AAP?$AAr?$AAi?$AAn?$AAt?$AAO?$AAp?$AAe?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x18001BB28: "PowerUsers" ??_C@_1BG@BJGGAABA@?$AAP?$AAo?$AAw?$AAe?$AAr?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x180017C20: "(caller: %p) " ??_C@_1BM@EAHLIJPA@?$AA?$CI?$AAc?$AAa?$AAl?$AAl?$AAe?$AAr?$AA?3?$AA?5?$AA?$CF?$AAp?$AA?$CJ?$AA?5?$AA?$AA@
0x18001EC8C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-libraryloader-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-libraryloader-l1-2-0
0x180018F78: "ProcessOptionalComponents" ??_C@_1DE@CJJCPEJA@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAO?$AAp?$AAt?$AAi?$AAo?$AAn?$AAa?$AAl?$AAC?$AAo?$AAm?$AAp?$AAo?$AAn?$AAe?$AAn?$AAt?$AAs?$AA?$AA@
0x1800217B8: "protected: static struct CEtwProviderT<void>::CETWApiSet CEtwProviderT<void>::g_etwApi" ?g_etwApi@?$CEtwProviderT@X@@1UCETWApiSet@1@A
0x18001333A: "__cdecl _tailMerge_ext_ms_win_ole32_bindctx_l1_1_0_dll" __tailMerge_ext_ms_win_ole32_bindctx_l1_1_0_dll
0x180014C38: FOLDERID_QuickLaunch
0x1800230A0: "__cdecl _imp_PostMessageW" __imp_PostMessageW
0x1800193F0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NO@EONLOMCH@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180014C6C: "\" ??_C@_13FPGAJAPJ@?$AA?2?$AA?$AA@
0x180015680: "0" ??_C@_13COJANIEC@?$AA0?$AA?$AA@
0x18001B448: "TZI" ??_C@_17LIOBIM@?$AAT?$AAZ?$AAI?$AA?$AA@
0x180019080: "onecore\shell\shprep\productkey." ??_C@_1EI@JAOKAKNI@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAp?$AAr?$AAo?$AAd?$AAu?$AAc?$AAt?$AAk?$AAe?$AAy?$AA?4@
0x180016860: ".DEFAULT\Control Panel\Desktop" ??_C@_1DO@DLMFFBFB@?$AA?4?$AAD?$AAE?$AAF?$AAA?$AAU?$AAL?$AAT?$AA?2?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl?$AA?5?$AAP?$AAa?$AAn?$AAe?$AAl?$AA?2?$AAD?$AAe?$AAs?$AAk?$AAt?$AAo?$AAp?$AA?$AA@
0x180015700: "[Shell Unattend] AutoLogon faile" ??_C@_0EL@MIGHALOL@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x180014330: "__cdecl _imp_HeapAlloc" __imp_HeapAlloc
0x18001BF80: "_ProcessAccountGroups" ??_C@_1CM@EFAMMILF@?$AA_?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAG?$AAr?$AAo?$AAu?$AAp?$AAs?$AA?$AA@
0x180014388: "__cdecl _imp_FreeLibrary" __imp_FreeLibrary
0x180017D50: "_p0" ??_C@_17ONNCDEJM@?$AA_?$AAp?$AA0?$AA?$AA@
0x18001C000: "DisplayName" ??_C@_1BI@EEKPCHLN@?$AAD?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x18001E570: "__cdecl _NULL_DELAY_IMPORT_DESCRIPTOR" __NULL_DELAY_IMPORT_DESCRIPTOR
0x18000C1D4: "unsigned long __cdecl CleanupUserRegSettings(struct HKEY__ * __ptr64)" ?CleanupUserRegSettings@@YAKPEAUHKEY__@@@Z
0x1800216B0: "long volatile `int __cdecl wil::details::RecordReturn(long)'::`2'::s_cErrorCount" ?s_cErrorCount@?1??RecordReturn@details@wil@@YAHJ@Z@4JC
0x180019960: "CleanupRegSettings" ??_C@_1CG@OCKOJHOJ@?$AAC?$AAl?$AAe?$AAa?$AAn?$AAu?$AAp?$AAR?$AAe?$AAg?$AAS?$AAe?$AAt?$AAt?$AAi?$AAn?$AAg?$AAs?$AA?$AA@
0x180014558: api-ms-win-core-string-obsolete-l1-1-0_NULL_THUNK_DATA
0x180014640: "__cdecl _imp_GetSidSubAuthority" __imp_GetSidSubAuthority
0x18001C450: "[Shell Unattend] UserAccounts: f" ??_C@_0FF@DACIDOLM@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180018B58: "[Shell Unattend] WindowsFeatures" ??_C@_0DC@BGGNGHMH@?$FLShell?5Unattend?$FN?5WindowsFeatures@
0x180012660: "__cdecl DllMainCRTStartup" _DllMainCRTStartup
0x180018348: "[Shell Unattend] FolderLocations" ??_C@_0DO@PKGGHADI@?$FLShell?5Unattend?$FN?5FolderLocations@
0x18000BAA0: ProcessLogonCommands
0x180014818: "__cdecl _imp__initterm" __imp__initterm
0x18001CC60: "[Shell Unattend] VmMode failed t" ??_C@_0EG@FCFFLLBP@?$FLShell?5Unattend?$FN?5VmMode?5failed?5t@
0x18001A258: "SIDUpdatedOnLibraries" ??_C@_1CM@BOPPDHBB@?$AAS?$AAI?$AAD?$AAU?$AAp?$AAd?$AAa?$AAt?$AAe?$AAd?$AAO?$AAn?$AAL?$AAi?$AAb?$AAr?$AAa?$AAr?$AAi?$AAe?$AAs?$AA?$AA@
0x1800080CC: "public: long __cdecl wil::ShellBindContextHelper::SetFindData(struct _WIN32_FIND_DATAW const & __ptr64) __ptr64" ?SetFindData@ShellBindContextHelper@wil@@QEAAJAEBU_WIN32_FIND_DATAW@@@Z
0x18001ED2C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-debug-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-debug-l1-1-0
0x18001B450: "_ReadZoneData" ??_C@_1BM@CBHMFJIL@?$AA_?$AAR?$AAe?$AAa?$AAd?$AAZ?$AAo?$AAn?$AAe?$AAD?$AAa?$AAt?$AAa?$AA?$AA@
0x1800230C0: ext-ms-win-ntuser-window-l1-1-0_NULL_THUNK_DATA_DLA
0x18001E9F0: ext-ms-win-ole32-bindctx-l1-1-0_NULL_THUNK_DATA_DLB
0x180014568: "__cdecl _imp_CreateMutexExW" __imp_CreateMutexExW
0x180014F10: "[Shell Unattend] AutoLogon Usern" ??_C@_0CN@BIGMDAH@?$FLShell?5Unattend?$FN?5AutoLogon?5Usern@
0x1800142A8: "__cdecl _imp_SetLastError" __imp_SetLastError
0x18001BC70: "PerfLoggingUsers" ??_C@_1CC@PFMJJBOI@?$AAP?$AAe?$AAr?$AAf?$AAL?$AAo?$AAg?$AAg?$AAi?$AAn?$AAg?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x18001C420: "_SetAdminPassword" ??_C@_1CE@BOPIJGBF@?$AA_?$AAS?$AAe?$AAt?$AAA?$AAd?$AAm?$AAi?$AAn?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x18001B298: "[shsetup] Sysprep_Cleanup_Shell " ??_C@_0CI@PBBCCELP@?$FLshsetup?$FN?5Sysprep_Cleanup_Shell?5@
0x18001BD00: "_LookupBuiltinGroupName" ??_C@_1DA@ODKLBELP@?$AA_?$AAL?$AAo?$AAo?$AAk?$AAu?$AAp?$AAB?$AAu?$AAi?$AAl?$AAt?$AAi?$AAn?$AAG?$AAr?$AAo?$AAu?$AAp?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x18001EEA8: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-1" __IMPORT_DESCRIPTOR_api-ms-win-core-delayload-l1-1-1
0x180017520: "OOBEServiceHelper::_WaitForServi" ??_C@_1FA@JJLEMOFA@?$AAO?$AAO?$AAB?$AAE?$AAS?$AAe?$AAr?$AAv?$AAi?$AAc?$AAe?$AAH?$AAe?$AAl?$AAp?$AAe?$AAr?$AA?3?$AA?3?$AA_?$AAW?$AAa?$AAi?$AAt?$AAF?$AAo?$AAr?$AAS?$AAe?$AAr?$AAv?$AAi@
0x180021650: "unsigned char (__cdecl* __ptr64 `unsigned char __cdecl wil::details::RtlDllShutdownInProgress(void)'::`2'::s_pfnRtlDllShutdownInProgress)(void)" ?s_pfnRtlDllShutdownInProgress@?1??RtlDllShutdownInProgress@details@wil@@YAEXZ@4P6AEXZEA
0x18001AAD8: "Windows Explorer.lnk" ??_C@_1CK@EIJKDIO@?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAE?$AAx?$AAp?$AAl?$AAo?$AAr?$AAe?$AAr?$AA?4?$AAl?$AAn?$AAk?$AA?$AA@
0x180014EE8: "_SetDefaultUserName" ??_C@_1CI@GAAJJANA@?$AA_?$AAS?$AAe?$AAt?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x1800215C8: "__cdecl _hmod__netutils_dll" __hmod__netutils_dll
0x180018B08: "HideIconsCommand" ??_C@_1CC@HGFHONJF@?$AAH?$AAi?$AAd?$AAe?$AAI?$AAc?$AAo?$AAn?$AAs?$AAC?$AAo?$AAm?$AAm?$AAa?$AAn?$AAd?$AA?$AA@
0x18001AD40: "PastIconsStream" ??_C@_1CA@ILMDIEIJ@?$AAP?$AAa?$AAs?$AAt?$AAI?$AAc?$AAo?$AAn?$AAs?$AAS?$AAt?$AAr?$AAe?$AAa?$AAm?$AA?$AA@
0x1800111E4: "public: static long __cdecl CRegUtilT<unsigned short * __ptr64,struct CRegType,0,1>::SetValue(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64)" ?SetValue@?$CRegUtilT@PEAGUCRegType@@$0A@$00@@SAJPEAUHKEY__@@PEBG11@Z
0x18001CC28: "NotifyUILanguageChange" ??_C@_1CO@HBBDOJK@?$AAN?$AAo?$AAt?$AAi?$AAf?$AAy?$AAU?$AAI?$AAL?$AAa?$AAn?$AAg?$AAu?$AAa?$AAg?$AAe?$AAC?$AAh?$AAa?$AAn?$AAg?$AAe?$AA?$AA@
0x18001A8A8: "DeleteTempFiles" ??_C@_1CA@NBDMHKPE@?$AAD?$AAe?$AAl?$AAe?$AAt?$AAe?$AAT?$AAe?$AAm?$AAp?$AAF?$AAi?$AAl?$AAe?$AAs?$AA?$AA@
0x180019520: "[Shell Unattend] first RequiresU" ??_C@_0DK@IABGJLIJ@?$FLShell?5Unattend?$FN?5first?5RequiresU@
0x1800080A0: "public: virtual void * __ptr64 __cdecl wil::FileSystemBindData::`scalar deleting destructor'(unsigned int) __ptr64" ??_GFileSystemBindData@wil@@UEAAPEAXI@Z
0x180014738: api-ms-win-shcore-obsolete-l1-1-0_NULL_THUNK_DATA
0x180011F94: "public: static long __cdecl CMiscHelpersT<class CEmptyType>::ExpandFileName(unsigned short const * __ptr64,unsigned short * __ptr64 * __ptr64)" ?ExpandFileName@?$CMiscHelpersT@VCEmptyType@@@@SAJPEBGPEAPEAG@Z
0x18001ECA0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-path-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-path-l1-1-0
0x1800121EC: SetDpiAllHWProfileSetting
0x18001EB88: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-registry-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-registry-l1-1-0
0x18001BAE8: "Administrators" ??_C@_1BO@NJFNFGLF@?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x180017948: "[Shell Unattend] Starting servic" ??_C@_0CG@EAJECPFK@?$FLShell?5Unattend?$FN?5Starting?5servic@
0x1800133B9: "__cdecl _imp_load_EnumDisplaySettingsW" __imp_load_EnumDisplaySettingsW
0x180021600: "__cdecl _hmod__ext_ms_win_shell_shell32_l1_2_0_dll" __hmod__ext_ms_win_shell_shell32_l1_2_0_dll
0x180019F40: "SOFTWARE\Policies\Microsoft\Wind" ??_C@_1LE@OMLBFMPI@?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAP?$AAo?$AAl?$AAi?$AAc?$AAi?$AAe?$AAs?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd@
0x18001EE44: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-registry-l2-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-registry-l2-1-0
0x180017F00: "Default" ??_C@_1BA@GHOECOCL@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AA?$AA@
0x1800230A8: "__cdecl _imp_RegisterWindowMessageW" __imp_RegisterWindowMessageW
0x180016BC0: "[Shell Unattend] CopyProfile fai" ??_C@_0GH@EDLPFAKL@?$FLShell?5Unattend?$FN?5CopyProfile?5fai@
0x1800217E8: "__cdecl _onexitend" __onexitend
0x180014650: "__cdecl _imp_AdjustTokenPrivileges" __imp_AdjustTokenPrivileges
0x1800181A0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NI@OPFNDAAH@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x18001332E: "__cdecl _imp_load_CreateBindCtx" __imp_load_CreateBindCtx
0x180016EA0: "bits per pixel" ??_C@_1BO@JDEFMMDL@?$AAb?$AAi?$AAt?$AAs?$AA?5?$AAp?$AAe?$AAr?$AA?5?$AAp?$AAi?$AAx?$AAe?$AAl?$AA?$AA@
0x180012EF5: "__cdecl unlock" _unlock
0x1800148B0: "__cdecl _guard_check_icall_fptr" __guard_check_icall_fptr
0x180015480: "Software\Microsoft\Windows NT\Cu" ??_C@_1GM@MNNHGAGI@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180021608: "__cdecl _hmod__ext_ms_win_shell_shell32_l1_2_2_dll" __hmod__ext_ms_win_shell_shell32_l1_2_2_dll
0x180011C50: "protected: static long __cdecl CImmutableStringsT<unsigned short,class CImmutableStringsPolicyDefault>::CreateInternal(unsigned short const * __ptr64,unsigned long,unsigned short * __ptr64 * __ptr64)" ?CreateInternal@?$CImmutableStringsT@GVCImmutableStringsPolicyDefault@@@@KAJPEBGKPEAPEAG@Z
0x180014508: "__cdecl _imp_StrCmpICW" __imp_StrCmpICW
0x1800167F8: "_FixDefaultUserHive" ??_C@_1CI@JBPDNICO@?$AA_?$AAF?$AAi?$AAx?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AAH?$AAi?$AAv?$AAe?$AA?$AA@
0x18001CB70: "onecore\shell\shprep\vmmode.cpp" ??_C@_1EA@CLADELHK@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAv?$AAm?$AAm?$AAo?$AAd?$AAe?$AA?4?$AAc?$AAp?$AAp?$AA?$AA@
0x180014420: "__cdecl _imp_TerminateProcess" __imp_TerminateProcess
0x180012FCF: "__cdecl _tailMerge_netutils_dll" __tailMerge_netutils_dll
0x1800142F0: "__cdecl _imp_GetFileAttributesExW" __imp_GetFileAttributesExW
0x18001BCC0: "CryptoOperators" ??_C@_1CA@OEKHPKPM@?$AAC?$AAr?$AAy?$AAp?$AAt?$AAo?$AAO?$AAp?$AAe?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x180018B90: "[Shell Unattend] WindowsFeatures" ??_C@_0ED@HJPCDNFA@?$FLShell?5Unattend?$FN?5WindowsFeatures@
0x180014878: "__cdecl _imp_RtlAppendUnicodeToString" __imp_RtlAppendUnicodeToString
0x18001BBA8: "BackupOperators" ??_C@_1CA@MNMPIJFE@?$AAB?$AAa?$AAc?$AAk?$AAu?$AAp?$AAO?$AAp?$AAe?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x18001C4B0: "Software\Microsoft\Windows NT\Cu" ??_C@_1OO@INNFLDMD@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180014730: "__cdecl _imp_SHStrDupW" __imp_SHStrDupW
0x180014668: "__cdecl _imp_GetTokenInformation" __imp_GetTokenInformation
0x1800159F0: "WIN" ??_C@_17JGKCKOOD@?$AAW?$AAI?$AAN?$AA?$AA@
0x180014748: "__cdecl _imp_SHSetValueW" __imp_SHSetValueW
0x180014860: "__cdecl _imp_RtlNtStatusToDosError" __imp_RtlNtStatusToDosError
0x180019D18: "AnyoneReadOOBECompleted" ??_C@_1DA@ILABDBKB@?$AAA?$AAn?$AAy?$AAo?$AAn?$AAe?$AAR?$AAe?$AAa?$AAd?$AAO?$AAO?$AAB?$AAE?$AAC?$AAo?$AAm?$AAp?$AAl?$AAe?$AAt?$AAe?$AAd?$AA?$AA@
0x1800156B0: "[Shell Unattend] AutoLogon faile" ??_C@_0EP@CLNIFNOD@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x180019350: "[Shell Unattend] LogonCommands: " ??_C@_0EL@ECCAMHKC@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180019318: "[Shell Unattend] LogonCommands: " ??_C@_0DD@FCIENBLL@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x180014278: "__cdecl _imp_IsDebuggerPresent" __imp_IsDebuggerPresent
0x18001B030: "Software\Microsoft\Windows\Curre" ??_C@_1HA@OIHMHKDG@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x1800166A0: "DefaultUser\Software\Microsoft\W" ??_C@_1HO@DFIELDD@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?2?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW@
0x18001E650: ext-ms-win-ntuser-window-l1-1-0_NULL_THUNK_DATA_DLN
0x180023028: "__cdecl _imp_SamQueryInformationDomain" __imp_SamQueryInformationDomain
0x1800145E0: api-ms-win-core-sysinfo-l1-1-0_NULL_THUNK_DATA
0x18001B4B8: "[Shell Unattend] TimeZone: Inval" ??_C@_0DN@DFELHECP@?$FLShell?5Unattend?$FN?5TimeZone?3?5Inval@
0x18001B010: "SysprepMode" ??_C@_1BI@DIDJKAPA@?$AAS?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AAM?$AAo?$AAd?$AAe?$AA?$AA@
0x180014900: "__cdecl _xi_a" __xi_a
0x1800145F0: api-ms-win-core-sysinfo-l1-2-0_NULL_THUNK_DATA
0x18001BDF8: "_AddAccountToLocalGroups" ??_C@_1DC@JPEAKFCO@?$AA_?$AAA?$AAd?$AAd?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAT?$AAo?$AAL?$AAo?$AAc?$AAa?$AAl?$AAG?$AAr?$AAo?$AAu?$AAp?$AAs?$AA?$AA@
0x180016E80: "width & height" ??_C@_1BO@GGDCIBON@?$AAw?$AAi?$AAd?$AAt?$AAh?$AA?5?$AA?$CG?$AA?5?$AAh?$AAe?$AAi?$AAg?$AAh?$AAt?$AA?$AA@
0x18001AC30: "DontSaveNotificationCustomizatio" ??_C@_1EE@PKHCBDEB@?$AAD?$AAo?$AAn?$AAt?$AAS?$AAa?$AAv?$AAe?$AAN?$AAo?$AAt?$AAi?$AAf?$AAi?$AAc?$AAa?$AAt?$AAi?$AAo?$AAn?$AAC?$AAu?$AAs?$AAt?$AAo?$AAm?$AAi?$AAz?$AAa?$AAt?$AAi?$AAo@
0x1800145D0: "__cdecl _imp_GetTickCount" __imp_GetTickCount
0x180014280: api-ms-win-core-debug-l1-1-0_NULL_THUNK_DATA
0x180014298: "__cdecl _imp_ResolveDelayLoadedAPI" __imp_ResolveDelayLoadedAPI
0x1800146C0: "__cdecl _imp_SetNamedSecurityInfoW" __imp_SetNamedSecurityInfoW
0x18002163C: "unsigned int volatile `void __cdecl wil::SetLastError(struct wil::FailureInfo const & __ptr64)'::`2'::lastThread" ?lastThread@?1??SetLastError@wil@@YAXAEBUFailureInfo@2@@Z@4IC
0x1800131E2: "__cdecl _imp_load_SamFreeMemory" __imp_load_SamFreeMemory
0x180014830: "__cdecl _imp__unlock" __imp__unlock
0x18001A970: "CleanupUserProfiles" ??_C@_1CI@CLKKMFGK@?$AAC?$AAl?$AAe?$AAa?$AAn?$AAu?$AAp?$AAU?$AAs?$AAe?$AAr?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AAs?$AA?$AA@
0x180019BC8: "UnattendEnableRetailDemo" ??_C@_1DC@JPPCKBBI@?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAE?$AAn?$AAa?$AAb?$AAl?$AAe?$AAR?$AAe?$AAt?$AAa?$AAi?$AAl?$AAD?$AAe?$AAm?$AAo?$AA?$AA@
0x180014C08: CLSID_FileOperation
0x1800134ED: "__cdecl _tailMerge_ext_ms_win_shell_shell32_l1_2_2_dll" __tailMerge_ext_ms_win_shell_shell32_l1_2_2_dll
0x180014670: api-ms-win-security-base-l1-1-0_NULL_THUNK_DATA
0x18001B438: "MUI_Dlt" ??_C@_1BA@EELBMBKA@?$AAM?$AAU?$AAI?$AA_?$AAD?$AAl?$AAt?$AA?$AA@
0x180005DA0: InitializeSetupLog
0x1800131BE: "__cdecl _imp_load_SamQueryInformationDomain" __imp_load_SamQueryInformationDomain
0x180014D08: "D" ??_C@_13MKMNOPIJ@?$AAD?$AA?$AA@
0x180008010: "public: virtual long __cdecl wil::FileSystemBindData::GetFileID(union _LARGE_INTEGER * __ptr64) __ptr64" ?GetFileID@FileSystemBindData@wil@@UEAAJPEAT_LARGE_INTEGER@@@Z
0x180014ED0: "Username" ??_C@_1BC@LFGMALLK@?$AAU?$AAs?$AAe?$AAr?$AAn?$AAa?$AAm?$AAe?$AA?$AA@
0x18001EDF4: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-shell-shdirectory-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-shell-shdirectory-l1-1-0
0x180014230: "__cdecl _imp_CoTaskMemFree" __imp_CoTaskMemFree
0x180023120: "__cdecl _imp_NetApiBufferFree" __imp_NetApiBufferFree
0x18001357E: "__cdecl _imp_load_SHEmptyRecycleBinW" __imp_load_SHEmptyRecycleBinW
0x18001B620: "ProcessTimeZone" ??_C@_1CA@HPEOCAPB@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAT?$AAi?$AAm?$AAe?$AAZ?$AAo?$AAn?$AAe?$AA?$AA@
0x1800146E8: "__cdecl _imp_CloseServiceHandle" __imp_CloseServiceHandle
0x180023018: "__cdecl _imp_SamFreeMemory" __imp_SamFreeMemory
0x180013462: "__cdecl _tailMerge_ext_ms_win_shell_shell32_l1_2_0_dll" __tailMerge_ext_ms_win_shell_shell32_l1_2_0_dll
0x1800145F8: "__cdecl _imp_SetDynamicTimeZoneInformation" __imp_SetDynamicTimeZoneInformation
0x1800107B4: "long __cdecl SHQueryToken<struct _TOKEN_USER>(void * __ptr64,enum _TOKEN_INFORMATION_CLASS,int,struct _TOKEN_USER * __ptr64 * __ptr64)" ??$SHQueryToken@U_TOKEN_USER@@@@YAJPEAXW4_TOKEN_INFORMATION_CLASS@@HPEAPEAU_TOKEN_USER@@@Z
0x18001D050: "LogPixels" ??_C@_1BE@CKDBNGKB@?$AAL?$AAo?$AAg?$AAP?$AAi?$AAx?$AAe?$AAl?$AAs?$AA?$AA@
0x18001585C: "" ??_C@_11LOCGONAA@?$AA?$AA@
0x18001ED18: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-processthreads-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-processthreads-l1-1-0
0x180002C40: ProcessComputerName
0x18001EE6C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-shcore-sysinfo-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-shcore-sysinfo-l1-1-0
0x180016B98: "[Shell Unattend] CopyProfile suc" ??_C@_0CH@LDFOJGCC@?$FLShell?5Unattend?$FN?5CopyProfile?5suc@
0x18001AD60: "CleanupAdministratorPassword" ??_C@_1DK@PMHFCCIH@?$AAC?$AAl?$AAe?$AAa?$AAn?$AAu?$AAp?$AAA?$AAd?$AAm?$AAi?$AAn?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAo?$AAr?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x18001B858: "SeTimeZonePrivilege" ??_C@_1CI@JJNMEPGC@?$AAS?$AAe?$AAT?$AAi?$AAm?$AAe?$AAZ?$AAo?$AAn?$AAe?$AAP?$AAr?$AAi?$AAv?$AAi?$AAl?$AAe?$AAg?$AAe?$AA?$AA@
0x180012AD8: "__cdecl _report_rangecheckfailure" __report_rangecheckfailure
0x180012128: "public: static void __cdecl CChkMacroETWLoggerT<class CEmptyType>::LogHResultEvent(long)" ?LogHResultEvent@?$CChkMacroETWLoggerT@VCEmptyType@@@@SAXJ@Z
0x18001EC78: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-service-winsvc-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-service-winsvc-l1-1-0
0x180021800: "__cdecl pRawDllMain" _pRawDllMain
0x180015AF0: "[Shell Unattend] ComputerName: g" ??_C@_0DE@NDKNGODL@?$FLShell?5Unattend?$FN?5ComputerName?3?5g@
0x180017EF0: "Public" ??_C@_1O@OBJINMIH@?$AAP?$AAu?$AAb?$AAl?$AAi?$AAc?$AA?$AA@
0x1800190C8: "[Shell Unattend] ProductKey set " ??_C@_0CB@MHGAFPEE@?$FLShell?5Unattend?$FN?5ProductKey?5set?5@
0x180018CE8: "ShowWindowsMail" ??_C@_1CA@PBBIJAEM@?$AAS?$AAh?$AAo?$AAw?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AAM?$AAa?$AAi?$AAl?$AA?$AA@
0x1800147F8: "__cdecl _imp_towupper" __imp_towupper
0x18001D280: "\Registry\Machine\Software\Micro" ??_C@_1GC@PCKCDDPD@?$AA?2?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?2?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AA?2?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo@
0x18001EC50: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-service-management-l2-1-0" __IMPORT_DESCRIPTOR_api-ms-win-service-management-l2-1-0
0x180019AE0: "HideWirelessSetupInOOBE" ??_C@_1DA@GDBJMEOK@?$AAH?$AAi?$AAd?$AAe?$AAW?$AAi?$AAr?$AAe?$AAl?$AAe?$AAs?$AAs?$AAS?$AAe?$AAt?$AAu?$AAp?$AAI?$AAn?$AAO?$AAO?$AAB?$AAE?$AA?$AA@
0x180018450: "[Shell Unattend] FolderLocations" ??_C@_0HA@EJGFDMKD@?$FLShell?5Unattend?$FN?5FolderLocations@
0x1800173E0: "Unknown" ??_C@_1BA@LEPJIIOK@?$AAU?$AAn?$AAk?$AAn?$AAo?$AAw?$AAn?$AA?$AA@
0x180016E20: "[Shell Unattend] Display: Change" ??_C@_0FM@NPAFKAKK@?$FLShell?5Unattend?$FN?5Display?3?5Change@
0x180014810: "__cdecl _imp___dllonexit" __imp___dllonexit
0x180018770: "[Shell Unattend] ClientApplicati" ??_C@_0ED@NEDFHMAA@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x18001C5D0: "[Shell Unattend] UserAccounts: f" ??_C@_0GD@GDAICKI@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x1800076D8: "private: static long __cdecl wil::details_abi::SemaphoreValue::GetValueFromSemaphore(void * __ptr64,long * __ptr64)" ?GetValueFromSemaphore@SemaphoreValue@details_abi@wil@@CAJPEAXPEAJ@Z
0x1800165F0: "DefaultUser\Software\Microsoft\W" ??_C@_1IE@IANBDGBA@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?2?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW@
0x1800123CC: "void __cdecl operator delete(void * __ptr64)" ??3@YAXPEAX@Z
0x1800177A0: "[Shell Unattend] StartService fo" ??_C@_0DG@ILOMGAKI@?$FLShell?5Unattend?$FN?5StartService?5fo@
0x180018390: "[Shell Unattend] FolderLocations" ??_C@_0EL@IKCCIPHP@?$FLShell?5Unattend?$FN?5FolderLocations@
0x180017AB8: "[Shell Unattend] Failed to open " ??_C@_0DH@PGPDIIGL@?$FLShell?5Unattend?$FN?5Failed?5to?5open?5@
0x180014DE8: "[Shell Unattend] AutoLogon: enab" ??_C@_0DJ@JOEDBPD@?$FLShell?5Unattend?$FN?5AutoLogon?3?5enab@
0x18001ECF0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-heap-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-heap-l1-1-0
0x180019DC0: "OOBEUpdateStarted" ??_C@_1CE@OFICDKPM@?$AAO?$AAO?$AAB?$AAE?$AAU?$AAp?$AAd?$AAa?$AAt?$AAe?$AAS?$AAt?$AAa?$AAr?$AAt?$AAe?$AAd?$AA?$AA@
0x180005E60: StartServiceHelper
0x18001CF30: "\Registry\Machine\System\Current" ??_C@_1HK@IHKJMNCO@?$AA?2?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?2?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AA?2?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe?$AAn?$AAt@
0x180018140: "[Shell Unattend] FolderLocations" ??_C@_0FC@GNNJLJLD@?$FLShell?5Unattend?$FN?5FolderLocations@
0x1800136FA: "__cdecl _tailMerge_shcore_dll" __tailMerge_shcore_dll
0x180014690: "__cdecl _imp_LsaFreeMemory" __imp_LsaFreeMemory
0x18001E3F0: "__cdecl _DELAY_IMPORT_DESCRIPTOR_netutils_dll" __DELAY_IMPORT_DESCRIPTOR_netutils_dll
0x180014768: "__cdecl _imp_IsOS" __imp_IsOS
0x180012900: "__cdecl _security_check_cookie" __security_check_cookie
0x1800179F0: "GetPasswordValue" ??_C@_1CC@FIIONPMG@?$AAG?$AAe?$AAt?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AAV?$AAa?$AAl?$AAu?$AAe?$AA?$AA@
0x1800148F8: "__cdecl _xc_z" __xc_z
0x18001EBB0: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-heap-l2-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-heap-l2-1-0
0x180014B40: "__cdecl _sz_ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll" __sz_ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll
0x180007550: "long __cdecl wil::details::ReportFailure_GetLastErrorHr(void * __ptr64,unsigned int,char const * __ptr64,char const * __ptr64,char const * __ptr64,void * __ptr64,enum wil::FailureType)" ?ReportFailure_GetLastErrorHr@details@wil@@YAJPEAXIPEBD110W4FailureType@2@@Z
0x180014438: api-ms-win-core-processthreads-l1-1-0_NULL_THUNK_DATA
0x180019008: "ProductKey" ??_C@_1BG@DJPMEOGD@?$AAP?$AAr?$AAo?$AAd?$AAu?$AAc?$AAt?$AAK?$AAe?$AAy?$AA?$AA@
0x180014370: "__cdecl _imp_GetProcAddress" __imp_GetProcAddress
0x18001EDCC: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-security-provider-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-security-provider-l1-1-0
0x180016FE8: "[Shell Unattend] Display: Failed" ??_C@_0DO@BMFDNGHN@?$FLShell?5Unattend?$FN?5Display?3?5Failed@
0x18001A0A0: "Software\Microsoft\Windows\Curre" ??_C@_1HE@OFGJIHEM@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x1800188C8: "Media" ??_C@_1M@OFOICAAP@?$AAM?$AAe?$AAd?$AAi?$AAa?$AA?$AA@
0x180014790: api-ms-win-shell-shdirectory-l1-1-0_NULL_THUNK_DATA
0x180021034: g_header_init_WilInitialize_ResultMacros_DesktopOrSystem
0x18001EE58: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-registryuserspecific-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-registryuserspecific-l1-1-0
0x180012FC3: "__cdecl _imp_load_NetApiBufferFree" __imp_load_NetApiBufferFree
0x1800215F0: "__cdecl _hmod__ext_ms_win_ole32_bindctx_l1_1_0_dll" __hmod__ext_ms_win_ole32_bindctx_l1_1_0_dll
0x1800158B0: "_GenerateName" ??_C@_1BM@JNNDEDBB@?$AA_?$AAG?$AAe?$AAn?$AAe?$AAr?$AAa?$AAt?$AAe?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x180014C70: "DefaultPassword" ??_C@_1CA@GEPNFAGB@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAP?$AAa?$AAs?$AAs?$AAw?$AAo?$AAr?$AAd?$AA?$AA@
0x18001A5D0: "Software\Microsoft\Windows\Curre" ??_C@_1JO@PBFHPBEC@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001BB08: "Users" ??_C@_1M@JKOHCHHA@?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x180014258: "__cdecl _imp_CoCreateInstance" __imp_CoCreateInstance
0x1800145D8: "__cdecl _imp_GetSystemTimeAsFileTime" __imp_GetSystemTimeAsFileTime
0x180002590: "unsigned long __cdecl _RegSetKeyValue(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,unsigned long,void const * __ptr64,unsigned long)" ?_RegSetKeyValue@@YAKPEAUHKEY__@@PEBG1KPEBXK@Z
0x1800147A0: api-ms-win-shell-shellcom-l1-1-0_NULL_THUNK_DATA
0x18001BA10: "SHUnattendedSetupW" ??_C@_1CG@FEEBMJFG@?$AAS?$AAH?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAe?$AAd?$AAS?$AAe?$AAt?$AAu?$AAp?$AAW?$AA?$AA@
0x180006F10: "unsigned char __cdecl wil::details::RtlDllShutdownInProgress(void)" ?RtlDllShutdownInProgress@details@wil@@YAEXZ
0x180014348: "__cdecl _imp_LocalAlloc" __imp_LocalAlloc
0x180005FC0: LookupLocalAccountFromRid
0x180021728: "bool wil::g_fBreakOnFailure" ?g_fBreakOnFailure@wil@@3_NA
0x1800178E0: "StartServiceHelper" ??_C@_1CG@IMIHFLLJ@?$AAS?$AAt?$AAa?$AAr?$AAt?$AAS?$AAe?$AAr?$AAv?$AAi?$AAc?$AAe?$AAH?$AAe?$AAl?$AAp?$AAe?$AAr?$AA?$AA@
0x180014688: api-ms-win-security-lsalookup-l2-1-0_NULL_THUNK_DATA
0x180014288: "__cdecl _imp_DelayLoadFailureHook" __imp_DelayLoadFailureHook
0x180014338: "__cdecl _imp_GetProcessHeap" __imp_GetProcessHeap
0x1800138B0: "__cdecl _chkstk" __chkstk
0x18001C118: "[Shell Unattend] UserAccounts: P" ??_C@_0DH@BMCGLIJD@?$FLShell?5Unattend?$FN?5UserAccounts?3?5P@
0x180018550: "Software\Clients\" ??_C@_1CE@KOHMHPIC@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAs?$AA?2?$AA?$AA@
0x180015D20: "[Shell Unattend] ComputerName: f" ??_C@_0FA@CIOKBNGG@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x1800132AF: "__cdecl _tailMerge_ext_ms_win_ntuser_window_l1_1_0_dll" __tailMerge_ext_ms_win_ntuser_window_l1_1_0_dll
0x18001EC3C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-service-management-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-service-management-l1-1-0
0x180006A18: "long __cdecl wil::GetFailureLogString(unsigned short * __ptr64,unsigned __int64,struct wil::FailureInfo const & __ptr64)" ?GetFailureLogString@wil@@YAJPEAG_KAEBUFailureInfo@1@@Z
0x1800197E0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NE@FLDACJAL@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180019A60: "SkipUserOOBE" ??_C@_1BK@IKIOJCJE@?$AAS?$AAk?$AAi?$AAp?$AAU?$AAs?$AAe?$AAr?$AAO?$AAO?$AAB?$AAE?$AA?$AA@
0x180014778: "__cdecl _imp_SHAnsiToUnicode" __imp_SHAnsiToUnicode
0x180014300: "__cdecl _imp_GetVolumePathNameW" __imp_GetVolumePathNameW
0x180016F60: "[Shell Unattend] Display: Reques" ??_C@_0CL@HHBCGIFI@?$FLShell?5Unattend?$FN?5Display?3?5Reques@
0x18001B800: "[Shell Unattend] TimeZone: Faile" ??_C@_0FF@FGLENECI@?$FLShell?5Unattend?$FN?5TimeZone?3?5Faile@
0x1800136A6: "__cdecl _imp_load_CurrentIP" __imp_load_CurrentIP
0x1800144F8: "__cdecl _imp_SHExpandEnvironmentStringsW" __imp_SHExpandEnvironmentStringsW
0x180014308: "__cdecl _imp_CreateDirectoryW" __imp_CreateDirectoryW
0x180007684: "void __cdecl wil::details::in1diag3::FailFast_Unexpected(void * __ptr64,unsigned int,char const * __ptr64)" ?FailFast_Unexpected@in1diag3@details@wil@@YAXPEAXIPEBD@Z
0x1800144E0: api-ms-win-core-rtlsupport-l1-1-0_NULL_THUNK_DATA
0x1800174C8: "SERVICE_STOP_PENDING" ??_C@_1CK@KDCCLGNG@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAS?$AAT?$AAO?$AAP?$AA_?$AAP?$AAE?$AAN?$AAD?$AAI?$AAN?$AAG?$AA?$AA@
0x180021700: "void (__cdecl* __ptr64 wil::details::g_pfnLoggingCallback)(struct wil::FailureInfo const & __ptr64)" ?g_pfnLoggingCallback@details@wil@@3P6AXAEBUFailureInfo@2@@ZEA
0x180016178: "SysprepUserSid" ??_C@_1BO@FFMJFAB@?$AAS?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AAU?$AAs?$AAe?$AAr?$AAS?$AAi?$AAd?$AA?$AA@
0x180014A90: "__cdecl _sz_USERENV_dll" __sz_USERENV_dll
0x180018A80: "[Shell Unattend] ClientApplicati" ??_C@_0FO@DCFAMGA@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x180014600: "__cdecl _imp_GetDynamicTimeZoneInformation" __imp_GetDynamicTimeZoneInformation
0x1800131F4: "__cdecl _imp_load_SamCloseHandle" __imp_load_SamCloseHandle
0x180019160: "[Shell Unattend] ProductKey: fai" ??_C@_0GD@IBCNEGIK@?$FLShell?5Unattend?$FN?5ProductKey?3?5fai@
0x180015290: "[Shell Unattend] AutoLogon Logon" ??_C@_0CL@DACHHFOJ@?$FLShell?5Unattend?$FN?5AutoLogon?5Logon@
0x1800179D8: "PlainText" ??_C@_1BE@IBDPDNPI@?$AAP?$AAl?$AAa?$AAi?$AAn?$AAT?$AAe?$AAx?$AAt?$AA?$AA@
0x1800143C0: "__cdecl _imp_PathCchCombine" __imp_PathCchCombine
0x1800052A0: ProcessVisualEffects
0x180014710: "__cdecl _imp_QueryServiceStatusEx" __imp_QueryServiceStatusEx
0x18001ED54: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-rtlsupport-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-rtlsupport-l1-1-0
0x180014708: api-ms-win-service-management-l1-1-0_NULL_THUNK_DATA
0x180014718: api-ms-win-service-management-l2-1-0_NULL_THUNK_DATA
0x180014E30: "[Shell Unattend] AutoLogon: fail" ??_C@_0EL@HBHFFBHA@?$FLShell?5Unattend?$FN?5AutoLogon?3?5fail@
0x180016A48: "[Shell Unattend] Delete of %ws r" ??_C@_0DN@BPOJEMOH@?$FLShell?5Unattend?$FN?5Delete?5of?5?$CFws?5r@
0x1800183E0: "ProfilesDirectory" ??_C@_1CE@NOOGHCAB@?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AAs?$AAD?$AAi?$AAr?$AAe?$AAc?$AAt?$AAo?$AAr?$AAy?$AA?$AA@
0x180016EE0: "[Shell Unattend] Display: Succes" ??_C@_0DA@OFNFDNPC@?$FLShell?5Unattend?$FN?5Display?3?5Succes@
0x180014448: api-ms-win-core-profile-l1-1-0_NULL_THUNK_DATA
0x180014698: "__cdecl _imp_LsaClose" __imp_LsaClose
0x180014918: "__cdecl _guard_fids_table" __guard_fids_table
0x180015B80: "ComputerName" ??_C@_1BK@OADCIHHB@?$AAC?$AAo?$AAm?$AAp?$AAu?$AAt?$AAe?$AAr?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x18001CCB8: "\Device\KsecDD" ??_C@_1BO@BAEMGIAB@?$AA?2?$AAD?$AAe?$AAv?$AAi?$AAc?$AAe?$AA?2?$AAK?$AAs?$AAe?$AAc?$AAD?$AAD?$AA?$AA@
0x18001B8C0: "[Shell Unattend] TimeZone: SetTi" ??_C@_0EN@HJONHJGM@?$FLShell?5Unattend?$FN?5TimeZone?3?5SetTi@
0x180014610: "__cdecl _imp_CreateWellKnownSid" __imp_CreateWellKnownSid
0x180014848: msvcrt_NULL_THUNK_DATA
0x18001CD58: "pkeyconfig.xrm-ms" ??_C@_1CE@DKOFJPGE@?$AAp?$AAk?$AAe?$AAy?$AAc?$AAo?$AAn?$AAf?$AAi?$AAg?$AA?4?$AAx?$AAr?$AAm?$AA?9?$AAm?$AAs?$AA?$AA@
0x18001A520: "FavoritesResolve" ??_C@_1CC@JCCNLAAI@?$AAF?$AAa?$AAv?$AAo?$AAr?$AAi?$AAt?$AAe?$AAs?$AAR?$AAe?$AAs?$AAo?$AAl?$AAv?$AAe?$AA?$AA@
0x18001AA10: "SanitizeDeskBands" ??_C@_1CE@FIFKFEOE@?$AAS?$AAa?$AAn?$AAi?$AAt?$AAi?$AAz?$AAe?$AAD?$AAe?$AAs?$AAk?$AAB?$AAa?$AAn?$AAd?$AAs?$AA?$AA@
0x18000A910: "long __cdecl ShowHideClientApp(unsigned short const * __ptr64,int)" ?ShowHideClientApp@@YAJPEBGH@Z
0x180014120: "__cdecl load_config_used" _load_config_used
0x180016240: "[Shell Unattend] Couldn't find s" ??_C@_0ED@CMIFHLIP@?$FLShell?5Unattend?$FN?5Couldn?8t?5find?5s@
0x1800188B8: "Mail" ??_C@_19DFHLKNJF@?$AAM?$AAa?$AAi?$AAl?$AA?$AA@
0x180011F04: "long __cdecl STRAPI_CreateCchBufferN(unsigned short,unsigned __int64,unsigned short * __ptr64 * __ptr64)" ?STRAPI_CreateCchBufferN@@YAJG_KPEAPEAG@Z
0x1800133C5: "__cdecl _tailMerge_ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll" __tailMerge_ext_ms_win_rtcore_ntuser_sysparams_l1_1_0_dll
0x180019058: "ProcessProductKey" ??_C@_1CE@IBPKPBFO@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAP?$AAr?$AAo?$AAd?$AAu?$AAc?$AAt?$AAK?$AAe?$AAy?$AA?$AA@
0x18001D120: "\Registry\Machine\Software\Micro" ??_C@_1IO@MCBNBNG@?$AA?2?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?2?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AA?2?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo@
0x180023060: "__cdecl _imp_WdsSetupLogDestroy" __imp_WdsSetupLogDestroy
0x180014560: "__cdecl _imp_ReleaseMutex" __imp_ReleaseMutex
0x18001EB9C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-security-sddl-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-security-sddl-l1-1-0
0x1800136DC: "__cdecl _imp_load_WdsSetupLogDestroy" __imp_load_WdsSetupLogDestroy
0x1800194F8: "_EnumRegCommands" ??_C@_1CC@BIADEPPA@?$AA_?$AAE?$AAn?$AAu?$AAm?$AAR?$AAe?$AAg?$AAC?$AAo?$AAm?$AAm?$AAa?$AAn?$AAd?$AAs?$AA?$AA@
0x180014798: "__cdecl _imp_SHCoCreateInstance" __imp_SHCoCreateInstance
0x180007D90: "void __cdecl wil::details::GetContextAndNotifyFailure(struct wil::FailureInfo * __ptr64,char * __ptr64,unsigned __int64)" ?GetContextAndNotifyFailure@details@wil@@YAXPEAUFailureInfo@2@PEAD_K@Z
0x18001E470: "__cdecl _DELAY_IMPORT_DESCRIPTOR_ext_ms_win_ntuser_window_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_ext_ms_win_ntuser_window_l1_1_0_dll
0x18000BF24: "unsigned long __cdecl CleanupMachineRegSettings(void)" ?CleanupMachineRegSettings@@YAKXZ
0x1800188F0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NO@PPCDKFJJ@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x1800142A0: api-ms-win-core-delayload-l1-1-1_NULL_THUNK_DATA
0x180014290: api-ms-win-core-delayload-l1-1-0_NULL_THUNK_DATA
0x180015EF0: "[Shell Unattend] ComputerName: f" ??_C@_0GK@LOPELGLD@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x1800180E0: "[Shell Unattend] FolderLocations" ??_C@_0FD@KFOCLEKH@?$FLShell?5Unattend?$FN?5FolderLocations@
0x18001E3D0: "__cdecl _DELAY_IMPORT_DESCRIPTOR_samcli_dll" __DELAY_IMPORT_DESCRIPTOR_samcli_dll
0x180014888: "__cdecl _imp_ZwClose" __imp_ZwClose
0x1800165B0: "MUILanguagePending" ??_C@_1CG@DIAMFOMF@?$AAM?$AAU?$AAI?$AAL?$AAa?$AAn?$AAg?$AAu?$AAa?$AAg?$AAe?$AAP?$AAe?$AAn?$AAd?$AAi?$AAn?$AAg?$AA?$AA@
0x180015DD0: "[Shell Unattend] ComputerName: f" ??_C@_0EJ@NDIOFHMI@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x18001EE30: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-shcore-obsolete-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-shcore-obsolete-l1-1-0
0x180007644: "long __cdecl wil::details::in1diag3::Return_GetLastError(void * __ptr64,unsigned int,char const * __ptr64)" ?Return_GetLastError@in1diag3@details@wil@@YAJPEAXIPEBD@Z
0x180018A00: "[Shell Unattend] ClientApplicati" ??_C@_0HG@CBNBCJDK@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x1800062FC: GetPasswordValue
0x180018C40: "ShowInternetExplorer" ??_C@_1CK@EEPONALD@?$AAS?$AAh?$AAo?$AAw?$AAI?$AAn?$AAt?$AAe?$AAr?$AAn?$AAe?$AAt?$AAE?$AAx?$AAp?$AAl?$AAo?$AAr?$AAe?$AAr?$AA?$AA@
0x180009FC0: "[thunk]:public: virtual long __cdecl wil::FileSystemBindData::GetFindData`adjustor{8}' (struct _WIN32_FIND_DATAW * __ptr64) __ptr64" ?GetFindData@FileSystemBindData@wil@@W7EAAJPEAU_WIN32_FIND_DATAW@@@Z
0x180019E80: "SetupSQMOptIn" ??_C@_1BM@KNCNIKMI@?$AAS?$AAe?$AAt?$AAu?$AAp?$AAS?$AAQ?$AAM?$AAO?$AAp?$AAt?$AAI?$AAn?$AA?$AA@
0x1800187B8: "[Shell Unattend] ClientApplicati" ??_C@_0CP@CKBFBFBA@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x180014F70: "WDAGUtilityAccount" ??_C@_1CG@BDHCFFKN@?$AAW?$AAD?$AAA?$AAG?$AAU?$AAt?$AAi?$AAl?$AAi?$AAt?$AAy?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x1800215D8: "__cdecl _hmod__SAMLIB_dll" __hmod__SAMLIB_dll
0x180021638: "long volatile `void __cdecl wil::SetLastError(struct wil::FailureInfo const & __ptr64)'::`5'::depth" ?depth@?4??SetLastError@wil@@YAXAEBUFailureInfo@2@@Z@4JC
0x18001EE94: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-processenvironment-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-processenvironment-l1-1-0
0x180015D70: "[Shell Unattend] ComputerName se" ??_C@_0CK@LHNMCELC@?$FLShell?5Unattend?$FN?5ComputerName?5se@
0x180007F70: "public: virtual long __cdecl wil::FileSystemBindData::GetFindData(struct _WIN32_FIND_DATAW * __ptr64) __ptr64" ?GetFindData@FileSystemBindData@wil@@UEAAJPEAU_WIN32_FIND_DATAW@@@Z
0x180015860: "ABCDEFGHIJKLMNOPQRSTUVWXYZ012345" ??_C@_1EK@PKCDLNEF@?$AAA?$AAB?$AAC?$AAD?$AAE?$AAF?$AAG?$AAH?$AAI?$AAJ?$AAK?$AAL?$AAM?$AAN?$AAO?$AAP?$AAQ?$AAR?$AAS?$AAT?$AAU?$AAV?$AAW?$AAX?$AAY?$AAZ?$AA0?$AA1?$AA2?$AA3?$AA4?$AA5@
0x1800184E8: "__cdecl GUID_01e18d10_4d8b_11d2_855d_006008059367" _GUID_01e18d10_4d8b_11d2_855d_006008059367
0x180015E70: "ShSetupSkipComputerName" ??_C@_1DA@KMNKFDCG@?$AAS?$AAh?$AAS?$AAe?$AAt?$AAu?$AAp?$AAS?$AAk?$AAi?$AAp?$AAC?$AAo?$AAm?$AAp?$AAu?$AAt?$AAe?$AAr?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x180023150: "__cdecl _imp_NetUserAdd" __imp_NetUserAdd
0x180018FB0: "[Shell Unattend] WindowsFeatures" ??_C@_0FI@NPEIJHEF@?$FLShell?5Unattend?$FN?5WindowsFeatures@
0x1800147E0: "__cdecl _imp__amsg_exit" __imp__amsg_exit
0x180017158: "VerticalResolution" ??_C@_1CG@FJLGEIDH@?$AAV?$AAe?$AAr?$AAt?$AAi?$AAc?$AAa?$AAl?$AAR?$AAe?$AAs?$AAo?$AAl?$AAu?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x18001CD50: "PidGenX" ??_C@_07JELACFDE@PidGenX?$AA@
0x180014780: api-ms-win-shcore-unicodeansi-l1-1-0_NULL_THUNK_DATA
0x18001BCE0: "EventLogReaders" ??_C@_1CA@FBIPIIDE@?$AAE?$AAv?$AAe?$AAn?$AAt?$AAL?$AAo?$AAg?$AAR?$AAe?$AAa?$AAd?$AAe?$AAr?$AAs?$AA?$AA@
0x180021618: "__cdecl _hmod__WDSCORE_dll" __hmod__WDSCORE_dll
0x180005800: "private: static long __cdecl OOBEServiceHelper::_ControlService(unsigned short const * __ptr64,unsigned long,unsigned long,bool,bool)" ?_ControlService@OOBEServiceHelper@@CAJPEBGKK_N1@Z
0x18001C030: "_CreateLocalAccount" ??_C@_1CI@ENEOFCNL@?$AA_?$AAC?$AAr?$AAe?$AAa?$AAt?$AAe?$AAL?$AAo?$AAc?$AAa?$AAl?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x180014378: "__cdecl _imp_DisableThreadLibraryCalls" __imp_DisableThreadLibraryCalls
0x180014858: "__cdecl _imp_NtClose" __imp_NtClose
0x180006E50: "char const * __ptr64 __cdecl wil::details::GetCurrentModuleName(void)" ?GetCurrentModuleName@details@wil@@YAPEBDXZ
0x180017128: "HorizontalResolution" ??_C@_1CK@HGPMLIDO@?$AAH?$AAo?$AAr?$AAi?$AAz?$AAo?$AAn?$AAt?$AAa?$AAl?$AAR?$AAe?$AAs?$AAo?$AAl?$AAu?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x18001EDA4: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-shlwapi-obsolete-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-shlwapi-obsolete-l1-1-0
0x180023010: "__cdecl _imp_SamCloseHandle" __imp_SamCloseHandle
0x18001E660: ext-ms-win-ole32-bindctx-l1-1-0_NULL_THUNK_DATA_DLN
0x180009FF0: "long __cdecl StringCchPrintfW(unsigned short * __ptr64,unsigned __int64,unsigned short const * __ptr64,...)" ?StringCchPrintfW@@YAJPEAG_KPEBGZZ
0x18001E6E8: samcli_NULL_THUNK_DATA_DLN
0x18001C930: "[Shell Unattend] UserAccounts: f" ??_C@_0FC@IDKOJMDP@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180016140: "[Shell Unattend] Couldn't find a" ??_C@_0DB@OGCJJBAK@?$FLShell?5Unattend?$FN?5Couldn?8t?5find?5a@
0x180015BA0: "Software\Microsoft\Windows NT\Cu" ??_C@_1LI@HDBLOEKE@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x18001E938: samcli_NULL_THUNK_DATA_DLB
0x1800072AC: "void __cdecl wil::details::WilFailFast(struct wil::FailureInfo const & __ptr64)" ?WilFailFast@details@wil@@YAXAEBUFailureInfo@2@@Z
0x180023158: samcli_NULL_THUNK_DATA_DLA
0x1800144D8: "__cdecl _imp_RtlLookupFunctionEntry" __imp_RtlLookupFunctionEntry
0x180016040: "S-1-5-19" ??_C@_1BC@OGNCNKIA@?$AAS?$AA?9?$AA1?$AA?9?$AA5?$AA?9?$AA1?$AA9?$AA?$AA@
0x180014440: "__cdecl _imp_QueryPerformanceCounter" __imp_QueryPerformanceCounter
0x1800195F0: "FirstRequiresUserInput" ??_C@_1CO@OGKIAHBP@?$AAF?$AAi?$AAr?$AAs?$AAt?$AAR?$AAe?$AAq?$AAu?$AAi?$AAr?$AAe?$AAs?$AAU?$AAs?$AAe?$AAr?$AAI?$AAn?$AAp?$AAu?$AAt?$AA?$AA@
0x180015CE8: "[Shell Unattend] Skipping settin" ??_C@_0DI@HBHDPDKF@?$FLShell?5Unattend?$FN?5Skipping?5settin@
0x180016C98: "SetDisplaySettings" ??_C@_1CG@PPJGLAGF@?$AAS?$AAe?$AAt?$AAD?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AAS?$AAe?$AAt?$AAt?$AAi?$AAn?$AAg?$AAs?$AA?$AA@
0x180014A70: "__cdecl _sz_samcli_dll" __sz_samcli_dll
0x180017D30: "internal\sdk\inc\wil\resource.h" ??_C@_0CA@BIKDFFBC@internal?2sdk?2inc?2wil?2resource?4h?$AA@
0x180009D28: "public: static long __cdecl wil::details_abi::SemaphoreValue::TryGetValue<unsigned __int64>(unsigned short const * __ptr64,unsigned __int64 * __ptr64,bool * __ptr64)" ??$TryGetValue@_K@SemaphoreValue@details_abi@wil@@SAJPEBGPEA_KPEA_N@Z
0x180017E18: "[Shell Unattend] FolderLocations" ??_C@_0DG@FMDHCIAG@?$FLShell?5Unattend?$FN?5FolderLocations@
0x180017028: "[Shell Unattend] Display: Failed" ??_C@_0DG@HPGDKAJF@?$FLShell?5Unattend?$FN?5Display?3?5Failed@
0x1800144C0: api-ms-win-core-registryuserspecific-l1-1-0_NULL_THUNK_DATA
0x18001C880: "[Shell Unattend] UserAccounts: f" ??_C@_0GH@CEHKNHNP@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180012CCC: free
0x1800178B0: "[Shell Unattend] OpenSCManager f" ??_C@_0CP@KIEABFLI@?$FLShell?5Unattend?$FN?5OpenSCManager?5f@
0x18001A080: "HideWizard" ??_C@_1BG@KEKBFHNI@?$AAH?$AAi?$AAd?$AAe?$AAW?$AAi?$AAz?$AAa?$AAr?$AAd?$AA?$AA@
0x18001A320: "Software\Microsoft\Windows\Curre" ??_C@_1HE@KIMECLDJ@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x1800151C0: "[Shell Unattend] WinLogon Defaul" ??_C@_0DJ@GMFBDGMP@?$FLShell?5Unattend?$FN?5WinLogon?5Defaul@
0x1800161A0: "Software\Microsoft\Windows\Curre" ??_C@_1FO@MLNDMPPM@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180006F78: "long __cdecl wil::details::GetLastErrorFailHr(void)" ?GetLastErrorFailHr@details@wil@@YAJXZ
0x1800152E0: "[Shell Unattend] WinLogon AutoLo" ??_C@_0CN@JPMJMNLE@?$FLShell?5Unattend?$FN?5WinLogon?5AutoLo@
0x1800144D0: "__cdecl _imp_RtlVirtualUnwind" __imp_RtlVirtualUnwind
0x180012CC0: "__cdecl purecall" _purecall
0x180014490: "__cdecl _imp_RegQueryInfoKeyW" __imp_RegQueryInfoKeyW
0x180007498: "unsigned long __cdecl wil::details::ReportFailure_GetLastError(void * __ptr64,unsigned int,char const * __ptr64,char const * __ptr64,char const * __ptr64,void * __ptr64,enum wil::FailureType)" ?ReportFailure_GetLastError@details@wil@@YAKPEAXIPEBD110W4FailureType@2@@Z
0x18000D4B0: "void __cdecl WriteSysprepUserToRegistry(void)" ?WriteSysprepUserToRegistry@@YAXXZ
0x18001D2E8: "__cdecl _pfnDefaultDliFailureHook2" __pfnDefaultDliFailureHook2
0x180014C60: "__cdecl _sz_SHCORE_dll" __sz_SHCORE_dll
0x18001D070: "\Registry\Machine\System\Current" ??_C@_1KI@BDMEAKEH@?$AA?2?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAy?$AA?2?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AA?2?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe?$AAn?$AAt@
0x180009450: "public: virtual unsigned long __cdecl Microsoft::WRL::Details::RuntimeClassImpl<struct Microsoft::WRL::RuntimeClassFlags<2>,1,0,0,struct IFileSystemBindData,struct IFileSystemBindData2>::AddRef(void) __ptr64" ?AddRef@?$RuntimeClassImpl@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00$0A@$0A@UIFileSystemBindData@@UIFileSystemBindData2@@@Details@WRL@Microsoft@@UEAAKXZ
0x180012EE0: "__cdecl guard_check_icall_nop" _guard_check_icall_nop
0x1800143E8: "__cdecl _imp_ExpandEnvironmentStringsW" __imp_ExpandEnvironmentStringsW
0x1800143B8: api-ms-win-core-localization-l1-2-0_NULL_THUNK_DATA
0x1800145C8: "__cdecl _imp_GetSystemDirectoryW" __imp_GetSystemDirectoryW
0x180014B10: "__cdecl _sz_ext_ms_win_ole32_bindctx_l1_1_0_dll" __sz_ext_ms_win_ole32_bindctx_l1_1_0_dll
0x180017D60: "WilError_02" ??_C@_0M@NMJHHMC@WilError_02?$AA@
0x180023040: SHCORE_NULL_THUNK_DATA_DLA
0x18001EA88: SHCORE_NULL_THUNK_DATA_DLB
0x18001C0E0: "_SetLocalAccountPWWorker" ??_C@_1DC@EPIICPFH@?$AA_?$AAS?$AAe?$AAt?$AAL?$AAo?$AAc?$AAa?$AAl?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAP?$AAW?$AAW?$AAo?$AAr?$AAk?$AAe?$AAr?$AA?$AA@
0x18001E5D0: SHCORE_NULL_THUNK_DATA_DLN
0x180015168: "[Shell Unattend] AutoLogon Domai" ??_C@_0CL@GICGFGHO@?$FLShell?5Unattend?$FN?5AutoLogon?5Domai@
0x180006C80: "int __cdecl wil::details::RecordException(long)" ?RecordException@details@wil@@YAHJ@Z
0x180014FD0: "[Shell Unattend] AutoLogon faile" ??_C@_0EO@KDHCOFDJ@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x180017BE0: "%hs(%d)\%hs!%p: " ??_C@_1CC@CMMBNPBE@?$AA?$CF?$AAh?$AAs?$AA?$CI?$AA?$CF?$AAd?$AA?$CJ?$AA?2?$AA?$CF?$AAh?$AAs?$AA?$CB?$AA?$CF?$AAp?$AA?3?$AA?5?$AA?$AA@
0x18001EE1C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-shell-shellcom-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-shell-shellcom-l1-1-0
0x180019B78: "HideOEMRegistrationScreen" ??_C@_1DE@BEPHKJBF@?$AAH?$AAi?$AAd?$AAe?$AAO?$AAE?$AAM?$AAR?$AAe?$AAg?$AAi?$AAs?$AAt?$AAr?$AAa?$AAt?$AAi?$AAo?$AAn?$AAS?$AAc?$AAr?$AAe?$AAe?$AAn?$AA?$AA@
0x180018DA0: "SOFTWARE\Clients\Media\Windows M" ??_C@_1HA@CKACHFBM@?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAs?$AA?2?$AAM?$AAe?$AAd?$AAi?$AAa?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAM@
0x180006D20: "bool __cdecl wil::details::GetModuleInformation(void * __ptr64,unsigned int * __ptr64,char * __ptr64,unsigned __int64)" ?GetModuleInformation@details@wil@@YA_NPEAXPEAIPEAD_K@Z
0x180016D10: "[Shell Unattend] Display: Error " ??_C@_0GD@PDCGLNHC@?$FLShell?5Unattend?$FN?5Display?3?5Error?5@
0x18001C338: "_ProcessDomainAccounts" ??_C@_1CO@CMFGDEJJ@?$AA_?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAD?$AAo?$AAm?$AAa?$AAi?$AAn?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAs?$AA?$AA@
0x180021758: "__cdecl _@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUwhUhvxfirgbUorxvmhrmtUhkkUkpvbrmhgUoryUlyquivUznwGEUhgwzucOlyq@pkeyinst" __@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUwhUhvxfirgbUorxvmhrmtUhkkUkpvbrmhgUoryUlyquivUznwGEUhgwzucOlyq@pkeyinst
0x180018D10: "SOFTWARE\Clients\Mail\Windows Ma" ??_C@_1FO@EMEABJDL@?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAC?$AAl?$AAi?$AAe?$AAn?$AAt?$AAs?$AA?2?$AAM?$AAa?$AAi?$AAl?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAM?$AAa@
0x180015A90: "[Shell Unattend] ComputerName: F" ??_C@_0EF@KDDNMDNC@?$FLShell?5Unattend?$FN?5ComputerName?3?5F@
0x180023090: "__cdecl _imp_SHStringFromGUIDW" __imp_SHStringFromGUIDW
0x1800130D9: "__cdecl _imp_load_CopyProfileDirectoryEx2" __imp_load_CopyProfileDirectoryEx2
0x1800146D0: "__cdecl _imp_ConvertStringSecurityDescriptorToSecurityDescriptorW" __imp_ConvertStringSecurityDescriptorToSecurityDescriptorW
0x180015DA0: "UnattendSetComputerName" ??_C@_1DA@OBLOMDFL@?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAS?$AAe?$AAt?$AAC?$AAo?$AAm?$AAp?$AAu?$AAt?$AAe?$AAr?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x180014BA0: "__cdecl _sz_ext_ms_win_shell_shell32_l1_2_2_dll" __sz_ext_ms_win_shell_shell32_l1_2_2_dll
0x18001ECC8: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-handle-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-handle-l1-1-0
0x18001ED7C: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-security-lsapolicy-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-security-lsapolicy-l1-1-0
0x1800076C8: "void __cdecl wil::details::in1diag3::_FailFastImmediate_Unexpected(void)" ?_FailFastImmediate_Unexpected@in1diag3@details@wil@@YAXXZ
0x180016A88: "[Shell Unattend] LoadDefaultUser" ??_C@_0DG@LLPKJFAN@?$FLShell?5Unattend?$FN?5LoadDefaultUser@
0x1800152C0: "AutoLogonCount" ??_C@_1BO@LDEMOFFD@?$AAA?$AAu?$AAt?$AAo?$AAL?$AAo?$AAg?$AAo?$AAn?$AAC?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x1800158D0: "onecore\shell\shprep\computernam" ??_C@_1EM@IOKJHIPD@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAc?$AAo?$AAm?$AAp?$AAu?$AAt?$AAe?$AAr?$AAn?$AAa?$AAm@
0x180014368: "__cdecl _imp_GetModuleHandleW" __imp_GetModuleHandleW
0x1800199D8: "[shsetup] SHDeleteValue on '%ls'" ??_C@_0DF@KLJLFMKF@?$FLshsetup?$FN?5SHDeleteValue?5on?5?8?$CFls?8@
0x1800144A8: "__cdecl _imp_RegEnumKeyW" __imp_RegEnumKeyW
0x1800146A0: "__cdecl _imp_LsaOpenPolicy" __imp_LsaOpenPolicy
0x180021750: "__cdecl _@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUhsvooUoryUhvxfgroUlyquivUznwGEUkxsOlyq@secutil" __@@_PchSym_@00@KxulyqvxgPillgKxulmvxlivUhsvooUoryUhvxfgroUlyquivUznwGEUkxsOlyq@secutil
0x180016C58: "[Shell Unattend] Failed to read " ??_C@_0DM@DHGFJAEA@?$FLShell?5Unattend?$FN?5Failed?5to?5read?5@
0x18001E640: ext-ms-win-ntuser-message-l1-1-0_NULL_THUNK_DATA_DLN
0x180019A40: "SkipMachineOOBE" ??_C@_1CA@CPHIEBNL@?$AAS?$AAk?$AAi?$AAp?$AAM?$AAa?$AAc?$AAh?$AAi?$AAn?$AAe?$AAO?$AAO?$AAB?$AAE?$AA?$AA@
0x180010B10: ProductKeyInstallSpecialize
0x1800230B0: ext-ms-win-ntuser-message-l1-1-0_NULL_THUNK_DATA_DLA
0x18001E9C8: ext-ms-win-ntuser-message-l1-1-0_NULL_THUNK_DATA_DLB
0x180014250: "__cdecl _imp_CoTaskMemAlloc" __imp_CoTaskMemAlloc
0x180019BB0: "OEMAppId" ??_C@_1BC@BLLOJMJL@?$AAO?$AAE?$AAM?$AAA?$AAp?$AAp?$AAI?$AAd?$AA?$AA@
0x18001EA00: ext-ms-win-rtcore-ntuser-sysparams-l1-1-0_NULL_THUNK_DATA_DLB
0x180015E20: "[Shell Unattend] ComputerName: f" ??_C@_0EJ@BNPMGACO@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x18001CEE0: "EtwEventUnregister" ??_C@_0BD@JDHMJNFM@EtwEventUnregister?$AA@
0x180017A78: "[Shell Unattend] Failed to read " ??_C@_0DJ@GJHIHAKL@?$FLShell?5Unattend?$FN?5Failed?5to?5read?5@
0x180017CC8: "[%hs(%hs)]
" ??_C@_1BI@PKOCHLJN@?$AA?$FL?$AA?$CF?$AAh?$AAs?$AA?$CI?$AA?$CF?$AAh?$AAs?$AA?$CJ?$AA?$FN?$AA?6?$AA?$AA@
0x180016200: "_s_FindUserProfileToCopy" ??_C@_1DC@MEBKLCBC@?$AA_?$AAs?$AA_?$AAF?$AAi?$AAn?$AAd?$AAU?$AAs?$AAe?$AAr?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AAT?$AAo?$AAC?$AAo?$AAp?$AAy?$AA?$AA@
0x1800147C8: "__cdecl _imp__XcptFilter" __imp__XcptFilter
0x18001B500: "[Shell Unattend] TimeZone: Time " ??_C@_0EC@MLANLGOK@?$FLShell?5Unattend?$FN?5TimeZone?3?5Time?5@
0x18001E618: WDSCORE_NULL_THUNK_DATA_DLN
0x1800160B8: "_s_FindLatestProfile" ??_C@_1CK@PNALBGEB@?$AA_?$AAs?$AA_?$AAF?$AAi?$AAn?$AAd?$AAL?$AAa?$AAt?$AAe?$AAs?$AAt?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x180015920: "[Shell Unattend] ComputerName: g" ??_C@_0EH@CDIJIHPJ@?$FLShell?5Unattend?$FN?5ComputerName?3?5g@
0x18001E6A8: ext-ms-win-shell-shell32-l1-2-2_NULL_THUNK_DATA_DLN
0x18001B548: "[Shell Unattend] TimeZone: Unkno" ??_C@_0DE@EMOJBGJF@?$FLShell?5Unattend?$FN?5TimeZone?3?5Unkno@
0x1800148A8: ntdll_NULL_THUNK_DATA
0x180014808: "__cdecl _imp_memcpy" __imp_memcpy
0x180014620: "__cdecl _imp_GetSecurityDescriptorDacl" __imp_GetSecurityDescriptorDacl
0x180017BA8: "Exception" ??_C@_09FBNMMHMJ@Exception?$AA@
0x18001B7C0: "[Shell Unattend] TimeZone: Enabl" ??_C@_0DL@CDFBNFC@?$FLShell?5Unattend?$FN?5TimeZone?3?5Enabl@
0x18001356C: "__cdecl _imp_load_SHCreateItemInKnownFolder" __imp_load_SHCreateItemInKnownFolder
0x180014AB0: "__cdecl _sz_ext_ms_win_ntuser_message_l1_1_0_dll" __sz_ext_ms_win_ntuser_message_l1_1_0_dll
0x1800230B8: "__cdecl _imp_FindWindowW" __imp_FindWindowW
0x180014E80: "[Shell Unattend] AutoLogon: NetU" ??_C@_0EJ@HNOGDIID@?$FLShell?5Unattend?$FN?5AutoLogon?3?5NetU@
0x180018278: "_ProcessFolderLocation" ??_C@_1CO@BOGGFMKI@?$AA_?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAF?$AAo?$AAl?$AAd?$AAe?$AAr?$AAL?$AAo?$AAc?$AAa?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x180017C78: " " ??_C@_19NMAFMAH@?$AA?5?$AA?5?$AA?5?$AA?5?$AA?$AA@
0x180017C08: "%hs!%p: " ??_C@_1BC@HOGHCIFF@?$AA?$CF?$AAh?$AAs?$AA?$CB?$AA?$CF?$AAp?$AA?3?$AA?5?$AA?$AA@
0x180011840: "public: static long __cdecl CImmutableStringsExT<unsigned short,class CImmutableStringsPolicyDefault>::FormatV(unsigned short * __ptr64 * __ptr64,unsigned short const * __ptr64,char * __ptr64)" ?FormatV@?$CImmutableStringsExT@GVCImmutableStringsPolicyDefault@@@@SAJPEAPEAGPEBGPEAD@Z
0x18001EE80: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-shcore-unicodeansi-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-shcore-unicodeansi-l1-1-0
0x180014618: "__cdecl _imp_GetSidSubAuthorityCount" __imp_GetSidSubAuthorityCount
0x18001ECDC: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-1-0
0x180015198: "DefaultDomainName" ??_C@_1CE@KHNBBMJ@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAD?$AAo?$AAm?$AAa?$AAi?$AAn?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x1800147F0: "__cdecl _imp___CxxFrameHandler3" __imp___CxxFrameHandler3
0x180017458: "SERVICE_PAUSED" ??_C@_1BO@IOCICPEA@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAP?$AAA?$AAU?$AAS?$AAE?$AAD?$AA?$AA@
0x180021018: "__cdecl _security_cookie" __security_cookie
0x18001E510: "__cdecl _DELAY_IMPORT_DESCRIPTOR_api_ms_win_shlwapi_ie_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_api_ms_win_shlwapi_ie_l1_1_0_dll
0x180015810: "[Shell Unattend] AutoLogon faile" ??_C@_0EL@EOPKFKHD@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x18001A860: "AppData\Local\Temp" ??_C@_1CG@CFFKEOKH@?$AAA?$AAp?$AAp?$AAD?$AAa?$AAt?$AAa?$AA?2?$AAL?$AAo?$AAc?$AAa?$AAl?$AA?2?$AAT?$AAe?$AAm?$AAp?$AA?$AA@
0x18001E960: USERENV_NULL_THUNK_DATA_DLB
0x180016028: "S-1-5-18" ??_C@_1BC@FOGOLNOF@?$AAS?$AA?9?$AA1?$AA?9?$AA5?$AA?9?$AA1?$AA8?$AA?$AA@
0x1800138B0: "__cdecl alloca_probe" _alloca_probe
0x180006FF8: "void __cdecl wil::details::LogFailure(void * __ptr64,unsigned int,char const * __ptr64,char const * __ptr64,char const * __ptr64,void * __ptr64,enum wil::FailureType,long,unsigned short const * __ptr64,bool,unsigned short * __ptr64,unsigned __int64,char * __ptr64,unsigned __int64,struct wil::FailureInfo * __ptr64)" ?LogFailure@details@wil@@YAXPEAXIPEBD110W4FailureType@2@JPEBG_NPEAG_KPEAD6PEAUFailureInfo@2@@Z
0x18001B640: "[Shell Unattend] TimeZone: GetDy" ??_C@_0EK@FLCEBEMH@?$FLShell?5Unattend?$FN?5TimeZone?3?5GetDy@
0x180017CE0: "[%hs]
" ??_C@_1O@PJKHPDBK@?$AA?$FL?$AA?$CF?$AAh?$AAs?$AA?$FN?$AA?6?$AA?$AA@
0x18001A000: "System\CurrentControlSet\Control" ??_C@_1HO@DPBPBBJG@?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe?$AAn?$AAt?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl?$AAS?$AAe?$AAt?$AA?2?$AAC?$AAo?$AAn?$AAt?$AAr?$AAo?$AAl@
0x180015020: "DefaultSID" ??_C@_1BG@OAJHAPLB@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAS?$AAI?$AAD?$AA?$AA@
0x18001BFB0: "[Shell Unattend] UserAccounts: F" ??_C@_0EO@NELPOEAC@?$FLShell?5Unattend?$FN?5UserAccounts?3?5F@
0x180014F60: "Guest" ??_C@_1M@CBFBMPEI@?$AAG?$AAu?$AAe?$AAs?$AAt?$AA?$AA@
0x1800184F8: "__cdecl GUID_947aab5f_0a5c_4c13_b4d6_4bf7836fc9f8" _GUID_947aab5f_0a5c_4c13_b4d6_4bf7836fc9f8
0x180014C28: BHID_EnumItems
0x1800080A0: "public: virtual void * __ptr64 __cdecl Microsoft::WRL::RuntimeClass<struct Microsoft::WRL::RuntimeClassFlags<2>,struct IFileSystemBindData,struct IFileSystemBindData2>::`vector deleting destructor'(unsigned int) __ptr64" ??_E?$RuntimeClass@U?$RuntimeClassFlags@$01@WRL@Microsoft@@UIFileSystemBindData@@UIFileSystemBindData2@@@WRL@Microsoft@@UEAAPEAXI@Z
0x180014318: "__cdecl _imp_CloseHandle" __imp_CloseHandle
0x18001B150: "[shsetup] VMMode: sysprep mode i" ??_C@_0DK@HGDJFNIC@?$FLshsetup?$FN?5VMMode?3?5sysprep?5mode?5i@
0x180017428: "SERVICE_PAUSE_PENDING" ??_C@_1CM@HLGKLFEK@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAP?$AAA?$AAU?$AAS?$AAE?$AA_?$AAP?$AAE?$AAN?$AAD?$AAI?$AAN?$AAG?$AA?$AA@
0x1800164F0: "DeleteDefaultUserHiveRegValueAnd" ??_C@_1FG@KGNGEMOF@?$AAD?$AAe?$AAl?$AAe?$AAt?$AAe?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AAH?$AAi?$AAv?$AAe?$AAR?$AAe?$AAg?$AAV?$AAa?$AAl?$AAu?$AAe?$AAA?$AAn?$AAd@
0x18001BF20: "[Shell Unattend] UserAccounts: f" ??_C@_0EJ@DIFOLFCB@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180014350: "__cdecl _imp_LocalFree" __imp_LocalFree
0x18001AAB0: "Window Switcher.lnk" ??_C@_1CI@GGMPEGEH@?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AA?5?$AAS?$AAw?$AAi?$AAt?$AAc?$AAh?$AAe?$AAr?$AA?4?$AAl?$AAn?$AAk?$AA?$AA@
0x180014658: "__cdecl _imp_GetLengthSid" __imp_GetLengthSid
0x180019710: "Software\Microsoft\Windows\Curre" ??_C@_1GE@HLGCOFKK@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001EB74: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-errorhandling-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-errorhandling-l1-1-0
0x18001B220: "%windir%\system32\sysprep\Panthe" ??_C@_1EE@NKDKHBPK@?$AA?$CF?$AAw?$AAi?$AAn?$AAd?$AAi?$AAr?$AA?$CF?$AA?2?$AAs?$AAy?$AAs?$AAt?$AAe?$AAm?$AA3?$AA2?$AA?2?$AAs?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAP?$AAa?$AAn?$AAt?$AAh?$AAe@
0x180014260: api-ms-win-core-com-l1-1-0_NULL_THUNK_DATA
0x180015C90: "[Shell Unattend] ComputerName in" ??_C@_0FI@CPFDCEBI@?$FLShell?5Unattend?$FN?5ComputerName?5in@
0x18001B580: "[Shell Unattend] TimeZone: Unabl" ??_C@_0EI@MCLOFLCJ@?$FLShell?5Unattend?$FN?5TimeZone?3?5Unabl@
0x180018840: "[Shell Unattend] ClientApplicati" ??_C@_0EL@OGMIKOAJ@?$FLShell?5Unattend?$FN?5ClientApplicati@
0x1800143C8: "__cdecl _imp_PathCchAppend" __imp_PathCchAppend
0x180019AA0: "NetworkLocation" ??_C@_1CA@NBDBHJFJ@?$AAN?$AAe?$AAt?$AAw?$AAo?$AAr?$AAk?$AAL?$AAo?$AAc?$AAa?$AAt?$AAi?$AAo?$AAn?$AA?$AA@
0x18001BD80: "[Shell Unattend] UserAccounts: f" ??_C@_0EO@GEHLDIOC@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180017640: "[Shell Unattend] Service %ls is " ??_C@_0GE@JHGGOIAL@?$FLShell?5Unattend?$FN?5Service?5?$CFls?5is?5@
0x180016B18: "[Shell Unattend] _s_FindUserProf" ??_C@_0DL@GIJODKGE@?$FLShell?5Unattend?$FN?5_s_FindUserProf@
0x18001BB40: "AccountOperators" ??_C@_1CC@PGEDFHED@?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAO?$AAp?$AAe?$AAr?$AAa?$AAt?$AAo?$AAr?$AAs?$AA?$AA@
0x1800142D0: "__cdecl _imp_GetFileAttributesW" __imp_GetFileAttributesW
0x180014630: "__cdecl _imp_CopySid" __imp_CopySid
0x180023108: "__cdecl _imp_ShellExecCmdLine" __imp_ShellExecCmdLine
0x180016410: "[Shell Unattend] GetDefaultUserP" ??_C@_0EB@LKPGIPKE@?$FLShell?5Unattend?$FN?5GetDefaultUserP@
0x180018BE0: "[Shell Unattend] WindowsFeatures" ??_C@_0FP@JOLEMPEK@?$FLShell?5Unattend?$FN?5WindowsFeatures@
0x1800130FD: "__cdecl _imp_load_NetLocalGroupAddMembers" __imp_load_NetLocalGroupAddMembers
0x180014480: "__cdecl _imp_RegCreateKeyExW" __imp_RegCreateKeyExW
0x18001E490: "__cdecl _DELAY_IMPORT_DESCRIPTOR_ext_ms_win_ole32_bindctx_l1_1_0_dll" __DELAY_IMPORT_DESCRIPTOR_ext_ms_win_ole32_bindctx_l1_1_0_dll
0x1800217F0: "__cdecl _onexitbegin" __onexitbegin
0x180010600: "long __cdecl SHOpenEffectiveToken(unsigned long,int,void * __ptr64 * __ptr64)" ?SHOpenEffectiveToken@@YAJKHPEAPEAX@Z
0x180018508: "__cdecl GUID_43826d1e_e718_42ee_bc55_a1e261c37bfe" _GUID_43826d1e_e718_42ee_bc55_a1e261c37bfe
0x1800216E8: "unsigned char (__cdecl* __ptr64 wil::details::g_pfnRtlDllShutdownInProgress)(void)" ?g_pfnRtlDllShutdownInProgress@details@wil@@3P6AEXZEA
0x18000BB94: "long __cdecl StringCchPrintfExW(unsigned short * __ptr64,unsigned __int64,unsigned short * __ptr64 * __ptr64,unsigned __int64 * __ptr64,unsigned long,unsigned short const * __ptr64,...)" ?StringCchPrintfExW@@YAJPEAG_KPEAPEAGPEA_KKPEBGZZ
0x18000BDB0: "unsigned long __cdecl CleanupRegSettings(struct HKEY__ * __ptr64,struct REGVALUES const * __ptr64,unsigned long)" ?CleanupRegSettings@@YAKPEAUHKEY__@@PEBUREGVALUES@@K@Z
0x180019020: "SetupDisplayedProductKey" ??_C@_1DC@BMPPGPDA@?$AAS?$AAe?$AAt?$AAu?$AAp?$AAD?$AAi?$AAs?$AAp?$AAl?$AAa?$AAy?$AAe?$AAd?$AAP?$AAr?$AAo?$AAd?$AAu?$AAc?$AAt?$AAK?$AAe?$AAy?$AA?$AA@
0x180006FD4: "void __cdecl wil::ThrowResultException(struct wil::FailureInfo const & __ptr64)" ?ThrowResultException@wil@@YAXAEBUFailureInfo@1@@Z
0x180013291: "__cdecl _imp_load_RegisterWindowMessageW" __imp_load_RegisterWindowMessageW
0x1800147D0: "__cdecl _imp__vsnwprintf" __imp__vsnwprintf
0x18000D27C: "void __cdecl SetVMModeFlagForOOBE(void)" ?SetVMModeFlagForOOBE@@YAXXZ
0x180016310: "[Shell Unattend] Couldn't get us" ??_C@_0EB@LNAFMCIP@?$FLShell?5Unattend?$FN?5Couldn?8t?5get?5us@
0x1800230D8: "__cdecl _imp_EnumDisplaySettingsW" __imp_EnumDisplaySettingsW
0x1800142B0: "__cdecl _imp_SetUnhandledExceptionFilter" __imp_SetUnhandledExceptionFilter
0x180014428: "__cdecl _imp_GetCurrentThread" __imp_GetCurrentThread
0x1800196C0: "[Shell Unattend] LogonCommands: " ??_C@_0EB@NDCJBOBM@?$FLShell?5Unattend?$FN?5LogonCommands?3?5@
0x1800153B0: "Software\Microsoft\Windows NT\Cu" ??_C@_1MM@EPHEJNI@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x18001EA48: api-ms-win-shlwapi-ie-l1-1-0_NULL_THUNK_DATA_DLB
0x180023098: api-ms-win-shlwapi-ie-l1-1-0_NULL_THUNK_DATA_DLA
0x1800140D0: "const wil::FileSystemBindData::`vftable'{for `IFileSystemBindData'}" ??_7FileSystemBindData@wil@@6BIFileSystemBindData@@@
0x180019D50: "Software\Microsoft\Windows\Curre" ??_C@_1GO@BKBKAKEI@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001A120: "Software\Microsoft\Windows\Curre" ??_C@_1IG@DHBMODDL@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001E628: api-ms-win-shlwapi-ie-l1-1-0_NULL_THUNK_DATA_DLN
0x180014478: "__cdecl _imp_RegOpenKeyExW" __imp_RegOpenKeyExW
0x1800157A0: "[Shell Unattend] AutoLogon faile" ??_C@_0GD@KPPPALKE@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x180014740: "__cdecl _imp_SHRegGetValueW" __imp_SHRegGetValueW
0x180021740: "struct HINSTANCE__ * __ptr64 __ptr64 g_wil_details_ntdllModuleHandle" ?g_wil_details_ntdllModuleHandle@@3PEAUHINSTANCE__@@EA
0x180007BC8: "struct wil::details_abi::ThreadLocalData * __ptr64 __cdecl wil::details_abi::GetThreadLocalDataCache(bool)" ?GetThreadLocalDataCache@details_abi@wil@@YAPEAUThreadLocalData@12@_N@Z
0x180012DE0: "__cdecl _security_init_cookie" __security_init_cookie
0x180009FB0: "[thunk]:public: virtual long __cdecl wil::FileSystemBindData::SetFindData`adjustor{8}' (struct _WIN32_FIND_DATAW const * __ptr64) __ptr64" ?SetFindData@FileSystemBindData@wil@@W7EAAJPEBU_WIN32_FIND_DATAW@@@Z
0x180019A80: "HideEULAPage" ??_C@_1BK@MAJNNDAK@?$AAH?$AAi?$AAd?$AAe?$AAE?$AAU?$AAL?$AAA?$AAP?$AAa?$AAg?$AAe?$AA?$AA@
0x1800216D8: "void (__cdecl* __ptr64 wil::details::g_pfnRaiseFailFastException)(struct _EXCEPTION_RECORD * __ptr64,struct _CONTEXT * __ptr64,unsigned long)" ?g_pfnRaiseFailFastException@details@wil@@3P6AXPEAU_EXCEPTION_RECORD@@PEAU_CONTEXT@@K@ZEA
0x180015200: "[Shell Unattend] AutoLogon unabl" ??_C@_0EM@DMNNACKI@?$FLShell?5Unattend?$FN?5AutoLogon?5unabl@
0x1800188D4: "IM" ??_C@_15PBEIFBI@?$AAI?$AAM?$AA?$AA@
0x18001B470: "onecore\shell\shprep\timezone.cp" ??_C@_1EE@IMMIHGJG@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAt?$AAi?$AAm?$AAe?$AAz?$AAo?$AAn?$AAe?$AA?4?$AAc?$AAp@
0x18001CF08: "EtwEventWrite" ??_C@_0O@MJPOMPOC@EtwEventWrite?$AA@
0x1800192D0: "onecore\shell\shprep\runonce.cpp" ??_C@_1EC@FNAKGFJD@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAr?$AAu?$AAn?$AAo?$AAn?$AAc?$AAe?$AA?4?$AAc?$AAp?$AAp@
0x1800116A0: "long __cdecl STRAPI_MultiCat(unsigned short * __ptr64 * __ptr64,unsigned long,...)" ?STRAPI_MultiCat@@YAJPEAPEAGKZZ
0x180019F18: "SysprepSetVMMode" ??_C@_1CC@HMBDBFEO@?$AAS?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AAS?$AAe?$AAt?$AAV?$AAM?$AAM?$AAo?$AAd?$AAe?$AA?$AA@
0x180014520: "__cdecl _imp_StrCmpNIW" __imp_StrCmpNIW
0x1800230F8: "__cdecl _imp_SHCreateItemInKnownFolder" __imp_SHCreateItemInKnownFolder
0x18001B6D8: "DisableAutoDaylightTimeSet" ??_C@_1DG@ONFKKJA@?$AAD?$AAi?$AAs?$AAa?$AAb?$AAl?$AAe?$AAA?$AAu?$AAt?$AAo?$AAD?$AAa?$AAy?$AAl?$AAi?$AAg?$AAh?$AAt?$AAT?$AAi?$AAm?$AAe?$AAS?$AAe?$AAt?$AA?$AA@
0x180009FE0: "[thunk]:public: virtual long __cdecl Microsoft::WRL::Details::RuntimeClassImpl<struct Microsoft::WRL::RuntimeClassFlags<2>,1,0,0,struct IFileSystemBindData,struct IFileSystemBindData2>::QueryInterface`adjustor{8}' (struct _GUID const & __ptr64,void * __ptr64 * __ptr64) __ptr64" ?QueryInterface@?$RuntimeClassImpl@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00$0A@$0A@UIFileSystemBindData@@UIFileSystemBindData2@@@Details@WRL@Microsoft@@W7EAAJAEBU_GUID@@PEAPEAX@Z
0x180023070: "__cdecl _imp_WdsSetupLogMessageW" __imp_WdsSetupLogMessageW
0x180014D80: "[Shell Unattend] AutoLogon LsaOp" ??_C@_0DK@PIFDGAHA@?$FLShell?5Unattend?$FN?5AutoLogon?5LsaOp@
0x180014488: "__cdecl _imp_RegGetValueW" __imp_RegGetValueW
0x180019DE8: "MediaBootInstall" ??_C@_1CC@KHCOLLJF@?$AAM?$AAe?$AAd?$AAi?$AAa?$AAB?$AAo?$AAo?$AAt?$AAI?$AAn?$AAs?$AAt?$AAa?$AAl?$AAl?$AA?$AA@
0x180016C28: "[Shell Unattend] CopyProfile fai" ??_C@_0CO@DJMNIABP@?$FLShell?5Unattend?$FN?5CopyProfile?5fai@
0x18001C7A0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NC@NBLGCFEM@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x180018038: "_MoveFolder" ??_C@_1BI@OMEHECIG@?$AA_?$AAM?$AAo?$AAv?$AAe?$AAF?$AAo?$AAl?$AAd?$AAe?$AAr?$AA?$AA@
0x18000D690: Sysprep_Cleanup_Shell
0x18001EB60: "__cdecl _IMPORT_DESCRIPTOR_msvcrt" __IMPORT_DESCRIPTOR_msvcrt
0x180017750: "[Shell Unattend] StartService re" ??_C@_0EL@DJMAFLPA@?$FLShell?5Unattend?$FN?5StartService?5re@
0x18001B978: "specialize" ??_C@_1BG@GKLAPFBG@?$AAs?$AAp?$AAe?$AAc?$AAi?$AAa?$AAl?$AAi?$AAz?$AAe?$AA?$AA@
0x18001B608: "TimeZone" ??_C@_1BC@PBHFGBHC@?$AAT?$AAi?$AAm?$AAe?$AAZ?$AAo?$AAn?$AAe?$AA?$AA@
0x18001A288: "ShowCount" ??_C@_1BE@BHCMELAH@?$AAS?$AAh?$AAo?$AAw?$AAC?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x1800146E0: api-ms-win-security-sddl-l1-1-0_NULL_THUNK_DATA
0x1800147C0: "__cdecl _imp_memmove" __imp_memmove
0x1800142E0: "__cdecl _imp_CompareFileTime" __imp_CompareFileTime
0x180017250: "[Shell Unattend] Display: failed" ??_C@_0ED@CMBIEGID@?$FLShell?5Unattend?$FN?5Display?3?5failed@
0x180014B70: "__cdecl _sz_ext_ms_win_shell_shell32_l1_2_0_dll" __sz_ext_ms_win_shell_shell32_l1_2_0_dll
0x180019A10: "[shsetup] SHDeleteKey on '%ls' r" ??_C@_0CL@FDDKBODJ@?$FLshsetup?$FN?5SHDeleteKey?5on?5?8?$CFls?8?5r@
0x18001B320: "[shsetup] Sysprep_Generalize_She" ??_C@_0CL@OBAILCNC@?$FLshsetup?$FN?5Sysprep_Generalize_She@
0x1800186C0: "OEMDefault" ??_C@_1BG@GCPGCAJL@?$AAO?$AAE?$AAM?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AA?$AA@
0x1800179C8: "Value" ??_C@_1M@LJBKIHIF@?$AAV?$AAa?$AAl?$AAu?$AAe?$AA?$AA@
0x180009A24: ?MakeAndInitialize@?$ProcessLocalStorageData@UProcessLocalData@details_abi@wil@@@details_abi@wil@@CAJPEBG$$QEAV?$unique_any_t@V?$mutex_t@V?$unique_storage@U?$resource_policy@PEAXP6AXPEAX@Z$1?CloseHandle@details@wil@@YAX0@ZU?$integral_constant@_K$0A@@wistd@@PEAX$0A@$$T@details@wil@@@details@wil@@Uerr_returncode_policy@3@@wil@@@3@PEAPEAV123@@Z
0x180021748: "public: static class Microsoft::WRL::Details::ModuleBase * __ptr64 __ptr64 Microsoft::WRL::Details::ModuleBase::module_" ?module_@ModuleBase@Details@WRL@Microsoft@@2PEAV1234@EA
0x180015518: "AutoAdminLogon" ??_C@_1BO@IKBCMOPJ@?$AAA?$AAu?$AAt?$AAo?$AAA?$AAd?$AAm?$AAi?$AAn?$AAL?$AAo?$AAg?$AAo?$AAn?$AA?$AA@
0x1800217B0: "private: static class CEtwProviderT<void> CChkMacroETWLoggerT<class CEmptyType>::g_chkMacroETWProvider" ?g_chkMacroETWProvider@?$CChkMacroETWLoggerT@VCEmptyType@@@@0V?$CEtwProviderT@X@@A
0x180007608: "void __cdecl wil::details::in1diag3::Return_Hr(void * __ptr64,unsigned int,char const * __ptr64,long)" ?Return_Hr@in1diag3@details@wil@@YAXPEAXIPEBDJ@Z
0x1800095B8: "public: static long __cdecl wil::details_abi::ProcessLocalStorageData<struct wil::details_abi::ProcessLocalData>::Acquire(char const * __ptr64,class wil::details_abi::ProcessLocalStorageData<struct wil::details_abi::ProcessLocalData> * __ptr64 * __ptr64)" ?Acquire@?$ProcessLocalStorageData@UProcessLocalData@details_abi@wil@@@details_abi@wil@@SAJPEBDPEAPEAV123@@Z
0x18001CA40: "[Shell Unattend] UserAccounts: f" ??_C@_0EC@KOBPHCKL@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x18001BED0: "[Shell Unattend] UserAccounts: f" ??_C@_0EM@EGBGNFBG@?$FLShell?5Unattend?$FN?5UserAccounts?3?5f@
0x180023080: "__cdecl _imp_WdsSetupLogInit" __imp_WdsSetupLogInit
0x1800147E8: "__cdecl _imp_malloc" __imp_malloc
0x180014838: "__cdecl _imp__purecall" __imp__purecall
0x180019C80: "Software\Microsoft\Windows\Curre" ??_C@_1JE@EHNGKHDJ@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001E430: "__cdecl _DELAY_IMPORT_DESCRIPTOR_SAMLIB_dll" __DELAY_IMPORT_DESCRIPTOR_SAMLIB_dll
0x18001E530: "__cdecl _DELAY_IMPORT_DESCRIPTOR_WDSCORE_dll" __DELAY_IMPORT_DESCRIPTOR_WDSCORE_dll
0x1800143A0: "__cdecl _imp_GetLocaleInfoW" __imp_GetLocaleInfoW
0x18000A070: "long __cdecl StringCchVPrintfW(unsigned short * __ptr64,unsigned __int64,unsigned short const * __ptr64,char * __ptr64)" ?StringCchVPrintfW@@YAJPEAG_KPEBGPEAD@Z
0x180017478: "SERVICE_RUNNING" ??_C@_1CA@PMDLHPGH@?$AAS?$AAE?$AAR?$AAV?$AAI?$AAC?$AAE?$AA_?$AAR?$AAU?$AAN?$AAN?$AAI?$AAN?$AAG?$AA?$AA@
0x180016358: "_CopyToDefaultProfile" ??_C@_1CM@JMOKMCKM@?$AA_?$AAC?$AAo?$AAp?$AAy?$AAT?$AAo?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAP?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe?$AA?$AA@
0x180015608: "[Shell Unattend] AutoLogon enabl" ??_C@_0CD@JFEILILJ@?$FLShell?5Unattend?$FN?5AutoLogon?5enabl@
0x180017600: "[Shell Unattend] Service %ls suc" ??_C@_0DP@FDABAPGJ@?$FLShell?5Unattend?$FN?5Service?5?$CFls?5suc@
0x180018EA0: "Software\Microsoft\Windows NT\Cu" ??_C@_1NI@JNCBLFG@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?5?$AAN?$AAT?$AA?2?$AAC?$AAu@
0x18001E690: ext-ms-win-shell-shell32-l1-2-0_NULL_THUNK_DATA_DLN
0x180017CA0: "CallContext:[%hs] " ??_C@_1CG@CGJKEFKG@?$AAC?$AAa?$AAl?$AAl?$AAC?$AAo?$AAn?$AAt?$AAe?$AAx?$AAt?$AA?3?$AA?$FL?$AA?$CF?$AAh?$AAs?$AA?$FN?$AA?5?$AA?$AA@
0x1800066E8: "long __cdecl SHRegGetBOOL(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,int * __ptr64)" ?SHRegGetBOOL@@YAJPEAUHKEY__@@PEBG1PEAH@Z
0x1800216F0: "void (__cdecl* __ptr64 wil::details::g_pfnDebugBreak)(void)" ?g_pfnDebugBreak@details@wil@@3P6AXXZEA
0x180018420: "ProcessFolderLocations" ??_C@_1CO@LOLKFOK@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAF?$AAo?$AAl?$AAd?$AAe?$AAr?$AAL?$AAo?$AAc?$AAa?$AAt?$AAi?$AAo?$AAn?$AAs?$AA?$AA@
0x180023048: "__cdecl _imp_GetDefaultUserProfileDirectoryW" __imp_GetDefaultUserProfileDirectoryW
0x180018090: "[Shell Unattend] FolderLocations" ??_C@_0EK@ELBKICMJ@?$FLShell?5Unattend?$FN?5FolderLocations@
0x180014678: "__cdecl _imp_LookupPrivilegeValueW" __imp_LookupPrivilegeValueW
0x180015630: "[Shell Unattend] AutoLogon faile" ??_C@_0EP@PGEOIEGG@?$FLShell?5Unattend?$FN?5AutoLogon?5faile@
0x18001B110: "[shsetup] VMMode: failed to set " ??_C@_0DP@BDDGJAHI@?$FLshsetup?$FN?5VMMode?3?5failed?5to?5set?5@
0x180015AD8: "-" ??_C@_13IMODFHAA@?$AA?9?$AA?$AA@
0x18001BF70: "Group" ??_C@_1M@LHGLMLD@?$AAG?$AAr?$AAo?$AAu?$AAp?$AA?$AA@
0x18000C700: "void __cdecl CleanupUserProfiles(void)" ?CleanupUserProfiles@@YAXXZ
0x180012960: "__cdecl _report_gsfailure" __report_gsfailure
0x180014518: "__cdecl _imp_StrToIntW" __imp_StrToIntW
0x180014608: api-ms-win-core-timezone-l1-1-0_NULL_THUNK_DATA
0x180019780: "Software\Microsoft\Windows\Curre" ??_C@_1FM@OEMODDEO@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x18001BA88: "[Shell Unattend] Running '%ls' p" ??_C@_0CE@LPOAIHNL@?$FLShell?5Unattend?$FN?5Running?5?8?$CFls?8?5p@
0x1800148A0: "__cdecl _imp_NtOpenFile" __imp_NtOpenFile
0x180019EC8: "UnattendCreatedUser" ??_C@_1CI@FEFILONE@?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AAC?$AAr?$AAe?$AAa?$AAt?$AAe?$AAd?$AAU?$AAs?$AAe?$AAr?$AA?$AA@
0x180012BD8: "__cdecl onexit" _onexit
0x18001CBB0: "[Shell Unattend] VmMode failed t" ??_C@_0DJ@IIPIOOBO@?$FLShell?5Unattend?$FN?5VmMode?5failed?5t@
0x180014728: api-ms-win-service-winsvc-l1-1-0_NULL_THUNK_DATA
0x18001A888: "%USERPROFILE%" ??_C@_1BM@LFINAEKG@?$AA?$CF?$AAU?$AAS?$AAE?$AAR?$AAP?$AAR?$AAO?$AAF?$AAI?$AAL?$AAE?$AA?$CF?$AA?$AA@
0x18001C1F0: "_ProcessLocalAccounts" ??_C@_1CM@JPOABHCP@?$AA_?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAL?$AAo?$AAc?$AAa?$AAl?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AAs?$AA?$AA@
0x180021710: "void (__cdecl* __ptr64 wil::details::g_pfnTelemetryCallback)(bool,struct wil::FailureInfo const & __ptr64)" ?g_pfnTelemetryCallback@details@wil@@3P6AX_NAEBUFailureInfo@2@@ZEA
0x180014088: "const wil::FileSystemBindData::`vftable'{for `Microsoft::WRL::Details::ImplementsHelper<struct Microsoft::WRL::RuntimeClassFlags<2>,1,struct IFileSystemBindData2>'}" ??_7FileSystemBindData@wil@@6B?$ImplementsHelper@U?$RuntimeClassFlags@$01@WRL@Microsoft@@$00UIFileSystemBindData2@@@Details@WRL@Microsoft@@@
0x1800217E0: "__cdecl _native_startup_state" __native_startup_state
0x18001B268: "Sysprep_Cleanup_Shell" ??_C@_1CM@NDBHHHEA@?$AAS?$AAy?$AAs?$AAp?$AAr?$AAe?$AAp?$AA_?$AAC?$AAl?$AAe?$AAa?$AAn?$AAu?$AAp?$AA_?$AAS?$AAh?$AAe?$AAl?$AAl?$AA?$AA@
0x180017B70: "ntdll.dll" ??_C@_1BE@GJOFHIHD@?$AAn?$AAt?$AAd?$AAl?$AAl?$AA?4?$AAd?$AAl?$AAl?$AA?$AA@
0x1800215C0: "__cdecl _hmod__samcli_dll" __hmod__samcli_dll
0x18001A4F8: "FavoritesVersion" ??_C@_1CC@FLBDALLA@?$AAF?$AAa?$AAv?$AAo?$AAr?$AAi?$AAt?$AAe?$AAs?$AAV?$AAe?$AAr?$AAs?$AAi?$AAo?$AAn?$AA?$AA@
0x1800134E1: "__cdecl _imp_load_ShellExecCmdLine" __imp_load_ShellExecCmdLine
0x1800160F0: "onecore\shell\shprep\copyprofile" ??_C@_1EK@FJGODDEE@?$AAo?$AAn?$AAe?$AAc?$AAo?$AAr?$AAe?$AA?2?$AAs?$AAh?$AAe?$AAl?$AAl?$AA?2?$AAs?$AAh?$AAp?$AAr?$AAe?$AAp?$AA?2?$AAc?$AAo?$AAp?$AAy?$AAp?$AAr?$AAo?$AAf?$AAi?$AAl?$AAe@
0x180016F50: "_SetDPI" ??_C@_1BA@GILBIBP@?$AA_?$AAS?$AAe?$AAt?$AAD?$AAP?$AAI?$AA?$AA@
0x18001305A: "__cdecl _tailMerge_userenv_dll" __tailMerge_userenv_dll
0x18001CD28: "03612" ??_C@_1M@MFGBIIHH@?$AA0?$AA3?$AA6?$AA1?$AA2?$AA?$AA@
0x1800216A4: "long volatile `int __cdecl wil::details::RecordFailFast(long)'::`2'::s_hrErrorLast" ?s_hrErrorLast@?1??RecordFailFast@details@wil@@YAHJ@Z@4JC
0x18001C270: "[Shell Unattend] UserAccounts: R" ??_C@_0DN@JJDGKFEK@?$FLShell?5Unattend?$FN?5UserAccounts?3?5R@
0x180007EE0: "public: virtual long __cdecl wil::FileSystemBindData::SetFindData(struct _WIN32_FIND_DATAW const * __ptr64) __ptr64" ?SetFindData@FileSystemBindData@wil@@UEAAJPEBU_WIN32_FIND_DATAW@@@Z
0x180015AE0: "WIN-" ??_C@_19BGGFMPIB@?$AAW?$AAI?$AAN?$AA?9?$AA?$AA@
0x18001A440: "Software\Microsoft\Windows\Curre" ??_C@_1HI@DLEAAKMI@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x180015128: "Domain" ??_C@_1O@OAMNPMOM@?$AAD?$AAo?$AAm?$AAa?$AAi?$AAn?$AA?$AA@
0x1800155E0: "ProcessAutoLogon" ??_C@_1CC@KALMMLOI@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAA?$AAu?$AAt?$AAo?$AAL?$AAo?$AAg?$AAo?$AAn?$AA?$AA@
0x180017180: "ColorDepth" ??_C@_1BG@HGDJCOLL@?$AAC?$AAo?$AAl?$AAo?$AAr?$AAD?$AAe?$AAp?$AAt?$AAh?$AA?$AA@
0x18001BAB0: "[Shell Unattend] Exiting '%ls' p" ??_C@_0DH@GPDMCOMF@?$FLShell?5Unattend?$FN?5Exiting?5?8?$CFls?8?5p@
0x180014248: "__cdecl _imp_CoGetMalloc" __imp_CoGetMalloc
0x180014AA0: "__cdecl _sz_SAMLIB_dll" __sz_SAMLIB_dll
0x180006CE0: "int __cdecl wil::details::RecordFailFast(long)" ?RecordFailFast@details@wil@@YAHJ@Z
0x1800146F0: "__cdecl _imp_OpenSCManagerW" __imp_OpenSCManagerW
0x18001B910: "[Shell Unattend] TimeZone: faile" ??_C@_0GC@PONDPHJH@?$FLShell?5Unattend?$FN?5TimeZone?3?5faile@
0x1800080A0: "public: virtual void * __ptr64 __cdecl Microsoft::WRL::RuntimeClass<struct Microsoft::WRL::RuntimeClassFlags<2>,struct IFileSystemBindData,struct IFileSystemBindData2>::`scalar deleting destructor'(unsigned int) __ptr64" ??_G?$RuntimeClass@U?$RuntimeClassFlags@$01@WRL@Microsoft@@UIFileSystemBindData@@UIFileSystemBindData2@@@WRL@Microsoft@@UEAAPEAXI@Z
0x1800182F0: "[Shell Unattend] FolderLocations" ??_C@_0FF@OGCLOPAF@?$FLShell?5Unattend?$FN?5FolderLocations@
0x18000ACE0: ProcessProductKey
0x1800143E0: api-ms-win-core-path-l1-1-0_NULL_THUNK_DATA
0x180016388: "[Shell Unattend] CopyProfileDire" ??_C@_0DJ@GBEMOCFI@?$FLShell?5Unattend?$FN?5CopyProfileDire@
0x180017C40: "%hs(%d) tid(%x) %08X %ws" ??_C@_1DC@MFHOKFOG@?$AA?$CF?$AAh?$AAs?$AA?$CI?$AA?$CF?$AAd?$AA?$CJ?$AA?5?$AAt?$AAi?$AAd?$AA?$CI?$AA?$CF?$AAx?$AA?$CJ?$AA?5?$AA?$CF?$AA0?$AA8?$AAX?$AA?5?$AA?$CF?$AAw?$AAs?$AA?$AA@
0x18001E5C0: SAMLIB_NULL_THUNK_DATA_DLN
0x18001E990: SAMLIB_NULL_THUNK_DATA_DLB
0x180023030: SAMLIB_NULL_THUNK_DATA_DLA
0x180016588: "MultiUILanguageId" ??_C@_1CE@KEDOABOB@?$AAM?$AAu?$AAl?$AAt?$AAi?$AAU?$AAI?$AAL?$AAa?$AAn?$AAg?$AAu?$AAa?$AAg?$AAe?$AAI?$AAd?$AA?$AA@
0x18001CBF0: "SkipNotifyUILanguageChange" ??_C@_1DG@LPCOFAIL@?$AAS?$AAk?$AAi?$AAp?$AAN?$AAo?$AAt?$AAi?$AAf?$AAy?$AAU?$AAI?$AAL?$AAa?$AAn?$AAg?$AAu?$AAa?$AAg?$AAe?$AAC?$AAh?$AAa?$AAn?$AAg?$AAe?$AA?$AA@
0x18001AEC0: "[shsetup] CleanupAdministratorPa" ??_C@_0EL@JIPOKMCP@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x1800230F0: "__cdecl _imp_SHCreateItemFromParsingName" __imp_SHCreateItemFromParsingName
0x18001A998: "[shsetup] Cleaning up user hive " ??_C@_0CK@LGBKHHOK@?$FLshsetup?$FN?5Cleaning?5up?5user?5hive?5@
0x18001359C: "__cdecl _tailMerge_api_ms_win_shlwapi_ie_l1_1_0_dll" __tailMerge_api_ms_win_shlwapi_ie_l1_1_0_dll
0x18001A418: "StartMenuInit" ??_C@_1BM@EADHNEDE@?$AAS?$AAt?$AAa?$AAr?$AAt?$AAM?$AAe?$AAn?$AAu?$AAI?$AAn?$AAi?$AAt?$AA?$AA@
0x180014418: "__cdecl _imp_OpenThreadToken" __imp_OpenThreadToken
0x1800069C8: "unsigned short * __ptr64 __cdecl wil::details::LogStringPrintf(unsigned short * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,...)" ?LogStringPrintf@details@wil@@YAPEAGPEAGPEBG1ZZ
0x1800215E0: "__cdecl _hmod__ext_ms_win_ntuser_message_l1_1_0_dll" __hmod__ext_ms_win_ntuser_message_l1_1_0_dll
0x1800230E8: ext-ms-win-rtcore-ntuser-sysparams-l1-1-0_NULL_THUNK_DATA_DLA
0x18001BC98: "DCOMUsers" ??_C@_1BE@JDCOIKLF@?$AAD?$AAC?$AAO?$AAM?$AAU?$AAs?$AAe?$AAr?$AAs?$AA?$AA@
0x180016548: "[Shell Unattend] Delete of %s re" ??_C@_0DO@HIBBEBPH@?$FLShell?5Unattend?$FN?5Delete?5of?5?$CFs?5re@
0x180014788: "__cdecl _imp_SHCreateDirectoryExW" __imp_SHCreateDirectoryExW
0x1800216F8: "char const * __ptr64 (__cdecl* __ptr64 wil::details::g_pfnGetModuleName)(void)" ?g_pfnGetModuleName@details@wil@@3P6APEBDXZEA
0x18001B9A8: "auditSystem" ??_C@_1BI@JGFACJDA@?$AAa?$AAu?$AAd?$AAi?$AAt?$AAS?$AAy?$AAs?$AAt?$AAe?$AAm?$AA?$AA@
0x18001A690: "Software\Microsoft\Windows\Curre" ??_C@_1IM@IFBIHEFD@?$AAS?$AAo?$AAf?$AAt?$AAw?$AAa?$AAr?$AAe?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw?$AAs?$AA?2?$AAC?$AAu?$AAr?$AAr?$AAe@
0x1800165D8: "FirstLogon" ??_C@_1BG@BMPANPFO@?$AAF?$AAi?$AAr?$AAs?$AAt?$AAL?$AAo?$AAg?$AAo?$AAn?$AA?$AA@
0x18001ED68: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-profile-l1-1-0" __IMPORT_DESCRIPTOR_api-ms-win-core-profile-l1-1-0
0x180017F80: "CopyEngineNoNotifyMSSearch" ??_C@_1DG@NDJMIDPH@?$AAC?$AAo?$AAp?$AAy?$AAE?$AAn?$AAg?$AAi?$AAn?$AAe?$AAN?$AAo?$AAN?$AAo?$AAt?$AAi?$AAf?$AAy?$AAM?$AAS?$AAS?$AAe?$AAa?$AAr?$AAc?$AAh?$AA?$AA@
0x1800168F0: "DefaultUser\SOFTWARE\Microsoft\S" ??_C@_1IM@KHGKJJKO@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAU?$AAs?$AAe?$AAr?$AA?2?$AAS?$AAO?$AAF?$AAT?$AAW?$AAA?$AAR?$AAE?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAS@
0x18001B690: "[Shell Unattend] TimeZone: Faile" ??_C@_0EH@FOEPJHMO@?$FLShell?5Unattend?$FN?5TimeZone?3?5Faile@
0x18001AB08: "Shell_TrayWnd" ??_C@_1BM@GLLFNEEF@?$AAS?$AAh?$AAe?$AAl?$AAl?$AA_?$AAT?$AAr?$AAa?$AAy?$AAW?$AAn?$AAd?$AA?$AA@
0x1800216A0: "bool volatile `char const * __ptr64 __cdecl wil::details::GetCurrentModuleName(void)'::`2'::s_fModuleValid" ?s_fModuleValid@?1??GetCurrentModuleName@details@wil@@YAPEBDXZ@4_NC
0x1800147D8: "__cdecl _imp_free" __imp_free
0x180014DC0: "_EnableLocalAccount" ??_C@_1CI@GMKDLHJE@?$AA_?$AAE?$AAn?$AAa?$AAb?$AAl?$AAe?$AAL?$AAo?$AAc?$AAa?$AAl?$AAA?$AAc?$AAc?$AAo?$AAu?$AAn?$AAt?$AA?$AA@
0x180015EA0: "[Shell Unattend] ComputerName: f" ??_C@_0EO@BPFFAJIB@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x180012D40: "__cdecl IsNonwritableInCurrentImage" _IsNonwritableInCurrentImage
0x1800145A8: api-ms-win-core-synch-l1-2-0_NULL_THUNK_DATA
0x180014758: "__cdecl _imp_SHDeleteValueW" __imp_SHDeleteValueW
0x18000B018: "public: static long __cdecl CTCoAllocPolicy::Alloc(void * __ptr64,unsigned long,unsigned __int64,void * __ptr64 * __ptr64)" ?Alloc@CTCoAllocPolicy@@SAJPEAXK_KPEAPEAX@Z
0x18001A670: "DefaultApplied" ??_C@_1BO@FPIJELFF@?$AAD?$AAe?$AAf?$AAa?$AAu?$AAl?$AAt?$AAA?$AAp?$AAp?$AAl?$AAi?$AAe?$AAd?$AA?$AA@
0x1800147A8: "__cdecl _imp_memcpy_s" __imp_memcpy_s
0x180017BC4: "LogHr" ??_C@_05OILEHMGB@LogHr?$AA@
0x180014410: "__cdecl _imp_OpenProcessToken" __imp_OpenProcessToken
0x180014890: "__cdecl _imp_ZwOpenKey" __imp_ZwOpenKey
0x1800142D8: "__cdecl _imp_SetFileAttributesW" __imp_SetFileAttributesW
0x18001ED04: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-localization-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-localization-l1-2-0
0x180014598: api-ms-win-core-synch-l1-1-0_NULL_THUNK_DATA
0x1800026D8: "long __cdecl SHRegGetString(struct HKEY__ * __ptr64,unsigned short const * __ptr64,unsigned short const * __ptr64,unsigned short * __ptr64,unsigned long)" ?SHRegGetString@@YAJPEAUHKEY__@@PEBG1PEAGK@Z
0x1800106A8: "public: __cdecl CAutoPrivilegeEnable::CAutoPrivilegeEnable(unsigned short const * __ptr64) __ptr64" ??0CAutoPrivilegeEnable@@QEAA@PEBG@Z
0x18001EC64: "__cdecl _IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-2-0" __IMPORT_DESCRIPTOR_api-ms-win-core-synch-l1-2-0
0x180021708: "void (__cdecl* __ptr64 wil::details::g_pfnGetContextAndNotifyFailure)(struct wil::FailureInfo * __ptr64,char * __ptr64,unsigned __int64)" ?g_pfnGetContextAndNotifyFailure@details@wil@@3P6AXPEAUFailureInfo@2@PEAD_K@ZEA
0x180015C60: "ProcessComputerName" ??_C@_1CI@LPJBICBI@?$AAP?$AAr?$AAo?$AAc?$AAe?$AAs?$AAs?$AAC?$AAo?$AAm?$AAp?$AAu?$AAt?$AAe?$AAr?$AAN?$AAa?$AAm?$AAe?$AA?$AA@
0x180015B30: "[Shell Unattend] ComputerName: f" ??_C@_0EK@BCJGCEPO@?$FLShell?5Unattend?$FN?5ComputerName?3?5f@
0x18001A7E0: "AppData\Roaming\Microsoft\Window" ??_C@_1FC@LPKPLEGB@?$AAA?$AAp?$AAp?$AAD?$AAa?$AAt?$AAa?$AA?2?$AAR?$AAo?$AAa?$AAm?$AAi?$AAn?$AAg?$AA?2?$AAM?$AAi?$AAc?$AAr?$AAo?$AAs?$AAo?$AAf?$AAt?$AA?2?$AAW?$AAi?$AAn?$AAd?$AAo?$AAw@
0x18001CD38: "pidgenx.dll" ??_C@_1BI@FNACADBD@?$AAp?$AAi?$AAd?$AAg?$AAe?$AAn?$AAx?$AA?4?$AAd?$AAl?$AAl?$AA?$AA@
0x18001386E: memset
0x18001EED0: "__cdecl _NULL_IMPORT_DESCRIPTOR" __NULL_IMPORT_DESCRIPTOR
0x180021035: g_header_init_InitializeResultHeader
0x18001AF60: "[shsetup] CleanupAdministratorPa" ??_C@_0EM@DMGBPNPH@?$FLshsetup?$FN?5CleanupAdministratorPa@
0x180019288: "Unattend%010ws" ??_C@_1BO@PLLDAJJI@?$AAU?$AAn?$AAa?$AAt?$AAt?$AAe?$AAn?$AAd?$AA?$CF?$AA0?$AA1?$AA0?$AAw?$AAs?$AA?$AA@
0x1800144E8: "__cdecl _imp_PathFindFileNameW" __imp_PathFindFileNameW
0x180023058: USERENV_NULL_THUNK_DATA_DLA
[JEB Decompiler by PNF Software]