Import table
advapi32.dll
RegCreateKeyExW, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, RegEnumKeyExW, OpenThreadToken, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegCloseKey
ashbase.dll
_basGetErrorType@4, _basAdjustBuffer@12, _strDecode@12, _notEventId@8, _basGetLanguage@4, _basResPwdCheck@4, _basShouldSubmit@4, _basGetProcAddress@8, _basCreatePath@16, _basU2A@16, _basTime2String@20, _basCreateFriendFileName@16, _basGetErrorString@12, _basA2U@16, _basLogEvent2@24, _basValidatePath@8, _basNetAlert@16, _basGetComputerName@0, _basFriendlyShieldName@12, _basChangeSubStr@16, _basVPS2Label@28, _basFriendlyTaskName@8, _basGetBaseLang@0, _basCreateURL@12, _basFreeLibrary@0, _basInitLibrary@4, _basGetPhysMemoryStatus@8, _basFreeMoveFolder@4, _basGetMoveFolder@0, _basSubmitFile@36, _basFormatNumber@16
aswcmnbs.dll
fsGetAvastSumpPath, usnOpenTracker, usnValidateFileCheckpoint, StreamHashInit, StreamHashAdd, StreamHashGet, usnCreateFileCheckpoint, StreamHashClose, fsGetAvastProgramPath, strMatchesWildcards, fsGetDriveStrings, fsGetAvastReportPath, fsIsCriticalSystemFile, fsGetAvastTempFileName, secCreateSharedMutex, usnCloseTracker
aswcmnis.dll
cyphSimpleCode, crcGenerate32c
aswcmnos.dll
dep_fsReadFile, dep_osGetID, dep_osIsWin64, dep_osCloseThread, dep_osWaitForThread, dep_osBeginThread, dep_osIsWow64, dep_fsFindClose, dep_fsFindNextFile, dep_fsFindFirstFile, dep_osGetSystemDir, dep_fsMoveFile, dep_fsCopyFile, dep_fsExistFile, dep_fsOpenFile, dep_fsWriteFile, dep_strCurrToNewUtf8, dep_fsDeleteFileLaterX, dep_fsDeleteFileX, dep_fsEnableWow64FsRedirection, dep_fsReadBR, dep_osIsValidAddress, dep_fsRemoveFolderRecursive, dep_fsExistFileX, dep_osIsWin2kOrBetter, dep_fsDeleteFile, dep_fsOpenFileX, dep_fsGetFileSize, dep_strFreeString, dep_strNormalToNewUnicode, dep_fsCloseFile, dep_fsGetFileSizeHandle, dep_fsSetFilePointer, dep_strUnicodeToNormal, dep_strNormalToUnicode
aswengldr.dll
avscanSetHashCalc, avscanSetCrashCallback, avscanSetHeuristicsCallback, avscanSetPriority, avscanSetSensitivity, avscanSetImpersonification, avscanSetPackerBombRanges, avscanSetScanProgressParams, avscanSetFilePublisherChecking, avfilesUnpackArchiveS, avscanSetFindAllViruses, avscanEnableCloudServices, avscanSetScanTaskGuid, avscanCheckPrivileges, avfilesScanAdd, avfilesScanRealMulti, avfilesScanResult, avfilesScanClear, avworkClose, avscanSetPackersRestriction, avscanSetPackersCallback, avworkInitialize, avworkSetCustomAlgoCallback, avldrCloseModule, avldrLoadModule, avldrCreateHandle, avfilesFreeObjectNameBuffer, avscanGetScanProgress, avfilesGetStatistics, avfilesGetStatisticsTest, avscanShowCleaner, avldrLoadEngineAuxModule, avscanIsCriticalSystemFile, avscanObjectSupportsAction, avfilesDeleteO, avfilesDeleteS, avfilesFileExistsExO, avfilesFileExistsExS, avfilesRepairO, avfilesRepairS, avfilesCreateObjectName, avfilesMoveO, avfilesMoveS, avfilesFreeObjectName, avfilesGetObjectNameW, avfilesSetExclude, avldrGetEngineInformation, avfilesScanFileO, avfilesScanFile, avfilesCleaningOffer, avldrGetDefinitionsFolder, avfilesDuplicateObjectName
kernel32.dll
GetLogicalDriveStringsW, GetDriveTypeW, GetSystemDirectoryW, GetFileAttributesW, ExpandEnvironmentStringsW, CreateFileW, GetFileSize, ReadFile, SetFilePointer, WriteFile, CloseHandle, GetLocalTime, GetDateFormatW, GetTimeFormatW, GetCurrentThread, VirtualAlloc, VirtualFree, FileTimeToSystemTime, GetVolumeInformationW, FindFirstFileW, FindClose, MultiByteToWideChar, HeapFree, GetProcessHeap, GetDiskFreeSpaceExW, ReleaseMutex, HeapAlloc, SetLastError, LoadLibraryExA, InterlockedExchange, RaiseException, WaitForSingleObject, GetExitCodeProcess, CreateProcessW, ResumeThread, GetPrivateProfileIntW, CopyFileW, FreeLibrary, LoadLibraryExW, GetProcAddress, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, DisableThreadLibraryCalls, GetTempFileNameW, GetLastError, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, ResetEvent, SetEvent, OpenEventA, CreateEventA, FormatMessageA, GetSystemTimeAsFileTime, GetCurrentThreadId, GetCurrentProcessId, QueryPerformanceCounter, DecodePointer, EncodePointer, IsProcessorFeaturePresent, IsDebuggerPresent, LoadLibraryW, SetEnvironmentVariableW, DisconnectNamedPipe, ConnectNamedPipe, CallNamedPipeW, CreateNamedPipeW, DeviceIoControl, LocalFree, FormatMessageW, GetModuleFileNameW, FindNextFileW, GetModuleHandleW, DeleteFileW, GetPrivateProfileStringW
msvcp110.dll
DllMain
msvcr110.dll
DllMain
rpcrt4.dll
NdrGetBuffer, NdrFreeBuffer, NdrConformantArrayBufferSize, NdrClientInitializeNew, RpcRaiseException, NdrConformantArrayMarshall, RpcBindingFree, RpcBindingFromStringBindingW, RpcStringBindingComposeW, RpcStringFreeW, UuidToStringW, UuidCreate, NdrConformantArrayUnmarshall, NdrSendReceive, NdrConvert, NdrConformantStringMarshall, NdrConformantStringBufferSize, RpcBindingServerFromClient, RpcBindingToStringBindingW, RpcStringBindingParseW, I_RpcGetBuffer, NdrAllocate, NdrServerInitializeNew, NdrPointerFree, NdrConformantStringUnmarshall
user32.dll
wsprintfW, LoadStringW, AllowSetForegroundWindow, GetSystemMetrics
Export table
_ARConstructListFromString@8
_ARConstructStringFromList@4
_ARDeconstructListFromString@4
_FreeARList@4
_tskAddArea@12
_tskAddAreaEx@20
_tskAddNetAlert@8
_tskAdjustReportName@8
_tskAllocResultA@28
_tskAllocResultO@28
_tskAllocResultW@28
_tskARDeleteFile@12
_tskChangeExcludedHash@16
_tskCheckDeleteFile@12
_tskCheckResult@4
_tskCheckVPSTime@4
_tskClearResult@16
_tskConstructVirusInfoStringW@4
_tskCopyResult@8
_tskCopyResultChangeName@12
_tskCreateReport@8
_tskCreateReportFileName@12
_tskDefTask@8
_tskDestructFalsePositiveSubmit@4
_tskDestructVirusInfoString@4
_tskDoAntiRootkitScan@20
_tskExecData@16
_tskFileAutoFix@20
_tskFileCleanOffer@12
_tskFileDelete@16
_tskFileMove@16
_tskFileRepair@20
_tskFileScan@12
_tskFileTrezor@16
_tskFreeActionContext@4
_tskFreeAntirootkit@8
_tskFreeAreas@4
_tskFreeData@4
_tskFreeLibrary@0
_tskFreeNetAlert@4
_tskFreeResult@8
_tskFreeResultFileName@16
_tskFriendlyTaskName@12
_tskGetCrashCallback@0
_tskGetFileUrlAndHash@36
_tskGetHeurCallback@0
_tskGetReportFileName@12
_tskGetResultFileName@20
_tskGetVirusURL@12
_tskGetVPSInfo@20
_tskGetVPSLabel@16
_tskInitActionContext@8
_tskInitActionContextImpers@4
_tskInitLibrary@8
_tskInitResultA@36
_tskInitResultO@36
_tskInitResultW@36
_tskIsFileHashExcluded@16
_tskLaunchCleaner@8
_tskLaunchRepair@8
_tskLaunchRescueDisc@8
_tskLaunchSyncer@20
_tskLaunchSyncerWithRemediationServer@24
_tskLoadAntirootkit@4
_tskLogEvent@20
_tskLogResult@12
_tskLogStats@52
_tskLogSuspiciousAction@32
_tskPackerBits@8
_tskPrepareFalsePositiveSubmit@8
_tskProcessAreas@20
_tskProcessData@8
_tskProcessShieldNetAlertAndReport@16
_tskProp2VA@12
_tskReleaseReport@4
_tskRepairDisketteBootSector@16
_tskSaveFileUrlAndHash@28
_tskSetActionContextImpers@8
_tskSetActions@12
_tskSetScanAreas@12
_tskUpdateReport@12
_tskUpdateStatistics@4
_tskVA2Prop@12
_tskVirusAction@4
_UpdateProgram@16
_UpdateVps@16