Import table
advapi32.dll
RegOpenKeyExW, RegQueryValueExW, RegCloseKey, SetSecurityDescriptorDacl, InitializeSecurityDescriptor
kernel32.dll
WriteFile, CreateFileW, MoveFileW, Sleep, SetFileAttributesW, GetFileAttributesW, VerifyVersionInfoW, VerSetConditionMask, GetCurrentProcess, LoadLibraryExW, FlushFileBuffers, WriteConsoleW, HeapSize, QueryPerformanceCounter, ReleaseMutex, MultiByteToWideChar, WideCharToMultiByte, CreateMutexW, DeleteFileW, CopyFileW, SetErrorMode, CloseHandle, DeleteCriticalSection, CreateEventW, EnterCriticalSection, GetProcAddress, SetLastError, GetLastError, GetModuleFileNameW, LeaveCriticalSection, FormatMessageW, LoadLibraryW, InitializeCriticalSection, GetModuleHandleW, SetEvent, WaitForSingleObject, CreateDirectoryW, LCMapStringW, GetStringTypeW, RtlUnwind, HeapFree, HeapAlloc, ExitThread, GetCurrentThreadId, CreateThread, ResumeThread, GetSystemTimeAsFileTime, DecodePointer, GetCommandLineA, SetEndOfFile, GetProcessHeap, ReadFile, SetFilePointer, GetFileType, HeapReAlloc, RaiseException, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, IsProcessorFeaturePresent, HeapCreate, HeapDestroy, ExitProcess, GetStdHandle, EncodePointer, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, InterlockedIncrement, InterlockedDecrement, SetHandleCount, InitializeCriticalSectionAndSpinCount, GetStartupInfoW, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetTickCount, GetCurrentProcessId, SetStdHandle, GetConsoleCP, GetConsoleMode, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, FreeLibrary
user32.dll
LoadStringW
Export table
AVEvtLog_Close2
AVEvtLog_Done
AVEvtLog_ExecSQLQuery
AVEvtLog_GetErrMsgText
AVEvtLog_Init
AVEvtLog_Open4
AVEvtLog_SetConfig
AVEvtLog_WriteEvent2