Import table
advapi32.dll
RegCreateKeyExW, ControlService, QueryServiceStatusEx, StartServiceW, OpenServiceW, OpenSCManagerW, CloseServiceHandle, RegEnumKeyExW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegOpenKeyExW, RegSetValueExW, RegQueryInfoKeyW
crypt32.dll
CertCloseStore, CryptMsgGetParam, CertFindCertificateInStore, CertFreeCertificateContext, CryptQueryObject, CryptDecodeObject, CryptMsgClose, CertGetNameStringW
fltlib.dll
FilterUnload
kernel32.dll
GetLastError, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, GetProcAddress, GetModuleHandleW, lstrcmpiW, GetModuleFileNameW, InterlockedIncrement, InterlockedDecrement, FreeLibrary, MultiByteToWideChar, SizeofResource, LoadResource, FindResourceW, LoadLibraryExW, SetThreadLocale, GetThreadLocale, WideCharToMultiByte, CreateFileW, DeviceIoControl, CloseHandle, CreateMutexW, LeaveCriticalSection, WaitForSingleObject, SetEvent, LoadLibraryW, TerminateThread, Sleep, ReleaseSemaphore, CreateSemaphoreW, CreateEventW, WaitForMultipleObjects, GetWindowsDirectoryW, GetVersion, GetCurrentProcessId, WriteFile, GetSystemDirectoryW, FormatMessageW, GetLocalTime, OutputDebugStringA, ReadFile, SetNamedPipeHandleState, GetOverlappedResult, ReleaseMutex, ConnectNamedPipe, CreateNamedPipeW, ResetEvent, CreateThread, lstrcmpA, DisconnectNamedPipe, FlushFileBuffers, GetCurrentThreadId, GetOEMCP, GetACP, EnterCriticalSection, RaiseException, lstrlenW, IsValidCodePage, SetFilePointer, GetConsoleCP, GetConsoleMode, LCMapStringW, GetStringTypeW, SetStdHandle, WriteConsoleW, GetCurrentProcess, GetCPInfo, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetModuleFileNameA, GetStartupInfoW, GetFileType, SetHandleCount, IsProcessorFeaturePresent, HeapSize, HeapReAlloc, SetLastError, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, TerminateProcess, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, HeapDestroy, HeapCreate, GetStdHandle, ExitProcess, ExitThread, GetCommandLineA, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, DecodePointer, EncodePointer, RtlUnwind, HeapFree, HeapAlloc
ole32.dll
CoTaskMemRealloc, StringFromGUID2, CoCreateInstance, CoInitializeEx, CoUninitialize, CoTaskMemAlloc, CoTaskMemFree
rpcrt4.dll
NdrStubForwardingFunction, IUnknown_Release_Proxy, IUnknown_AddRef_Proxy, IUnknown_QueryInterface_Proxy, NdrOleFree, NdrOleAllocate, NdrDllUnregisterProxy, NdrDllGetClassObject, NdrDllCanUnloadNow, NdrCStdStubBuffer2_Release, NdrDllRegisterProxy, NdrStubCall2
user32.dll
CharNextW
version.dll
VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
DumpMemory
FlGetCacheEntryOfFile
FlGetCacheEntryOfFileByHandle
FlGetDriverVersion
FlGetLibraryVersion
FlGetLogFile
FlGetOpt
FlGetShortTimestamp
FlGetTraceFile
FlInvalidateCacheEntryOfFile
FlInvalidateCacheEntryOfFileByHandle
FlKillConnections
FlpConnectToServer
FlpDisconnectFromServer
FlpGetDriverVersion
FlpGetLibraryVersion
FlpGetOpt
FlpRegisterBypassPid
FlpSetOpt
FlpSetOptVarlen
FlpUnregisterBypassPid
FlQueryDriver
FlQueryScanner
FlRegisterBypassPid
FlSetCacheEntryOfFile
FlSetCacheEntryOfFileByHandle
FlSetLogFile
FlSetOpt
FlSetOptVarlen
FlSetTraceFile
FlShortTimestampDelta
FlStartDriver
FlStartScanner
FlStartScanner2
FlStopDriver
FlStopScanner
FlUnregisterBypassPid
FlUserLogPrint
FlUserTracePrint