Import table
advapi32.dll
OpenSCManagerA, OpenServiceW, QueryServiceStatus, ControlService, ChangeServiceConfigW, DeleteService, CloseServiceHandle, CreateServiceW, StartServiceA
kernel32.dll
GetTickCount, CreateFileA, GetShortPathNameA, GetModuleFileNameA, GetCurrentProcessId, FreeLibrary, LoadLibraryA, GetVersionExA, ReadProcessMemory, GetCommandLineA, OpenProcess, WriteProcessMemory, VirtualProtectEx, TerminateProcess, GetLastError, Sleep, GetModuleHandleA, GetProcAddress, GetCurrentProcess, CreateEventA, DeviceIoControl, GetSystemDirectoryW, MultiByteToWideChar, CloseHandle, ExitProcess, RtlUnwind, GetCurrentThreadId, QueryPerformanceCounter, GetSystemTimeAsFileTime, HeapFree, HeapAlloc, TlsAlloc, SetLastError, GetCurrentThread, TlsFree, TlsSetValue, TlsGetValue, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, DeleteCriticalSection, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, HeapDestroy, HeapCreate, VirtualFree, UnhandledExceptionFilter, WriteFile, InterlockedExchange, VirtualQuery, LeaveCriticalSection, FatalAppExitA, EnterCriticalSection, VirtualAlloc, HeapReAlloc, IsBadWritePtr, SetUnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetACP, GetOEMCP, GetCPInfo, InitializeCriticalSection, GetTimeFormatA, GetDateFormatA, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, SetConsoleCtrlHandler, HeapSize, GetTimeZoneInformation, VirtualProtect, GetSystemInfo, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA
Export table
Digital_Sign_Clear_ProcessFilter
Digital_Sign_Enable
Digital_Sign_Get_Evnet
Digital_Sign_Get_Message
Digital_Sign_Set_ProcessFilter
Digital_Sign_Set_Result
File_Control_Enable
File_Control_Get_Event
File_Control_Get_Message
File_Control_Remove_Proc_Whilte_ByPid
File_Control_Set_Result
File_Control_Update_Proc_Whilte
File_Control_Update_Proc_Whilte_ByPid
File_Control_Update_Rule
GetFullProcessInfo
InitMonitor
InitSysDllList
IsFileHandle
Proc_Control_Enable
Proc_Control_Get_Event
Proc_Control_Get_Message
Proc_Control_Remove_Proc_Whilte_ByPid
Proc_Control_Set_Result
Proc_Control_Update_Proc_Whilte
Proc_Control_Update_Proc_Whilte_ByPid
Proc_Control_Update_Rule
Reg_Control_Enable
Reg_Control_Get_Event
Reg_Control_Get_Message
Reg_Control_Remove_Proc_Whilte_ByPid
Reg_Control_Set_Rav_Data_Dir
Reg_Control_Set_Rav_Dir
Reg_Control_Set_Result
Reg_Control_Update_Proc_Whilte
Reg_Control_Update_Proc_Whilte_ByPid
Reg_Control_Update_Rule
RsCreateServiceW
RsDeleteService
RsStartService
RsStopService
SetHomePage
Sys_Control_Api_Remove_Proc_Whilte_ByPid
Sys_Control_Api_Update_Proc_Whilte
Sys_Control_Api_Update_Proc_Whilte_ByPid
Sys_Control_Ntapi_Enable
Sys_Control_Ntapi_Get_Event
Sys_Control_Ntapi_Get_Message
Sys_Control_Ntapi_Set_Result
Sys_Control_Ntapi_Update_Rule
Sys_Control_Win32k_Enable
Sys_Control_Win32k_Get_Event
Sys_Control_Win32k_Get_Message
Sys_Control_Win32k_Set_Result
Sys_Control_Win32k_Update_Rule
UnInitMonitor
Virus_Action_Enable
Virus_Action_Get_Event
Virus_Action_Get_Message
Virus_Action_Reg_Add_One_Action_Rule
Virus_Action_Reg_Remove_Action_Rule
Virus_Action_Reg_Update_Action_Rule
Virus_Action_Set_Result
Virus_Action_UpdateMonList
Virus_Action_UpdateRsProcList
Virus_Scan_Enable
Virus_Scan_Get_Event
Virus_Scan_Get_Message
Virus_Scan_Remove_Black_History
Virus_Scan_Remove_White_History
Virus_Scan_Reset_Scan_History
Virus_Scan_Set_Black_History
Virus_Scan_Set_Mode
Virus_Scan_Set_Result
Virus_Scan_Set_White_History
Virus_Scan_Update_Proc_Whilte