Import table
advapi32.dll
RegEnumKeyExA, OpenThreadToken, OpenProcessToken, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, DeleteService, ChangeServiceConfigA, EnumDependentServicesA, EnumServicesStatusA, QueryServiceConfigA, StartServiceA, OpenSCManagerA, OpenServiceA, ControlService, QueryServiceStatus, CloseServiceHandle, RegEnumKeyA, RegEnumValueA, RegFlushKey, RegDeleteKeyA, RegCreateKeyExA, RegQueryInfoKeyA, RegDeleteValueA, RegSetValueExA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegOpenKeyExA, RegQueryValueExA, RegCloseKey
kernel32.dll
GetTempPathA, GetVersionExA, CreateFileA, GetModuleHandleA, FreeLibrary, GetProcAddress, LoadLibraryA, GetWindowsDirectoryA, MultiByteToWideChar, MoveFileExA, GetShortPathNameA, ResumeThread, SetThreadPriority, CreateProcessA, WriteFile, CopyFileA, FindNextFileA, RemoveDirectoryA, OpenEventA, GetTempFileNameA, InitializeCriticalSection, InterlockedDecrement, InterlockedIncrement, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, CreateThread, GetTickCount, lstrlenA, GetCurrentProcess, GetCurrentThread, GetEnvironmentVariableA, QueryPerformanceCounter, GetTimeZoneInformation, IsBadCodePtr, IsBadReadPtr, GetSystemInfo, SetFileAttributesA, DeleteFileA, MoveFileA, FindFirstFileA, FindClose, GetFileAttributesA, UnmapViewOfFile, CreateMutexA, WaitForSingleObject, CreateFileMappingA, ReleaseMutex, SetEnvironmentVariableA, CloseHandle, MapViewOfFile, GetSystemTime, GetDateFormatA, GetTimeFormatA, GetCurrentThreadId, GetCurrentProcessId, OutputDebugStringA, GetModuleFileNameA, GetSystemDirectoryA, CreateDirectoryA, GetLastError, SetLastError, GetSystemTimeAsFileTime, SetEndOfFile, SetConsoleCtrlHandler, GetLocaleInfoW, CompareStringA, CompareStringW, Sleep, HeapFree, HeapAlloc, HeapReAlloc, RtlUnwind, RaiseException, GetCommandLineA, GetACP, GetOEMCP, GetCPInfo, TlsAlloc, TlsFree, TlsSetValue, TlsGetValue, FlushFileBuffers, FatalAppExitA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, ExitProcess, TerminateProcess, HeapSize, LCMapStringA, WideCharToMultiByte, LCMapStringW, SetUnhandledExceptionFilter, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, IsValidCodePage, GetStringTypeA, GetStringTypeW, ReadFile, SetFilePointer, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, UnhandledExceptionFilter, SetStdHandle, InterlockedExchange, VirtualQuery, VirtualProtect
rpcrt4.dll
UuidEqual, UuidFromStringA
user32.dll
MessageBoxA, GetDesktopWindow, LoadStringA, CharUpperA
version.dll
GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA
Export table
PAVSHLD_0001
PAVSHLD_0002
PAVSHLD_AddExemptProcessByPath
PAVSHLD_Finalize
PAVSHLD_GetInfo
PAVSHLD_Initialize
PAVSHLD_Install
PAVSHLD_IsInstalled
PAVSHLD_IsRegistered
PAVSHLD_RemoveExemptProcessByPath
PAVSHLD_SetExempted
PAVSHLD_SetNotificationCallback
PAVSHLD_Uninstall
PAVSHLD_Upgrade
PSFRP_AddProtection
PSFRP_RemoveProtection