SpursDownload.dll: ThreatUpdate, ThreatUpdateViaProxy,
SetSpursLoggingCallback, GetNextVersionNumber, SpursProxyDownload,
SpursDownload, ProxyGetNextVersionNumber
SBSDKXML.dll: _GetNVCollectionFactory@0, _GetAPEventSettingsFactory@0,
_GetSystemEventSettingsFactory@0, _GetThreatEngineSettingsFactory@0,
_GetNVScanResultsFactory@0, _GetQuarantineFileFactory@0,
_GetQuarantineRecordFactory@0, _GetSoftwareUpdateSettingsFactory@0,
_GetDefinitionUpdateSettingsFactory@0, _GetWSCSettingsFactory@0,
_GetActiveProtectionSettingsFactory@0, _GetRegistrationSettingsFactory@0,
_GetEmailAVSettingsFactory@0, _GetServiceSettingsFactory@0,
_GetEmailAVEventSettingsFactory@0
SBTE.dll: SBCSSetQuarantineActionCallbackW, SBCSEnableAV,
SBCSEncryptFileW, SBCSCloseThreatEngine, SBCSRunScanner,
SBCSOpenThreatEngineW, SBCSDeleteThreatW, SBCSQuarantineFileW,
SBCSQuarantineFile2W, SBCSQuarantineBufferW, SBCSGetQuarantineRecordW,
SBCSGetQuarantineRecordSizeW, SBCSQueryQuarantineIDW,
SBCSUnquarantineThreatW, SBCSGetScannerResultsSizeW,
SBCSGetScannerResultsW, SBCSClearIgnoredThreats, SBCSQueryThreatDataW,
SBCSApplyDefinitionUpdateW, SBCSGetDefReleaseDateW, SBCSGetDefVersionW,
SBCSScanBuffer, SBCSSetLoggerCallbackW, SBCSRegisterBootTimeScanner,
SBCSUnRegisterBootTimeScanner, SBCSGetBootTimeRegistrationStatus,
SBCSSetCleanerProgressCallbackW, SBCSSetScanProgressStateCallback,
SBCSSetScanProgressDetailCallbackW, SBCSScanFileTrace,
SBCSGetFileSignatureW, SBCSPurgeQuarantine, SBCSAddPathToScanW,
SBCSClearPathsToScan, SBCSSetScanOption, SBCSSetScanDescriptionW,
SBCSSetLowRiskThreatDetection, SBCSResetScanOptions,
SBCSAddUserKnownEntity, SBCSClearUserKnownEntityList,
SBCSGetCleanerResultsW, SBCSGetCleanerResultsSizeW, SBCSRunCleanerW,
SBCSAddThreatCategoryActionW, SBCSClearThreatCategoryActions,
SBCSAddIgnoredThreat
sbap.dll: SBAPSetUserKnownEntityCallback, SBAPClearCache,
SBAPSetExtensionList, SBAPStartETW, SBAPStopETW, SBAPIsStarted,
SBAPSetMonitorAction, SBAPSetMonitorActive, SBAPSetPromptCallback,
SBAPSetNotifyCallback, SBAPSetReportCallback, SBAPSetLoggerCallback,
SBAPStop, SBAPIsETWRunning, SBAPUninstallDriver, SBAPStart
VERSION.dll: GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW
WINHTTP.dll: WinHttpReadData, WinHttpSetCredentials,
WinHttpQueryAuthSchemes, WinHttpQueryHeaders, WinHttpReceiveResponse,
WinHttpSendRequest, WinHttpOpenRequest, WinHttpCloseHandle,
WinHttpConnect, WinHttpOpen, WinHttpQueryDataAvailable
SBArva.dll: -, -, -, -, -, -, -, -, -
WINMM.dll: timeGetTime
PSAPI.DLL: EmptyWorkingSet
KERNEL32.dll: GetStartupInfoW, IsDebuggerPresent,
SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess,
ExitThread, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect,
MoveFileW, RtlUnwind, HeapSize, HeapDestroy, GetThreadLocale,
GetLocaleInfoA, GetACP, SetEndOfFile, CreateFileA, GetDriveTypeA,
CompareStringW, CompareStringA, WriteConsoleW, GetConsoleOutputCP,
WriteConsoleA, SetStdHandle, GetConsoleMode, GetConsoleCP, LCMapStringA,
LCMapStringW, GetCPInfo, GetStringTypeA, GetStringTypeW, VirtualFree,
HeapCreate, ExitProcess, GetStdHandle, GetModuleFileNameA, TlsGetValue,
TlsAlloc, TlsSetValue, TlsFree, SetLastError, GetOEMCP, IsValidCodePage,
GetTimeFormatA, GetDateFormatA, SetEnvironmentVariableA,
SetEnvironmentVariableW, FreeEnvironmentStringsA, GetEnvironmentStrings,
FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA,
SetHandleCount, GetFileType, GetLastError, CloseHandle, GetCurrentProcess,
CreateEventW, lstrlenW, WaitForSingleObject, RaiseException,
InitializeCriticalSection, DeleteCriticalSection, SizeofResource,
LockResource, LoadResource, FindResourceW, FindResourceExW, lstrcmpiW,
GetModuleFileNameW, GetCurrentThread, Sleep, CreateThread,
GetModuleHandleW, GetCurrentThreadId, InterlockedIncrement,
InterlockedDecrement, SetEvent, FreeLibrary, MultiByteToWideChar,
LoadLibraryExW, GetCommandLineW, EnterCriticalSection,
LeaveCriticalSection, TerminateThread, FileTimeToSystemTime,
FileTimeToLocalFileTime, FlushFileBuffers, WriteFile, CreateFileW,
ReadFile, GetFileSize, DeleteFileW, FindClose, FindNextFileW,
FindFirstFileW, CopyFileW, CreateDirectoryW, SetThreadPriority,
GetTickCount, ResetEvent, WaitForMultipleObjects, SetThreadExecutionState,
GetThreadPriority, GetSystemPowerStatus, lstrlenA, GetProcAddress,
LoadLibraryW, FormatMessageW, LocalFree, GetUserDefaultLangID,
SetFileAttributesW, WideCharToMultiByte, SystemTimeToFileTime,
GetSystemTime, LocalFileTimeToFileTime, GetLocalTime,
GetTimeZoneInformation, GetVersionExW, ExpandEnvironmentStringsW,
OpenProcess, GetDriveTypeW, HeapFree, GetProcessHeap, HeapAlloc,
SetFilePointer, GetCurrentProcessId, QueryPerformanceCounter,
CancelWaitableTimer, CreateWaitableTimerW, SetWaitableTimer,
GetSystemDirectoryA, HeapReAlloc, LoadLibraryA, GetModuleHandleA,
GetVersionExA, ReleaseMutex, GetSystemTimeAsFileTime,
GetCurrentDirectoryA, InterlockedExchange, GetStartupInfoA,
GetFullPathNameW
USER32.dll: UnregisterClassA, TranslateMessage, DispatchMessageW,
GetMessageW, CharNextW, PostThreadMessageW, LoadStringW, CharUpperW,
MessageBoxW, GetSystemMetrics, PeekMessageW, MsgWaitForMultipleObjects
ADVAPI32.dll: GetTokenInformation, RegisterEventSourceW, ReportEventW,
DeregisterEventSource, InitializeSecurityDescriptor,
SetSecurityDescriptorDacl, OpenProcessToken, LookupPrivilegeValueW,
AdjustTokenPrivileges, RegOpenKeyExW, RegDeleteValueW, RegCloseKey,
CloseServiceHandle, OpenServiceW, OpenSCManagerW, RegDeleteKeyW,
RegCreateKeyExW, RegQueryValueExW, RegSetValueExW, RegQueryInfoKeyW,
CopySid, GetLengthSid, IsValidSid, SetSecurityDescriptorOwner,
SetSecurityDescriptorGroup, SetServiceStatus, CreateServiceW,
DeleteService, ControlService, RegEnumKeyExW, OpenThreadToken,
RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW,
ChangeServiceConfig2W, ChangeServiceConfigW, RevertToSelf,
CreateProcessAsUserW, ImpersonateLoggedOnUser, DuplicateTokenEx,
CryptDecrypt, CryptEncrypt, CryptReleaseContext, CryptDestroyHash,
CryptDestroyKey, CryptDeriveKey, CryptHashData, CryptCreateHash,
CryptAcquireContextW, FreeSid, EqualSid, AllocateAndInitializeSid,
RegCreateKeyW
SHELL32.dll: SHCreateDirectoryExW, SHGetFolderPathW
ole32.dll: OleRun, CoInitializeEx, CoDisconnectObject,
CoInitializeSecurity, CoCreateInstance, StringFromGUID2, CoTaskMemFree,
CoRegisterClassObject, CoRevokeClassObject, CoTaskMemRealloc,
CoTaskMemAlloc, CoUninitialize, CoInitialize
OLEAUT32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
SHLWAPI.dll: PathFileExistsW, PathRemoveFileSpecW
WS2_32.dll: -, -, WSACloseEvent, WSASocketW, WSACreateEvent, -, -,
WSASend, -, -, -, -, -, -, -, WSAGetOverlappedResult,
WSAEnumNetworkEvents, -, WSAConnect, -, WSARecv, WSASetEvent,
WSAEventSelect, -, WSAResetEvent