| 1 | /* | 
|---|
| 2 | this file defines interfaces mainly exposed to device drivers and | 
|---|
| 3 | native nt dll's | 
|---|
| 4 |  | 
|---|
| 5 | */ | 
|---|
| 6 | #ifndef __WINE_NTDDK_H | 
|---|
| 7 | #define __WINE_NTDDK_H | 
|---|
| 8 |  | 
|---|
| 9 | #include "ntdef.h" | 
|---|
| 10 | #include "winnt.h" | 
|---|
| 11 | #include "winreg.h" | 
|---|
| 12 | #include "winbase.h"    /* FIXME: should be taken out sometimes */ | 
|---|
| 13 |  | 
|---|
| 14 | #ifdef __cplusplus | 
|---|
| 15 | extern "C" { | 
|---|
| 16 | #endif | 
|---|
| 17 |  | 
|---|
| 18 | /****************** | 
|---|
| 19 | * asynchronous I/O | 
|---|
| 20 | */ | 
|---|
| 21 | #undef Status   /* conflict with X11-includes*/ | 
|---|
| 22 |  | 
|---|
| 23 | typedef struct _IO_STATUS_BLOCK | 
|---|
| 24 | { | 
|---|
| 25 | union { | 
|---|
| 26 | NTSTATUS Status; | 
|---|
| 27 | PVOID Pointer; | 
|---|
| 28 | } DUMMYUNIONNAME; | 
|---|
| 29 | ULONG_PTR Information; | 
|---|
| 30 | } IO_STATUS_BLOCK, *PIO_STATUS_BLOCK; | 
|---|
| 31 |  | 
|---|
| 32 | #ifdef __WIN32OS2__ | 
|---|
| 33 | typedef VOID (* NTAPI PIO_APC_ROUTINE) ( PVOID ApcContext, PIO_STATUS_BLOCK IoStatusBlock, ULONG Reserved ); | 
|---|
| 34 | #else | 
|---|
| 35 | typedef VOID (NTAPI *PIO_APC_ROUTINE) ( PVOID ApcContext, PIO_STATUS_BLOCK IoStatusBlock, ULONG Reserved ); | 
|---|
| 36 | #endif | 
|---|
| 37 |  | 
|---|
| 38 | /* | 
|---|
| 39 | registry | 
|---|
| 40 | */ | 
|---|
| 41 |  | 
|---|
| 42 | /* key information */ | 
|---|
| 43 | typedef struct _KEY_BASIC_INFORMATION { | 
|---|
| 44 | LARGE_INTEGER   LastWriteTime; | 
|---|
| 45 | ULONG           TitleIndex; | 
|---|
| 46 | ULONG           NameLength; | 
|---|
| 47 | WCHAR           Name[1]; | 
|---|
| 48 | } KEY_BASIC_INFORMATION, *PKEY_BASIC_INFORMATION; | 
|---|
| 49 |  | 
|---|
| 50 | typedef struct _KEY_NODE_INFORMATION | 
|---|
| 51 | { | 
|---|
| 52 | LARGE_INTEGER   LastWriteTime; | 
|---|
| 53 | ULONG           TitleIndex; | 
|---|
| 54 | ULONG           ClassOffset; | 
|---|
| 55 | ULONG           ClassLength; | 
|---|
| 56 | ULONG           NameLength; | 
|---|
| 57 | WCHAR           Name[1]; | 
|---|
| 58 | /*      Class[1]; */ | 
|---|
| 59 | } KEY_NODE_INFORMATION, *PKEY_NODE_INFORMATION; | 
|---|
| 60 |  | 
|---|
| 61 | typedef struct _KEY_FULL_INFORMATION | 
|---|
| 62 | { | 
|---|
| 63 | LARGE_INTEGER   LastWriteTime; | 
|---|
| 64 | ULONG           TitleIndex; | 
|---|
| 65 | ULONG           ClassOffset; | 
|---|
| 66 | ULONG           ClassLength; | 
|---|
| 67 | ULONG           SubKeys; | 
|---|
| 68 | ULONG           MaxNameLen; | 
|---|
| 69 | ULONG           MaxClassLen; | 
|---|
| 70 | ULONG           Values; | 
|---|
| 71 | ULONG           MaxValueNameLen; | 
|---|
| 72 | ULONG           MaxValueDataLen; | 
|---|
| 73 | WCHAR           Class[1]; | 
|---|
| 74 | } KEY_FULL_INFORMATION, *PKEY_FULL_INFORMATION; | 
|---|
| 75 |  | 
|---|
| 76 | typedef enum _KEY_INFORMATION_CLASS | 
|---|
| 77 | { | 
|---|
| 78 | KeyBasicInformation, | 
|---|
| 79 | KeyNodeInformation, | 
|---|
| 80 | KeyFullInformation | 
|---|
| 81 | } KEY_INFORMATION_CLASS; | 
|---|
| 82 |  | 
|---|
| 83 | typedef struct _KEY_VALUE_ENTRY | 
|---|
| 84 | { | 
|---|
| 85 | PUNICODE_STRING ValueName; | 
|---|
| 86 | ULONG           DataLength; | 
|---|
| 87 | ULONG           DataOffset; | 
|---|
| 88 | ULONG           Type; | 
|---|
| 89 | } KEY_VALUE_ENTRY, *PKEY_VALUE_ENTRY; | 
|---|
| 90 |  | 
|---|
| 91 | /* value information */ | 
|---|
| 92 | typedef struct _KEY_VALUE_BASIC_INFORMATION | 
|---|
| 93 | { | 
|---|
| 94 | ULONG   TitleIndex; | 
|---|
| 95 | ULONG   Type; | 
|---|
| 96 | ULONG   NameLength; | 
|---|
| 97 | WCHAR   Name[1]; | 
|---|
| 98 | } KEY_VALUE_BASIC_INFORMATION, *PKEY_VALUE_BASIC_INFORMATION; | 
|---|
| 99 |  | 
|---|
| 100 | typedef struct _KEY_VALUE_FULL_INFORMATION | 
|---|
| 101 | { | 
|---|
| 102 | ULONG   TitleIndex; | 
|---|
| 103 | ULONG   Type; | 
|---|
| 104 | ULONG   DataOffset; | 
|---|
| 105 | ULONG   DataLength; | 
|---|
| 106 | ULONG   NameLength; | 
|---|
| 107 | WCHAR   Name[1]; | 
|---|
| 108 | /*      UCHAR   Data[1];*/ | 
|---|
| 109 | } KEY_VALUE_FULL_INFORMATION, *PKEY_VALUE_FULL_INFORMATION; | 
|---|
| 110 |  | 
|---|
| 111 | typedef struct _KEY_VALUE_PARTIAL_INFORMATION | 
|---|
| 112 | { | 
|---|
| 113 | ULONG   TitleIndex; | 
|---|
| 114 | ULONG   Type; | 
|---|
| 115 | ULONG   DataLength; | 
|---|
| 116 | UCHAR   Data[1]; | 
|---|
| 117 | } KEY_VALUE_PARTIAL_INFORMATION, *PKEY_VALUE_PARTIAL_INFORMATION; | 
|---|
| 118 |  | 
|---|
| 119 | typedef enum _KEY_VALUE_INFORMATION_CLASS | 
|---|
| 120 | { | 
|---|
| 121 | KeyValueBasicInformation, | 
|---|
| 122 | KeyValueFullInformation, | 
|---|
| 123 | KeyValuePartialInformation, | 
|---|
| 124 | KeyValueFullInformationAlign64, | 
|---|
| 125 | KeyValuePartialInformationAlign64 | 
|---|
| 126 | } KEY_VALUE_INFORMATION_CLASS; | 
|---|
| 127 |  | 
|---|
| 128 | NTSTATUS WINAPI RtlFormatCurrentUserKeyPath( | 
|---|
| 129 | PUNICODE_STRING KeyPath); | 
|---|
| 130 |  | 
|---|
| 131 | /*      thread information */ | 
|---|
| 132 |  | 
|---|
| 133 | typedef enum _THREADINFOCLASS | 
|---|
| 134 | {       ThreadBasicInformation, | 
|---|
| 135 | ThreadTimes, | 
|---|
| 136 | ThreadPriority, | 
|---|
| 137 | ThreadBasePriority, | 
|---|
| 138 | ThreadAffinityMask, | 
|---|
| 139 | ThreadImpersonationToken, | 
|---|
| 140 | ThreadDescriptorTableEntry, | 
|---|
| 141 | ThreadEnableAlignmentFaultFixup, | 
|---|
| 142 | ThreadEventPair_Reusable, | 
|---|
| 143 | ThreadQuerySetWin32StartAddress, | 
|---|
| 144 | ThreadZeroTlsCell, | 
|---|
| 145 | ThreadPerformanceCount, | 
|---|
| 146 | ThreadAmILastThread, | 
|---|
| 147 | ThreadIdealProcessor, | 
|---|
| 148 | ThreadPriorityBoost, | 
|---|
| 149 | ThreadSetTlsArrayAddress, | 
|---|
| 150 | ThreadIsIoPending, | 
|---|
| 151 | MaxThreadInfoClass | 
|---|
| 152 | } THREADINFOCLASS; | 
|---|
| 153 |  | 
|---|
| 154 | typedef struct { | 
|---|
| 155 | /* This is used by NtQuerySystemInformation */ | 
|---|
| 156 | FILETIME ftCreationTime; | 
|---|
| 157 | DWORD dwUnknown1; | 
|---|
| 158 | DWORD dwStartAddress; | 
|---|
| 159 | DWORD dwOwningPID; | 
|---|
| 160 | DWORD dwThreadID; | 
|---|
| 161 | DWORD dwCurrentPriority; | 
|---|
| 162 | DWORD dwBasePriority; | 
|---|
| 163 | DWORD dwContextSwitches; | 
|---|
| 164 | DWORD dwThreadState; | 
|---|
| 165 | DWORD dwWaitReason; | 
|---|
| 166 | DWORD dwUnknown2[5]; | 
|---|
| 167 | } THREADINFO, *PTHREADINFO; | 
|---|
| 168 |  | 
|---|
| 169 | /*      file information */ | 
|---|
| 170 |  | 
|---|
| 171 | typedef enum _FILE_INFORMATION_CLASS { | 
|---|
| 172 | FileDirectoryInformation = 1, | 
|---|
| 173 | FileFullDirectoryInformation, | 
|---|
| 174 | FileBothDirectoryInformation, | 
|---|
| 175 | FileBasicInformation, | 
|---|
| 176 | FileStandardInformation, | 
|---|
| 177 | FileInternalInformation, | 
|---|
| 178 | FileEaInformation, | 
|---|
| 179 | FileAccessInformation, | 
|---|
| 180 | FileNameInformation, | 
|---|
| 181 | FileRenameInformation, | 
|---|
| 182 | FileLinkInformation, | 
|---|
| 183 | FileNamesInformation, | 
|---|
| 184 | FileDispositionInformation, | 
|---|
| 185 | FilePositionInformation, | 
|---|
| 186 | FileFullEaInformation, | 
|---|
| 187 | FileModeInformation, | 
|---|
| 188 | FileAlignmentInformation, | 
|---|
| 189 | FileAllInformation, | 
|---|
| 190 | FileAllocationInformation, | 
|---|
| 191 | FileEndOfFileInformation, | 
|---|
| 192 | FileAlternateNameInformation, | 
|---|
| 193 | FileStreamInformation, | 
|---|
| 194 | FilePipeInformation, | 
|---|
| 195 | FilePipeLocalInformation, | 
|---|
| 196 | FilePipeRemoteInformation, | 
|---|
| 197 | FileMailslotQueryInformation, | 
|---|
| 198 | FileMailslotSetInformation, | 
|---|
| 199 | FileCompressionInformation, | 
|---|
| 200 | FileObjectIdInformation, | 
|---|
| 201 | FileCompletionInformation, | 
|---|
| 202 | FileMoveClusterInformation, | 
|---|
| 203 | FileQuotaInformation, | 
|---|
| 204 | FileReparsePointInformation, | 
|---|
| 205 | FileNetworkOpenInformation, | 
|---|
| 206 | FileAttributeTagInformation, | 
|---|
| 207 | FileTrackingInformation, | 
|---|
| 208 | FileMaximumInformation | 
|---|
| 209 | } FILE_INFORMATION_CLASS, *PFILE_INFORMATION_CLASS; | 
|---|
| 210 |  | 
|---|
| 211 | typedef enum _FSINFOCLASS { | 
|---|
| 212 | FileFsVolumeInformation = 1, | 
|---|
| 213 | FileFsLabelInformation, | 
|---|
| 214 | FileFsSizeInformation, | 
|---|
| 215 | FileFsDeviceInformation, | 
|---|
| 216 | FileFsAttributeInformation, | 
|---|
| 217 | FileFsControlInformation, | 
|---|
| 218 | FileFsFullSizeInformation, | 
|---|
| 219 | FileFsObjectIdInformation, | 
|---|
| 220 | FileFsMaximumInformation | 
|---|
| 221 | } FS_INFORMATION_CLASS, *PFS_INFORMATION_CLASS; | 
|---|
| 222 |  | 
|---|
| 223 | typedef enum _SECTION_INHERIT | 
|---|
| 224 | { | 
|---|
| 225 | ViewShare = 1, | 
|---|
| 226 | ViewUnmap = 2 | 
|---|
| 227 |  | 
|---|
| 228 | } SECTION_INHERIT; | 
|---|
| 229 |  | 
|---|
| 230 | /*      object information */ | 
|---|
| 231 |  | 
|---|
| 232 | typedef enum _OBJECT_INFORMATION_CLASS | 
|---|
| 233 | { | 
|---|
| 234 | DunnoTheConstants1 | 
|---|
| 235 |  | 
|---|
| 236 | } OBJECT_INFORMATION_CLASS, *POBJECT_INFORMATION_CLASS; | 
|---|
| 237 |  | 
|---|
| 238 |  | 
|---|
| 239 | /*      system information */ | 
|---|
| 240 |  | 
|---|
| 241 | typedef enum SYSTEM_INFORMATION_CLASS | 
|---|
| 242 | {       SystemBasicInformation = 0, | 
|---|
| 243 | Unknown1, | 
|---|
| 244 | SystemPerformanceInformation, | 
|---|
| 245 | SystemTimeInformation, | 
|---|
| 246 | Unknown4, | 
|---|
| 247 | SystemProcessInformation, | 
|---|
| 248 | Unknown6, | 
|---|
| 249 | Unknown7, | 
|---|
| 250 | Unknown8, | 
|---|
| 251 | Unknown9, | 
|---|
| 252 | Unknown10, | 
|---|
| 253 | SystemDriverInformation, | 
|---|
| 254 | Unknown12, | 
|---|
| 255 | Unknown13, | 
|---|
| 256 | Unknown14, | 
|---|
| 257 | Unknown15, | 
|---|
| 258 | SystemHandleList, | 
|---|
| 259 | Unknown17, | 
|---|
| 260 | Unknown18, | 
|---|
| 261 | Unknown19, | 
|---|
| 262 | Unknown20, | 
|---|
| 263 | SystemCacheInformation | 
|---|
| 264 | } SYSTEM_INFORMATION_CLASS, *PSYSTEM_INFORMATION_CLASS; | 
|---|
| 265 |  | 
|---|
| 266 | typedef struct { | 
|---|
| 267 | /* System Information Class 0x00 */ | 
|---|
| 268 | DWORD dwUnknown1; | 
|---|
| 269 | ULONG uKeMaximumIncrement; | 
|---|
| 270 | ULONG uPageSize; | 
|---|
| 271 | ULONG uMmNumberOfPhysicalPages; | 
|---|
| 272 | ULONG uMmLowestPhysicalPage; | 
|---|
| 273 | ULONG uMmHighestPhysicalPage; | 
|---|
| 274 | ULONG uAllocationGranularity; | 
|---|
| 275 | PVOID pLowestUserAddress; | 
|---|
| 276 | PVOID pMmHighestUserAddress; | 
|---|
| 277 | ULONG uKeActiveProcessors; | 
|---|
| 278 | BYTE bKeNumberProcessors; | 
|---|
| 279 | BYTE bUnknown2; | 
|---|
| 280 | WORD wUnknown3; | 
|---|
| 281 | } SYSTEM_BASIC_INFORMATION; | 
|---|
| 282 |  | 
|---|
| 283 | typedef struct { | 
|---|
| 284 | /* System Information Class 0x02 */ | 
|---|
| 285 | LARGE_INTEGER liIdleTime; | 
|---|
| 286 | DWORD dwSpare[76]; | 
|---|
| 287 | } SYSTEM_PERFORMANCE_INFORMATION; | 
|---|
| 288 |  | 
|---|
| 289 | typedef struct { | 
|---|
| 290 | /* System Information Class 0x03 */ | 
|---|
| 291 | LARGE_INTEGER liKeBootTime; | 
|---|
| 292 | LARGE_INTEGER liKeSystemTime; | 
|---|
| 293 | LARGE_INTEGER liExpTimeZoneBias; | 
|---|
| 294 | ULONG uCurrentTimeZoneId; | 
|---|
| 295 | DWORD dwReserved; | 
|---|
| 296 | } SYSTEM_TIME_INFORMATION; | 
|---|
| 297 |  | 
|---|
| 298 | typedef struct { | 
|---|
| 299 | /* System Information Class 0x05 */ | 
|---|
| 300 | DWORD dwOffset; | 
|---|
| 301 | DWORD dwThreadCount; | 
|---|
| 302 | DWORD dwUnknown1[6]; | 
|---|
| 303 | FILETIME ftCreationTime; | 
|---|
| 304 | DWORD dwUnknown2[5]; | 
|---|
| 305 | WCHAR* pszProcessName; | 
|---|
| 306 | DWORD dwBasePriority; | 
|---|
| 307 | DWORD dwProcessID; | 
|---|
| 308 | DWORD dwParentProcessID; | 
|---|
| 309 | DWORD dwHandleCount; | 
|---|
| 310 | DWORD dwUnknown3; | 
|---|
| 311 | DWORD dwUnknown4; | 
|---|
| 312 | DWORD dwVirtualBytesPeak; | 
|---|
| 313 | DWORD dwVirtualBytes; | 
|---|
| 314 | DWORD dwPageFaults; | 
|---|
| 315 | DWORD dwWorkingSetPeak; | 
|---|
| 316 | DWORD dwWorkingSet; | 
|---|
| 317 | DWORD dwUnknown5; | 
|---|
| 318 | DWORD dwPagedPool; | 
|---|
| 319 | DWORD dwUnknown6; | 
|---|
| 320 | DWORD dwNonPagedPool; | 
|---|
| 321 | DWORD dwPageFileBytesPeak; | 
|---|
| 322 | DWORD dwPrivateBytes; | 
|---|
| 323 | DWORD dwPageFileBytes; | 
|---|
| 324 | DWORD dwUnknown7[4]; | 
|---|
| 325 | #ifdef __WIN32OS2__ | 
|---|
| 326 | THREADINFO ti[1]; | 
|---|
| 327 | #else | 
|---|
| 328 | THREADINFO ti[0]; | 
|---|
| 329 | #endif | 
|---|
| 330 | } SYSTEM_PROCESS_INFORMATION; | 
|---|
| 331 |  | 
|---|
| 332 | typedef struct { | 
|---|
| 333 | /* System Information Class 0x0b */ | 
|---|
| 334 | PVOID pvAddress; | 
|---|
| 335 | DWORD dwUnknown1; | 
|---|
| 336 | DWORD dwUnknown2; | 
|---|
| 337 | DWORD dwEntryIndex; | 
|---|
| 338 | DWORD dwUnknown3; | 
|---|
| 339 | char szName[MAX_PATH + 1]; | 
|---|
| 340 | } SYSTEM_DRIVER_INFORMATION; | 
|---|
| 341 |  | 
|---|
| 342 | typedef struct { | 
|---|
| 343 | /* System Information Class 0x10 */ | 
|---|
| 344 | USHORT dwPID; | 
|---|
| 345 | USHORT dwCreatorBackTraceIndex; | 
|---|
| 346 | BYTE bObjectType; | 
|---|
| 347 | BYTE bHandleAttributes; | 
|---|
| 348 | USHORT usHandleOffset; | 
|---|
| 349 | DWORD dwKeObject; | 
|---|
| 350 | ULONG ulGrantedAccess; | 
|---|
| 351 | } HANDLEINFO, *PHANDLEINFO; | 
|---|
| 352 |  | 
|---|
| 353 | typedef struct { | 
|---|
| 354 | /* System Information Class 0x15 */ | 
|---|
| 355 | ULONG CurrentSize; | 
|---|
| 356 | ULONG PeakSize; | 
|---|
| 357 | ULONG PageFaultCount; | 
|---|
| 358 | ULONG MinimumWorkingSet; | 
|---|
| 359 | ULONG MaximumWorkingSet; | 
|---|
| 360 | ULONG unused[4]; | 
|---|
| 361 | } SYSTEM_CACHE_INFORMATION; | 
|---|
| 362 |  | 
|---|
| 363 | /* reading coffee grounds... */ | 
|---|
| 364 | typedef struct _THREAD_INFO | 
|---|
| 365 | {       DWORD   Unknown1[6]; | 
|---|
| 366 | DWORD   ThreadID; | 
|---|
| 367 | DWORD   Unknown2[3]; | 
|---|
| 368 | DWORD   Status; | 
|---|
| 369 | DWORD   WaitReason; | 
|---|
| 370 | DWORD   Unknown3[4]; | 
|---|
| 371 | } THREAD_INFO, PTHREAD_INFO; | 
|---|
| 372 |  | 
|---|
| 373 | typedef struct _VM_COUNTERS_ | 
|---|
| 374 | {       ULONG PeakVirtualSize; | 
|---|
| 375 | ULONG VirtualSize; | 
|---|
| 376 | ULONG PageFaultCount; | 
|---|
| 377 | ULONG PeakWorkingSetSize; | 
|---|
| 378 | ULONG WorkingSetSize; | 
|---|
| 379 | ULONG QuotaPeakPagedPoolUsage; | 
|---|
| 380 | ULONG QuotaPagedPoolUsage; | 
|---|
| 381 | ULONG QuotaPeakNonPagedPoolUsage; | 
|---|
| 382 | ULONG QuotaNonPagedPoolUsage; | 
|---|
| 383 | ULONG PagefileUsage; | 
|---|
| 384 | ULONG PeakPagefileUsage; | 
|---|
| 385 | } VM_COUNTERS, *PVM_COUNTERS; | 
|---|
| 386 |  | 
|---|
| 387 | /* process information */ | 
|---|
| 388 |  | 
|---|
| 389 | typedef struct _PROCESS_INFO | 
|---|
| 390 | {       DWORD           Offset;         /* 00 offset to next PROCESS_INFO ok*/ | 
|---|
| 391 | DWORD           ThreadCount;    /* 04 number of ThreadInfo member ok */ | 
|---|
| 392 | DWORD           Unknown1[6]; | 
|---|
| 393 | FILETIME        CreationTime;   /* 20 */ | 
|---|
| 394 | DWORD           Unknown2[5]; | 
|---|
| 395 | PWCHAR          ProcessName;    /* 3c ok */ | 
|---|
| 396 | DWORD           BasePriority; | 
|---|
| 397 | DWORD           ProcessID;      /* 44 ok*/ | 
|---|
| 398 | DWORD           ParentProcessID; | 
|---|
| 399 | DWORD           HandleCount; | 
|---|
| 400 | DWORD           Unknown3[2];    /* 50 */ | 
|---|
| 401 | ULONG           PeakVirtualSize; | 
|---|
| 402 | ULONG           VirtualSize; | 
|---|
| 403 | ULONG           PageFaultCount; | 
|---|
| 404 | ULONG           PeakWorkingSetSize; | 
|---|
| 405 | ULONG           WorkingSetSize; | 
|---|
| 406 | ULONG           QuotaPeakPagedPoolUsage; | 
|---|
| 407 | ULONG           QuotaPagedPoolUsage; | 
|---|
| 408 | ULONG           QuotaPeakNonPagedPoolUsage; | 
|---|
| 409 | ULONG           QuotaNonPagedPoolUsage; | 
|---|
| 410 | ULONG           PagefileUsage; | 
|---|
| 411 | ULONG           PeakPagefileUsage; | 
|---|
| 412 | DWORD           PrivateBytes; | 
|---|
| 413 | DWORD           Unknown6[4]; | 
|---|
| 414 | THREAD_INFO     ati[ANYSIZE_ARRAY];     /* 94 size=0x40*/ | 
|---|
| 415 | } PROCESS_INFO, PPROCESS_INFO; | 
|---|
| 416 |  | 
|---|
| 417 | NTSTATUS WINAPI NtQuerySystemInformation( | 
|---|
| 418 | IN SYSTEM_INFORMATION_CLASS SystemInformationClass, | 
|---|
| 419 | OUT PVOID SystemInformation, | 
|---|
| 420 | IN ULONG Length, | 
|---|
| 421 | OUT PULONG ResultLength); | 
|---|
| 422 |  | 
|---|
| 423 | /* | 
|---|
| 424 | *      system configuration | 
|---|
| 425 | */ | 
|---|
| 426 |  | 
|---|
| 427 |  | 
|---|
| 428 | typedef struct _SYSTEM_TIME_ADJUSTMENT | 
|---|
| 429 | { | 
|---|
| 430 | ULONG   TimeAdjustment; | 
|---|
| 431 | BOOLEAN TimeAdjustmentDisabled; | 
|---|
| 432 |  | 
|---|
| 433 | } SYSTEM_TIME_ADJUSTMENT, *PSYSTEM_TIME_ADJUSTMENT; | 
|---|
| 434 |  | 
|---|
| 435 | typedef struct _SYSTEM_CONFIGURATION_INFO | 
|---|
| 436 | { | 
|---|
| 437 | union | 
|---|
| 438 | { ULONG OemId; | 
|---|
| 439 | struct | 
|---|
| 440 | { WORD        ProcessorArchitecture; | 
|---|
| 441 | WORD        Reserved; | 
|---|
| 442 | } tag1; | 
|---|
| 443 | } tag2; | 
|---|
| 444 | ULONG   PageSize; | 
|---|
| 445 | PVOID   MinimumApplicationAddress; | 
|---|
| 446 | PVOID   MaximumApplicationAddress; | 
|---|
| 447 | ULONG   ActiveProcessorMask; | 
|---|
| 448 | ULONG   NumberOfProcessors; | 
|---|
| 449 | ULONG   ProcessorType; | 
|---|
| 450 | ULONG   AllocationGranularity; | 
|---|
| 451 | WORD    ProcessorLevel; | 
|---|
| 452 | WORD    ProcessorRevision; | 
|---|
| 453 |  | 
|---|
| 454 | } SYSTEM_CONFIGURATION_INFO, *PSYSTEM_CONFIGURATION_INFO; | 
|---|
| 455 |  | 
|---|
| 456 |  | 
|---|
| 457 | /* | 
|---|
| 458 | *      NtQueryProcessInformation | 
|---|
| 459 | */ | 
|---|
| 460 |  | 
|---|
| 461 | /* parameter ProcessInformationClass */ | 
|---|
| 462 |  | 
|---|
| 463 | typedef enum _PROCESSINFOCLASS | 
|---|
| 464 | {       ProcessBasicInformation, | 
|---|
| 465 | ProcessQuotaLimits, | 
|---|
| 466 | ProcessIoCounters, | 
|---|
| 467 | ProcessVmCounters, | 
|---|
| 468 | ProcessTimes, | 
|---|
| 469 | ProcessBasePriority, | 
|---|
| 470 | ProcessRaisePriority, | 
|---|
| 471 | ProcessDebugPort, | 
|---|
| 472 | ProcessExceptionPort, | 
|---|
| 473 | ProcessAccessToken, | 
|---|
| 474 | ProcessLdtInformation, | 
|---|
| 475 | ProcessLdtSize, | 
|---|
| 476 | ProcessDefaultHardErrorMode, | 
|---|
| 477 | ProcessIoPortHandlers, | 
|---|
| 478 | ProcessPooledUsageAndLimits, | 
|---|
| 479 | ProcessWorkingSetWatch, | 
|---|
| 480 | ProcessUserModeIOPL, | 
|---|
| 481 | ProcessEnableAlignmentFaultFixup, | 
|---|
| 482 | ProcessPriorityClass, | 
|---|
| 483 | ProcessWx86Information, | 
|---|
| 484 | ProcessHandleCount, | 
|---|
| 485 | ProcessAffinityMask, | 
|---|
| 486 | ProcessPriorityBoost, | 
|---|
| 487 | ProcessDeviceMap, | 
|---|
| 488 | ProcessSessionInformation, | 
|---|
| 489 | ProcessForegroundInformation, | 
|---|
| 490 | ProcessWow64Information, | 
|---|
| 491 | MaxProcessInfoClass | 
|---|
| 492 | } PROCESSINFOCLASS; | 
|---|
| 493 |  | 
|---|
| 494 | /* parameter ProcessInformation (depending on ProcessInformationClass) */ | 
|---|
| 495 |  | 
|---|
| 496 | typedef struct _PROCESS_BASIC_INFORMATION | 
|---|
| 497 | {       DWORD   ExitStatus; | 
|---|
| 498 | DWORD   PebBaseAddress; | 
|---|
| 499 | DWORD   AffinityMask; | 
|---|
| 500 | DWORD   BasePriority; | 
|---|
| 501 | ULONG   UniqueProcessId; | 
|---|
| 502 | ULONG   InheritedFromUniqueProcessId; | 
|---|
| 503 | } PROCESS_BASIC_INFORMATION; | 
|---|
| 504 |  | 
|---|
| 505 | NTSTATUS WINAPI NtQueryInformationProcess( | 
|---|
| 506 | IN HANDLE ProcessHandle, | 
|---|
| 507 | IN PROCESSINFOCLASS ProcessInformationClass, | 
|---|
| 508 | OUT PVOID ProcessInformation, | 
|---|
| 509 | IN ULONG ProcessInformationLength, | 
|---|
| 510 | OUT PULONG ReturnLength); | 
|---|
| 511 |  | 
|---|
| 512 | #define NtCurrentProcess() ( (HANDLE) -1 ) | 
|---|
| 513 |  | 
|---|
| 514 | /* | 
|---|
| 515 | *      timer | 
|---|
| 516 | */ | 
|---|
| 517 |  | 
|---|
| 518 | typedef enum _TIMER_TYPE | 
|---|
| 519 | { | 
|---|
| 520 | NotificationTimer, | 
|---|
| 521 | SynchronizationTimer | 
|---|
| 522 |  | 
|---|
| 523 | } TIMER_TYPE; | 
|---|
| 524 |  | 
|---|
| 525 | /*      token functions */ | 
|---|
| 526 |  | 
|---|
| 527 | NTSTATUS WINAPI NtOpenProcessToken( | 
|---|
| 528 | HANDLE ProcessHandle, | 
|---|
| 529 | DWORD DesiredAccess, | 
|---|
| 530 | HANDLE *TokenHandle); | 
|---|
| 531 |  | 
|---|
| 532 | NTSTATUS WINAPI NtOpenThreadToken( | 
|---|
| 533 | HANDLE ThreadHandle, | 
|---|
| 534 | DWORD DesiredAccess, | 
|---|
| 535 | BOOLEAN OpenAsSelf, | 
|---|
| 536 | HANDLE *TokenHandle); | 
|---|
| 537 |  | 
|---|
| 538 | NTSTATUS WINAPI NtAdjustPrivilegesToken( | 
|---|
| 539 | IN HANDLE TokenHandle, | 
|---|
| 540 | IN BOOLEAN DisableAllPrivileges, | 
|---|
| 541 | IN PTOKEN_PRIVILEGES NewState, | 
|---|
| 542 | IN DWORD BufferLength, | 
|---|
| 543 | OUT PTOKEN_PRIVILEGES PreviousState, | 
|---|
| 544 | OUT PDWORD ReturnLength); | 
|---|
| 545 |  | 
|---|
| 546 | NTSTATUS WINAPI NtQueryInformationToken( | 
|---|
| 547 | HANDLE token, | 
|---|
| 548 | DWORD tokeninfoclass, | 
|---|
| 549 | LPVOID tokeninfo, | 
|---|
| 550 | DWORD tokeninfolength, | 
|---|
| 551 | LPDWORD retlen ); | 
|---|
| 552 |  | 
|---|
| 553 | /*      sid functions */ | 
|---|
| 554 |  | 
|---|
| 555 | BOOLEAN WINAPI RtlAllocateAndInitializeSid ( | 
|---|
| 556 | PSID_IDENTIFIER_AUTHORITY pIdentifierAuthority, | 
|---|
| 557 | BYTE nSubAuthorityCount, | 
|---|
| 558 | DWORD nSubAuthority0, DWORD nSubAuthority1, | 
|---|
| 559 | DWORD nSubAuthority2, DWORD nSubAuthority3, | 
|---|
| 560 | DWORD nSubAuthority4, DWORD nSubAuthority5, | 
|---|
| 561 | DWORD nSubAuthority6, DWORD nSubAuthority7, | 
|---|
| 562 | PSID *pSid ); | 
|---|
| 563 |  | 
|---|
| 564 | BOOL WINAPI RtlInitializeSid( | 
|---|
| 565 | PSID pSid, | 
|---|
| 566 | PSID_IDENTIFIER_AUTHORITY pIdentifierAuthority, | 
|---|
| 567 | BYTE nSubAuthorityCount); | 
|---|
| 568 |  | 
|---|
| 569 | DWORD WINAPI RtlFreeSid( | 
|---|
| 570 | PSID pSid); | 
|---|
| 571 |  | 
|---|
| 572 | BOOL WINAPI RtlEqualSid( | 
|---|
| 573 | PSID pSid1, | 
|---|
| 574 | PSID pSid2 ); | 
|---|
| 575 |  | 
|---|
| 576 | DWORD WINAPI RtlLengthRequiredSid( | 
|---|
| 577 | DWORD nrofsubauths); | 
|---|
| 578 |  | 
|---|
| 579 | DWORD WINAPI RtlLengthSid( | 
|---|
| 580 | PSID sid); | 
|---|
| 581 |  | 
|---|
| 582 | LPDWORD WINAPI RtlSubAuthoritySid( | 
|---|
| 583 | PSID PSID, | 
|---|
| 584 | DWORD nr); | 
|---|
| 585 |  | 
|---|
| 586 | LPBYTE WINAPI RtlSubAuthorityCountSid( | 
|---|
| 587 | PSID pSid); | 
|---|
| 588 |  | 
|---|
| 589 | DWORD WINAPI RtlCopySid( | 
|---|
| 590 | DWORD len, | 
|---|
| 591 | PSID to, | 
|---|
| 592 | PSID from); | 
|---|
| 593 |  | 
|---|
| 594 | BOOL WINAPI RtlValidSid( | 
|---|
| 595 | PSID pSid); | 
|---|
| 596 |  | 
|---|
| 597 | BOOL WINAPI RtlEqualPrefixSid( | 
|---|
| 598 | PSID pSid1, | 
|---|
| 599 | PSID pSid2); | 
|---|
| 600 |  | 
|---|
| 601 | PSID_IDENTIFIER_AUTHORITY WINAPI RtlIdentifierAuthoritySid( | 
|---|
| 602 | PSID pSid ); | 
|---|
| 603 |  | 
|---|
| 604 | /*      security descriptor functions */ | 
|---|
| 605 |  | 
|---|
| 606 | NTSTATUS WINAPI RtlCreateSecurityDescriptor( | 
|---|
| 607 | PSECURITY_DESCRIPTOR lpsd, | 
|---|
| 608 | DWORD rev); | 
|---|
| 609 |  | 
|---|
| 610 | NTSTATUS WINAPI RtlValidSecurityDescriptor( | 
|---|
| 611 | PSECURITY_DESCRIPTOR SecurityDescriptor); | 
|---|
| 612 |  | 
|---|
| 613 | ULONG WINAPI RtlLengthSecurityDescriptor( | 
|---|
| 614 | PSECURITY_DESCRIPTOR SecurityDescriptor); | 
|---|
| 615 |  | 
|---|
| 616 | NTSTATUS WINAPI RtlGetDaclSecurityDescriptor( | 
|---|
| 617 | IN PSECURITY_DESCRIPTOR pSecurityDescriptor, | 
|---|
| 618 | OUT PBOOLEAN lpbDaclPresent, | 
|---|
| 619 | OUT PACL *pDacl, | 
|---|
| 620 | OUT PBOOLEAN lpbDaclDefaulted); | 
|---|
| 621 |  | 
|---|
| 622 | NTSTATUS WINAPI RtlSetDaclSecurityDescriptor ( | 
|---|
| 623 | PSECURITY_DESCRIPTOR lpsd, | 
|---|
| 624 | BOOLEAN daclpresent, | 
|---|
| 625 | PACL dacl, | 
|---|
| 626 | BOOLEAN dacldefaulted ); | 
|---|
| 627 |  | 
|---|
| 628 | NTSTATUS WINAPI RtlGetSaclSecurityDescriptor( | 
|---|
| 629 | IN PSECURITY_DESCRIPTOR pSecurityDescriptor, | 
|---|
| 630 | OUT PBOOLEAN lpbSaclPresent, | 
|---|
| 631 | OUT PACL *pSacl, | 
|---|
| 632 | OUT PBOOLEAN lpbSaclDefaulted); | 
|---|
| 633 |  | 
|---|
| 634 | NTSTATUS WINAPI RtlSetSaclSecurityDescriptor ( | 
|---|
| 635 | PSECURITY_DESCRIPTOR lpsd, | 
|---|
| 636 | BOOLEAN saclpresent, | 
|---|
| 637 | PACL sacl, | 
|---|
| 638 | BOOLEAN sacldefaulted); | 
|---|
| 639 |  | 
|---|
| 640 | NTSTATUS WINAPI RtlGetOwnerSecurityDescriptor( | 
|---|
| 641 | PSECURITY_DESCRIPTOR SecurityDescriptor, | 
|---|
| 642 | PSID *Owner, | 
|---|
| 643 | PBOOLEAN OwnerDefaulted); | 
|---|
| 644 |  | 
|---|
| 645 | NTSTATUS WINAPI RtlSetOwnerSecurityDescriptor( | 
|---|
| 646 | PSECURITY_DESCRIPTOR lpsd, | 
|---|
| 647 | PSID owner, | 
|---|
| 648 | BOOLEAN ownerdefaulted); | 
|---|
| 649 |  | 
|---|
| 650 | NTSTATUS WINAPI RtlSetGroupSecurityDescriptor ( | 
|---|
| 651 | PSECURITY_DESCRIPTOR lpsd, | 
|---|
| 652 | PSID group, | 
|---|
| 653 | BOOLEAN groupdefaulted); | 
|---|
| 654 |  | 
|---|
| 655 | NTSTATUS WINAPI RtlGetGroupSecurityDescriptor( | 
|---|
| 656 | PSECURITY_DESCRIPTOR SecurityDescriptor, | 
|---|
| 657 | PSID *Group, | 
|---|
| 658 | PBOOLEAN GroupDefaulted); | 
|---|
| 659 |  | 
|---|
| 660 | NTSTATUS WINAPI RtlMakeSelfRelativeSD( | 
|---|
| 661 | IN PSECURITY_DESCRIPTOR pAbsoluteSecurityDescriptor, | 
|---|
| 662 | IN PSECURITY_DESCRIPTOR pSelfRelativeSecurityDescriptor, | 
|---|
| 663 | IN OUT LPDWORD lpdwBufferLength); | 
|---|
| 664 |  | 
|---|
| 665 | NTSTATUS WINAPI RtlGetControlSecurityDescriptor( | 
|---|
| 666 | PSECURITY_DESCRIPTOR  pSecurityDescriptor, | 
|---|
| 667 | PSECURITY_DESCRIPTOR_CONTROL pControl, | 
|---|
| 668 | LPDWORD lpdwRevision); | 
|---|
| 669 |  | 
|---|
| 670 | /*      acl functions */ | 
|---|
| 671 |  | 
|---|
| 672 | NTSTATUS WINAPI RtlCreateAcl( | 
|---|
| 673 | PACL acl, | 
|---|
| 674 | DWORD size, | 
|---|
| 675 | DWORD rev); | 
|---|
| 676 |  | 
|---|
| 677 | BOOLEAN WINAPI RtlFirstFreeAce( | 
|---|
| 678 | PACL acl, | 
|---|
| 679 | PACE_HEADER *x); | 
|---|
| 680 |  | 
|---|
| 681 | NTSTATUS WINAPI RtlAddAce( | 
|---|
| 682 | PACL acl, | 
|---|
| 683 | DWORD rev, | 
|---|
| 684 | DWORD xnrofaces, | 
|---|
| 685 | PACE_HEADER acestart, | 
|---|
| 686 | DWORD acelen); | 
|---|
| 687 |  | 
|---|
| 688 | BOOL WINAPI RtlAddAccessAllowedAce( | 
|---|
| 689 | IN OUT PACL pAcl, | 
|---|
| 690 | IN DWORD dwAceRevision, | 
|---|
| 691 | IN DWORD AccessMask, | 
|---|
| 692 | IN PSID pSid); | 
|---|
| 693 |  | 
|---|
| 694 | BOOL WINAPI AddAccessAllowedAceEx( | 
|---|
| 695 | IN OUT PACL pAcl, | 
|---|
| 696 | IN DWORD dwAceRevision, | 
|---|
| 697 | IN DWORD AceFlags, | 
|---|
| 698 | IN DWORD AccessMask, | 
|---|
| 699 | IN PSID pSid); | 
|---|
| 700 |  | 
|---|
| 701 | DWORD WINAPI RtlGetAce( | 
|---|
| 702 | PACL pAcl, | 
|---|
| 703 | DWORD dwAceIndex, | 
|---|
| 704 | LPVOID *pAce ); | 
|---|
| 705 |  | 
|---|
| 706 | /*      string functions */ | 
|---|
| 707 |  | 
|---|
| 708 | DWORD       WINAPI RtlAnsiStringToUnicodeSize(const STRING*); | 
|---|
| 709 | NTSTATUS    WINAPI RtlAnsiStringToUnicodeString(UNICODE_STRING*,const STRING *,BOOLEAN); | 
|---|
| 710 | NTSTATUS    WINAPI RtlAppendAsciizToString(STRING*,LPCSTR); | 
|---|
| 711 | NTSTATUS    WINAPI RtlAppendStringToString(STRING*,const STRING*); | 
|---|
| 712 | NTSTATUS    WINAPI RtlAppendUnicodeStringToString(UNICODE_STRING*,const UNICODE_STRING*); | 
|---|
| 713 | NTSTATUS    WINAPI RtlAppendUnicodeToString(UNICODE_STRING*,LPCWSTR); | 
|---|
| 714 | LONG        WINAPI RtlCompareString(const STRING*,const STRING*,BOOLEAN); | 
|---|
| 715 | LONG        WINAPI RtlCompareUnicodeString(const UNICODE_STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 716 | void        WINAPI RtlCopyString(STRING*,const STRING*); | 
|---|
| 717 | void        WINAPI RtlCopyUnicodeString(UNICODE_STRING*,const UNICODE_STRING*); | 
|---|
| 718 | BOOLEAN     WINAPI RtlCreateUnicodeString(PUNICODE_STRING,LPCWSTR); | 
|---|
| 719 | BOOLEAN     WINAPI RtlCreateUnicodeStringFromAsciiz(PUNICODE_STRING,LPCSTR); | 
|---|
| 720 | void        WINAPI RtlEraseUnicodeString(UNICODE_STRING*); | 
|---|
| 721 | BOOLEAN     WINAPI RtlEqualString(const STRING*,const STRING*,BOOLEAN); | 
|---|
| 722 | BOOLEAN     WINAPI RtlEqualUnicodeString(const UNICODE_STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 723 | void        WINAPI RtlFreeAnsiString(PSTRING); | 
|---|
| 724 | void        WINAPI RtlFreeOemString(PSTRING); | 
|---|
| 725 | void        WINAPI RtlFreeUnicodeString(PUNICODE_STRING); | 
|---|
| 726 | void        WINAPI RtlInitAnsiString(PSTRING,LPCSTR); | 
|---|
| 727 | void        WINAPI RtlInitString(PSTRING,LPCSTR); | 
|---|
| 728 | void        WINAPI RtlInitUnicodeString(PUNICODE_STRING,LPCWSTR); | 
|---|
| 729 | NTSTATUS    WINAPI RtlMultiByteToUnicodeN(LPWSTR,DWORD,LPDWORD,LPCSTR,DWORD); | 
|---|
| 730 | NTSTATUS    WINAPI RtlMultiByteToUnicodeSize(DWORD*,LPCSTR,UINT); | 
|---|
| 731 | UINT        WINAPI RtlOemStringToUnicodeSize(const STRING*); | 
|---|
| 732 | NTSTATUS    WINAPI RtlOemStringToUnicodeString(UNICODE_STRING*,const STRING*,BOOLEAN); | 
|---|
| 733 | NTSTATUS    WINAPI RtlOemToUnicodeN(LPWSTR,DWORD,LPDWORD,LPCSTR,DWORD); | 
|---|
| 734 | BOOLEAN     WINAPI RtlPrefixString(const STRING*,const STRING*,BOOLEAN); | 
|---|
| 735 | BOOLEAN     WINAPI RtlPrefixUnicodeString(const UNICODE_STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 736 | DWORD       WINAPI RtlUnicodeStringToAnsiSize(const UNICODE_STRING*); | 
|---|
| 737 | NTSTATUS    WINAPI RtlUnicodeStringToAnsiString(STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 738 | DWORD       WINAPI RtlUnicodeStringToOemSize(const UNICODE_STRING*); | 
|---|
| 739 | NTSTATUS    WINAPI RtlUnicodeStringToOemString(STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 740 | NTSTATUS    WINAPI RtlUnicodeToMultiByteN(LPSTR,DWORD,LPDWORD,LPCWSTR,DWORD); | 
|---|
| 741 | NTSTATUS    WINAPI RtlUnicodeToMultiByteSize(DWORD*,LPCWSTR,UINT); | 
|---|
| 742 | NTSTATUS    WINAPI RtlUnicodeToOemN(LPSTR,DWORD,LPDWORD,LPCWSTR,DWORD); | 
|---|
| 743 | NTSTATUS    WINAPI RtlUpcaseUnicodeString(UNICODE_STRING*,const UNICODE_STRING *,BOOLEAN); | 
|---|
| 744 | NTSTATUS    WINAPI RtlUpcaseUnicodeStringToAnsiString(STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 745 | NTSTATUS    WINAPI RtlUpcaseUnicodeStringToOemString(STRING*,const UNICODE_STRING*,BOOLEAN); | 
|---|
| 746 | NTSTATUS    WINAPI RtlUpcaseUnicodeToMultiByteN(LPSTR,DWORD,LPDWORD,LPCWSTR,DWORD); | 
|---|
| 747 | NTSTATUS    WINAPI RtlUpcaseUnicodeToOemN(LPSTR,DWORD,LPDWORD,LPCWSTR,DWORD); | 
|---|
| 748 |  | 
|---|
| 749 | DWORD WINAPI RtlIsTextUnicode( | 
|---|
| 750 | LPVOID buf, | 
|---|
| 751 | DWORD len, | 
|---|
| 752 | DWORD *pf); | 
|---|
| 753 |  | 
|---|
| 754 | /*      resource functions */ | 
|---|
| 755 |  | 
|---|
| 756 | typedef struct _RTL_RWLOCK { | 
|---|
| 757 | CRITICAL_SECTION        rtlCS; | 
|---|
| 758 | HANDLE          hSharedReleaseSemaphore; | 
|---|
| 759 | UINT                    uSharedWaiters; | 
|---|
| 760 | HANDLE          hExclusiveReleaseSemaphore; | 
|---|
| 761 | UINT                    uExclusiveWaiters; | 
|---|
| 762 | INT                     iNumberActive; | 
|---|
| 763 | HANDLE          hOwningThreadId; | 
|---|
| 764 | DWORD                   dwTimeoutBoost; | 
|---|
| 765 | PVOID                   pDebugInfo; | 
|---|
| 766 | } RTL_RWLOCK, *LPRTL_RWLOCK; | 
|---|
| 767 |  | 
|---|
| 768 | VOID   WINAPI RtlInitializeResource( | 
|---|
| 769 | LPRTL_RWLOCK); | 
|---|
| 770 |  | 
|---|
| 771 | VOID   WINAPI RtlDeleteResource( | 
|---|
| 772 | LPRTL_RWLOCK); | 
|---|
| 773 |  | 
|---|
| 774 | BYTE   WINAPI RtlAcquireResourceExclusive( | 
|---|
| 775 | LPRTL_RWLOCK, BYTE fWait); | 
|---|
| 776 |  | 
|---|
| 777 | BYTE   WINAPI RtlAcquireResourceShared( | 
|---|
| 778 | LPRTL_RWLOCK, BYTE fWait); | 
|---|
| 779 |  | 
|---|
| 780 | VOID   WINAPI RtlReleaseResource( | 
|---|
| 781 | LPRTL_RWLOCK); | 
|---|
| 782 |  | 
|---|
| 783 | VOID   WINAPI RtlDumpResource( | 
|---|
| 784 | LPRTL_RWLOCK); | 
|---|
| 785 |  | 
|---|
| 786 | /*      time functions */ | 
|---|
| 787 |  | 
|---|
| 788 | typedef struct _TIME_FIELDS | 
|---|
| 789 | {   CSHORT Year; | 
|---|
| 790 | CSHORT Month; | 
|---|
| 791 | CSHORT Day; | 
|---|
| 792 | CSHORT Hour; | 
|---|
| 793 | CSHORT Minute; | 
|---|
| 794 | CSHORT Second; | 
|---|
| 795 | CSHORT Milliseconds; | 
|---|
| 796 | CSHORT Weekday; | 
|---|
| 797 | } TIME_FIELDS; | 
|---|
| 798 |  | 
|---|
| 799 | typedef TIME_FIELDS *PTIME_FIELDS; | 
|---|
| 800 |  | 
|---|
| 801 | VOID WINAPI RtlSystemTimeToLocalTime( | 
|---|
| 802 | IN  PLARGE_INTEGER SystemTime, | 
|---|
| 803 | OUT PLARGE_INTEGER LocalTime); | 
|---|
| 804 |  | 
|---|
| 805 | VOID WINAPI RtlTimeToTimeFields( | 
|---|
| 806 | PLARGE_INTEGER liTime, | 
|---|
| 807 | PTIME_FIELDS TimeFields); | 
|---|
| 808 |  | 
|---|
| 809 | BOOLEAN WINAPI RtlTimeFieldsToTime( | 
|---|
| 810 | PTIME_FIELDS tfTimeFields, | 
|---|
| 811 | PLARGE_INTEGER Time); | 
|---|
| 812 |  | 
|---|
| 813 | VOID WINAPI RtlTimeToElapsedTimeFields( | 
|---|
| 814 | PLARGE_INTEGER liTime, | 
|---|
| 815 | PTIME_FIELDS TimeFields); | 
|---|
| 816 |  | 
|---|
| 817 | void    WINAPI NtQuerySystemTime( LARGE_INTEGER *time ); | 
|---|
| 818 |  | 
|---|
| 819 | BOOLEAN WINAPI RtlTimeToSecondsSince1980( const FILETIME *time, LPDWORD res ); | 
|---|
| 820 | BOOLEAN WINAPI RtlTimeToSecondsSince1970( const FILETIME *time, LPDWORD res ); | 
|---|
| 821 | void    WINAPI RtlSecondsSince1970ToTime( DWORD time, FILETIME *res ); | 
|---|
| 822 | void    WINAPI RtlSecondsSince1980ToTime( DWORD time, FILETIME *res ); | 
|---|
| 823 |  | 
|---|
| 824 | /*      heap functions */ | 
|---|
| 825 |  | 
|---|
| 826 | /* Data structure for heap definition. This includes various | 
|---|
| 827 | sizing parameters and callback routines, which, if left NULL, | 
|---|
| 828 | result in default behavior */ | 
|---|
| 829 |  | 
|---|
| 830 | typedef struct | 
|---|
| 831 | {       ULONG   Length;         /* = sizeof(RTL_HEAP_DEFINITION) */ | 
|---|
| 832 | ULONG   Unknown[11]; | 
|---|
| 833 | } RTL_HEAP_DEFINITION, *PRTL_HEAP_DEFINITION; | 
|---|
| 834 |  | 
|---|
| 835 | HANDLE    WINAPI RtlCreateHeap(ULONG,PVOID,ULONG,ULONG,PVOID,PRTL_HEAP_DEFINITION); | 
|---|
| 836 | HANDLE    WINAPI RtlDestroyHeap(HANDLE); | 
|---|
| 837 | PVOID     WINAPI RtlAllocateHeap(HANDLE,ULONG,ULONG); | 
|---|
| 838 | BOOLEAN   WINAPI RtlFreeHeap(HANDLE,ULONG,PVOID); | 
|---|
| 839 | PVOID     WINAPI RtlReAllocateHeap(HANDLE,ULONG,PVOID,ULONG); | 
|---|
| 840 | ULONG     WINAPI RtlCompactHeap(HANDLE,ULONG); | 
|---|
| 841 | BOOLEAN   WINAPI RtlLockHeap(HANDLE); | 
|---|
| 842 | BOOLEAN   WINAPI RtlUnlockHeap(HANDLE); | 
|---|
| 843 | ULONG     WINAPI RtlSizeHeap(HANDLE,ULONG,PVOID); | 
|---|
| 844 | BOOLEAN   WINAPI RtlValidateHeap(HANDLE,ULONG,PCVOID); | 
|---|
| 845 | ULONG     WINAPI RtlGetProcessHeaps(ULONG,HANDLE*); | 
|---|
| 846 | NTSTATUS  WINAPI RtlWalkHeap(HANDLE,PVOID); | 
|---|
| 847 |  | 
|---|
| 848 | /*      exception */ | 
|---|
| 849 |  | 
|---|
| 850 | void WINAPI NtRaiseException( | 
|---|
| 851 | PEXCEPTION_RECORD,PCONTEXT,BOOL); | 
|---|
| 852 |  | 
|---|
| 853 | void WINAPI RtlRaiseException( | 
|---|
| 854 | PEXCEPTION_RECORD); | 
|---|
| 855 |  | 
|---|
| 856 | void WINAPI RtlRaiseStatus( | 
|---|
| 857 | NTSTATUS); | 
|---|
| 858 |  | 
|---|
| 859 | void WINAPI RtlUnwind( | 
|---|
| 860 | PEXCEPTION_FRAME, | 
|---|
| 861 | LPVOID, | 
|---|
| 862 | PEXCEPTION_RECORD,DWORD); | 
|---|
| 863 |  | 
|---|
| 864 | /*      process environment block  */ | 
|---|
| 865 | VOID WINAPI RtlAcquirePebLock(void); | 
|---|
| 866 | VOID WINAPI RtlReleasePebLock(void); | 
|---|
| 867 |  | 
|---|
| 868 | /*      mathematics */ | 
|---|
| 869 | LONGLONG  WINAPI RtlConvertLongToLargeInteger( LONG a ); | 
|---|
| 870 | LONGLONG  WINAPI RtlEnlargedIntegerMultiply( INT a, INT b ); | 
|---|
| 871 | LONGLONG  WINAPI RtlExtendedMagicDivide( LONGLONG a, LONGLONG b, INT shift ); | 
|---|
| 872 | LONGLONG  WINAPI RtlExtendedIntegerMultiply( LONGLONG a, INT b ); | 
|---|
| 873 | LONGLONG  WINAPI RtlExtendedLargeIntegerDivide( LONGLONG a, INT b, INT *rem ); | 
|---|
| 874 | LONGLONG  WINAPI RtlLargeIntegerAdd( LONGLONG a, LONGLONG b ); | 
|---|
| 875 | LONGLONG  WINAPI RtlLargeIntegerArithmeticShift( LONGLONG a, INT count ); | 
|---|
| 876 | LONGLONG  WINAPI RtlLargeIntegerNegate( LONGLONG a ); | 
|---|
| 877 | LONGLONG  WINAPI RtlLargeIntegerShiftLeft( LONGLONG a, INT count ); | 
|---|
| 878 | LONGLONG  WINAPI RtlLargeIntegerShiftRight( LONGLONG a, INT count ); | 
|---|
| 879 | LONGLONG  WINAPI RtlLargeIntegerSubtract( LONGLONG a, LONGLONG b ); | 
|---|
| 880 | ULONGLONG WINAPI RtlEnlargedUnsignedMultiply( UINT a, UINT b ); | 
|---|
| 881 | UINT      WINAPI RtlEnlargedUnsignedDivide( ULONGLONG a, UINT b, UINT *remptr ); | 
|---|
| 882 | ULONGLONG WINAPI RtlConvertUlongToLargeInteger( ULONG a ); | 
|---|
| 883 | ULONGLONG WINAPI RtlLargeIntegerDivide( ULONGLONG a, ULONGLONG b, ULONGLONG *rem ); | 
|---|
| 884 |  | 
|---|
| 885 | /*      environment */ | 
|---|
| 886 | DWORD WINAPI RtlCreateEnvironment( | 
|---|
| 887 | DWORD x1, | 
|---|
| 888 | DWORD x2); | 
|---|
| 889 |  | 
|---|
| 890 | DWORD WINAPI RtlDestroyEnvironment( | 
|---|
| 891 | DWORD x); | 
|---|
| 892 |  | 
|---|
| 893 | DWORD WINAPI RtlQueryEnvironmentVariable_U( | 
|---|
| 894 | DWORD x1, | 
|---|
| 895 | PUNICODE_STRING key, | 
|---|
| 896 | PUNICODE_STRING val) ; | 
|---|
| 897 |  | 
|---|
| 898 | DWORD WINAPI RtlSetEnvironmentVariable( | 
|---|
| 899 | DWORD x1, | 
|---|
| 900 | PUNICODE_STRING key, | 
|---|
| 901 | PUNICODE_STRING val); | 
|---|
| 902 |  | 
|---|
| 903 | /*      object security */ | 
|---|
| 904 |  | 
|---|
| 905 | DWORD WINAPI RtlNewSecurityObject( | 
|---|
| 906 | DWORD x1, | 
|---|
| 907 | DWORD x2, | 
|---|
| 908 | DWORD x3, | 
|---|
| 909 | DWORD x4, | 
|---|
| 910 | DWORD x5, | 
|---|
| 911 | DWORD x6); | 
|---|
| 912 |  | 
|---|
| 913 | DWORD WINAPI RtlDeleteSecurityObject( | 
|---|
| 914 | DWORD x1); | 
|---|
| 915 |  | 
|---|
| 916 | NTSTATUS WINAPI | 
|---|
| 917 | NtQuerySecurityObject( | 
|---|
| 918 | IN HANDLE Object, | 
|---|
| 919 | IN SECURITY_INFORMATION RequestedInformation, | 
|---|
| 920 | OUT PSECURITY_DESCRIPTOR pSecurityDesriptor, | 
|---|
| 921 | IN ULONG Length, | 
|---|
| 922 | OUT PULONG ResultLength); | 
|---|
| 923 |  | 
|---|
| 924 | NTSTATUS WINAPI | 
|---|
| 925 | NtSetSecurityObject( | 
|---|
| 926 | IN HANDLE Handle, | 
|---|
| 927 | IN SECURITY_INFORMATION SecurityInformation, | 
|---|
| 928 | IN PSECURITY_DESCRIPTOR SecurityDescriptor); | 
|---|
| 929 |  | 
|---|
| 930 | /*      registry functions */ | 
|---|
| 931 |  | 
|---|
| 932 | NTSTATUS    WINAPI NtCreateKey(PHANDLE,ACCESS_MASK,const OBJECT_ATTRIBUTES*,ULONG, | 
|---|
| 933 | const UNICODE_STRING*,ULONG,PULONG); | 
|---|
| 934 | NTSTATUS    WINAPI NtDeleteKey(HANDLE); | 
|---|
| 935 | NTSTATUS    WINAPI NtDeleteValueKey(HANDLE,const UNICODE_STRING*); | 
|---|
| 936 | NTSTATUS    WINAPI NtOpenKey(PHANDLE,ACCESS_MASK,const OBJECT_ATTRIBUTES*); | 
|---|
| 937 | NTSTATUS    WINAPI NtQueryKey(HANDLE,KEY_INFORMATION_CLASS,void*,DWORD,DWORD*); | 
|---|
| 938 | NTSTATUS    WINAPI NtSetValueKey(HANDLE,const UNICODE_STRING*,ULONG,ULONG,const void*,ULONG); | 
|---|
| 939 | NTSTATUS    WINAPI NtEnumerateKey(HANDLE,ULONG,KEY_INFORMATION_CLASS,void*,DWORD,DWORD*); | 
|---|
| 940 | NTSTATUS    WINAPI NtQueryValueKey(HANDLE,const UNICODE_STRING*,KEY_VALUE_INFORMATION_CLASS, | 
|---|
| 941 | void*,DWORD,DWORD*); | 
|---|
| 942 | NTSTATUS    WINAPI NtLoadKey(const OBJECT_ATTRIBUTES*,const OBJECT_ATTRIBUTES*); | 
|---|
| 943 |  | 
|---|
| 944 |  | 
|---|
| 945 | NTSTATUS WINAPI NtEnumerateValueKey( | 
|---|
| 946 | HANDLE KeyHandle, | 
|---|
| 947 | ULONG Index, | 
|---|
| 948 | KEY_VALUE_INFORMATION_CLASS KeyInformationClass, | 
|---|
| 949 | PVOID KeyInformation, | 
|---|
| 950 | ULONG Length, | 
|---|
| 951 | PULONG ResultLength); | 
|---|
| 952 |  | 
|---|
| 953 | NTSTATUS WINAPI NtFlushKey(HANDLE KeyHandle); | 
|---|
| 954 |  | 
|---|
| 955 | NTSTATUS WINAPI NtNotifyChangeKey( | 
|---|
| 956 | IN HANDLE KeyHandle, | 
|---|
| 957 | IN HANDLE Event, | 
|---|
| 958 | IN PIO_APC_ROUTINE ApcRoutine OPTIONAL, | 
|---|
| 959 | IN PVOID ApcContext OPTIONAL, | 
|---|
| 960 | OUT PIO_STATUS_BLOCK IoStatusBlock, | 
|---|
| 961 | IN ULONG CompletionFilter, | 
|---|
| 962 | IN BOOLEAN Asynchroneous, | 
|---|
| 963 | OUT PVOID ChangeBuffer, | 
|---|
| 964 | IN ULONG Length, | 
|---|
| 965 | IN BOOLEAN WatchSubtree); | 
|---|
| 966 |  | 
|---|
| 967 | NTSTATUS WINAPI NtQueryMultipleValueKey( | 
|---|
| 968 | HANDLE KeyHandle, | 
|---|
| 969 | PVALENTW ListOfValuesToQuery, | 
|---|
| 970 | ULONG NumberOfItems, | 
|---|
| 971 | PVOID MultipleValueInformation, | 
|---|
| 972 | ULONG Length, | 
|---|
| 973 | PULONG  ReturnLength); | 
|---|
| 974 |  | 
|---|
| 975 | NTSTATUS WINAPI NtReplaceKey( | 
|---|
| 976 | IN POBJECT_ATTRIBUTES ObjectAttributes, | 
|---|
| 977 | IN HANDLE Key, | 
|---|
| 978 | IN POBJECT_ATTRIBUTES ReplacedObjectAttributes); | 
|---|
| 979 |  | 
|---|
| 980 | NTSTATUS WINAPI NtRestoreKey( | 
|---|
| 981 | HANDLE KeyHandle, | 
|---|
| 982 | HANDLE FileHandle, | 
|---|
| 983 | ULONG RestoreFlags); | 
|---|
| 984 |  | 
|---|
| 985 | NTSTATUS WINAPI NtSaveKey( | 
|---|
| 986 | IN HANDLE KeyHandle, | 
|---|
| 987 | IN HANDLE FileHandle); | 
|---|
| 988 |  | 
|---|
| 989 | NTSTATUS WINAPI NtSetInformationKey( | 
|---|
| 990 | IN HANDLE KeyHandle, | 
|---|
| 991 | IN const int KeyInformationClass, | 
|---|
| 992 | IN PVOID KeyInformation, | 
|---|
| 993 | IN ULONG KeyInformationLength); | 
|---|
| 994 |  | 
|---|
| 995 | NTSTATUS WINAPI NtUnloadKey( | 
|---|
| 996 | IN HANDLE KeyHandle); | 
|---|
| 997 |  | 
|---|
| 998 | NTSTATUS WINAPI NtClose( | 
|---|
| 999 | HANDLE Handle); | 
|---|
| 1000 |  | 
|---|
| 1001 | NTSTATUS WINAPI NtTerminateProcess( HANDLE handle, LONG exit_code ); | 
|---|
| 1002 | NTSTATUS WINAPI NtTerminateThread( HANDLE handle, LONG exit_code ); | 
|---|
| 1003 |  | 
|---|
| 1004 | NTSTATUS WINAPI NtClearEvent(HANDLE); | 
|---|
| 1005 | NTSTATUS WINAPI NtCreateEvent(PHANDLE,ACCESS_MASK,const OBJECT_ATTRIBUTES *,BOOLEAN,BOOLEAN); | 
|---|
| 1006 | NTSTATUS WINAPI NtCreateSemaphore(PHANDLE,ACCESS_MASK,const OBJECT_ATTRIBUTES*,ULONG,ULONG); | 
|---|
| 1007 | NTSTATUS WINAPI NtOpenEvent(PHANDLE,ACCESS_MASK,const OBJECT_ATTRIBUTES *attr); | 
|---|
| 1008 | NTSTATUS WINAPI NtPulseEvent(HANDLE,PULONG); | 
|---|
| 1009 | NTSTATUS WINAPI NtReleaseSemaphore(HANDLE,ULONG,PULONG); | 
|---|
| 1010 | NTSTATUS WINAPI NtResetEvent(HANDLE,PULONG); | 
|---|
| 1011 | NTSTATUS WINAPI NtSetEvent(HANDLE,PULONG); | 
|---|
| 1012 |  | 
|---|
| 1013 | NTSTATUS WINAPI RtlInitializeCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1014 | NTSTATUS WINAPI RtlInitializeCriticalSectionAndSpinCount( RTL_CRITICAL_SECTION *crit, DWORD spincount ); | 
|---|
| 1015 | NTSTATUS WINAPI RtlDeleteCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1016 | NTSTATUS WINAPI RtlpWaitForCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1017 | NTSTATUS WINAPI RtlpUnWaitCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1018 | NTSTATUS WINAPI RtlEnterCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1019 | BOOL     WINAPI RtlTryEnterCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1020 | NTSTATUS WINAPI RtlLeaveCriticalSection( RTL_CRITICAL_SECTION *crit ); | 
|---|
| 1021 |  | 
|---|
| 1022 | /* string functions */ | 
|---|
| 1023 | extern LPSTR _strlwr( LPSTR str ); | 
|---|
| 1024 | extern LPSTR _strupr( LPSTR str ); | 
|---|
| 1025 |  | 
|---|
| 1026 | /*      misc */ | 
|---|
| 1027 |  | 
|---|
| 1028 | #if defined(__i386__) && defined(__GNUC__) | 
|---|
| 1029 | static inline void WINAPI DbgBreakPoint(void) { __asm__ __volatile__("int3"); } | 
|---|
| 1030 | static inline void WINAPI DbgUserBreakPoint(void) { __asm__ __volatile__("int3"); } | 
|---|
| 1031 | #else  /* __i386__ && __GNUC__ */ | 
|---|
| 1032 | void WINAPI DbgBreakPoint(void); | 
|---|
| 1033 | void WINAPI DbgUserBreakPoint(void); | 
|---|
| 1034 | #endif  /* __i386__ && __GNUC__ */ | 
|---|
| 1035 | void WINAPIV DbgPrint(LPCSTR fmt, ...); | 
|---|
| 1036 |  | 
|---|
| 1037 | DWORD WINAPI RtlAdjustPrivilege(DWORD x1,DWORD x2,DWORD x3,DWORD x4); | 
|---|
| 1038 | DWORD WINAPI RtlIntegerToChar(DWORD x1,DWORD x2,DWORD x3,DWORD x4); | 
|---|
| 1039 | LPVOID WINAPI RtlNormalizeProcessParams(LPVOID x); | 
|---|
| 1040 | DWORD WINAPI RtlNtStatusToDosError(DWORD error); | 
|---|
| 1041 | BOOLEAN WINAPI RtlGetNtProductType(LPDWORD type); | 
|---|
| 1042 | PIMAGE_NT_HEADERS WINAPI RtlImageNtHeader(HMODULE hModule); | 
|---|
| 1043 |  | 
|---|
| 1044 | DWORD WINAPI RtlOpenCurrentUser( | 
|---|
| 1045 | IN ACCESS_MASK DesiredAccess, | 
|---|
| 1046 | OUT PHANDLE KeyHandle); | 
|---|
| 1047 |  | 
|---|
| 1048 | BOOLEAN WINAPI RtlDosPathNameToNtPathName_U( LPWSTR from,PUNICODE_STRING us,DWORD x2,DWORD x3); | 
|---|
| 1049 | BOOL WINAPI RtlImpersonateSelf(SECURITY_IMPERSONATION_LEVEL ImpersonationLevel); | 
|---|
| 1050 |  | 
|---|
| 1051 | NTSTATUS WINAPI | 
|---|
| 1052 | NtAccessCheck( | 
|---|
| 1053 | IN PSECURITY_DESCRIPTOR SecurityDescriptor, | 
|---|
| 1054 | IN HANDLE ClientToken, | 
|---|
| 1055 | IN ACCESS_MASK DesiredAccess, | 
|---|
| 1056 | IN PGENERIC_MAPPING GenericMapping, | 
|---|
| 1057 | OUT PPRIVILEGE_SET PrivilegeSet, | 
|---|
| 1058 | OUT PULONG ReturnLength, | 
|---|
| 1059 | OUT PULONG GrantedAccess, | 
|---|
| 1060 | OUT PBOOLEAN AccessStatus); | 
|---|
| 1061 |  | 
|---|
| 1062 | #ifdef __cplusplus | 
|---|
| 1063 | } | 
|---|
| 1064 | #endif | 
|---|
| 1065 |  | 
|---|
| 1066 | #endif | 
|---|