Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Windows Kernel - Functions Zw* #5

Open
nixawk opened this issue Sep 4, 2017 · 0 comments
Open

Windows Kernel - Functions Zw* #5

nixawk opened this issue Sep 4, 2017 · 0 comments

Comments

@nixawk
Copy link
Owner

nixawk commented Sep 4, 2017

ZwRenameTransactionManager
ZwCreateNamedPipeFile
ZwCreateDirectoryObject
ZwDeleteBootEntry
ZwAlpcRevokeSecurityContext
ZwWriteVirtualMemory
ZwAlertThread
ZwQuerySystemInformationEx
ZwIsProcessInJob
ZwAlpcDeleteResourceReserve
ZwListenPort
ZwAcceptConnectPort
ZwQueueApcThreadEx
ZwOpenFile
ZwDebugActiveProcess
ZwGetNotificationResourceManager
ZwDisableLastKnownGood
ZwTerminateJobObject
ZwQuerySystemEnvironmentValue
ZwOpenPrivateNamespace
ZwFlushInstructionCache
ZwDeviceIoControlFile
ZwMapCMFModule
ZwFlushInstallUILanguage
ZwMakePermanentObject
ZwSetThreadExecutionState
ZwAlpcOpenSenderThread
ZwDeleteKey
ZwPropagationComplete
ZwRollbackEnlistment
ZwFreezeRegistry
ZwDeletePrivateNamespace
ZwSaveKey
ZwPowerInformation
ZwQueryDirectoryFile
ZwDeleteFile
ZwSetContextThread
ZwAlpcCancelMessage
ZwCreateSection
ZwAlpcCreatePort
ZwUnloadKey
ZwCreateTransaction
ZwSetIntervalProfile
ZwQueryIntervalProfile
ZwReplaceKey
ZwReadRequestData
ZwCreateDebugObject
ZwClearEvent
ZwCreateTimer
ZwContinue
ZwCommitTransaction
ZwWaitForDebugEvent
ZwCreateKeyedEvent
ZwProtectVirtualMemory
ZwQueryDebugFilterState
ZwCreateFile
ZwOpenTimer
ZwFlushProcessWriteBuffers
ZwQueryVirtualMemory
ZwAllocateVirtualMemory
ZwCreatePrivateNamespace
ZwImpersonateAnonymousToken
ZwCreateSymbolicLinkObject
ZwSetDebugFilterState
ZwPrivilegeCheck
ZwQueryInformationTransaction
ZwSetEvent
ZwCreateKey
ZwSetSystemTime
ZwGetContextThread
ZwCreateProcessEx
ZwDeleteValueKey
ZwQuerySemaphore
ZwQueryEaFile
ZwFlushBuffersFile
ZwQueryMultipleValueKey
ZwLockRegistryKey
ZwRaiseException
ZwUmsThreadYield
ZwAlpcCreateResourceReserve
ZwAccessCheckByTypeResultList
ZwSetIoCompletionEx
ZwSetSystemInformation
ZwWaitForWorkViaWorkerFactory
ZwSuspendProcess
ZwCompressKey
ZwCreateThreadEx
ZwAlpcDeletePortSection
ZwOpenProcess
ZwCreateWaitablePort
ZwSaveKeyEx
ZwCreateResourceManager
ZwPropagationFailed
ZwQueryInformationTransactionManager
ZwSetUuidSeed
ZwInitiatePowerAction
ZwQueryIoCompletion
ZwOpenEvent
ZwGetPlugPlayEvent
ZwQueryInformationEnlistment
ZwClose
ZwQueryInformationResourceManager
ZwOpenMutant
ZwCompleteConnectPort
ZwCreatePagingFile
ZwPrivilegeObjectAuditAlarm
ZwQueryQuotaInformationFile
ZwRegisterProtocolAddressInformation
ZwCreateToken
ZwSuspendThread
ZwSetInformationWorkerFactory
ZwCreateThread
ZwSetInformationObject
ZwDeleteAtom
ZwRenameKey
ZwSetInformationProcess
ZwEnableLastKnownGood
ZwQueryPortInformationProcess
ZwReplacePartitionUnit
ZwWaitForKeyedEvent
ZwQueryDefaultLocale
ZwWaitForSingleObject
ZwDrawText
ZwQueryInformationJobObject
ZwAddDriverEntry
ZwSecureConnectPort
ZwCreateEnlistment
ZwIsUILanguageComitted
ZwSetSecurityObject
ZwCompactKeys
ZwQueryValueKey
ZwCreateUserProcess
ZwFlushWriteBuffer
ZwRollforwardTransactionManager
ZwQuerySystemEnvironmentValueEx
ZwTerminateThread
ZwCreateTransactionManager
ZwEnumerateDriverEntries
ZwCreateProfile
ZwStopProfile
ZwYieldExecution
ZwPrePrepareComplete
ZwCommitEnlistment
ZwCreateEventPair
ZwOpenObjectAuditAlarm
ZwPrepareComplete
ZwSetDefaultUILanguage
ZwRequestWaitReplyPort
ZwSetSystemEnvironmentValueEx
ZwQueryInformationWorkerFactory
ZwCancelIoFile
ZwRemoveIoCompletion
ZwFsControlFile
ZwCompareTokens
ZwCreatePort
ZwRemoveProcessDebug
ZwCancelIoFileEx
ZwQueryTimer
ZwRollbackComplete
ZwRecoverEnlistment
ZwQueryInformationThread
ZwSetVolumeInformationFile
ZwAllocateUserPhysicalPages
ZwSetIoCompletion
ZwQuerySecurityAttributesToken
ZwResumeThread
ZwModifyDriverEntry
ZwAlertResumeThread
ZwCreateEvent
ZwDelayExecution
ZwOpenKeyTransactedEx
ZwWriteRequestData
ZwGetWriteWatch
ZwSetInformationJobObject
ZwSaveMergedKeys
ZwAlpcAcceptConnectPort
ZwImpersonateThread
ZwQueryKey
ZwAllocateLocallyUniqueId
ZwSetValueKey
ZwQueryLicenseValue
ZwRollbackTransaction
ZwGetNlsSectionPtr
ZwReleaseSemaphore
ZwAccessCheck
ZwSetBootEntryOrder
ZwDeleteObjectAuditAlarm
ZwFindAtom
ZwCreateMailslotFile
ZwLoadDriver
ZwWaitHighEventPair
ZwShutdownWorkerFactory
ZwOpenEventPair
ZwAlpcCreatePortSection
ZwSetQuotaInformationFile
ZwCreateJobSet
ZwThawRegistry
ZwIsSystemResumeAutomatic
ZwAccessCheckByTypeResultListAndAuditAlarmByHandle
ZwQuerySystemInformation
ZwQueryInstallUILanguage
ZwQueryOpenSubKeysEx
ZwEnumerateBootEntries
ZwCancelTimer
ZwQueueApcThread
ZwLockVirtualMemory
ZwWaitForMultipleObjects
ZwQueryPerformanceCounter
ZwCommitComplete
ZwPrePrepareEnlistment
ZwInitializeNlsFiles
ZwWorkerFactoryWorkerReady
ZwSetInformationTransaction
ZwQuerySymbolicLinkObject
ZwUnloadKey2
ZwLockProductActivationKeys
ZwQuerySection
ZwOpenKey
ZwQueryEvent
ZwOpenKeyedEvent
ZwDebugContinue
ZwQueryOpenSubKeys
ZwQueryDriverEntryOrder
ZwSetInformationDebugObject
ZwLoadKeyEx
ZwEnumerateSystemEnvironmentValuesEx
ZwAlpcCreateSecurityContext
ZwRestoreKey
ZwAdjustGroupsToken
ZwQueryFullAttributesFile
ZwOpenThreadTokenEx
ZwAdjustPrivilegesToken
ZwRegisterThreadTerminatePort
ZwRequestPort
ZwModifyBootEntry
ZwReplyPort
ZwGetNextProcess
ZwAlpcDisconnectPort
ZwAssignProcessToJobObject
ZwRecoverTransactionManager
ZwAlpcSetInformation
ZwQueryInformationFile
ZwOpenSection
ZwSetDriverEntryOrder
ZwCreateSemaphore
ZwTraceControl
ZwTranslateFilePath
ZwAlpcOpenSenderProcess
ZwThawTransactions
ZwNotifyChangeKey
ZwLockFile
ZwAlpcQueryInformation
ZwFreeVirtualMemory
ZwCallbackReturn
ZwGetMUIRegistryInfo
ZwGetDevicePowerState
ZwWaitForMultipleObjects32
ZwAddBootEntry
ZwOpenSymbolicLinkObject
ZwQueryMutant
ZwPulseEvent
ZwConnectPort
ZwResetWriteWatch
ZwSetLowWaitHighEventPair
ZwSystemDebugControl
ZwAlpcQueryInformationMessage
ZwSetEventBoostPriority
ZwOpenSemaphore
ZwFlushVirtualMemory
ZwWriteFileGather
ZwQueryAttributesFile
ZwAccessCheckByType
ZwCreateKeyTransacted
ZwOpenKeyTransacted
ZwDuplicateObject
ZwImpersonateClientOfPort
ZwQuerySystemTime
ZwReplyWaitReceivePort
ZwAlpcDeleteSecurityContext
ZwTerminateProcess
ZwSetEaFile
ZwSinglePhaseReject
ZwSetInformationFile
ZwPrepareEnlistment
ZwAccessCheckAndAuditAlarm
ZwOpenTransaction
ZwPlugPlayControl
ZwMapViewOfSection
ZwSetSystemEnvironmentValue
ZwOpenDirectoryObject
ZwCreateProfileEx
ZwUnloadDriver
ZwAddAtom
ZwQueryObject
ZwReplyWaitReceivePortEx
ZwSetInformationKey
ZwQueryInformationAtom
ZwCreateProcess
ZwAllocateReserveObject
ZwReleaseWorkerFactoryWorker
ZwOpenProcessTokenEx
ZwUnmapViewOfSection
ZwNotifyChangeSession
ZwQueryInformationPort
ZwReplyWaitReplyPort
ZwSetBootOptions
ZwQuerySecurityObject
ZwOpenThreadToken
ZwSetTimerResolution
ZwAlpcCreateSectionView
ZwReleaseKeyedEvent
ZwSetInformationEnlistment
ZwOpenIoCompletion
ZwApphelpCacheControl
ZwReadFile
ZwOpenJobObject
ZwEnumerateKey
ZwQueryBootOptions
ZwInitializeRegistry
ZwOpenProcessToken
ZwMakeTemporaryObject
ZwOpenResourceManager
ZwExtendSection
ZwSetInformationResourceManager
ZwCreateMutant
ZwWriteFile
ZwAlpcConnectPort
ZwEnumerateTransactionObject
ZwSetDefaultLocale
ZwQueryInformationProcess
ZwOpenKeyEx
ZwNotifyChangeMultipleKeys
ZwRaiseHardError
ZwLoadKey
ZwDuplicateToken
ZwOpenTransactionManager
ZwAlpcImpersonateClientOfPort
ZwSetHighEventPair
ZwCreateWorkerFactory
ZwSetInformationToken
ZwMapUserPhysicalPages
ZwSetInformationThread
ZwNotifyChangeDirectoryFile
ZwOpenEnlistment
ZwTraceEvent
ZwSetDefaultHardErrorPort
ZwWaitLowEventPair
ZwQueryInformationToken
ZwCreateIoCompletion
ZwFreezeTransactions
ZwEnumerateValueKey
ZwQueryTimerResolution
ZwResetEvent
ZwResumeProcess
ZwSetTimer
ZwSetSystemPowerState
ZwShutdownSystem
ZwReadFileScatter
ZwFreeUserPhysicalPages
ZwUnlockFile
ZwCreateJobObject
ZwGetNextThread
ZwStartProfile
ZwAlpcSendWaitReceivePort
ZwAccessCheckByTypeAndAuditAlarm
ZwReadVirtualMemory
ZwAreMappedFilesTheSame
ZwTestAlert
ZwSignalAndWaitForSingleObject
ZwQueryDefaultUILanguage
ZwRemoveIoCompletionEx
ZwVdmControl
ZwSerializeBoot
ZwQueryDirectoryObject
ZwSetTimerEx
ZwOpenSession
ZwCancelSynchronousIoFile
ZwSetInformationTransactionManager
ZwQueryBootEntryOrder
ZwMapUserPhysicalPagesScatter
ZwPrivilegedServiceAuditAlarm
ZwSetHighWaitLowEventPair
ZwFilterToken
ZwSetLowEventPair
ZwOpenThread
ZwAccessCheckByTypeResultListAndAuditAlarm
ZwSetLdtEntries
ZwDisplayString
ZwDeleteDriverEntry
ZwFlushKey
ZwAlpcDeleteSectionView
ZwLoadKey2
ZwUnlockVirtualMemory
ZwReadOnlyEnlistment
ZwGetCurrentProcessorNumber
ZwQueryVolumeInformationFile
ZwReleaseMutant
ZwAllocateUuids
ZwUnloadKeyEx
ZwRecoverResourceManager
ZwCloseObjectAuditAlarm
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant