2 * COPYRIGHT: See COPYING in the top level directory
3 * PROJECT: ReactOS kernel
4 * FILE: ntoskrnl/ex/sysinfo.c
5 * PURPOSE: System information functions
7 * PROGRAMMERS: David Welch (welch@mcmail.com)
8 * Aleksey Bragin (aleksey@reactos.org)
11 /* INCLUDES *****************************************************************/
17 /* The maximum size of an environment value (in bytes) */
18 #define MAX_ENVVAL_SIZE 1024
20 FAST_MUTEX ExpEnvironmentLock
;
21 ERESOURCE ExpFirmwareTableResource
;
22 LIST_ENTRY ExpFirmwareTableProviderListHead
;
26 ExpConvertLdrModuleToRtlModule(IN ULONG ModuleCount
,
27 IN PLDR_DATA_TABLE_ENTRY LdrEntry
,
28 OUT PRTL_PROCESS_MODULE_INFORMATION ModuleInfo
)
32 ANSI_STRING ModuleName
;
35 ModuleInfo
->MappedBase
= NULL
;
36 ModuleInfo
->ImageBase
= LdrEntry
->DllBase
;
37 ModuleInfo
->ImageSize
= LdrEntry
->SizeOfImage
;
38 ModuleInfo
->Flags
= LdrEntry
->Flags
;
39 ModuleInfo
->LoadCount
= LdrEntry
->LoadCount
;
40 ModuleInfo
->LoadOrderIndex
= (USHORT
)ModuleCount
;
41 ModuleInfo
->InitOrderIndex
= 0;
44 RtlInitEmptyAnsiString(&ModuleName
,
45 ModuleInfo
->FullPathName
,
46 sizeof(ModuleInfo
->FullPathName
));
49 Status
= RtlUnicodeStringToAnsiString(&ModuleName
,
50 &LdrEntry
->FullDllName
,
52 if ((NT_SUCCESS(Status
)) || (Status
== STATUS_BUFFER_OVERFLOW
))
54 /* Calculate offset to name */
55 p
= ModuleName
.Buffer
+ ModuleName
.Length
;
56 while ((p
> ModuleName
.Buffer
) && (*--p
))
58 /* Check if we found the separator */
59 if (*p
== OBJ_NAME_PATH_SEPARATOR
)
61 /* We did, break out */
68 ModuleInfo
->OffsetToFileName
= (USHORT
)(p
- ModuleName
.Buffer
);
72 /* Return empty name */
73 ModuleInfo
->FullPathName
[0] = ANSI_NULL
;
74 ModuleInfo
->OffsetToFileName
= 0;
82 ExpQueryModuleInformation(IN PLIST_ENTRY KernelModeList
,
83 IN PLIST_ENTRY UserModeList
,
84 OUT PRTL_PROCESS_MODULES Modules
,
86 OUT PULONG ReturnLength
)
88 NTSTATUS Status
= STATUS_SUCCESS
;
90 PRTL_PROCESS_MODULE_INFORMATION ModuleInfo
;
91 PLDR_DATA_TABLE_ENTRY LdrEntry
;
92 ULONG ModuleCount
= 0;
93 PLIST_ENTRY NextEntry
;
96 RequiredLength
= FIELD_OFFSET(RTL_PROCESS_MODULES
, Modules
);
97 ModuleInfo
= &Modules
->Modules
[0];
99 /* Loop the kernel list */
100 NextEntry
= KernelModeList
->Flink
;
101 while (NextEntry
!= KernelModeList
)
104 LdrEntry
= CONTAINING_RECORD(NextEntry
,
105 LDR_DATA_TABLE_ENTRY
,
108 /* Update size and check if we can manage one more entry */
109 RequiredLength
+= sizeof(RTL_PROCESS_MODULE_INFORMATION
);
110 if (Length
>= RequiredLength
)
112 Status
= ExpConvertLdrModuleToRtlModule(ModuleCount
,
116 /* Go to the next module */
122 Status
= STATUS_INFO_LENGTH_MISMATCH
;
125 /* Update count and move to next entry */
127 NextEntry
= NextEntry
->Flink
;
130 /* Check if caller also wanted user modules */
133 NextEntry
= UserModeList
->Flink
;
134 while (NextEntry
!= UserModeList
)
137 LdrEntry
= CONTAINING_RECORD(NextEntry
,
138 LDR_DATA_TABLE_ENTRY
,
141 /* Update size and check if we can manage one more entry */
142 RequiredLength
+= sizeof(RTL_PROCESS_MODULE_INFORMATION
);
143 if (Length
>= RequiredLength
)
145 Status
= ExpConvertLdrModuleToRtlModule(ModuleCount
,
149 /* Go to the next module */
155 Status
= STATUS_INFO_LENGTH_MISMATCH
;
158 /* Update count and move to next entry */
160 NextEntry
= NextEntry
->Flink
;
164 /* Update return length */
165 if (ReturnLength
) *ReturnLength
= RequiredLength
;
167 /* Validate the length again */
168 if (Length
>= FIELD_OFFSET(RTL_PROCESS_MODULES
, Modules
))
170 /* Set the final count */
171 Modules
->NumberOfModules
= ModuleCount
;
175 /* Otherwise, we failed */
176 Status
= STATUS_INFO_LENGTH_MISMATCH
;
185 ExUnlockUserBuffer(PMDL Mdl
)
188 ExFreePoolWithTag(Mdl
, TAG_MDL
);
196 KPROCESSOR_MODE AccessMode
,
197 LOCK_OPERATION Operation
,
198 PVOID
*MappedSystemVa
,
204 *MappedSystemVa
= NULL
;
207 /* Allocate an MDL for the buffer */
208 Mdl
= IoAllocateMdl(BaseAddress
, Length
, FALSE
, TRUE
, NULL
);
211 return STATUS_INSUFFICIENT_RESOURCES
;
214 /* Enter SEH for probing */
217 MmProbeAndLockPages(Mdl
, AccessMode
, Operation
);
219 _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER
)
221 ExFreePoolWithTag(Mdl
, TAG_MDL
);
222 return _SEH2_GetExceptionCode();
226 /* Return the safe kernel mode buffer */
227 *MappedSystemVa
= MmGetSystemAddressForMdlSafe(Mdl
, NormalPagePriority
);
228 if (*MappedSystemVa
== NULL
)
230 ExUnlockUserBuffer(Mdl
);
231 return STATUS_INSUFFICIENT_RESOURCES
;
236 return STATUS_SUCCESS
;
239 /* FUNCTIONS *****************************************************************/
246 ExGetCurrentProcessorCpuUsage(PULONG CpuUsage
)
250 ULONGLONG ScaledIdle
;
252 Prcb
= KeGetCurrentPrcb();
254 ScaledIdle
= (ULONGLONG
)Prcb
->IdleThread
->KernelTime
* 100;
255 TotalTime
= Prcb
->KernelTime
+ Prcb
->UserTime
;
257 *CpuUsage
= (ULONG
)(100 - (ScaledIdle
/ TotalTime
));
267 ExGetCurrentProcessorCounts(PULONG ThreadKernelTime
,
269 PULONG ProcessorNumber
)
273 Prcb
= KeGetCurrentPrcb();
275 *ThreadKernelTime
= Prcb
->KernelTime
+ Prcb
->UserTime
;
276 *TotalCpuTime
= Prcb
->CurrentThread
->KernelTime
;
277 *ProcessorNumber
= KeGetCurrentProcessorNumber();
285 ExIsProcessorFeaturePresent(IN ULONG ProcessorFeature
)
287 /* Quick check to see if it exists at all */
288 if (ProcessorFeature
>= PROCESSOR_FEATURE_MAX
) return(FALSE
);
290 /* Return our support for it */
291 return(SharedUserData
->ProcessorFeatures
[ProcessorFeature
]);
299 ExVerifySuite(SUITE_TYPE SuiteType
)
301 if (SuiteType
== Personal
) return TRUE
;
307 NtQuerySystemEnvironmentValue(IN PUNICODE_STRING VariableName
,
308 OUT PWSTR ValueBuffer
,
309 IN ULONG ValueBufferLength
,
310 IN OUT PULONG ReturnLength OPTIONAL
)
313 UNICODE_STRING WName
;
317 UNICODE_STRING WValue
;
318 KPROCESSOR_MODE PreviousMode
;
322 /* Check if the call came from user mode */
323 PreviousMode
= ExGetPreviousMode();
324 if (PreviousMode
!= KernelMode
)
328 /* Probe the input and output buffers */
329 ProbeForRead(VariableName
, sizeof(UNICODE_STRING
), sizeof(ULONG
));
330 ProbeForWrite(ValueBuffer
, ValueBufferLength
, sizeof(WCHAR
));
331 if (ReturnLength
!= NULL
) ProbeForWriteUlong(ReturnLength
);
333 _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER
)
335 /* Return the exception code */
336 _SEH2_YIELD(return _SEH2_GetExceptionCode());
341 /* According to NTInternals the SeSystemEnvironmentName privilege is required! */
342 if (!SeSinglePrivilegeCheck(SeSystemEnvironmentPrivilege
, PreviousMode
))
344 DPRINT1("NtQuerySystemEnvironmentValue: Caller requires the SeSystemEnvironmentPrivilege privilege!\n");
345 return STATUS_PRIVILEGE_NOT_HELD
;
348 /* Copy the name to kernel space if necessary */
349 Status
= ProbeAndCaptureUnicodeString(&WName
, PreviousMode
, VariableName
);
350 if (!NT_SUCCESS(Status
)) return Status
;
352 /* Convert the name to ANSI and release the captured UNICODE string */
353 Status
= RtlUnicodeStringToAnsiString(&AName
, &WName
, TRUE
);
354 ReleaseCapturedUnicodeString(&WName
, PreviousMode
);
355 if (!NT_SUCCESS(Status
)) return Status
;
357 /* Allocate a buffer for the ANSI environment variable */
358 AnsiValueBuffer
= ExAllocatePoolWithTag(NonPagedPool
, MAX_ENVVAL_SIZE
, 'rvnE');
359 if (AnsiValueBuffer
== NULL
)
361 RtlFreeAnsiString(&AName
);
362 return STATUS_INSUFFICIENT_RESOURCES
;
365 /* Get the environment variable and free the ANSI name */
366 Result
= HalGetEnvironmentVariable(AName
.Buffer
,
369 RtlFreeAnsiString(&AName
);
371 /* Check if we had success */
372 if (Result
== ESUCCESS
)
374 /* Copy the result back to the caller. */
377 /* Initialize ANSI string from the result */
378 RtlInitAnsiString(&AValue
, AnsiValueBuffer
);
380 /* Initialize a UNICODE string from the callers buffer */
381 RtlInitEmptyUnicodeString(&WValue
, ValueBuffer
, (USHORT
)ValueBufferLength
);
383 /* Convert the result to UNICODE */
384 Status
= RtlAnsiStringToUnicodeString(&WValue
, &AValue
, FALSE
);
386 if (ReturnLength
!= NULL
)
387 *ReturnLength
= WValue
.Length
;
389 _SEH2_EXCEPT(ExSystemExceptionFilter())
391 Status
= _SEH2_GetExceptionCode();
397 Status
= STATUS_UNSUCCESSFUL
;
400 /* Free the allocated ANSI value buffer */
401 ExFreePoolWithTag(AnsiValueBuffer
, 'rvnE');
409 NtSetSystemEnvironmentValue(IN PUNICODE_STRING VariableName
,
410 IN PUNICODE_STRING Value
)
412 UNICODE_STRING CapturedName
, CapturedValue
;
413 ANSI_STRING AName
, AValue
;
414 KPROCESSOR_MODE PreviousMode
;
419 PreviousMode
= ExGetPreviousMode();
422 * Copy the strings to kernel space if necessary
424 Status
= ProbeAndCaptureUnicodeString(&CapturedName
,
427 if (NT_SUCCESS(Status
))
429 Status
= ProbeAndCaptureUnicodeString(&CapturedValue
,
432 if (NT_SUCCESS(Status
))
435 * according to ntinternals the SeSystemEnvironmentName privilege is required!
437 if (SeSinglePrivilegeCheck(SeSystemEnvironmentPrivilege
,
441 * convert the strings to ANSI
443 Status
= RtlUnicodeStringToAnsiString(&AName
,
446 if (NT_SUCCESS(Status
))
448 Status
= RtlUnicodeStringToAnsiString(&AValue
,
451 if (NT_SUCCESS(Status
))
453 ARC_STATUS Result
= HalSetEnvironmentVariable(AName
.Buffer
,
456 Status
= (Result
? STATUS_SUCCESS
: STATUS_UNSUCCESSFUL
);
462 DPRINT1("NtSetSystemEnvironmentValue: Caller requires the SeSystemEnvironmentPrivilege privilege!\n");
463 Status
= STATUS_PRIVILEGE_NOT_HELD
;
466 ReleaseCapturedUnicodeString(&CapturedValue
,
470 ReleaseCapturedUnicodeString(&CapturedName
,
479 NtEnumerateSystemEnvironmentValuesEx(IN ULONG InformationClass
,
481 IN ULONG BufferLength
)
484 return STATUS_NOT_IMPLEMENTED
;
489 NtQuerySystemEnvironmentValueEx(IN PUNICODE_STRING VariableName
,
490 IN LPGUID VendorGuid
,
492 IN OUT PULONG ReturnLength
,
493 IN OUT PULONG Attributes
)
496 return STATUS_NOT_IMPLEMENTED
;
501 NtSetSystemEnvironmentValueEx(IN PUNICODE_STRING VariableName
,
502 IN LPGUID VendorGuid
)
505 return STATUS_NOT_IMPLEMENTED
;
508 /* --- Query/Set System Information --- */
511 * NOTE: QSI_DEF(n) and SSI_DEF(n) define _cdecl function symbols
512 * so the stack is popped only in one place on x86 platform.
514 #define QSI_USE(n) QSI##n
516 static NTSTATUS QSI_USE(n) (PVOID Buffer, ULONG Size, PULONG ReqSize)
518 #define SSI_USE(n) SSI##n
520 static NTSTATUS SSI_USE(n) (PVOID Buffer, ULONG Size)
524 ExQueryPoolUsage(OUT PULONG PagedPoolPages
,
525 OUT PULONG NonPagedPoolPages
,
526 OUT PULONG PagedPoolAllocs
,
527 OUT PULONG PagedPoolFrees
,
528 OUT PULONG PagedPoolLookasideHits
,
529 OUT PULONG NonPagedPoolAllocs
,
530 OUT PULONG NonPagedPoolFrees
,
531 OUT PULONG NonPagedPoolLookasideHits
);
533 /* Class 0 - Basic Information */
534 QSI_DEF(SystemBasicInformation
)
536 PSYSTEM_BASIC_INFORMATION Sbi
537 = (PSYSTEM_BASIC_INFORMATION
) Buffer
;
539 *ReqSize
= sizeof(SYSTEM_BASIC_INFORMATION
);
541 /* Check user buffer's size */
542 if (Size
!= sizeof(SYSTEM_BASIC_INFORMATION
))
544 return STATUS_INFO_LENGTH_MISMATCH
;
547 RtlZeroMemory(Sbi
, Size
);
549 Sbi
->TimerResolution
= KeMaximumIncrement
;
550 Sbi
->PageSize
= PAGE_SIZE
;
551 Sbi
->NumberOfPhysicalPages
= MmNumberOfPhysicalPages
;
552 Sbi
->LowestPhysicalPageNumber
= (ULONG
)MmLowestPhysicalPage
;
553 Sbi
->HighestPhysicalPageNumber
= (ULONG
)MmHighestPhysicalPage
;
554 Sbi
->AllocationGranularity
= MM_VIRTMEM_GRANULARITY
; /* hard coded on Intel? */
555 Sbi
->MinimumUserModeAddress
= 0x10000; /* Top of 64k */
556 Sbi
->MaximumUserModeAddress
= (ULONG_PTR
)MmHighestUserAddress
;
557 Sbi
->ActiveProcessorsAffinityMask
= KeActiveProcessors
;
558 Sbi
->NumberOfProcessors
= KeNumberProcessors
;
560 return STATUS_SUCCESS
;
563 /* Class 1 - Processor Information */
564 QSI_DEF(SystemProcessorInformation
)
566 PSYSTEM_PROCESSOR_INFORMATION Spi
567 = (PSYSTEM_PROCESSOR_INFORMATION
) Buffer
;
569 *ReqSize
= sizeof(SYSTEM_PROCESSOR_INFORMATION
);
571 /* Check user buffer's size */
572 if (Size
< sizeof(SYSTEM_PROCESSOR_INFORMATION
))
574 return STATUS_INFO_LENGTH_MISMATCH
;
576 Spi
->ProcessorArchitecture
= KeProcessorArchitecture
;
577 Spi
->ProcessorLevel
= KeProcessorLevel
;
578 Spi
->ProcessorRevision
= KeProcessorRevision
;
580 Spi
->ProcessorFeatureBits
= KeFeatureBits
;
582 DPRINT("Arch %u Level %u Rev 0x%x\n", Spi
->ProcessorArchitecture
,
583 Spi
->ProcessorLevel
, Spi
->ProcessorRevision
);
585 return STATUS_SUCCESS
;
588 /* Class 2 - Performance Information */
589 QSI_DEF(SystemPerformanceInformation
)
591 ULONG IdleUser
, IdleKernel
;
592 PSYSTEM_PERFORMANCE_INFORMATION Spi
593 = (PSYSTEM_PERFORMANCE_INFORMATION
) Buffer
;
595 PEPROCESS TheIdleProcess
;
597 *ReqSize
= sizeof(SYSTEM_PERFORMANCE_INFORMATION
);
599 /* Check user buffer's size */
600 if (Size
< sizeof(SYSTEM_PERFORMANCE_INFORMATION
))
602 return STATUS_INFO_LENGTH_MISMATCH
;
605 TheIdleProcess
= PsIdleProcess
;
607 IdleKernel
= KeQueryRuntimeProcess(&TheIdleProcess
->Pcb
, &IdleUser
);
608 Spi
->IdleProcessTime
.QuadPart
= UInt32x32To64(IdleKernel
, KeMaximumIncrement
);
609 Spi
->IoReadTransferCount
= IoReadTransferCount
;
610 Spi
->IoWriteTransferCount
= IoWriteTransferCount
;
611 Spi
->IoOtherTransferCount
= IoOtherTransferCount
;
612 Spi
->IoReadOperationCount
= IoReadOperationCount
;
613 Spi
->IoWriteOperationCount
= IoWriteOperationCount
;
614 Spi
->IoOtherOperationCount
= IoOtherOperationCount
;
616 Spi
->AvailablePages
= (ULONG
)MmAvailablePages
;
618 * Add up all the used "Committed" memory + pagefile.
619 * Not sure this is right. 8^\
621 Spi
->CommittedPages
= MiMemoryConsumers
[MC_SYSTEM
].PagesUsed
+
622 MiMemoryConsumers
[MC_CACHE
].PagesUsed
+
623 MiMemoryConsumers
[MC_USER
].PagesUsed
+
626 * Add up the full system total + pagefile.
627 * All this make Taskmgr happy but not sure it is the right numbers.
628 * This too, fixes some of GlobalMemoryStatusEx numbers.
630 Spi
->CommitLimit
= MmNumberOfPhysicalPages
+ MiFreeSwapPages
+ MiUsedSwapPages
;
632 Spi
->PeakCommitment
= 0; /* FIXME */
633 Spi
->PageFaultCount
= 0; /* FIXME */
634 Spi
->CopyOnWriteCount
= 0; /* FIXME */
635 Spi
->TransitionCount
= 0; /* FIXME */
636 Spi
->CacheTransitionCount
= 0; /* FIXME */
637 Spi
->DemandZeroCount
= 0; /* FIXME */
638 Spi
->PageReadCount
= 0; /* FIXME */
639 Spi
->PageReadIoCount
= 0; /* FIXME */
640 Spi
->CacheReadCount
= 0; /* FIXME */
641 Spi
->CacheIoCount
= 0; /* FIXME */
642 Spi
->DirtyPagesWriteCount
= 0; /* FIXME */
643 Spi
->DirtyWriteIoCount
= 0; /* FIXME */
644 Spi
->MappedPagesWriteCount
= 0; /* FIXME */
645 Spi
->MappedWriteIoCount
= 0; /* FIXME */
647 Spi
->PagedPoolPages
= 0;
648 Spi
->NonPagedPoolPages
= 0;
649 Spi
->PagedPoolAllocs
= 0;
650 Spi
->PagedPoolFrees
= 0;
651 Spi
->PagedPoolLookasideHits
= 0;
652 Spi
->NonPagedPoolAllocs
= 0;
653 Spi
->NonPagedPoolFrees
= 0;
654 Spi
->NonPagedPoolLookasideHits
= 0;
655 ExQueryPoolUsage(&Spi
->PagedPoolPages
,
656 &Spi
->NonPagedPoolPages
,
657 &Spi
->PagedPoolAllocs
,
658 &Spi
->PagedPoolFrees
,
659 &Spi
->PagedPoolLookasideHits
,
660 &Spi
->NonPagedPoolAllocs
,
661 &Spi
->NonPagedPoolFrees
,
662 &Spi
->NonPagedPoolLookasideHits
);
663 Spi
->FreeSystemPtes
= 0; /* FIXME */
665 Spi
->ResidentSystemCodePage
= 0; /* FIXME */
667 Spi
->TotalSystemDriverPages
= 0; /* FIXME */
668 Spi
->Spare3Count
= 0; /* FIXME */
670 Spi
->ResidentSystemCachePage
= MiMemoryConsumers
[MC_CACHE
].PagesUsed
;
671 Spi
->ResidentPagedPoolPage
= 0; /* FIXME */
673 Spi
->ResidentSystemDriverPage
= 0; /* FIXME */
674 Spi
->CcFastReadNoWait
= 0; /* FIXME */
675 Spi
->CcFastReadWait
= 0; /* FIXME */
676 Spi
->CcFastReadResourceMiss
= 0; /* FIXME */
677 Spi
->CcFastReadNotPossible
= 0; /* FIXME */
679 Spi
->CcFastMdlReadNoWait
= 0; /* FIXME */
680 Spi
->CcFastMdlReadWait
= 0; /* FIXME */
681 Spi
->CcFastMdlReadResourceMiss
= 0; /* FIXME */
682 Spi
->CcFastMdlReadNotPossible
= 0; /* FIXME */
684 Spi
->CcMapDataNoWait
= 0; /* FIXME */
685 Spi
->CcMapDataWait
= 0; /* FIXME */
686 Spi
->CcMapDataNoWaitMiss
= 0; /* FIXME */
687 Spi
->CcMapDataWaitMiss
= 0; /* FIXME */
689 Spi
->CcPinMappedDataCount
= 0; /* FIXME */
690 Spi
->CcPinReadNoWait
= 0; /* FIXME */
691 Spi
->CcPinReadWait
= 0; /* FIXME */
692 Spi
->CcPinReadNoWaitMiss
= 0; /* FIXME */
693 Spi
->CcPinReadWaitMiss
= 0; /* FIXME */
694 Spi
->CcCopyReadNoWait
= 0; /* FIXME */
695 Spi
->CcCopyReadWait
= 0; /* FIXME */
696 Spi
->CcCopyReadNoWaitMiss
= 0; /* FIXME */
697 Spi
->CcCopyReadWaitMiss
= 0; /* FIXME */
699 Spi
->CcMdlReadNoWait
= 0; /* FIXME */
700 Spi
->CcMdlReadWait
= 0; /* FIXME */
701 Spi
->CcMdlReadNoWaitMiss
= 0; /* FIXME */
702 Spi
->CcMdlReadWaitMiss
= 0; /* FIXME */
703 Spi
->CcReadAheadIos
= 0; /* FIXME */
704 Spi
->CcLazyWriteIos
= 0; /* FIXME */
705 Spi
->CcLazyWritePages
= 0; /* FIXME */
706 Spi
->CcDataFlushes
= 0; /* FIXME */
707 Spi
->CcDataPages
= 0; /* FIXME */
708 Spi
->ContextSwitches
= 0; /* FIXME */
709 Spi
->FirstLevelTbFills
= 0; /* FIXME */
710 Spi
->SecondLevelTbFills
= 0; /* FIXME */
711 Spi
->SystemCalls
= 0; /* FIXME */
713 return STATUS_SUCCESS
;
716 /* Class 3 - Time Of Day Information */
717 QSI_DEF(SystemTimeOfDayInformation
)
719 SYSTEM_TIMEOFDAY_INFORMATION Sti
;
720 LARGE_INTEGER CurrentTime
;
722 /* Set amount of written information to 0 */
725 /* Check user buffer's size */
726 if (Size
> sizeof(SYSTEM_TIMEOFDAY_INFORMATION
))
728 return STATUS_INFO_LENGTH_MISMATCH
;
731 /* Get current time */
732 KeQuerySystemTime(&CurrentTime
);
734 /* Zero local buffer */
735 RtlZeroMemory(&Sti
, sizeof(SYSTEM_TIMEOFDAY_INFORMATION
));
737 /* Fill local time structure */
738 Sti
.BootTime
= KeBootTime
;
739 Sti
.CurrentTime
= CurrentTime
;
740 Sti
.TimeZoneBias
.QuadPart
= ExpTimeZoneBias
.QuadPart
;
741 Sti
.TimeZoneId
= ExpTimeZoneId
;
744 /* Copy as much as requested by caller */
745 RtlCopyMemory(Buffer
, &Sti
, Size
);
747 /* Set amount of information we copied */
750 return STATUS_SUCCESS
;
753 /* Class 4 - Path Information */
754 QSI_DEF(SystemPathInformation
)
756 /* FIXME: QSI returns STATUS_BREAKPOINT. Why? */
757 DPRINT1("NtQuerySystemInformation - SystemPathInformation not implemented\n");
759 return STATUS_BREAKPOINT
;
762 /* Class 5 - Process Information */
763 QSI_DEF(SystemProcessInformation
)
765 PSYSTEM_PROCESS_INFORMATION SpiCurrent
;
766 PSYSTEM_THREAD_INFORMATION ThreadInfo
;
767 PEPROCESS Process
= NULL
, SystemProcess
;
768 PETHREAD CurrentThread
;
769 ANSI_STRING ImageName
;
771 USHORT ImageNameMaximumLength
; // image name length in bytes
772 USHORT ImageNameLength
;
773 PLIST_ENTRY CurrentEntry
;
774 ULONG TotalSize
= 0, ThreadsCount
;
775 ULONG TotalUser
, TotalKernel
;
777 NTSTATUS Status
= STATUS_SUCCESS
;
778 PUNICODE_STRING TempProcessImageName
;
779 _SEH2_VOLATILE PUNICODE_STRING ProcessImageName
= NULL
;
781 BOOLEAN Overflow
= FALSE
;
785 /* scan the process list */
787 PSYSTEM_PROCESS_INFORMATION Spi
788 = (PSYSTEM_PROCESS_INFORMATION
) Buffer
;
790 *ReqSize
= sizeof(SYSTEM_PROCESS_INFORMATION
);
792 /* Check for overflow */
793 if (Size
< sizeof(SYSTEM_PROCESS_INFORMATION
))
798 /* Zero user's buffer */
799 if (!Overflow
) RtlZeroMemory(Spi
, Size
);
801 SystemProcess
= PsIdleProcess
;
802 Process
= SystemProcess
;
803 Current
= (PUCHAR
) Spi
;
807 SpiCurrent
= (PSYSTEM_PROCESS_INFORMATION
) Current
;
809 if ((Process
->ProcessExiting
) &&
810 (Process
->Pcb
.Header
.SignalState
) &&
811 !(Process
->ActiveThreads
) &&
812 (IsListEmpty(&Process
->Pcb
.ThreadListHead
)))
814 DPRINT1("Process %p (%s:%p) is a zombie\n",
815 Process
, Process
->ImageFileName
, Process
->UniqueProcessId
);
817 ImageNameMaximumLength
= 0;
822 CurrentEntry
= Process
->Pcb
.ThreadListHead
.Flink
;
823 while (CurrentEntry
!= &Process
->Pcb
.ThreadListHead
)
826 CurrentEntry
= CurrentEntry
->Flink
;
829 // size of the structure for every process
830 CurrentSize
= sizeof(SYSTEM_PROCESS_INFORMATION
) + sizeof(SYSTEM_THREAD_INFORMATION
) * ThreadsCount
;
832 Status
= SeLocateProcessImageName(Process
, &TempProcessImageName
);
833 ProcessImageName
= TempProcessImageName
;
835 if (NT_SUCCESS(Status
) && (ProcessImageName
->Length
> 0))
837 szSrc
= (PWCHAR
)((PCHAR
)ProcessImageName
->Buffer
+ ProcessImageName
->Length
);
838 /* Loop the file name*/
839 while (szSrc
> ProcessImageName
->Buffer
)
841 /* Make sure this isn't a backslash */
842 if (*--szSrc
== OBJ_NAME_PATH_SEPARATOR
)
849 ImageNameLength
+= sizeof(WCHAR
);
853 if (!ImageNameLength
&& Process
!= PsIdleProcess
)
855 ImageNameLength
= (USHORT
)strlen(Process
->ImageFileName
) * sizeof(WCHAR
);
858 /* Round up the image name length as NT does */
859 if (ImageNameLength
> 0)
860 ImageNameMaximumLength
= ROUND_UP(ImageNameLength
+ sizeof(WCHAR
), 8);
862 ImageNameMaximumLength
= 0;
864 TotalSize
+= CurrentSize
+ ImageNameMaximumLength
;
866 /* Check for overflow */
867 if (TotalSize
> Size
)
872 /* Fill system information */
875 SpiCurrent
->NextEntryOffset
= CurrentSize
+ ImageNameMaximumLength
; // relative offset to the beginning of the next structure
876 SpiCurrent
->NumberOfThreads
= ThreadsCount
;
877 SpiCurrent
->CreateTime
= Process
->CreateTime
;
878 SpiCurrent
->ImageName
.Length
= ImageNameLength
;
879 SpiCurrent
->ImageName
.MaximumLength
= ImageNameMaximumLength
;
880 SpiCurrent
->ImageName
.Buffer
= (void*)(Current
+ CurrentSize
);
882 /* Copy name to the end of the struct */
883 if(Process
!= PsIdleProcess
)
887 RtlCopyMemory(SpiCurrent
->ImageName
.Buffer
, szSrc
, SpiCurrent
->ImageName
.Length
);
891 RtlInitAnsiString(&ImageName
, Process
->ImageFileName
);
892 RtlAnsiStringToUnicodeString(&SpiCurrent
->ImageName
, &ImageName
, FALSE
);
897 RtlInitUnicodeString(&SpiCurrent
->ImageName
, NULL
);
900 SpiCurrent
->BasePriority
= Process
->Pcb
.BasePriority
;
901 SpiCurrent
->UniqueProcessId
= Process
->UniqueProcessId
;
902 SpiCurrent
->InheritedFromUniqueProcessId
= Process
->InheritedFromUniqueProcessId
;
903 SpiCurrent
->HandleCount
= ObGetProcessHandleCount(Process
);
904 SpiCurrent
->PeakVirtualSize
= Process
->PeakVirtualSize
;
905 SpiCurrent
->VirtualSize
= Process
->VirtualSize
;
906 SpiCurrent
->PageFaultCount
= Process
->Vm
.PageFaultCount
;
907 SpiCurrent
->PeakWorkingSetSize
= Process
->Vm
.PeakWorkingSetSize
;
908 SpiCurrent
->WorkingSetSize
= Process
->Vm
.WorkingSetSize
;
909 SpiCurrent
->QuotaPeakPagedPoolUsage
= Process
->QuotaPeak
[0];
910 SpiCurrent
->QuotaPagedPoolUsage
= Process
->QuotaUsage
[0];
911 SpiCurrent
->QuotaPeakNonPagedPoolUsage
= Process
->QuotaPeak
[1];
912 SpiCurrent
->QuotaNonPagedPoolUsage
= Process
->QuotaUsage
[1];
913 SpiCurrent
->PagefileUsage
= Process
->QuotaUsage
[2];
914 SpiCurrent
->PeakPagefileUsage
= Process
->QuotaPeak
[2];
915 SpiCurrent
->PrivatePageCount
= Process
->CommitCharge
;
916 ThreadInfo
= (PSYSTEM_THREAD_INFORMATION
)(SpiCurrent
+ 1);
918 CurrentEntry
= Process
->Pcb
.ThreadListHead
.Flink
;
919 while (CurrentEntry
!= &Process
->Pcb
.ThreadListHead
)
921 CurrentThread
= CONTAINING_RECORD(CurrentEntry
, ETHREAD
, Tcb
.ThreadListEntry
);
923 ThreadInfo
->KernelTime
.QuadPart
= UInt32x32To64(CurrentThread
->Tcb
.KernelTime
, KeMaximumIncrement
);
924 ThreadInfo
->UserTime
.QuadPart
= UInt32x32To64(CurrentThread
->Tcb
.UserTime
, KeMaximumIncrement
);
925 ThreadInfo
->CreateTime
.QuadPart
= CurrentThread
->CreateTime
.QuadPart
;
926 ThreadInfo
->WaitTime
= CurrentThread
->Tcb
.WaitTime
;
927 ThreadInfo
->StartAddress
= (PVOID
) CurrentThread
->StartAddress
;
928 ThreadInfo
->ClientId
= CurrentThread
->Cid
;
929 ThreadInfo
->Priority
= CurrentThread
->Tcb
.Priority
;
930 ThreadInfo
->BasePriority
= CurrentThread
->Tcb
.BasePriority
;
931 ThreadInfo
->ContextSwitches
= CurrentThread
->Tcb
.ContextSwitches
;
932 ThreadInfo
->ThreadState
= CurrentThread
->Tcb
.State
;
933 ThreadInfo
->WaitReason
= CurrentThread
->Tcb
.WaitReason
;
936 CurrentEntry
= CurrentEntry
->Flink
;
939 /* Query total user/kernel times of a process */
940 TotalKernel
= KeQueryRuntimeProcess(&Process
->Pcb
, &TotalUser
);
941 SpiCurrent
->UserTime
.QuadPart
= UInt32x32To64(TotalUser
, KeMaximumIncrement
);
942 SpiCurrent
->KernelTime
.QuadPart
= UInt32x32To64(TotalKernel
, KeMaximumIncrement
);
945 if (ProcessImageName
)
947 /* Release the memory allocated by SeLocateProcessImageName */
948 ExFreePoolWithTag(ProcessImageName
, TAG_SEPA
);
949 ProcessImageName
= NULL
;
952 /* Handle idle process entry */
954 if (Process
== PsIdleProcess
) Process
= NULL
;
956 Process
= PsGetNextProcess(Process
);
958 if ((Process
== SystemProcess
) || (Process
== NULL
))
961 SpiCurrent
->NextEntryOffset
= 0;
965 Current
+= CurrentSize
+ ImageNameMaximumLength
;
966 } while ((Process
!= SystemProcess
) && (Process
!= NULL
));
969 ObDereferenceObject(Process
);
970 Status
= STATUS_SUCCESS
;
972 _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER
)
975 ObDereferenceObject(Process
);
976 if (ProcessImageName
)
978 /* Release the memory allocated by SeLocateProcessImageName */
979 ExFreePoolWithTag(ProcessImageName
, TAG_SEPA
);
982 Status
= _SEH2_GetExceptionCode();
987 Status
= STATUS_INFO_LENGTH_MISMATCH
;
989 *ReqSize
= TotalSize
;
993 /* Class 6 - Call Count Information */
994 QSI_DEF(SystemCallCountInformation
)
997 DPRINT1("NtQuerySystemInformation - SystemCallCountInformation not implemented\n");
998 return STATUS_NOT_IMPLEMENTED
;
1001 /* Class 7 - Device Information */
1002 QSI_DEF(SystemDeviceInformation
)
1004 PSYSTEM_DEVICE_INFORMATION Sdi
1005 = (PSYSTEM_DEVICE_INFORMATION
) Buffer
;
1006 PCONFIGURATION_INFORMATION ConfigInfo
;
1008 *ReqSize
= sizeof(SYSTEM_DEVICE_INFORMATION
);
1010 /* Check user buffer's size */
1011 if (Size
< sizeof(SYSTEM_DEVICE_INFORMATION
))
1013 return STATUS_INFO_LENGTH_MISMATCH
;
1016 ConfigInfo
= IoGetConfigurationInformation();
1018 Sdi
->NumberOfDisks
= ConfigInfo
->DiskCount
;
1019 Sdi
->NumberOfFloppies
= ConfigInfo
->FloppyCount
;
1020 Sdi
->NumberOfCdRoms
= ConfigInfo
->CdRomCount
;
1021 Sdi
->NumberOfTapes
= ConfigInfo
->TapeCount
;
1022 Sdi
->NumberOfSerialPorts
= ConfigInfo
->SerialCount
;
1023 Sdi
->NumberOfParallelPorts
= ConfigInfo
->ParallelCount
;
1025 return STATUS_SUCCESS
;
1028 /* Class 8 - Processor Performance Information */
1029 QSI_DEF(SystemProcessorPerformanceInformation
)
1031 PSYSTEM_PROCESSOR_PERFORMANCE_INFORMATION Spi
1032 = (PSYSTEM_PROCESSOR_PERFORMANCE_INFORMATION
) Buffer
;
1038 *ReqSize
= KeNumberProcessors
* sizeof(SYSTEM_PROCESSOR_PERFORMANCE_INFORMATION
);
1040 /* Check user buffer's size */
1041 if (Size
< *ReqSize
)
1043 return STATUS_INFO_LENGTH_MISMATCH
;
1046 for (i
= 0; i
< KeNumberProcessors
; i
++)
1048 /* Get the PRCB on this processor */
1049 Prcb
= KiProcessorBlock
[i
];
1051 /* Calculate total user and kernel times */
1052 TotalTime
= Prcb
->IdleThread
->KernelTime
+ Prcb
->IdleThread
->UserTime
;
1053 Spi
->IdleTime
.QuadPart
= UInt32x32To64(TotalTime
, KeMaximumIncrement
);
1054 Spi
->KernelTime
.QuadPart
= UInt32x32To64(Prcb
->KernelTime
, KeMaximumIncrement
);
1055 Spi
->UserTime
.QuadPart
= UInt32x32To64(Prcb
->UserTime
, KeMaximumIncrement
);
1056 Spi
->DpcTime
.QuadPart
= UInt32x32To64(Prcb
->DpcTime
, KeMaximumIncrement
);
1057 Spi
->InterruptTime
.QuadPart
= UInt32x32To64(Prcb
->InterruptTime
, KeMaximumIncrement
);
1058 Spi
->InterruptCount
= Prcb
->InterruptCount
;
1062 return STATUS_SUCCESS
;
1065 /* Class 9 - Flags Information */
1066 QSI_DEF(SystemFlagsInformation
)
1068 if (sizeof(SYSTEM_FLAGS_INFORMATION
) != Size
)
1070 *ReqSize
= sizeof(SYSTEM_FLAGS_INFORMATION
);
1071 return (STATUS_INFO_LENGTH_MISMATCH
);
1073 ((PSYSTEM_FLAGS_INFORMATION
) Buffer
)->Flags
= NtGlobalFlag
;
1074 return STATUS_SUCCESS
;
1077 SSI_DEF(SystemFlagsInformation
)
1079 if (sizeof(SYSTEM_FLAGS_INFORMATION
) != Size
)
1081 return STATUS_INFO_LENGTH_MISMATCH
;
1083 NtGlobalFlag
= ((PSYSTEM_FLAGS_INFORMATION
) Buffer
)->Flags
;
1084 return STATUS_SUCCESS
;
1087 /* Class 10 - Call Time Information */
1088 QSI_DEF(SystemCallTimeInformation
)
1091 DPRINT1("NtQuerySystemInformation - SystemCallTimeInformation not implemented\n");
1092 return STATUS_NOT_IMPLEMENTED
;
1095 /* Class 11 - Module Information */
1096 QSI_DEF(SystemModuleInformation
)
1100 /* Acquire system module list lock */
1101 KeEnterCriticalRegion();
1102 ExAcquireResourceExclusiveLite(&PsLoadedModuleResource
, TRUE
);
1104 /* Call the generic handler with the system module list */
1105 Status
= ExpQueryModuleInformation(&PsLoadedModuleList
,
1106 &MmLoadedUserImageList
,
1107 (PRTL_PROCESS_MODULES
)Buffer
,
1111 /* Release list lock and return status */
1112 ExReleaseResourceLite(&PsLoadedModuleResource
);
1113 KeLeaveCriticalRegion();
1117 /* Class 12 - Locks Information */
1118 QSI_DEF(SystemLocksInformation
)
1121 DPRINT1("NtQuerySystemInformation - SystemLocksInformation not implemented\n");
1122 return STATUS_NOT_IMPLEMENTED
;
1125 /* Class 13 - Stack Trace Information */
1126 QSI_DEF(SystemStackTraceInformation
)
1129 DPRINT1("NtQuerySystemInformation - SystemStackTraceInformation not implemented\n");
1130 return STATUS_NOT_IMPLEMENTED
;
1133 /* Class 14 - Paged Pool Information */
1134 QSI_DEF(SystemPagedPoolInformation
)
1137 DPRINT1("NtQuerySystemInformation - SystemPagedPoolInformation not implemented\n");
1138 return STATUS_NOT_IMPLEMENTED
;
1141 /* Class 15 - Non Paged Pool Information */
1142 QSI_DEF(SystemNonPagedPoolInformation
)
1145 DPRINT1("NtQuerySystemInformation - SystemNonPagedPoolInformation not implemented\n");
1146 return STATUS_NOT_IMPLEMENTED
;
1150 /* Class 16 - Handle Information */
1151 QSI_DEF(SystemHandleInformation
)
1153 PEPROCESS pr
, syspr
;
1154 ULONG curSize
, i
= 0;
1157 PSYSTEM_HANDLE_INFORMATION Shi
=
1158 (PSYSTEM_HANDLE_INFORMATION
) Buffer
;
1160 DPRINT("NtQuerySystemInformation - SystemHandleInformation\n");
1162 if (Size
< sizeof(SYSTEM_HANDLE_INFORMATION
))
1164 *ReqSize
= sizeof(SYSTEM_HANDLE_INFORMATION
);
1165 return STATUS_INFO_LENGTH_MISMATCH
;
1168 DPRINT("SystemHandleInformation 1\n");
1170 /* First Calc Size from Count. */
1171 syspr
= PsGetNextProcess(NULL
);
1176 hCount
= hCount
+ ObGetProcessHandleCount(pr
);
1177 pr
= PsGetNextProcess(pr
);
1179 if ((pr
== syspr
) || (pr
== NULL
)) break;
1181 while ((pr
!= syspr
) && (pr
!= NULL
));
1185 ObDereferenceObject(pr
);
1188 DPRINT("SystemHandleInformation 2\n");
1190 curSize
= sizeof(SYSTEM_HANDLE_INFORMATION
) +
1191 ((sizeof(SYSTEM_HANDLE_TABLE_ENTRY_INFO
) * hCount
) -
1192 (sizeof(SYSTEM_HANDLE_TABLE_ENTRY_INFO
)));
1194 Shi
->NumberOfHandles
= hCount
;
1199 return (STATUS_INFO_LENGTH_MISMATCH
);
1202 DPRINT("SystemHandleInformation 3\n");
1204 /* Now get Handles from all processes. */
1205 syspr
= PsGetNextProcess(NULL
);
1210 int Count
= 0, HandleCount
;
1212 HandleCount
= ObGetProcessHandleCount(pr
);
1214 for (Count
= 0; HandleCount
> 0 ; HandleCount
--)
1216 Shi
->Handles
[i
].UniqueProcessId
= (USHORT
)(ULONG_PTR
)pr
->UniqueProcessId
;
1221 pr
= PsGetNextProcess(pr
);
1223 if ((pr
== syspr
) || (pr
== NULL
)) break;
1225 while ((pr
!= syspr
) && (pr
!= NULL
));
1227 if(pr
!= NULL
) ObDereferenceObject(pr
);
1229 DPRINT("SystemHandleInformation 4\n");
1230 return STATUS_SUCCESS
;
1234 SSI_DEF(SystemHandleInformation)
1237 return STATUS_SUCCESS;
1241 /* Class 17 - Information */
1242 QSI_DEF(SystemObjectInformation
)
1245 DPRINT1("NtQuerySystemInformation - SystemObjectInformation not implemented\n");
1246 return STATUS_NOT_IMPLEMENTED
;
1249 /* Class 18 - Information */
1250 QSI_DEF(SystemPageFileInformation
)
1252 UNICODE_STRING FileName
; /* FIXME */
1253 SYSTEM_PAGEFILE_INFORMATION
*Spfi
= (SYSTEM_PAGEFILE_INFORMATION
*) Buffer
;
1255 if (Size
< sizeof(SYSTEM_PAGEFILE_INFORMATION
))
1257 * ReqSize
= sizeof(SYSTEM_PAGEFILE_INFORMATION
);
1258 return STATUS_INFO_LENGTH_MISMATCH
;
1261 RtlInitUnicodeString(&FileName
, NULL
); /* FIXME */
1264 Spfi
->NextEntryOffset
= 0;
1266 Spfi
->TotalSize
= MiFreeSwapPages
+ MiUsedSwapPages
;
1267 Spfi
->TotalInUse
= MiUsedSwapPages
;
1268 Spfi
->PeakUsage
= MiUsedSwapPages
; /* FIXME */
1269 Spfi
->PageFileName
= FileName
;
1270 return STATUS_SUCCESS
;
1273 /* Class 19 - Vdm Instemul Information */
1274 QSI_DEF(SystemVdmInstemulInformation
)
1277 DPRINT1("NtQuerySystemInformation - SystemVdmInstemulInformation not implemented\n");
1278 return STATUS_NOT_IMPLEMENTED
;
1281 /* Class 20 - Vdm Bop Information */
1282 QSI_DEF(SystemVdmBopInformation
)
1285 DPRINT1("NtQuerySystemInformation - SystemVdmBopInformation not implemented\n");
1286 return STATUS_NOT_IMPLEMENTED
;
1289 /* Class 21 - File Cache Information */
1290 QSI_DEF(SystemFileCacheInformation
)
1292 SYSTEM_FILECACHE_INFORMATION
*Sci
= (SYSTEM_FILECACHE_INFORMATION
*) Buffer
;
1294 if (Size
< sizeof(SYSTEM_FILECACHE_INFORMATION
))
1296 *ReqSize
= sizeof(SYSTEM_FILECACHE_INFORMATION
);
1297 return STATUS_INFO_LENGTH_MISMATCH
;
1300 RtlZeroMemory(Sci
, sizeof(SYSTEM_FILECACHE_INFORMATION
));
1302 /* Return the Byte size not the page size. */
1304 MiMemoryConsumers
[MC_CACHE
].PagesUsed
* PAGE_SIZE
;
1306 MiMemoryConsumers
[MC_CACHE
].PagesUsed
* PAGE_SIZE
; /* FIXME */
1307 /* Taskmgr multiplies this one by page size right away */
1308 Sci
->CurrentSizeIncludingTransitionInPages
=
1309 MiMemoryConsumers
[MC_CACHE
].PagesUsed
; /* FIXME: Should be */
1310 /* system working set and standby pages. */
1311 Sci
->PageFaultCount
= 0; /* FIXME */
1312 Sci
->MinimumWorkingSet
= 0; /* FIXME */
1313 Sci
->MaximumWorkingSet
= 0; /* FIXME */
1315 return STATUS_SUCCESS
;
1318 SSI_DEF(SystemFileCacheInformation
)
1320 if (Size
< sizeof(SYSTEM_FILECACHE_INFORMATION
))
1322 return STATUS_INFO_LENGTH_MISMATCH
;
1325 DPRINT1("NtSetSystemInformation - SystemFileCacheInformation not implemented\n");
1326 return STATUS_NOT_IMPLEMENTED
;
1329 /* Class 22 - Pool Tag Information */
1330 QSI_DEF(SystemPoolTagInformation
)
1332 if (Size
< sizeof(SYSTEM_POOLTAG_INFORMATION
)) return STATUS_INFO_LENGTH_MISMATCH
;
1333 return ExGetPoolTagInfo(Buffer
, Size
, ReqSize
);
1336 /* Class 23 - Interrupt Information for all processors */
1337 QSI_DEF(SystemInterruptInformation
)
1342 PSYSTEM_INTERRUPT_INFORMATION sii
= (PSYSTEM_INTERRUPT_INFORMATION
)Buffer
;
1344 if(Size
< KeNumberProcessors
* sizeof(SYSTEM_INTERRUPT_INFORMATION
))
1346 return STATUS_INFO_LENGTH_MISMATCH
;
1349 ti
= KeQueryTimeIncrement();
1351 for (i
= 0; i
< KeNumberProcessors
; i
++)
1353 Prcb
= KiProcessorBlock
[i
];
1354 sii
->ContextSwitches
= KeGetContextSwitches(Prcb
);
1355 sii
->DpcCount
= Prcb
->DpcData
[0].DpcCount
;
1356 sii
->DpcRate
= Prcb
->DpcRequestRate
;
1357 sii
->TimeIncrement
= ti
;
1358 sii
->DpcBypassCount
= 0;
1359 sii
->ApcBypassCount
= 0;
1363 return STATUS_SUCCESS
;
1366 /* Class 24 - DPC Behaviour Information */
1367 QSI_DEF(SystemDpcBehaviourInformation
)
1370 DPRINT1("NtQuerySystemInformation - SystemDpcBehaviourInformation not implemented\n");
1371 return STATUS_NOT_IMPLEMENTED
;
1374 SSI_DEF(SystemDpcBehaviourInformation
)
1377 DPRINT1("NtSetSystemInformation - SystemDpcBehaviourInformation not implemented\n");
1378 return STATUS_NOT_IMPLEMENTED
;
1381 /* Class 25 - Full Memory Information */
1382 QSI_DEF(SystemFullMemoryInformation
)
1384 PULONG Spi
= (PULONG
) Buffer
;
1386 PEPROCESS TheIdleProcess
;
1388 *ReqSize
= sizeof(ULONG
);
1390 if (sizeof(ULONG
) != Size
)
1392 return STATUS_INFO_LENGTH_MISMATCH
;
1395 DPRINT("SystemFullMemoryInformation\n");
1397 TheIdleProcess
= PsIdleProcess
;
1399 DPRINT("PID: %p, KernelTime: %u PFFree: %lu PFUsed: %lu\n",
1400 TheIdleProcess
->UniqueProcessId
,
1401 TheIdleProcess
->Pcb
.KernelTime
,
1405 *Spi
= MiMemoryConsumers
[MC_USER
].PagesUsed
;
1407 return STATUS_SUCCESS
;
1410 /* Class 26 - Load Image */
1411 SSI_DEF(SystemLoadGdiDriverInformation
)
1413 PSYSTEM_GDI_DRIVER_INFORMATION DriverInfo
= (PVOID
)Buffer
;
1414 UNICODE_STRING ImageName
;
1416 PVOID SectionPointer
;
1417 ULONG_PTR EntryPoint
;
1420 PIMAGE_NT_HEADERS NtHeader
;
1423 if (Size
!= sizeof(SYSTEM_GDI_DRIVER_INFORMATION
))
1425 /* Incorrect buffer length, fail */
1426 return STATUS_INFO_LENGTH_MISMATCH
;
1429 /* Only kernel mode can call this function */
1430 if (ExGetPreviousMode() != KernelMode
) return STATUS_PRIVILEGE_NOT_HELD
;
1432 /* Load the driver */
1433 ImageName
= DriverInfo
->DriverName
;
1434 Status
= MmLoadSystemImage(&ImageName
,
1440 if (!NT_SUCCESS(Status
)) return Status
;
1442 /* Return the export pointer */
1443 DriverInfo
->ExportSectionPointer
=
1444 RtlImageDirectoryEntryToData(ImageBase
,
1446 IMAGE_DIRECTORY_ENTRY_EXPORT
,
1449 /* Get the entrypoint */
1450 NtHeader
= RtlImageNtHeader(ImageBase
);
1451 EntryPoint
= NtHeader
->OptionalHeader
.AddressOfEntryPoint
;
1452 EntryPoint
+= (ULONG_PTR
)ImageBase
;
1454 /* Save other data */
1455 DriverInfo
->ImageAddress
= ImageBase
;
1456 DriverInfo
->SectionPointer
= SectionPointer
;
1457 DriverInfo
->EntryPoint
= (PVOID
)EntryPoint
;
1458 DriverInfo
->ImageLength
= NtHeader
->OptionalHeader
.SizeOfImage
;
1461 return STATUS_SUCCESS
;
1464 /* Class 27 - Unload Image */
1465 SSI_DEF(SystemUnloadGdiDriverInformation
)
1467 PVOID
*SectionPointer
= Buffer
;
1470 if (Size
!= sizeof(PVOID
))
1472 /* Incorrect length, fail */
1473 return STATUS_INFO_LENGTH_MISMATCH
;
1476 /* Only kernel mode can call this function */
1477 if (ExGetPreviousMode() != KernelMode
) return STATUS_PRIVILEGE_NOT_HELD
;
1479 /* Unload the image */
1480 MmUnloadSystemImage(*SectionPointer
);
1481 return STATUS_SUCCESS
;
1484 /* Class 28 - Time Adjustment Information */
1485 QSI_DEF(SystemTimeAdjustmentInformation
)
1487 PSYSTEM_QUERY_TIME_ADJUST_INFORMATION TimeInfo
=
1488 (PSYSTEM_QUERY_TIME_ADJUST_INFORMATION
)Buffer
;
1490 /* Check if enough storage was provided */
1491 if (sizeof(SYSTEM_QUERY_TIME_ADJUST_INFORMATION
) > Size
)
1493 * ReqSize
= sizeof(SYSTEM_QUERY_TIME_ADJUST_INFORMATION
);
1494 return STATUS_INFO_LENGTH_MISMATCH
;
1497 /* Give time values to our caller */
1498 TimeInfo
->TimeIncrement
= KeMaximumIncrement
;
1499 TimeInfo
->TimeAdjustment
= KeTimeAdjustment
;
1500 TimeInfo
->Enable
= !KiTimeAdjustmentEnabled
;
1502 return STATUS_SUCCESS
;
1505 SSI_DEF(SystemTimeAdjustmentInformation
)
1507 KPROCESSOR_MODE PreviousMode
= KeGetPreviousMode();
1508 PSYSTEM_SET_TIME_ADJUST_INFORMATION TimeInfo
=
1509 (PSYSTEM_SET_TIME_ADJUST_INFORMATION
)Buffer
;
1511 /* Check size of a buffer, it must match our expectations */
1512 if (sizeof(SYSTEM_SET_TIME_ADJUST_INFORMATION
) != Size
)
1513 return STATUS_INFO_LENGTH_MISMATCH
;
1515 /* Check who is calling */
1516 if (PreviousMode
!= KernelMode
)
1518 /* Check access rights */
1519 if (!SeSinglePrivilegeCheck(SeSystemtimePrivilege
, PreviousMode
))
1521 return STATUS_PRIVILEGE_NOT_HELD
;
1525 /* FIXME: behaviour suggests the member be named 'Disable' */
1526 if (TimeInfo
->Enable
)
1528 /* Disable time adjustment and set default value */
1529 KiTimeAdjustmentEnabled
= FALSE
;
1530 KeTimeAdjustment
= KeMaximumIncrement
;
1534 /* Check if a valid time adjustment value is given */
1535 if (TimeInfo
->TimeAdjustment
== 0) return STATUS_INVALID_PARAMETER_2
;
1537 /* Enable time adjustment and set the adjustment value */
1538 KiTimeAdjustmentEnabled
= TRUE
;
1539 KeTimeAdjustment
= TimeInfo
->TimeAdjustment
;
1542 return STATUS_SUCCESS
;
1545 /* Class 29 - Summary Memory Information */
1546 QSI_DEF(SystemSummaryMemoryInformation
)
1549 DPRINT1("NtQuerySystemInformation - SystemSummaryMemoryInformation not implemented\n");
1550 return STATUS_NOT_IMPLEMENTED
;
1553 /* Class 30 - Next Event Id Information */
1554 QSI_DEF(SystemNextEventIdInformation
)
1557 DPRINT1("NtQuerySystemInformation - SystemNextEventIdInformation not implemented\n");
1558 return STATUS_NOT_IMPLEMENTED
;
1561 /* Class 31 - Event Ids Information */
1562 QSI_DEF(SystemEventIdsInformation
)
1565 DPRINT1("NtQuerySystemInformation - SystemEventIdsInformation not implemented\n");
1566 return STATUS_NOT_IMPLEMENTED
;
1569 /* Class 32 - Crash Dump Information */
1570 QSI_DEF(SystemCrashDumpInformation
)
1573 DPRINT1("NtQuerySystemInformation - SystemCrashDumpInformation not implemented\n");
1574 return STATUS_NOT_IMPLEMENTED
;
1577 /* Class 33 - Exception Information */
1578 QSI_DEF(SystemExceptionInformation
)
1580 PSYSTEM_EXCEPTION_INFORMATION ExceptionInformation
=
1581 (PSYSTEM_EXCEPTION_INFORMATION
)Buffer
;
1583 ULONG AlignmentFixupCount
= 0, ExceptionDispatchCount
= 0;
1584 ULONG FloatingEmulationCount
= 0, ByteWordEmulationCount
= 0;
1587 /* Check size of a buffer, it must match our expectations */
1588 if (sizeof(SYSTEM_EXCEPTION_INFORMATION
) != Size
)
1589 return STATUS_INFO_LENGTH_MISMATCH
;
1591 /* Sum up exception count information from all processors */
1592 for (i
= 0; i
< KeNumberProcessors
; i
++)
1594 Prcb
= KiProcessorBlock
[i
];
1597 AlignmentFixupCount
+= Prcb
->KeAlignmentFixupCount
;
1598 ExceptionDispatchCount
+= Prcb
->KeExceptionDispatchCount
;
1600 FloatingEmulationCount
+= Prcb
->KeFloatingEmulationCount
;
1605 /* Save information in user's buffer */
1606 ExceptionInformation
->AlignmentFixupCount
= AlignmentFixupCount
;
1607 ExceptionInformation
->ExceptionDispatchCount
= ExceptionDispatchCount
;
1608 ExceptionInformation
->FloatingEmulationCount
= FloatingEmulationCount
;
1609 ExceptionInformation
->ByteWordEmulationCount
= ByteWordEmulationCount
;
1611 return STATUS_SUCCESS
;
1614 /* Class 34 - Crash Dump State Information */
1615 QSI_DEF(SystemCrashDumpStateInformation
)
1618 DPRINT1("NtQuerySystemInformation - SystemCrashDumpStateInformation not implemented\n");
1619 return STATUS_NOT_IMPLEMENTED
;
1622 /* Class 35 - Kernel Debugger Information */
1623 QSI_DEF(SystemKernelDebuggerInformation
)
1625 PSYSTEM_KERNEL_DEBUGGER_INFORMATION skdi
= (PSYSTEM_KERNEL_DEBUGGER_INFORMATION
) Buffer
;
1627 *ReqSize
= sizeof(SYSTEM_KERNEL_DEBUGGER_INFORMATION
);
1628 if (Size
< sizeof(SYSTEM_KERNEL_DEBUGGER_INFORMATION
))
1630 return STATUS_INFO_LENGTH_MISMATCH
;
1633 skdi
->KernelDebuggerEnabled
= KD_DEBUGGER_ENABLED
;
1634 skdi
->KernelDebuggerNotPresent
= KD_DEBUGGER_NOT_PRESENT
;
1636 return STATUS_SUCCESS
;
1639 /* Class 36 - Context Switch Information */
1640 QSI_DEF(SystemContextSwitchInformation
)
1642 PSYSTEM_CONTEXT_SWITCH_INFORMATION ContextSwitchInformation
=
1643 (PSYSTEM_CONTEXT_SWITCH_INFORMATION
)Buffer
;
1644 ULONG ContextSwitches
;
1648 /* Check size of a buffer, it must match our expectations */
1649 if (sizeof(SYSTEM_CONTEXT_SWITCH_INFORMATION
) != Size
)
1650 return STATUS_INFO_LENGTH_MISMATCH
;
1652 /* Calculate total value of context switches across all processors */
1653 ContextSwitches
= 0;
1654 for (i
= 0; i
< KeNumberProcessors
; i
++)
1656 Prcb
= KiProcessorBlock
[i
];
1659 ContextSwitches
+= KeGetContextSwitches(Prcb
);
1663 ContextSwitchInformation
->ContextSwitches
= ContextSwitches
;
1666 ContextSwitchInformation
->FindAny
= 0;
1667 ContextSwitchInformation
->FindLast
= 0;
1668 ContextSwitchInformation
->FindIdeal
= 0;
1669 ContextSwitchInformation
->IdleAny
= 0;
1670 ContextSwitchInformation
->IdleCurrent
= 0;
1671 ContextSwitchInformation
->IdleLast
= 0;
1672 ContextSwitchInformation
->IdleIdeal
= 0;
1673 ContextSwitchInformation
->PreemptAny
= 0;
1674 ContextSwitchInformation
->PreemptCurrent
= 0;
1675 ContextSwitchInformation
->PreemptLast
= 0;
1676 ContextSwitchInformation
->SwitchToIdle
= 0;
1678 return STATUS_SUCCESS
;
1681 /* Class 37 - Registry Quota Information */
1682 QSI_DEF(SystemRegistryQuotaInformation
)
1684 PSYSTEM_REGISTRY_QUOTA_INFORMATION srqi
= (PSYSTEM_REGISTRY_QUOTA_INFORMATION
) Buffer
;
1686 *ReqSize
= sizeof(SYSTEM_REGISTRY_QUOTA_INFORMATION
);
1687 if (Size
< sizeof(SYSTEM_REGISTRY_QUOTA_INFORMATION
))
1689 return STATUS_INFO_LENGTH_MISMATCH
;
1692 DPRINT1("Faking max registry size of 32 MB\n");
1693 srqi
->RegistryQuotaAllowed
= 0x2000000;
1694 srqi
->RegistryQuotaUsed
= 0x200000;
1695 srqi
->PagedPoolSize
= 0x200000;
1697 return STATUS_SUCCESS
;
1700 SSI_DEF(SystemRegistryQuotaInformation
)
1703 DPRINT1("NtSetSystemInformation - SystemRegistryQuotaInformation not implemented\n");
1704 return STATUS_NOT_IMPLEMENTED
;
1707 /* Class 38 - Load And Call Image */
1708 SSI_DEF(SystemExtendServiceTableInformation
)
1710 UNICODE_STRING ImageName
;
1711 KPROCESSOR_MODE PreviousMode
= KeGetPreviousMode();
1712 PLDR_DATA_TABLE_ENTRY ModuleObject
;
1714 PIMAGE_NT_HEADERS NtHeader
;
1715 DRIVER_OBJECT Win32k
;
1716 PDRIVER_INITIALIZE DriverInit
;
1718 ULONG_PTR EntryPoint
;
1720 /* Validate the size */
1721 if (Size
!= sizeof(UNICODE_STRING
)) return STATUS_INFO_LENGTH_MISMATCH
;
1723 /* Check who is calling */
1724 if (PreviousMode
!= KernelMode
)
1726 static const UNICODE_STRING Win32kName
=
1727 RTL_CONSTANT_STRING(L
"\\SystemRoot\\System32\\win32k.sys");
1729 /* Make sure we can load drivers */
1730 if (!SeSinglePrivilegeCheck(SeLoadDriverPrivilege
, UserMode
))
1732 /* FIXME: We can't, fail */
1733 return STATUS_PRIVILEGE_NOT_HELD
;
1738 /* Probe and copy the unicode string */
1739 ProbeForRead(Buffer
, sizeof(ImageName
), 1);
1740 ImageName
= *(PUNICODE_STRING
)Buffer
;
1742 /* Probe the string buffer */
1743 ProbeForRead(ImageName
.Buffer
, ImageName
.Length
, sizeof(WCHAR
));
1745 /* Check if we have the correct name (nothing else is allowed!) */
1746 if (!RtlEqualUnicodeString(&ImageName
, &Win32kName
, FALSE
))
1748 _SEH2_YIELD(return STATUS_PRIVILEGE_NOT_HELD
);
1751 _SEH2_EXCEPT(EXCEPTION_EXECUTE_HANDLER
)
1753 _SEH2_YIELD(return _SEH2_GetExceptionCode());
1757 /* Recursively call the function, so that we are from kernel mode */
1758 return ZwSetSystemInformation(SystemExtendServiceTableInformation
,
1760 sizeof(Win32kName
));
1763 /* Load the image */
1764 Status
= MmLoadSystemImage((PUNICODE_STRING
)Buffer
,
1768 (PVOID
)&ModuleObject
,
1771 if (!NT_SUCCESS(Status
)) return Status
;
1773 /* Get the headers */
1774 NtHeader
= RtlImageNtHeader(ImageBase
);
1778 MmUnloadSystemImage(ModuleObject
);
1779 return STATUS_INVALID_IMAGE_FORMAT
;
1782 /* Get the entrypoint */
1783 EntryPoint
= NtHeader
->OptionalHeader
.AddressOfEntryPoint
;
1784 EntryPoint
+= (ULONG_PTR
)ImageBase
;
1785 DriverInit
= (PDRIVER_INITIALIZE
)EntryPoint
;
1787 /* Create a dummy device */
1788 RtlZeroMemory(&Win32k
, sizeof(Win32k
));
1789 ASSERT(KeGetCurrentIrql() == PASSIVE_LEVEL
);
1790 Win32k
.DriverStart
= ImageBase
;
1793 Status
= (DriverInit
)(&Win32k
, NULL
);
1794 ASSERT(KeGetCurrentIrql() == PASSIVE_LEVEL
);
1796 /* Unload if we failed */
1797 if (!NT_SUCCESS(Status
)) MmUnloadSystemImage(ModuleObject
);
1801 /* Class 39 - Priority Separation */
1802 SSI_DEF(SystemPrioritySeperation
)
1804 /* Check if the size is correct */
1805 if (Size
!= sizeof(ULONG
))
1807 return STATUS_INFO_LENGTH_MISMATCH
;
1810 /* We need the TCB privilege */
1811 if (!SeSinglePrivilegeCheck(SeTcbPrivilege
, ExGetPreviousMode()))
1813 return STATUS_PRIVILEGE_NOT_HELD
;
1816 /* Modify the quantum table */
1817 PsChangeQuantumTable(TRUE
, *(PULONG
)Buffer
);
1819 return STATUS_SUCCESS
;
1822 /* Class 40 - Plug Play Bus Information */
1823 QSI_DEF(SystemPlugPlayBusInformation
)
1826 DPRINT1("NtQuerySystemInformation - SystemPlugPlayBusInformation not implemented\n");
1827 return STATUS_NOT_IMPLEMENTED
;
1830 /* Class 41 - Dock Information */
1831 QSI_DEF(SystemDockInformation
)
1834 DPRINT1("NtQuerySystemInformation - SystemDockInformation not implemented\n");
1835 return STATUS_NOT_IMPLEMENTED
;
1838 /* Class 42 - Power Information */
1839 QSI_DEF(SystemPowerInformation
)
1842 DPRINT1("NtQuerySystemInformation - SystemPowerInformation not implemented\n");
1843 return STATUS_NOT_IMPLEMENTED
;
1846 /* Class 43 - Processor Speed Information */
1847 QSI_DEF(SystemProcessorSpeedInformation
)
1850 DPRINT1("NtQuerySystemInformation - SystemProcessorSpeedInformation not implemented\n");
1851 return STATUS_NOT_IMPLEMENTED
;
1854 /* Class 44 - Current Time Zone Information */
1855 QSI_DEF(SystemCurrentTimeZoneInformation
)
1857 *ReqSize
= sizeof(TIME_ZONE_INFORMATION
);
1859 if (sizeof(TIME_ZONE_INFORMATION
) != Size
)
1861 return STATUS_INFO_LENGTH_MISMATCH
;
1864 /* Copy the time zone information struct */
1867 sizeof(TIME_ZONE_INFORMATION
));
1869 return STATUS_SUCCESS
;
1873 SSI_DEF(SystemCurrentTimeZoneInformation
)
1875 /* Check user buffer's size */
1876 if (Size
< sizeof(TIME_ZONE_INFORMATION
))
1878 return STATUS_INFO_LENGTH_MISMATCH
;
1881 return ExpSetTimeZoneInformation((PTIME_ZONE_INFORMATION
)Buffer
);
1886 ExpCopyLookasideInformation(
1887 PSYSTEM_LOOKASIDE_INFORMATION
*InfoPointer
,
1888 PULONG RemainingPointer
,
1889 PLIST_ENTRY ListHead
,
1890 BOOLEAN ListUsesMisses
)
1893 PSYSTEM_LOOKASIDE_INFORMATION Info
;
1894 PGENERAL_LOOKASIDE LookasideList
;
1895 PLIST_ENTRY ListEntry
;
1898 /* Get info pointer and remaining count of free array element */
1899 Info
= *InfoPointer
;
1900 Remaining
= *RemainingPointer
;
1902 /* Loop as long as we have lookaside lists and free array elements */
1903 for (ListEntry
= ListHead
->Flink
;
1904 (ListEntry
!= ListHead
) && (Remaining
> 0);
1905 ListEntry
= ListEntry
->Flink
, Remaining
--)
1907 LookasideList
= CONTAINING_RECORD(ListEntry
, GENERAL_LOOKASIDE
, ListEntry
);
1909 /* Fill the next array element */
1910 Info
->CurrentDepth
= LookasideList
->Depth
;
1911 Info
->MaximumDepth
= LookasideList
->MaximumDepth
;
1912 Info
->TotalAllocates
= LookasideList
->TotalAllocates
;
1913 Info
->TotalFrees
= LookasideList
->TotalFrees
;
1914 Info
->Type
= LookasideList
->Type
;
1915 Info
->Tag
= LookasideList
->Tag
;
1916 Info
->Size
= LookasideList
->Size
;
1918 /* Check how the lists track misses/hits */
1922 Info
->AllocateMisses
= LookasideList
->AllocateMisses
;
1923 Info
->FreeMisses
= LookasideList
->FreeMisses
;
1927 /* Calculate misses */
1928 Info
->AllocateMisses
= LookasideList
->TotalAllocates
1929 - LookasideList
->AllocateHits
;
1930 Info
->FreeMisses
= LookasideList
->TotalFrees
1931 - LookasideList
->FreeHits
;
1935 /* Return the updated pointer and remaining count */
1936 *InfoPointer
= Info
;
1937 *RemainingPointer
= Remaining
;
1940 /* Class 45 - Lookaside Information */
1941 QSI_DEF(SystemLookasideInformation
)
1943 KPROCESSOR_MODE PreviousMode
;
1944 PSYSTEM_LOOKASIDE_INFORMATION Info
;
1946 ULONG MaxCount
, Remaining
;
1950 /* First we need to lock down the memory, since we are going to access it
1952 PreviousMode
= ExGetPreviousMode();
1953 Status
= ExLockUserBuffer(Buffer
,
1959 if (!NT_SUCCESS(Status
))
1961 DPRINT1("Failed to lock the user buffer: 0x%lx\n", Status
);
1965 /* Calculate how many items we can store */
1966 Remaining
= MaxCount
= Size
/ sizeof(SYSTEM_LOOKASIDE_INFORMATION
);
1972 /* Copy info from pool lookaside lists */
1973 ExpCopyLookasideInformation(&Info
,
1975 &ExPoolLookasideListHead
,
1982 /* Copy info from system lookaside lists */
1983 ExpCopyLookasideInformation(&Info
,
1985 &ExSystemLookasideListHead
,
1992 /* Acquire spinlock for ExpNonPagedLookasideListHead */
1993 KeAcquireSpinLock(&ExpNonPagedLookasideListLock
, &OldIrql
);
1995 /* Copy info from non-paged lookaside lists */
1996 ExpCopyLookasideInformation(&Info
,
1998 &ExpNonPagedLookasideListHead
,
2001 /* Release spinlock for ExpNonPagedLookasideListHead */
2002 KeReleaseSpinLock(&ExpNonPagedLookasideListLock
, OldIrql
);
2009 /* Acquire spinlock for ExpPagedLookasideListHead */
2010 KeAcquireSpinLock(&ExpPagedLookasideListLock
, &OldIrql
);
2012 /* Copy info from paged lookaside lists */
2013 ExpCopyLookasideInformation(&Info
,
2015 &ExpPagedLookasideListHead
,
2018 /* Release spinlock for ExpPagedLookasideListHead */
2019 KeReleaseSpinLock(&ExpPagedLookasideListLock
, OldIrql
);
2023 /* Release the locked user buffer */
2024 ExUnlockUserBuffer(Mdl
);
2026 /* Return the size of the actually written data */
2027 *ReqSize
= (MaxCount
- Remaining
) * sizeof(SYSTEM_LOOKASIDE_INFORMATION
);
2028 return STATUS_SUCCESS
;
2032 /* Class 46 - Set time slip event */
2033 SSI_DEF(SystemSetTimeSlipEvent
)
2036 DPRINT1("NtSetSystemInformation - SystemSetTimSlipEvent not implemented\n");
2037 return STATUS_NOT_IMPLEMENTED
;
2042 MmSessionCreate(OUT PULONG SessionId
);
2046 MmSessionDelete(IN ULONG SessionId
);
2048 /* Class 47 - Create a new session (TSE) */
2049 SSI_DEF(SystemCreateSession
)
2052 KPROCESSOR_MODE PreviousMode
= KeGetPreviousMode();
2055 if (Size
!= sizeof(ULONG
)) return STATUS_INFO_LENGTH_MISMATCH
;
2057 if (PreviousMode
!= KernelMode
)
2059 if (!SeSinglePrivilegeCheck(SeLoadDriverPrivilege
, PreviousMode
))
2061 return STATUS_PRIVILEGE_NOT_HELD
;
2065 Status
= MmSessionCreate(&SessionId
);
2066 if (NT_SUCCESS(Status
)) *(PULONG
)Buffer
= SessionId
;
2072 /* Class 48 - Delete an existing session (TSE) */
2073 SSI_DEF(SystemDeleteSession
)
2076 KPROCESSOR_MODE PreviousMode
= KeGetPreviousMode();
2078 if (Size
!= sizeof(ULONG
)) return STATUS_INFO_LENGTH_MISMATCH
;
2080 if (PreviousMode
!= KernelMode
)
2082 if (!SeSinglePrivilegeCheck(SeLoadDriverPrivilege
, PreviousMode
))
2084 return STATUS_PRIVILEGE_NOT_HELD
;
2088 SessionId
= *(PULONG
)Buffer
;
2090 return MmSessionDelete(SessionId
);
2094 /* Class 49 - UNKNOWN */
2095 QSI_DEF(SystemInvalidInfoClass4
)
2098 DPRINT1("NtQuerySystemInformation - SystemInvalidInfoClass4 not implemented\n");
2099 return STATUS_NOT_IMPLEMENTED
;
2103 /* Class 50 - System range start address */
2104 QSI_DEF(SystemRangeStartInformation
)
2106 /* Check user buffer's size */
2107 if (Size
!= sizeof(ULONG_PTR
)) return STATUS_INFO_LENGTH_MISMATCH
;
2109 *(PULONG_PTR
)Buffer
= (ULONG_PTR
)MmSystemRangeStart
;
2111 if (ReqSize
) *ReqSize
= sizeof(ULONG_PTR
);
2113 return STATUS_SUCCESS
;
2116 /* Class 51 - Driver verifier information */
2117 QSI_DEF(SystemVerifierInformation
)
2120 DPRINT1("NtQuerySystemInformation - SystemVerifierInformation not implemented\n");
2121 return STATUS_NOT_IMPLEMENTED
;
2125 SSI_DEF(SystemVerifierInformation
)
2128 DPRINT1("NtSetSystemInformation - SystemVerifierInformation not implemented\n");
2129 return STATUS_NOT_IMPLEMENTED
;
2133 /* Class 52 - Add a driver verifier */
2134 SSI_DEF(SystemAddVerifier
)
2137 DPRINT1("NtSetSystemInformation - SystemAddVerifier not implemented\n");
2138 return STATUS_NOT_IMPLEMENTED
;
2142 /* Class 53 - A session's processes */
2143 QSI_DEF(SystemSessionProcessesInformation
)
2146 DPRINT1("NtQuerySystemInformation - SystemSessionProcessInformation not implemented\n");
2147 return STATUS_NOT_IMPLEMENTED
;
2151 /* Query/Set Calls Table */
2155 NTSTATUS (* Query
) (PVOID
,ULONG
,PULONG
);
2156 NTSTATUS (* Set
) (PVOID
,ULONG
);
2163 // XX unknown behaviour
2165 #define SI_QS(n) {QSI_USE(n),SSI_USE(n)}
2166 #define SI_QX(n) {QSI_USE(n),NULL}
2167 #define SI_XS(n) {NULL,SSI_USE(n)}
2168 #define SI_XX(n) {NULL,NULL}
2174 SI_QX(SystemBasicInformation
),
2175 SI_QX(SystemProcessorInformation
),
2176 SI_QX(SystemPerformanceInformation
),
2177 SI_QX(SystemTimeOfDayInformation
),
2178 SI_QX(SystemPathInformation
), /* should be SI_XX */
2179 SI_QX(SystemProcessInformation
), // aka SystemProcessesAndThreadsInformation
2180 SI_QX(SystemCallCountInformation
), // aka SystemCallCounts
2181 SI_QX(SystemDeviceInformation
), // aka SystemConfigurationInformation
2182 SI_QX(SystemProcessorPerformanceInformation
), // aka SystemProcessorTimes
2183 SI_QS(SystemFlagsInformation
), // aka SystemGlobalFlag
2184 SI_QX(SystemCallTimeInformation
), /* should be SI_XX */
2185 SI_QX(SystemModuleInformation
),
2186 SI_QX(SystemLocksInformation
), // aka SystemLockInformation
2187 SI_QX(SystemStackTraceInformation
), /* should be SI_XX */
2188 SI_QX(SystemPagedPoolInformation
), /* should be SI_XX */
2189 SI_QX(SystemNonPagedPoolInformation
), /* should be SI_XX */
2190 SI_QX(SystemHandleInformation
),
2191 SI_QX(SystemObjectInformation
),
2192 SI_QX(SystemPageFileInformation
), // aka SystemPagefileInformation
2193 SI_QX(SystemVdmInstemulInformation
), // aka SystemInstructionEmulationCounts
2194 SI_QX(SystemVdmBopInformation
), /* it should be SI_XX */
2195 SI_QS(SystemFileCacheInformation
), // aka SystemCacheInformation
2196 SI_QX(SystemPoolTagInformation
),
2197 SI_QX(SystemInterruptInformation
), // aka SystemProcessorStatistics
2198 SI_QS(SystemDpcBehaviourInformation
), // aka SystemDpcInformation
2199 SI_QX(SystemFullMemoryInformation
), /* it should be SI_XX */
2200 SI_XS(SystemLoadGdiDriverInformation
), // correct: SystemLoadImage
2201 SI_XS(SystemUnloadGdiDriverInformation
), // correct: SystemUnloadImage
2202 SI_QS(SystemTimeAdjustmentInformation
), // aka SystemTimeAdjustment
2203 SI_QX(SystemSummaryMemoryInformation
), /* it should be SI_XX */
2204 SI_QX(SystemNextEventIdInformation
), /* it should be SI_XX */
2205 SI_QX(SystemEventIdsInformation
), /* it should be SI_XX */ // SystemPerformanceTraceInformation
2206 SI_QX(SystemCrashDumpInformation
),
2207 SI_QX(SystemExceptionInformation
),
2208 SI_QX(SystemCrashDumpStateInformation
),
2209 SI_QX(SystemKernelDebuggerInformation
),
2210 SI_QX(SystemContextSwitchInformation
),
2211 SI_QS(SystemRegistryQuotaInformation
),
2212 SI_XS(SystemExtendServiceTableInformation
), // correct: SystemLoadAndCallImage
2213 SI_XS(SystemPrioritySeperation
),
2214 SI_QX(SystemPlugPlayBusInformation
), /* it should be SI_XX */
2215 SI_QX(SystemDockInformation
), /* it should be SI_XX */
2216 SI_QX(SystemPowerInformation
), /* it should be SI_XX */ // SystemPowerInformationNative? SystemInvalidInfoClass2
2217 SI_QX(SystemProcessorSpeedInformation
), /* it should be SI_XX */
2218 SI_QS(SystemCurrentTimeZoneInformation
), /* it should be SI_QX */ // aka SystemTimeZoneInformation
2219 SI_QX(SystemLookasideInformation
),
2220 SI_XS(SystemSetTimeSlipEvent
),
2221 SI_XS(SystemCreateSession
),
2222 SI_XS(SystemDeleteSession
),
2223 SI_QX(SystemInvalidInfoClass4
), /* it should be SI_XX */ // SystemSessionInformation?
2224 SI_QX(SystemRangeStartInformation
),
2225 SI_QS(SystemVerifierInformation
),
2226 SI_XS(SystemAddVerifier
),
2227 SI_QX(SystemSessionProcessesInformation
)
2230 C_ASSERT(SystemBasicInformation
== 0);
2231 #define MIN_SYSTEM_INFO_CLASS (SystemBasicInformation)
2232 #define MAX_SYSTEM_INFO_CLASS (sizeof(CallQS) / sizeof(CallQS[0]))
2238 NtQuerySystemInformation(IN SYSTEM_INFORMATION_CLASS SystemInformationClass
,
2239 OUT PVOID SystemInformation
,
2241 OUT PULONG UnsafeResultLength
)
2243 KPROCESSOR_MODE PreviousMode
;
2244 ULONG ResultLength
= 0;
2245 NTSTATUS FStatus
= STATUS_NOT_IMPLEMENTED
;
2249 PreviousMode
= ExGetPreviousMode();
2253 if (PreviousMode
!= KernelMode
)
2255 /* SystemKernelDebuggerInformation needs only BOOLEAN alignment */
2256 ProbeForWrite(SystemInformation
, Length
, 1);
2257 if (UnsafeResultLength
!= NULL
)
2258 ProbeForWriteUlong(UnsafeResultLength
);
2261 if (UnsafeResultLength
)
2262 *UnsafeResultLength
= 0;
2265 * Check if the request is valid.
2267 if (SystemInformationClass
>= MAX_SYSTEM_INFO_CLASS
)
2269 _SEH2_YIELD(return STATUS_INVALID_INFO_CLASS
);
2272 if (NULL
!= CallQS
[SystemInformationClass
].Query
)
2275 * Hand the request to a subhandler.
2277 FStatus
= CallQS
[SystemInformationClass
].Query(SystemInformation
,
2281 /* Save the result length to the caller */
2282 if (UnsafeResultLength
)
2283 *UnsafeResultLength
= ResultLength
;
2286 _SEH2_EXCEPT(ExSystemExceptionFilter())
2288 FStatus
= _SEH2_GetExceptionCode();
2298 NtSetSystemInformation (IN SYSTEM_INFORMATION_CLASS SystemInformationClass
,
2299 IN PVOID SystemInformation
,
2300 IN ULONG SystemInformationLength
)
2305 * If called from user mode, check
2306 * possible unsafe arguments.
2309 if (KernelMode
!= KeGetPreviousMode())
2313 // SystemInformation,
2323 * Check the request is valid.
2325 if ((SystemInformationClass
>= MIN_SYSTEM_INFO_CLASS
) &&
2326 (SystemInformationClass
< MAX_SYSTEM_INFO_CLASS
))
2328 if (NULL
!= CallQS
[SystemInformationClass
].Set
)
2331 * Hand the request to a subhandler.
2333 return CallQS
[SystemInformationClass
].Set(SystemInformation
,
2334 SystemInformationLength
);
2338 return STATUS_INVALID_INFO_CLASS
;
2343 NtFlushInstructionCache(
2344 _In_ HANDLE ProcessHandle
,
2345 _In_opt_ PVOID BaseAddress
,
2346 _In_ ULONG FlushSize
)
2348 KAPC_STATE ApcState
;
2353 /* Is a base address given? */
2354 if (BaseAddress
!= NULL
)
2356 /* If the requested size is 0, there is nothing to do */
2359 return STATUS_SUCCESS
;
2362 /* Is this a user mode call? */
2363 if (KeGetPreviousMode() != KernelMode
)
2365 /* Make sure the base address is in user space */
2366 if (BaseAddress
> MmHighestUserAddress
)
2368 DPRINT1("Invalid BaseAddress 0x%p\n", BaseAddress
);
2369 return STATUS_ACCESS_VIOLATION
;
2374 /* Is another process requested? */
2375 if (ProcessHandle
!= NtCurrentProcess())
2377 /* Reference the process */
2378 Status
= ObReferenceObjectByHandle(ProcessHandle
,
2381 KeGetPreviousMode(),
2384 if (!NT_SUCCESS(Status
))
2386 DPRINT1("Failed to reference the process %p\n", ProcessHandle
);
2390 /* Attach to the process */
2391 KeStackAttachProcess(Process
, &ApcState
);
2394 /* FIXME: don't flush everything if a range is requested */
2395 #if defined(_M_IX86) || defined(_M_AMD64)
2397 #elif defined(_M_PPC)
2398 __asm__
__volatile__("tlbsync");
2399 #elif defined(_M_MIPS)
2400 DPRINT1("NtFlushInstructionCache() is not implemented\n");
2402 #elif defined(_M_ARM)
2403 _MoveToCoprocessor(0, CP15_ICIALLU
);
2405 #error Unknown architecture
2408 /* Check if we attached */
2409 if (ProcessHandle
!= NtCurrentProcess())
2411 /* Detach from the process */
2412 KeUnstackDetachProcess(&ApcState
);
2415 return STATUS_SUCCESS
;
2420 NtGetCurrentProcessorNumber(VOID
)
2422 /* Just return the CPU */
2423 return KeGetCurrentProcessorNumber();
2429 #undef ExGetPreviousMode
2432 ExGetPreviousMode (VOID
)
2434 return KeGetPreviousMode();