-; $Id: advapi32.def,v 1.11 2003/09/12 17:51:46 vizzini Exp $
+; $Id$
;
; advapi32.def
;
; ReactOS Operating System
;
-; Some stack sizes are taken from Ander Norlander's .DEFs.
-;
LIBRARY advapi32.dll
EXPORTS
A_SHAFinal@8
AbortSystemShutdownA@4
AbortSystemShutdownW@4
AccessCheck@32
-AccessCheckByType@44
+AccessCheckAndAuditAlarmA@44
+AccessCheckAndAuditAlarmW@44
+;AccessCheckByType
AccessCheckByTypeAndAuditAlarmA@64
AccessCheckByTypeAndAuditAlarmW@64
-AccessCheckByTypeResultList@44
+;AccessCheckByTypeResultList@44
AccessCheckByTypeResultListAndAuditAlarmA@64
AccessCheckByTypeResultListAndAuditAlarmByHandleA@68
AccessCheckByTypeResultListAndAuditAlarmByHandleW@68
AccessCheckByTypeResultListAndAuditAlarmW@64
-AccessCheckAndAuditAlarmA@44
-AccessCheckAndAuditAlarmW@44
AddAccessAllowedAce@16
AddAccessAllowedAceEx@20
AddAccessAllowedObjectAce@28
AddAuditAccessAce@24
AddAuditAccessAceEx@28
AddAuditAccessObjectAce@36
-;@AddUsersToEncryptedFile
+AddUsersToEncryptedFile@8
AdjustTokenGroups@24
AdjustTokenPrivileges@24
AllocateAndInitializeSid@44
BuildTrusteeWithObjectsAndSidW@20
BuildTrusteeWithSidA@8
BuildTrusteeWithSidW@8
-;CancelOverlappedAccess
+;CancelOverlappedAccess@4
+;ChangeServiceConfig2A@12
+;ChangeServiceConfig2W@12
ChangeServiceConfigA@44
ChangeServiceConfigW@44
-ChangeServiceConfig2A@12
-ChangeServiceConfig2W@12
CheckTokenMembership@12
ClearEventLogA@8
ClearEventLogW@8
-;CloseCodeAuthzLevel
-CloseEncryptedFileRaw@4
+;CloseCodeAuthzLevel@4
+;CloseEncryptedFileRaw
CloseEventLog@4
CloseServiceHandle@4
-;@CloseTrace
-;@CommandLineFromMsiDescriptor
-;ComputeAccessTokenFromCodeAuthzLevel
-;@ControlTraceA
-;@ControlTraceW
+;CloseTrace@8
+;CommandLineFromMsiDescriptor@12
+;ComputeAccessTokenFromCodeAuthzLevel@20
ControlService@12
-;ConvertAccessToSecurityDescriptorA
-;ConvertAccessToSecurityDescriptorW
-;ConvertSDToStringSDRootDomainA
-;ConvertSDToStringSDRootDomainW
-;ConvertSecurityDescriptorToAccessA
-;ConvertSecurityDescriptorToAccessNamedA
-;ConvertSecurityDescriptorToAccessNamedW
-;ConvertSecurityDescriptorToAccessW
-;@ConvertSecurityDescriptorToStringSecurityDescriptorA
-;@ConvertSecurityDescriptorToStringSecurityDescriptorW
-;@ConvertSidToStringSidA
-;@ConvertSidToStringSidW
-;ConvertStringSDToSDDomainA
-;ConvertStringSDToSDDomainW
-;ConvertStringSDToSDRootDomainA
-;ConvertStringSDToSDRootDomainW
-;@ConvertStringSecurityDescriptorToSecurityDescriptorA
-;@ConvertStringSecurityDescriptorToSecurityDescriptorW
-;@ConvertStringSidToSidA
-;@ConvertStringSidToSidW
+ControlServiceEx@16
+;ControlTraceA@12
+;ControlTraceW@12
+;ConvertAccessToSecurityDescriptorA@20
+;ConvertAccessToSecurityDescriptorW@20
+;ConvertSDToStringSDRootDomainA@24
+;ConvertSDToStringSDRootDomainW@24
+;ConvertSecurityDescriptorToAccessA@28
+;ConvertSecurityDescriptorToAccessNamedA=ConvertSecurityDescriptorToAccessA@28
+;ConvertSecurityDescriptorToAccessNamedW=ConvertSecurityDescriptorToAccessW@28
+;ConvertSecurityDescriptorToAccessW@28
+;ConvertSecurityDescriptorToStringSecurityDescriptorA@20
+;ConvertSecurityDescriptorToStringSecurityDescriptorW@20
+ConvertSidToStringSidA@8
+ConvertSidToStringSidW@8
+;ConvertStringSDToSDDomainA@24
+;ConvertStringSDToSDDomainW@24
+;ConvertStringSDToSDRootDomainA@20
+;ConvertStringSDToSDRootDomainW@20
+ConvertStringSecurityDescriptorToSecurityDescriptorA@16
+ConvertStringSecurityDescriptorToSecurityDescriptorW@16
+;ConvertStringSidToSidA@8
+;ConvertStringSidToSidW@8
ConvertToAutoInheritPrivateObjectSecurity@24
CopySid@12
-;CreateCodeAuthzLevel
+;CreateCodeAuthzLevel@20
CreatePrivateObjectSecurity@24
CreatePrivateObjectSecurityEx@32
CreatePrivateObjectSecurityWithMultipleInheritance@36
CreateProcessAsUserA@44
+;CreateProcessAsUserSecure
CreateProcessAsUserW@44
-CreateProcessWithLogonW@44
-CreateRestrictedToken@36
+;CreateProcessWithLogonW
+;CreateRestrictedToken@36
CreateServiceA@52
CreateServiceW@52
-;@CreateTraceInstanceId
+;CreateTraceInstanceId@8
CreateWellKnownSid@16
-;@CredDeleteA
-;@CredDeleteW
-;@CredEnumerateA
-;@CredEnumerateW
-;@CredFree
-;@CredGetSessionTypes
-;@CredGetTargetInfoA
-;@CredGetTargetInfoW
-;@CredIsMarshaledCredentialA
-;@CredIsMarshaledCredentialW
-;@CredMarshalCredentialA
-;@CredMarshalCredentialW
+;CredDeleteA@12
+;CredDeleteW@12
+;CredEnumerateA@16
+;CredEnumerateW@16
+;CredFree@4
+;CredGetSessionTypes@8
+;CredGetTargetInfoA@12
+;CredGetTargetInfoW@12
+;CredIsMarshaledCredentialA@4
+;CredIsMarshaledCredentialW@4
+;CredMarshalCredentialA@12
+;CredMarshalCredentialW@12
;CredProfileLoaded
-;@CredReadA
-;@CredReadDomainCredentialsA
-;@CredReadDomainCredentialsW
-;@CredReadW
-;@CredRenameA
-;@CredRenameW
-;@CredUnmarshalCredentialA
-;@CredUnmarshalCredentialW
-;@CredWriteA
-;@CredWriteDomainCredentialsA
-;@CredWriteDomainCredentialsW
-;@CredWriteW
+;CredReadA
+;CredReadDomainCredentialsA
+;CredReadDomainCredentialsW
+;CredReadW
+;CredRenameA
+;CredRenameW
+;CredUnmarshalCredentialA
+;CredUnmarshalCredentialW
+;CredWriteA
+;CredWriteDomainCredentialsA
+;CredWriteDomainCredentialsW
+;CredWriteW
;CredpConvertCredential
;CredpConvertTargetInfo
;CredpDecodeCredential
CryptDeriveKey@20
CryptDestroyHash@4
CryptDestroyKey@4
-CryptDuplicateHash@16
-CryptDuplicateKey@16
+;CryptDuplicateHash@16
+;CryptDuplicateKey@16
CryptEncrypt@28
-CryptEnumProviderTypesA@24
-CryptEnumProviderTypesW@24
-CryptEnumProvidersA@24
+;CryptEnumProviderTypesA@24
+;CryptEnumProviderTypesW@24
+;CryptEnumProvidersA@24
CryptEnumProvidersW@24
CryptExportKey@24
CryptGenKey@16
CryptGenRandom@12
-CryptGetDefaultProviderA@20
-CryptGetDefaultProviderW@20
+;CryptGetDefaultProviderA@20
+;CryptGetDefaultProviderW@20
CryptGetHashParam@20
CryptGetKeyParam@20
CryptGetProvParam@20
CryptSetKeyParam@16
CryptSetProvParam@16
CryptSetProviderA@8
+;CryptSetProviderExA@16
+;CryptSetProviderExW@16
CryptSetProviderW@8
-CryptSetProviderExA@16
-CryptSetProviderExW@16
CryptSignHashA@24
-CryptSignHashW@24
+;CryptSignHashW@24
CryptVerifySignatureA@24
CryptVerifySignatureW@24
DecryptFileA@8
DeleteService@4
DeregisterEventSource@4
DestroyPrivateObjectSecurity@4
-;@DuplicateEncryptionInfoFile
+;DuplicateEncryptionInfoFile
DuplicateToken@12
DuplicateTokenEx@24
;ElfBackupEventLogFileA@8
;ElfRegisterEventSourceW@12
;ElfReportEventA@48
;ElfReportEventW@48
-;@EnableTrace
+;EnableTrace
EncryptFileA@4
EncryptFileW@4
;EncryptedFileKeyInfo
-;@EncryptionDisable
+;EncryptionDisable@8
EnumDependentServicesA@24
EnumDependentServicesW@24
EnumServiceGroupW@36
EnumServicesStatusExA@40
EnumServicesStatusExW@40
EnumServicesStatusW@32
-;@EnumerateTraceGuids
+;EnumerateTraceGuids
EqualDomainSid@12
EqualPrefixSid@8
EqualSid@8
FileEncryptionStatusA@8
FileEncryptionStatusW@8
FindFirstFreeAce@8
-;@FlushTraceA
-;@FlushTraceW
+;FlushTraceA
+;FlushTraceW
;FreeEncryptedFileKeyInfo
-;@FreeEncryptionCertificateHashList
+FreeEncryptionCertificateHashList@4
FreeInheritedFromArray@12
FreeSid@4
;GetAccessPermissionsForObjectA
GetCurrentHwProfileW@4
GetEffectiveRightsFromAclA@12
GetEffectiveRightsFromAclW@12
-GetEventLogInformation@20
-GetExplicitEntriesFromAclA@12
+;GetEventLogInformation
+GetExplicitEntriesFromAclA@12=ADVAPI32.GetExplicitEntriesFromAclW
GetExplicitEntriesFromAclW@12
GetFileSecurityA@20
GetFileSecurityW@20
GetInheritanceSourceW@40
GetKernelObjectSecurity@20
GetLengthSid@4
-;@GetLocalManagedApplicationData
-;@GetLocalManagedApplications
-;@GetManagedApplicationCategories
-;@GetManagedApplications
+;GetLocalManagedApplicationData
+;GetLocalManagedApplications
+;GetManagedApplicationCategories
+;GetManagedApplications
GetMultipleTrusteeA@4
GetMultipleTrusteeOperationA@4
GetMultipleTrusteeOperationW@4
GetSecurityDescriptorControl@12
GetSecurityDescriptorDacl@16
GetSecurityDescriptorGroup@12
-GetSecurityDescriptorLength@4
+GetSecurityDescriptorLength@4=NTDLL.RtlLengthSecurityDescriptor
GetSecurityDescriptorOwner@12
GetSecurityDescriptorRMControl@8
GetSecurityDescriptorSacl@16
GetSidSubAuthority@8
GetSidSubAuthorityCount@4
GetTokenInformation@20
-;@GetTraceEnableFlags
-;@GetTraceEnableLevel
-;@GetTraceLoggerHandle
+;GetTraceEnableFlags
+;GetTraceEnableLevel
+;GetTraceLoggerHandle
GetTrusteeFormA@4
GetTrusteeFormW@4
GetTrusteeNameA@4
GetUserNameA@8
GetUserNameW@8
GetWindowsAccountDomainSid@12
-GrantAccessRightsA@16
-GrantAccessRightsW@16
;I_ScGetCurrentGroupStateW@12
;I_ScIsSecurityProcess
;I_ScPnPGetServiceName
;I_ScSetServiceBitsA@20
;I_ScSetServiceBitsW@20
;IdentifyCodeAuthzLevelW
-ImpersonateAnonymousToken@4
+;ImpersonateAnonymousToken
ImpersonateLoggedOnUser@4
ImpersonateNamedPipeClient@4
ImpersonateSelf@4
InitializeSecurityDescriptor@8
InitializeSid@12
InitiateSystemShutdownA@20
-InitiateSystemShutdownExA@24
+;InitiateSystemShutdownExA@24
InitiateSystemShutdownExW@24
InitiateSystemShutdownW@20
-;@InstallApplication
-IsAccessPermittedA@20
-IsAccessPermittedW@20
-IsTextUnicode@12
+;InstallApplication
+IsTextUnicode@12=NTDLL.RtlIsTextUnicode
IsTokenRestricted@4
-IsTokenUntrusted@4
-IsWellKnownSid@8
+;IsTokenUntrusted
IsValidAcl@4
IsValidSecurityDescriptor@4
IsValidSid@4
+IsWellKnownSid@8
LockServiceDatabase@4
LogonUserA@24
-LogonUserExA@40
-LogonUserExW@40
+;LogonUserExA
+;LogonUserExW
LogonUserW@24
LookupAccountNameA@28
LookupAccountNameW@28
LookupPrivilegeNameW@16
LookupPrivilegeValueA@12
LookupPrivilegeValueW@12
-LookupSecurityDescriptorPartsA@28
-LookupSecurityDescriptorPartsW@28
+;LookupSecurityDescriptorPartsA@28
+;LookupSecurityDescriptorPartsW@28
LsaAddAccountRights@16
;LsaAddPrivilegesToAccount@8
;LsaClearAuditLog@4
;LsaCreateAccount@16
;LsaCreateSecret@16
;LsaCreateTrustedDomain@16
-LsaCreateTrustedDomainEx@20
+;LsaCreateTrustedDomainEx
;LsaDelete@4
-LsaDeleteTrustedDomain@8
+;LsaDeleteTrustedDomain@8
LsaEnumerateAccountRights@16
;LsaEnumerateAccounts@20
LsaEnumerateAccountsWithUserRight@16
;LsaEnumeratePrivileges@20
;LsaEnumeratePrivilegesOfAccount@8
-LsaEnumerateTrustedDomains@20
-LsaEnumerateTrustedDomainsEx@20
+;LsaEnumerateTrustedDomains@20
+;LsaEnumerateTrustedDomainsEx
LsaFreeMemory@4
;LsaGetQuotasForAccount@8
;LsaGetRemoteUserName
;LsaGetSystemAccessAccount@8
-;LsaGetUserName@8
+LsaGetUserName@8
;LsaICLookupNames@32
;LsaICLookupNamesWithCreds
;LsaICLookupSids@32
;LsaICLookupSidsWithCreds
-LsaLookupNames@20
-LsaLookupNames2@24
+;LsaLookupNames@20
+;LsaLookupNames2
;LsaLookupPrivilegeDisplayName@16
;LsaLookupPrivilegeName@12
;LsaLookupPrivilegeValue@12
;LsaOpenPolicySce
;LsaOpenSecret@16
;LsaOpenTrustedDomain@16
-LsaOpenTrustedDomainByName@16
-LsaQueryDomainInformationPolicy@12
-LsaQueryForestTrustInformation@12
+;LsaOpenTrustedDomainByName
+;LsaQueryDomainInformationPolicy
+;LsaQueryForestTrustInformation
+LsaQueryInfoTrustedDomain@12
LsaQueryInformationPolicy@12
-;LsaQueryInfoTrustedDomain@12
-LsaQueryTrustedDomainInfoByName@16
;LsaQuerySecret@20
;LsaQuerySecurityObject@12
-LsaQueryTrustedDomainInfo@16
+;LsaQueryTrustedDomainInfo@16
+;LsaQueryTrustedDomainInfoByName
LsaRemoveAccountRights@20
;LsaRemovePrivilegesFromAccount@12
-;LsaRetrievePrivateData@12
-LsaSetDomainInformationPolicy@12
+LsaRetrievePrivateData@12
LsaSetInformationPolicy@12
+;LsaSetForestTrustInformation
+;LsaSetInformationPolicy
;LsaSetInformationTrustedDomain@12
-LsaSetForestTrustInformation@20
-LsaSetTrustedDomainInfoByName@16
;LsaSetQuotasForAccount@8
;LsaSetSecret@12
;LsaSetSecurityObject@12
;LsaSetSystemAccessAccount@8
-LsaSetTrustedDomainInformation@16
+;LsaSetTrustedDomainInfoByName
+;LsaSetTrustedDomainInformation@16
LsaStorePrivateData@12
-MakeAbsoluteSD@44
-MakeSelfRelativeSD@12
-MapGenericMask@8
MD4Final@4
MD4Init@4
MD4Update@12
MD5Final@4
MD5Init@4
MD5Update@12
-;@MSChapSrvChangePassword
-;@MSChapSrvChangePassword2
+;MSChapSrvChangePassword
+;MSChapSrvChangePassword2
+MakeAbsoluteSD@44
MakeAbsoluteSD2@8
-NTAccessMaskToProvAccessRights@12
+MakeSelfRelativeSD@12
+MapGenericMask@8=NTDLL.RtlMapGenericMask
NotifyBootConfigStatus@4
NotifyChangeEventLog@8
ObjectCloseAuditAlarmA@12
ObjectPrivilegeAuditAlarmW@24
OpenBackupEventLogA@8
OpenBackupEventLogW@8
-OpenEncryptedFileRawA@12
-OpenEncryptedFileRawW@12
+;OpenEncryptedFileRawA
+;OpenEncryptedFileRawW
OpenEventLogA@8
OpenEventLogW@8
OpenProcessToken@12
OpenServiceA@12
OpenServiceW@12
OpenThreadToken@16
-;@OpenTraceA
-;@OpenTraceW
+;OpenTraceA
+;OpenTraceW
PrivilegeCheck@12
PrivilegedServiceAuditAlarmA@20
PrivilegedServiceAuditAlarmW@20
;ProcessIdleTasks
-;@ProcessTrace
-;@QueryAllTracesA
-;@QueryAllTracesW
-;@QueryRecoveryAgentsOnEncryptedFile
+;ProcessTrace
+;ProvAccessRightsToNTAccessMask ; ?
+;QueryAllTracesA
+;QueryAllTracesW
+QueryRecoveryAgentsOnEncryptedFile@8
+;QueryServiceConfig2A
+;QueryServiceConfig2W
QueryServiceConfigA@16
QueryServiceConfigW@16
-QueryServiceConfig2A@20
-QueryServiceConfig2W@20
QueryServiceLockStatusA@16
QueryServiceLockStatusW@16
QueryServiceObjectSecurity@20
QueryServiceStatus@8
QueryServiceStatusEx@20
-;@QueryTraceA
-;@QueryTraceW
-;@QueryUsersOnEncryptedFile
-QueryWindows31FilesMigration@4
-ReadEncryptedFileRaw@12
+;QueryTraceA
+;QueryTraceW
+QueryUsersOnEncryptedFile@8
+;QueryWindows31FilesMigration@4
+;ReadEncryptedFileRaw
ReadEventLogA@28
ReadEventLogW@28
RegCloseKey@4
RegConnectRegistryA@12
RegConnectRegistryW@12
+RegCopyTreeA@12
+RegCopyTreeW@12
RegCreateKeyA@12
RegCreateKeyExA@36
RegCreateKeyExW@36
RegCreateKeyW@12
RegDeleteKeyA@8
RegDeleteKeyW@8
+RegDeleteKeyValueA@12
+RegDeleteKeyValueW@12
+RegDeleteTreeA@8
+RegDeleteTreeW@8
RegDeleteValueA@8
RegDeleteValueW@8
-RegDisablePredefinedCache@0
+;RegDisablePredefinedCache
+RegDisablePredefinedCacheEx@0
RegEnumKeyA@16
RegEnumKeyExA@32
RegEnumKeyExW@32
RegGetKeySecurity@16
RegLoadKeyA@12
RegLoadKeyW@12
+RegLoadMUIStringA@24
+RegLoadMUIStringW@24
RegNotifyChangeKeyValue@20
RegOpenCurrentUser@8
RegOpenKeyA@12
RegRestoreKeyA@12
RegRestoreKeyW@12
RegSaveKeyA@12
-RegSaveKeyExA@16
-RegSaveKeyExW@16
+;RegSaveKeyExA
+;RegSaveKeyExW
RegSaveKeyW@12
RegSetKeySecurity@12
+RegSetKeyValueA@24
+RegSetKeyValueW@24
RegSetValueA@20
RegSetValueExA@24
RegSetValueExW@24
RegisterServiceCtrlHandlerExA@12
RegisterServiceCtrlHandlerExW@12
RegisterServiceCtrlHandlerW@8
-;@RegisterTraceGuidsA
-;@RegisterTraceGuidsW
-;@RemoveTraceCallback
-;@RemoveUsersFromEncryptedFile
+;RegisterTraceGuidsA
+;RegisterTraceGuidsW
+;RemoveTraceCallback
+RemoveUsersFromEncryptedFile@8
ReportEventA@36
ReportEventW@36
RevertToSelf@0
-RevokeExplicitAccessRightsA@16
-RevokeExplicitAccessRightsW@16
-;@SaferCloseLevel
-;@SaferComputeTokenFromLevel
-;@SaferCreateLevel
-;@SaferGetLevelInformation
-;@SaferGetPolicyInformation
-;@SaferIdentifyLevel
-;@SaferRecordEventLogEntry
-;@SaferSetLevelInformation
-;@SaferSetPolicyInformation
+;SaferCloseLevel
+;SaferComputeTokenFromLevel
+;SaferCreateLevel
+;SaferGetLevelInformation
+;SaferGetPolicyInformation
+;SaferIdentifyLevel
+;SaferRecordEventLogEntry
+;SaferSetLevelInformation
+;SaferSetPolicyInformation
;SaferiChangeRegistryScope
;SaferiCompareTokenLevels
-;@SaferiIsExecutableFileType
+;SaferiIsExecutableFileType
;SaferiPopulateDefaultsInRegistry
;SaferiRecordEventLogEntry
;SaferiReplaceProcessThreadTokens
;SaferiSearchMatchingHashRules
-SetAccessRightsA@16
-SetAccessRightsW@16
SetAclInformation@16
;SetEntriesInAccessListA
;SetEntriesInAccessListW
;SetEntriesInAuditListW
SetFileSecurityA@12
SetFileSecurityW@12
-SetKernelObjectSecurity@12
;SetInformationCodeAuthzLevelW
;SetInformationCodeAuthzPolicyW
+SetKernelObjectSecurity@12
SetNamedSecurityInfoA@28
;SetNamedSecurityInfoExA
;SetNamedSecurityInfoExW
SetNamedSecurityInfoW@28
SetPrivateObjectSecurity@20
-SetPrivateObjectSecurityEx@24
+;SetPrivateObjectSecurityEx
SetSecurityDescriptorControl@12
SetSecurityDescriptorDacl@16
SetSecurityDescriptorGroup@12
SetServiceStatus@8
SetThreadToken@8
SetTokenInformation@16
-;@SetTraceCallback
-;@SetUserFileEncryptionKey
+;SetTraceCallback
+;SetUserFileEncryptionKey
StartServiceA@12
StartServiceCtrlDispatcherA@4
StartServiceCtrlDispatcherW@4
StartServiceW@12
-;@StartTraceA
-;@StartTraceW
-;@StopTraceA
-;@StopTraceW
+;StartTraceA
+;StartTraceW
+;StopTraceA
+;StopTraceW
;SynchronizeWindows31FilesAndWindowsNTRegistry@16
SystemFunction001@12
SystemFunction002@12
SystemFunction033@8
SystemFunction034@8
SystemFunction035@8
-;SystemFunction036
-;SystemFunction040
-;SystemFunction041
-;@TraceEvent
-;@TraceEventInstance
-;@TraceMessage
-;@TraceMessageVa
+SystemFunction036@8
+SystemFunction040@12
+SystemFunction041@12
+;TraceEvent
+;TraceEventInstance
+;TraceMessage
+;TraceMessageVa
TreeResetNamedSecurityInfoA@44
TreeResetNamedSecurityInfoW@44
;TrusteeAccessToObjectA
;TrusteeAccessToObjectW
-;@UninstallApplication
+;UninstallApplication
UnlockServiceDatabase@4
;UnregisterIdleTask
-;@UnregisterTraceGuids
-;@UpdateTraceA
-;@UpdateTraceW
+;UnregisterTraceGuids
+;UpdateTraceA
+;UpdateTraceW
;WdmWmiServiceMain
;WmiCloseBlock
;WmiCloseTraceWithCursor
;WmiSetSingleInstanceW
;WmiSetSingleItemA
;WmiSetSingleItemW
-Wow64Win32ApiEntry@12
-WriteEncryptedFileRaw@12
+;Wow64Win32ApiEntry
+;WriteEncryptedFileRaw
+; EOF