EtwpCoverageFlushPending
INT64 *__stdcall EtwpCoverageFlushPending(INT64 a1){
INT64 *result;
__int64 v3;
unsigned __int64 v4;
int *v5;
int *v6;
int v7;
int v8;
int v9;
int v10;
__int64 v11;
unsigned __int16 v12;
__int16 v13;
int v14;
int v15;
int v16;
int v17;
_EVENT_DATA_DESCRIPTOR v18;
int *v19;
int v20;
int v21;
int *v22;
int v23;
int v24;
int *v25;
int v26;
int v27;
int *v28;
int v29;
int v30;
__int16 *v31;
int v32;
int v33;
__int64 v34;
int v35;
int v36;
void *retaddr;
result = (INT64 *)&retaddr;
if( *(_DWORD *)(a1 + 64) )
{
v3 = *(_QWORD *)(a1 + 40);
v4 = (KUSER_SHARED_DATA.TickCountQuad * KUSER_SHARED_DATA.TickCountMultiplier) >> 24;
v13 = *(_WORD *)(a1 + 64);
if( *(&stru_140C00F40 + 1834) > 5u )
{
if( tlgKeywordOn((__int64)&stru_140C00F40 + 7336, 0x400000000000i64) )
{
v6 = *(int **)a1;
v7 = **(_DWORD **)a1;
v21 = 0;
v14 = v7;
v19 = &v14;
v20 = 4;
v8 = v6[1];
v24 = 0;
v15 = v8;
v22 = &v15;
v23 = 4;
v9 = v4 - v6[4];
v27 = 0;
v16 = v9;
v25 = &v16;
v26 = 4;
v10 = v4 - v6[5];
v30 = 0;
v33 = 0;
v36 = 0;
v17 = v10;
v28 = &v17;
v31 = &v13;
v11 = *(_QWORD *)(v3 + 32);
v29 = 4;
v12 = *(_WORD *)(v3 + 24) - v11;
v34 = v11;
v35 = v12;
v32 = 2;
tlgWriteTransfer_EtwWriteTransfer(
(__int64)&stru_140C00F40 + 7336,
(unsigned __int8 *)word_14002B772,
0i64,
0i64,
8u,
&v18);
}
}
*(_QWORD *)(v3 + 32) = *(_QWORD *)(v3 + 24);
v5 = *(int **)a1;
*(_DWORD *)(a1 + 64) = 0;
KeCancelTimer2((INT64)(v5 + 60));
result = *(INT64 **)a1;
*(_DWORD *)(*(_QWORD *)a1 + 16i64) = v4;
}
return result;
}Referenced by:
EtwpCoverageRecord
EtwpCoverageReset
EtwpCoverageResetCP
EtwpFlushCoverage