PsGetThreadServerSilo

INT64 __fastcall PsGetThreadServerSilo(INT64 a1){
  if( *(_QWORD *)(a1 + 1544) == -3i64 )
    return *(_QWORD *)(*(_QWORD *)(a1 + 544) + 2160i64);
  else
    return(INT64)PsGetEffectiveServerSilo(*(_EJOB **)(a1 + 1544));
}

Referenced by:

EtwTraceContextSwap
EtwTracePageFault
EtwpTraceFileIo
EtwpTraceFileName
EtwpTraceIo
EtwpTraceIoInit
EtwpTraceRedirectedIo
IopCheckSessionDeviceAccess
IopGetThreadActiveConsoleId
MiGetNextSession
MmGetSessionById
MmIsSessionInCurrentServerSilo
PerfInfoLogSysCallEntry
PerfInfoLogSysCallExit
RtlGetActiveConsoleId
RtlGetCurrentServiceSessionId
RtlGetNtProductType
SepAdtLogAuditRecord