PsGetThreadServerSilo
INT64 __fastcall PsGetThreadServerSilo(INT64 a1){
if( *(_QWORD *)(a1 + 1544) == -3i64 )
return *(_QWORD *)(*(_QWORD *)(a1 + 544) + 2160i64);
else
return(INT64)PsGetEffectiveServerSilo(*(_EJOB **)(a1 + 1544));
}Referenced by:
EtwTraceContextSwap
EtwTracePageFault
EtwpTraceFileIo
EtwpTraceFileName
EtwpTraceIo
EtwpTraceIoInit
EtwpTraceRedirectedIo
IopCheckSessionDeviceAccess
IopGetThreadActiveConsoleId
MiGetNextSession
MmGetSessionById
MmIsSessionInCurrentServerSilo
PerfInfoLogSysCallEntry
PerfInfoLogSysCallExit
RtlGetActiveConsoleId
RtlGetCurrentServiceSessionId
RtlGetNtProductType
SepAdtLogAuditRecord