This file is indexed.

/usr/lib/x86_64-linux-gnu/wine/libntoskrnl.exe.def is in libwine-dev 1.8.7-2.

This file is owned by root:root, with mode 0o644.

The actual contents of the file can be viewed below.

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
; File generated automatically from ./dlls/ntoskrnl.exe/ntoskrnl.exe.spec; do not edit!

LIBRARY ntoskrnl.exe

EXPORTS
  ExfInterlockedRemoveHeadList @25
  InterlockedCompareExchange=NTOSKRNL_InterlockedCompareExchange @31
  InterlockedDecrement=NTOSKRNL_InterlockedDecrement @32
  InterlockedExchange=NTOSKRNL_InterlockedExchange @33
  InterlockedExchangeAdd=NTOSKRNL_InterlockedExchangeAdd @34
  InterlockedIncrement=NTOSKRNL_InterlockedIncrement @35
  InterlockedPopEntrySList=kernel32.InterlockedPopEntrySList @36
  InterlockedPushEntrySList=kernel32.InterlockedPushEntrySList @37
  IofCallDriver @42
  IofCompleteRequest @43
  ObfDereferenceObject @51
  ObfReferenceObject @52
  RtlUlonglongByteSwap=ntdll.RtlUlonglongByteSwap @54
  CmRegisterCallback @101
  CmUnRegisterCallback @102
  DbgBreakPoint=ntdll.DbgBreakPoint @103
  DbgPrint=ntdll.DbgPrint @106
  DbgPrintEx=ntdll.DbgPrintEx @107
  ExAcquireResourceExclusiveLite @112
  ExAllocatePool @117
  ExAllocatePoolWithQuota @118
  ExAllocatePoolWithQuotaTag @119
  ExAllocatePoolWithTag @120
  ExCreateCallback @123
  ExDeleteNPagedLookasideList @124
  ExDeletePagedLookasideList @125
  ExDeleteResourceLite @126
  ExFreePool @132
  ExFreePoolWithTag @133
  ExInitializeNPagedLookasideList @140
  ExInitializePagedLookasideList @141
  ExInitializeResourceLite @142
  ExInitializeZone @143
  ExInterlockedRemoveHeadList @154
  ExLocalTimeToSystemTime=ntdll.RtlLocalTimeToSystemTime @158
  ExReleaseResourceForThreadLite @169
  ExSystemTimeToLocalTime=ntdll.RtlSystemTimeToLocalTime @174
  FsRtlRegisterUncProvider @272
  InitSafeBootMode @303 DATA
  IoAcquireCancelSpinLock @304
  IoAcquireRemoveLockEx @305
  IoAllocateDriverObjectExtension @310
  IoAllocateErrorLogEntry @311
  IoAllocateIrp @312
  IoAllocateMdl @313
  IoAllocateWorkItem @314
  IoAttachDevice @316
  IoAttachDeviceToDeviceStack @318
  IoBuildDeviceIoControlRequest @321
  IoBuildSynchronousFsdRequest @323
  IoCallDriver @324
  IoCompleteRequest @334
  IoCreateDevice @337
  IoCreateDriver @339
  IoCreateSymbolicLink @346
  IoCreateSynchronizationEvent @347
  IoCsqInitialize @349
  IoDeleteDevice @354
  IoDeleteDriver @355
  IoDeleteSymbolicLink @356
  IoFreeIrp @371
  IoFreeMdl @372
  IoGetAttachedDevice @374
  IoGetConfigurationInformation @378
  IoGetCurrentProcess @379
  IoGetDeviceInterfaces @382
  IoGetDeviceObjectPointer @383
  IoGetDeviceProperty @384
  IoGetDriverObjectExtension @388
  IoGetRelatedDeviceObject @392
  IoInitializeIrp @398
  IoInitializeRemoveLockEx @399
  IoInitializeTimer @400
  IoIsWdmVersionAvailable @407
  IoQueryDeviceDescription @413
  IoRegisterDriverReinitialization @427
  IoRegisterFileSystem @428
  IoRegisterPlugPlayNotification @431
  IoRegisterShutdownNotification @432
  IoReleaseCancelSpinLock @433
  IoReportResourceUsage @441
  IoSetThreadHardErrorMode @457
  IoStartNextPacket @459
  IoStartTimer @462
  IoUnregisterFileSystem @468
  IoUnregisterShutdownNotification @471
  IoWMIRegistrationControl @486
  KdDebuggerEnabled @496 DATA
  Ke386IoSetAccessProcess @504
  Ke386SetIoAccessMap @506
  KeDelayExecutionThread @519
  KeEnterCriticalRegion @524
  KeGetCurrentThread @530
  KeInitializeDpc @546
  KeInitializeEvent @547
  KeInitializeMutex @550
  KeInitializeSemaphore @552
  KeInitializeSpinLock @553
  KeInitializeTimer @554
  KeInitializeTimerEx @555
  KeInsertQueue @559
  KeLeaveCriticalRegion @564
  KeQueryActiveProcessors @570
  KeQueryInterruptTime @571
  KeQuerySystemTime @574
  KeQueryTickCount @575
  KeQueryTimeIncrement @576
  KeReleaseMutex @588
  KeReleaseSemaphore @589
  KeResetEvent @598
  KeServiceDescriptorTable @604 DATA
  KeSetEvent @608
  KeSetPriorityThread @613
  KeSetSystemAffinityThread @615
  KeSetTimerEx @619
  KeTickCount @623 DATA
  KeWaitForMutexObject @629
  KeWaitForSingleObject @630
  LdrAccessResource=ntdll.LdrAccessResource @638
  LdrFindResourceDirectory_U=ntdll.LdrFindResourceDirectory_U @640
  LdrFindResource_U=ntdll.LdrFindResource_U @641
  MmAllocateContiguousMemory @656
  MmAllocateContiguousMemorySpecifyCache @657
  MmAllocateNonCachedMemory @659
  MmAllocatePagesForMdl @660
  MmFreeNonCachedMemory @672
  MmGetSystemRoutineAddress @676
  MmIsAddressValid @680
  MmLockPagableSectionByHandle @688
  MmMapIoSpace @689
  MmMapLockedPagesSpecifyCache @691
  MmPageEntireDriver @701
  MmProbeAndLockPages @703
  MmQuerySystemSize @707
  MmResetDriverPaging @709
  MmUnlockPagableImageSection @717
  MmUnlockPages @718
  MmUnmapIoSpace @719
  NlsAnsiCodePage=ntdll.NlsAnsiCodePage @728 DATA
  NlsMbCodePageTag=ntdll.NlsMbCodePageTag @730 DATA
  NlsMbOemCodePageTag=ntdll.NlsMbOemCodePageTag @731 DATA
  NtAddAtom=ntdll.NtAddAtom @734
  NtAdjustPrivilegesToken=ntdll.NtAdjustPrivilegesToken @735
  NtAllocateLocallyUniqueId=ntdll.NtAllocateLocallyUniqueId @736
  NtAllocateUuids=ntdll.NtAllocateUuids @737
  NtAllocateVirtualMemory=ntdll.NtAllocateVirtualMemory @738
  NtClose=ntdll.NtClose @740
  NtConnectPort=ntdll.NtConnectPort @741
  NtCreateEvent=ntdll.NtCreateEvent @742
  NtCreateFile=ntdll.NtCreateFile @743
  NtCreateSection=ntdll.NtCreateSection @744
  NtDeleteAtom=ntdll.NtDeleteAtom @745
  NtDeleteFile=ntdll.NtDeleteFile @746
  NtDeviceIoControlFile=ntdll.NtDeviceIoControlFile @747
  NtDuplicateObject=ntdll.NtDuplicateObject @748
  NtDuplicateToken=ntdll.NtDuplicateToken @749
  NtFindAtom=ntdll.NtFindAtom @750
  NtFreeVirtualMemory=ntdll.NtFreeVirtualMemory @751
  NtFsControlFile=ntdll.NtFsControlFile @752
  NtLockFile=ntdll.NtLockFile @754
  NtMapViewOfSection=ntdll.NtMapViewOfSection @756
  NtNotifyChangeDirectoryFile=ntdll.NtNotifyChangeDirectoryFile @757
  NtOpenFile=ntdll.NtOpenFile @758
  NtOpenProcess=ntdll.NtOpenProcess @759
  NtOpenProcessToken=ntdll.NtOpenProcessToken @760
  NtOpenProcessTokenEx=ntdll.NtOpenProcessTokenEx @761
  NtOpenThread=ntdll.NtOpenThread @762
  NtOpenThreadToken=ntdll.NtOpenThreadToken @763
  NtOpenThreadTokenEx=ntdll.NtOpenThreadTokenEx @764
  NtQueryDirectoryFile=ntdll.NtQueryDirectoryFile @765
  NtQueryEaFile=ntdll.NtQueryEaFile @766
  NtQueryInformationAtom=ntdll.NtQueryInformationAtom @767
  NtQueryInformationFile=ntdll.NtQueryInformationFile @768
  NtQueryInformationProcess=ntdll.NtQueryInformationProcess @769
  NtQueryInformationThread=ntdll.NtQueryInformationThread @770
  NtQueryInformationToken=ntdll.NtQueryInformationToken @771
  NtQuerySecurityObject=ntdll.NtQuerySecurityObject @773
  NtQuerySystemInformation=ntdll.NtQuerySystemInformation @774
  NtQueryVolumeInformationFile=ntdll.NtQueryVolumeInformationFile @775
  NtReadFile=ntdll.NtReadFile @776
  NtRequestWaitReplyPort=ntdll.NtRequestWaitReplyPort @778
  NtSetEaFile=ntdll.NtSetEaFile @779
  NtSetEvent=ntdll.NtSetEvent @780
  NtSetInformationFile=ntdll.NtSetInformationFile @781
  NtSetInformationProcess=ntdll.NtSetInformationProcess @782
  NtSetInformationThread=ntdll.NtSetInformationThread @783
  NtSetSecurityObject=ntdll.NtSetSecurityObject @785
  NtSetVolumeInformationFile=ntdll.NtSetVolumeInformationFile @786
  NtShutdownSystem=ntdll.NtShutdownSystem @787
  NtUnlockFile=ntdll.NtUnlockFile @789
  NtWaitForSingleObject=ntdll.NtWaitForSingleObject @791
  NtWriteFile=ntdll.NtWriteFile @792
  ObQueryNameString @808
  ObReferenceObjectByHandle @810
  ObReferenceObjectByName @811
  PoSetPowerState @831
  ProbeForRead @836
  ProbeForWrite @837
  PsCreateSystemThread @844
  PsGetCurrentProcess=IoGetCurrentProcess @850
  PsGetCurrentProcessId @851
  PsGetCurrentThread=KeGetCurrentThread @853
  PsGetCurrentThreadId @854
  PsGetVersion @885
  PsImpersonateClient @886
  PsLookupProcessByProcessId @893
  PsRemoveCreateThreadNotifyRoutine @899
  PsRemoveLoadImageNotifyRoutine @900
  PsSetCreateProcessNotifyRoutine @908
  PsSetCreateThreadNotifyRoutine @909
  PsSetLoadImageNotifyRoutine @912
  PsTerminateSystemThread @920
  READ_REGISTER_BUFFER_UCHAR @922
  RtlAbsoluteToSelfRelativeSD=ntdll.RtlAbsoluteToSelfRelativeSD @928
  RtlAddAccessAllowedAce=ntdll.RtlAddAccessAllowedAce @929
  RtlAddAccessAllowedAceEx=ntdll.RtlAddAccessAllowedAceEx @930
  RtlAddAce=ntdll.RtlAddAce @931
  RtlAddAtomToAtomTable=ntdll.RtlAddAtomToAtomTable @932
  RtlAllocateHeap=ntdll.RtlAllocateHeap @934
  RtlAnsiCharToUnicodeChar=ntdll.RtlAnsiCharToUnicodeChar @935
  RtlAnsiStringToUnicodeSize=ntdll.RtlAnsiStringToUnicodeSize @936
  RtlAnsiStringToUnicodeString=ntdll.RtlAnsiStringToUnicodeString @937
  RtlAppendAsciizToString=ntdll.RtlAppendAsciizToString @938
  RtlAppendStringToString=ntdll.RtlAppendStringToString @939
  RtlAppendUnicodeStringToString=ntdll.RtlAppendUnicodeStringToString @940
  RtlAppendUnicodeToString=ntdll.RtlAppendUnicodeToString @941
  RtlAreAllAccessesGranted=ntdll.RtlAreAllAccessesGranted @942
  RtlAreAnyAccessesGranted=ntdll.RtlAreAnyAccessesGranted @943
  RtlAreBitsClear=ntdll.RtlAreBitsClear @944
  RtlAreBitsSet=ntdll.RtlAreBitsSet @945
  RtlAssert=ntdll.RtlAssert @946
  RtlCaptureContext=ntdll.RtlCaptureContext @947
  RtlCaptureStackBackTrace=ntdll.RtlCaptureStackBackTrace @948
  RtlCharToInteger=ntdll.RtlCharToInteger @949
  RtlCheckRegistryKey=ntdll.RtlCheckRegistryKey @950
  RtlClearAllBits=ntdll.RtlClearAllBits @951
  RtlClearBits=ntdll.RtlClearBits @953
  RtlCompareMemory=ntdll.RtlCompareMemory @954
  RtlCompareMemoryUlong=ntdll.RtlCompareMemoryUlong @955
  RtlCompareString=ntdll.RtlCompareString @956
  RtlCompareUnicodeString=ntdll.RtlCompareUnicodeString @957
  RtlCompressBuffer=ntdll.RtlCompressBuffer @958
  RtlConvertSidToUnicodeString=ntdll.RtlConvertSidToUnicodeString @960
  RtlCopyLuid=ntdll.RtlCopyLuid @961
  RtlCopyMemory=ntdll.RtlCopyMemory @962
  RtlCopySid=ntdll.RtlCopySid @964
  RtlCopyString=ntdll.RtlCopyString @965
  RtlCopyUnicodeString=ntdll.RtlCopyUnicodeString @966
  RtlCreateAcl=ntdll.RtlCreateAcl @967
  RtlCreateAtomTable=ntdll.RtlCreateAtomTable @968
  RtlCreateHeap=ntdll.RtlCreateHeap @969
  RtlCreateSecurityDescriptor=ntdll.RtlCreateSecurityDescriptor @971
  RtlCreateUnicodeString=ntdll.RtlCreateUnicodeString @973
  RtlDecompressBuffer=ntdll.RtlDecompressBuffer @975
  RtlDecompressFragment=ntdll.RtlDecompressFragment @977
  RtlDeleteAce=ntdll.RtlDeleteAce @979
  RtlDeleteAtomFromAtomTable=ntdll.RtlDeleteAtomFromAtomTable @980
  RtlDeleteRegistryValue=ntdll.RtlDeleteRegistryValue @986
  RtlDestroyAtomTable=ntdll.RtlDestroyAtomTable @988
  RtlDestroyHeap=ntdll.RtlDestroyHeap @989
  RtlDowncaseUnicodeString=ntdll.RtlDowncaseUnicodeString @990
  RtlEmptyAtomTable=ntdll.RtlEmptyAtomTable @991
  RtlEnumerateGenericTableWithoutSplaying=ntdll.RtlEnumerateGenericTableWithoutSplaying @995
  RtlEqualLuid=ntdll.RtlEqualLuid @997
  RtlEqualSid=ntdll.RtlEqualSid @998
  RtlEqualString=ntdll.RtlEqualString @999
  RtlEqualUnicodeString=ntdll.RtlEqualUnicodeString @1000
  RtlFillMemory=ntdll.RtlFillMemory @1001
  RtlFillMemoryUlong=ntdll.RtlFillMemoryUlong @1002
  RtlFindClearBits=ntdll.RtlFindClearBits @1003
  RtlFindClearBitsAndSet=ntdll.RtlFindClearBitsAndSet @1004
  RtlFindClearRuns=ntdll.RtlFindClearRuns @1005
  RtlFindLastBackwardRunClear=ntdll.RtlFindLastBackwardRunClear @1007
  RtlFindLeastSignificantBit=ntdll.RtlFindLeastSignificantBit @1008
  RtlFindLongestRunClear=ntdll.RtlFindLongestRunClear @1009
  RtlFindMessage=ntdll.RtlFindMessage @1010
  RtlFindMostSignificantBit=ntdll.RtlFindMostSignificantBit @1011
  RtlFindNextForwardRunClear=ntdll.RtlFindNextForwardRunClear @1012
  RtlFindSetBits=ntdll.RtlFindSetBits @1014
  RtlFindSetBitsAndClear=ntdll.RtlFindSetBitsAndClear @1015
  RtlFormatCurrentUserKeyPath=ntdll.RtlFormatCurrentUserKeyPath @1017
  RtlFreeAnsiString=ntdll.RtlFreeAnsiString @1018
  RtlFreeHeap=ntdll.RtlFreeHeap @1019
  RtlFreeOemString=ntdll.RtlFreeOemString @1020
  RtlFreeUnicodeString=ntdll.RtlFreeUnicodeString @1022
  RtlGUIDFromString=ntdll.RtlGUIDFromString @1023
  RtlGetAce=ntdll.RtlGetAce @1025
  RtlGetCompressionWorkSpaceSize=ntdll.RtlGetCompressionWorkSpaceSize @1027
  RtlGetDaclSecurityDescriptor=ntdll.RtlGetDaclSecurityDescriptor @1028
  RtlGetGroupSecurityDescriptor=ntdll.RtlGetGroupSecurityDescriptor @1033
  RtlGetNtGlobalFlags=ntdll.RtlGetNtGlobalFlags @1035
  RtlGetOwnerSecurityDescriptor=ntdll.RtlGetOwnerSecurityDescriptor @1036
  RtlGetSaclSecurityDescriptor=ntdll.RtlGetSaclSecurityDescriptor @1037
  RtlGetVersion=ntdll.RtlGetVersion @1039
  RtlHashUnicodeString=ntdll.RtlHashUnicodeString @1040
  RtlImageDirectoryEntryToData=ntdll.RtlImageDirectoryEntryToData @1041
  RtlImageNtHeader=ntdll.RtlImageNtHeader @1042
  RtlInitAnsiString=ntdll.RtlInitAnsiString @1043
  RtlInitString=ntdll.RtlInitString @1045
  RtlInitUnicodeString=ntdll.RtlInitUnicodeString @1046
  RtlInitializeBitMap=ntdll.RtlInitializeBitMap @1047
  RtlInitializeGenericTable=ntdll.RtlInitializeGenericTable @1048
  RtlInitializeSid=ntdll.RtlInitializeSid @1051
  RtlInt64ToUnicodeString=ntdll.RtlInt64ToUnicodeString @1058
  RtlIntegerToChar=ntdll.RtlIntegerToChar @1059
  RtlIntegerToUnicodeString=ntdll.RtlIntegerToUnicodeString @1061
  RtlIpv4AddressToStringA=ntdll.RtlIpv4AddressToStringA @1063
  RtlIpv4AddressToStringExA=ntdll.RtlIpv4AddressToStringExA @1064
  RtlIpv4AddressToStringExW=ntdll.RtlIpv4AddressToStringExW @1065
  RtlIpv4AddressToStringW=ntdll.RtlIpv4AddressToStringW @1066
  RtlIpv4StringToAddressExW=ntdll.RtlIpv4StringToAddressExW @1069
  RtlIsNameLegalDOS8Dot3=ntdll.RtlIsNameLegalDOS8Dot3 @1081
  RtlLengthRequiredSid=ntdll.RtlLengthRequiredSid @1084
  RtlLengthSecurityDescriptor=ntdll.RtlLengthSecurityDescriptor @1085
  RtlLengthSid=ntdll.RtlLengthSid @1086
  RtlLookupAtomInAtomTable=ntdll.RtlLookupAtomInAtomTable @1088
  RtlMapGenericMask=ntdll.RtlMapGenericMask @1093
  RtlMoveMemory=ntdll.RtlMoveMemory @1096
  RtlMultiByteToUnicodeN=ntdll.RtlMultiByteToUnicodeN @1097
  RtlMultiByteToUnicodeSize=ntdll.RtlMultiByteToUnicodeSize @1098
  RtlNtStatusToDosError=ntdll.RtlNtStatusToDosError @1100
  RtlNtStatusToDosErrorNoTeb=ntdll.RtlNtStatusToDosErrorNoTeb @1101
  RtlNumberGenericTableElements=ntdll.RtlNumberGenericTableElements @1102
  RtlNumberOfClearBits=ntdll.RtlNumberOfClearBits @1104
  RtlNumberOfSetBits=ntdll.RtlNumberOfSetBits @1105
  RtlOemStringToUnicodeSize=ntdll.RtlOemStringToUnicodeSize @1107
  RtlOemStringToUnicodeString=ntdll.RtlOemStringToUnicodeString @1108
  RtlOemToUnicodeN=ntdll.RtlOemToUnicodeN @1109
  RtlPinAtomInAtomTable=ntdll.RtlPinAtomInAtomTable @1110
  RtlPrefixString=ntdll.RtlPrefixString @1111
  RtlPrefixUnicodeString=ntdll.RtlPrefixUnicodeString @1112
  RtlQueryAtomInAtomTable=ntdll.RtlQueryAtomInAtomTable @1113
  RtlQueryRegistryValues=ntdll.RtlQueryRegistryValues @1114
  RtlQueryTimeZoneInformation=ntdll.RtlQueryTimeZoneInformation @1115
  RtlRaiseException=ntdll.RtlRaiseException @1116
  RtlRandom=ntdll.RtlRandom @1117
  RtlSecondsSince1970ToTime=ntdll.RtlSecondsSince1970ToTime @1123
  RtlSecondsSince1980ToTime=ntdll.RtlSecondsSince1980ToTime @1124
  RtlSelfRelativeToAbsoluteSD=ntdll.RtlSelfRelativeToAbsoluteSD @1126
  RtlSetAllBits=ntdll.RtlSetAllBits @1127
  RtlSetBits=ntdll.RtlSetBits @1129
  RtlSetDaclSecurityDescriptor=ntdll.RtlSetDaclSecurityDescriptor @1130
  RtlSetGroupSecurityDescriptor=ntdll.RtlSetGroupSecurityDescriptor @1131
  RtlSetOwnerSecurityDescriptor=ntdll.RtlSetOwnerSecurityDescriptor @1132
  RtlSetSaclSecurityDescriptor=ntdll.RtlSetSaclSecurityDescriptor @1133
  RtlSetTimeZoneInformation=ntdll.RtlSetTimeZoneInformation @1134
  RtlSizeHeap=ntdll.RtlSizeHeap @1135
  RtlStringFromGUID=ntdll.RtlStringFromGUID @1137
  RtlSubAuthorityCountSid=ntdll.RtlSubAuthorityCountSid @1138
  RtlSubAuthoritySid=ntdll.RtlSubAuthoritySid @1139
  RtlTimeFieldsToTime=ntdll.RtlTimeFieldsToTime @1143
  RtlTimeToElapsedTimeFields=ntdll.RtlTimeToElapsedTimeFields @1144
  RtlTimeToSecondsSince1970=ntdll.RtlTimeToSecondsSince1970 @1145
  RtlTimeToSecondsSince1980=ntdll.RtlTimeToSecondsSince1980 @1146
  RtlTimeToTimeFields=ntdll.RtlTimeToTimeFields @1147
  RtlUnicodeStringToAnsiSize=ntdll.RtlUnicodeStringToAnsiSize @1156
  RtlUnicodeStringToAnsiString=ntdll.RtlUnicodeStringToAnsiString @1157
  RtlUnicodeStringToInteger=ntdll.RtlUnicodeStringToInteger @1159
  RtlUnicodeStringToOemSize=ntdll.RtlUnicodeStringToOemSize @1160
  RtlUnicodeStringToOemString=ntdll.RtlUnicodeStringToOemString @1161
  RtlUnicodeToMultiByteN=ntdll.RtlUnicodeToMultiByteN @1163
  RtlUnicodeToMultiByteSize=ntdll.RtlUnicodeToMultiByteSize @1164
  RtlUnicodeToOemN=ntdll.RtlUnicodeToOemN @1165
  RtlUnwind=ntdll.RtlUnwind @1167
  RtlUnwindEx=ntdll.RtlUnwindEx @1168
  RtlUpcaseUnicodeChar=ntdll.RtlUpcaseUnicodeChar @1169
  RtlUpcaseUnicodeString=ntdll.RtlUpcaseUnicodeString @1170
  RtlUpcaseUnicodeStringToAnsiString=ntdll.RtlUpcaseUnicodeStringToAnsiString @1171
  RtlUpcaseUnicodeStringToCountedOemString=ntdll.RtlUpcaseUnicodeStringToCountedOemString @1172
  RtlUpcaseUnicodeStringToOemString=ntdll.RtlUpcaseUnicodeStringToOemString @1173
  RtlUpcaseUnicodeToMultiByteN=ntdll.RtlUpcaseUnicodeToMultiByteN @1175
  RtlUpcaseUnicodeToOemN=ntdll.RtlUpcaseUnicodeToOemN @1176
  RtlUpperChar=ntdll.RtlUpperChar @1177
  RtlUpperString=ntdll.RtlUpperString @1178
  RtlValidRelativeSecurityDescriptor=ntdll.RtlValidRelativeSecurityDescriptor @1179
  RtlValidSecurityDescriptor=ntdll.RtlValidSecurityDescriptor @1180
  RtlValidSid=ntdll.RtlValidSid @1181
  RtlVerifyVersionInfo=ntdll.RtlVerifyVersionInfo @1182
  RtlWriteRegistryValue=ntdll.RtlWriteRegistryValue @1185
  RtlZeroMemory=ntdll.RtlZeroMemory @1187
  RtlxAnsiStringToUnicodeSize=ntdll.RtlxAnsiStringToUnicodeSize @1188
  RtlxOemStringToUnicodeSize=ntdll.RtlxOemStringToUnicodeSize @1189
  RtlxUnicodeStringToAnsiSize=ntdll.RtlxUnicodeStringToAnsiSize @1190
  RtlxUnicodeStringToOemSize=ntdll.RtlxUnicodeStringToOemSize @1191
  VerSetConditionMask=ntdll.VerSetConditionMask @1244
  ZwAccessCheckAndAuditAlarm=ntdll.ZwAccessCheckAndAuditAlarm @1264
  ZwAdjustPrivilegesToken=ntdll.ZwAdjustPrivilegesToken @1266
  ZwAlertThread=ntdll.ZwAlertThread @1267
  ZwAllocateVirtualMemory=ntdll.ZwAllocateVirtualMemory @1268
  ZwAssignProcessToJobObject=ntdll.ZwAssignProcessToJobObject @1269
  ZwCancelIoFile=ntdll.ZwCancelIoFile @1270
  ZwCancelTimer=ntdll.ZwCancelTimer @1271
  ZwClearEvent=ntdll.ZwClearEvent @1272
  ZwClose=ntdll.ZwClose @1273
  ZwConnectPort=ntdll.ZwConnectPort @1275
  ZwCreateDirectoryObject=ntdll.ZwCreateDirectoryObject @1276
  ZwCreateEvent=ntdll.ZwCreateEvent @1277
  ZwCreateFile=ntdll.ZwCreateFile @1278
  ZwCreateJobObject=ntdll.ZwCreateJobObject @1279
  ZwCreateKey=ntdll.ZwCreateKey @1280
  ZwCreateSection=ntdll.ZwCreateSection @1281
  ZwCreateSymbolicLinkObject=ntdll.ZwCreateSymbolicLinkObject @1282
  ZwCreateTimer=ntdll.ZwCreateTimer @1283
  ZwDeleteFile=ntdll.ZwDeleteFile @1285
  ZwDeleteKey=ntdll.ZwDeleteKey @1286
  ZwDeleteValueKey=ntdll.ZwDeleteValueKey @1287
  ZwDeviceIoControlFile=ntdll.ZwDeviceIoControlFile @1288
  ZwDisplayString=ntdll.ZwDisplayString @1289
  ZwDuplicateObject=ntdll.ZwDuplicateObject @1290
  ZwDuplicateToken=ntdll.ZwDuplicateToken @1291
  ZwEnumerateKey=ntdll.ZwEnumerateKey @1293
  ZwEnumerateValueKey=ntdll.ZwEnumerateValueKey @1294
  ZwFlushInstructionCache=ntdll.ZwFlushInstructionCache @1295
  ZwFlushKey=ntdll.ZwFlushKey @1296
  ZwFlushVirtualMemory=ntdll.ZwFlushVirtualMemory @1297
  ZwFreeVirtualMemory=ntdll.ZwFreeVirtualMemory @1298
  ZwFsControlFile=ntdll.ZwFsControlFile @1299
  ZwInitiatePowerAction=ntdll.ZwInitiatePowerAction @1300
  ZwIsProcessInJob=ntdll.ZwIsProcessInJob @1301
  ZwLoadDriver=ntdll.ZwLoadDriver @1302
  ZwLoadKey=ntdll.ZwLoadKey @1303
  ZwMakeTemporaryObject=ntdll.ZwMakeTemporaryObject @1304
  ZwMapViewOfSection=ntdll.ZwMapViewOfSection @1305
  ZwNotifyChangeKey=ntdll.ZwNotifyChangeKey @1306
  ZwOpenDirectoryObject=ntdll.ZwOpenDirectoryObject @1307
  ZwOpenEvent=ntdll.ZwOpenEvent @1308
  ZwOpenFile=ntdll.ZwOpenFile @1309
  ZwOpenJobObject=ntdll.ZwOpenJobObject @1310
  ZwOpenKey=ntdll.ZwOpenKey @1311
  ZwOpenProcess=ntdll.ZwOpenProcess @1312
  ZwOpenProcessToken=ntdll.ZwOpenProcessToken @1313
  ZwOpenProcessTokenEx=ntdll.ZwOpenProcessTokenEx @1314
  ZwOpenSection=ntdll.ZwOpenSection @1315
  ZwOpenSymbolicLinkObject=ntdll.ZwOpenSymbolicLinkObject @1316
  ZwOpenThread=ntdll.ZwOpenThread @1317
  ZwOpenThreadToken=ntdll.ZwOpenThreadToken @1318
  ZwOpenThreadTokenEx=ntdll.ZwOpenThreadTokenEx @1319
  ZwOpenTimer=ntdll.ZwOpenTimer @1320
  ZwPowerInformation=ntdll.ZwPowerInformation @1321
  ZwPulseEvent=ntdll.ZwPulseEvent @1322
  ZwQueryDefaultLocale=ntdll.ZwQueryDefaultLocale @1325
  ZwQueryDefaultUILanguage=ntdll.ZwQueryDefaultUILanguage @1326
  ZwQueryDirectoryFile=ntdll.ZwQueryDirectoryFile @1327
  ZwQueryDirectoryObject=ntdll.ZwQueryDirectoryObject @1328
  ZwQueryEaFile=ntdll.ZwQueryEaFile @1329
  ZwQueryFullAttributesFile=ntdll.ZwQueryFullAttributesFile @1330
  ZwQueryInformationFile=ntdll.ZwQueryInformationFile @1331
  ZwQueryInformationJobObject=ntdll.ZwQueryInformationJobObject @1332
  ZwQueryInformationProcess=ntdll.ZwQueryInformationProcess @1333
  ZwQueryInformationThread=ntdll.ZwQueryInformationThread @1334
  ZwQueryInformationToken=ntdll.ZwQueryInformationToken @1335
  ZwQueryInstallUILanguage=ntdll.ZwQueryInstallUILanguage @1336
  ZwQueryKey=ntdll.ZwQueryKey @1337
  ZwQueryObject=ntdll.ZwQueryObject @1338
  ZwQuerySection=ntdll.ZwQuerySection @1339
  ZwQuerySecurityObject=ntdll.ZwQuerySecurityObject @1340
  ZwQuerySymbolicLinkObject=ntdll.ZwQuerySymbolicLinkObject @1341
  ZwQuerySystemInformation=ntdll.ZwQuerySystemInformation @1342
  ZwQueryValueKey=ntdll.ZwQueryValueKey @1343
  ZwQueryVolumeInformationFile=ntdll.ZwQueryVolumeInformationFile @1344
  ZwReadFile=ntdll.ZwReadFile @1345
  ZwReplaceKey=ntdll.ZwReplaceKey @1346
  ZwRequestWaitReplyPort=ntdll.ZwRequestWaitReplyPort @1347
  ZwResetEvent=ntdll.ZwResetEvent @1348
  ZwRestoreKey=ntdll.ZwRestoreKey @1349
  ZwSaveKey=ntdll.ZwSaveKey @1350
  ZwSetDefaultLocale=ntdll.ZwSetDefaultLocale @1354
  ZwSetDefaultUILanguage=ntdll.ZwSetDefaultUILanguage @1355
  ZwSetEaFile=ntdll.ZwSetEaFile @1356
  ZwSetEvent=ntdll.ZwSetEvent @1357
  ZwSetInformationFile=ntdll.ZwSetInformationFile @1358
  ZwSetInformationJobObject=ntdll.ZwSetInformationJobObject @1359
  ZwSetInformationObject=ntdll.ZwSetInformationObject @1360
  ZwSetInformationProcess=ntdll.ZwSetInformationProcess @1361
  ZwSetInformationThread=ntdll.ZwSetInformationThread @1362
  ZwSetSecurityObject=ntdll.ZwSetSecurityObject @1363
  ZwSetSystemInformation=ntdll.ZwSetSystemInformation @1364
  ZwSetSystemTime=ntdll.ZwSetSystemTime @1365
  ZwSetTimer=ntdll.ZwSetTimer @1366
  ZwSetValueKey=ntdll.ZwSetValueKey @1367
  ZwSetVolumeInformationFile=ntdll.ZwSetVolumeInformationFile @1368
  ZwTerminateJobObject=ntdll.ZwTerminateJobObject @1369
  ZwTerminateProcess=ntdll.ZwTerminateProcess @1370
  ZwUnloadDriver=ntdll.ZwUnloadDriver @1372
  ZwUnloadKey=ntdll.ZwUnloadKey @1373
  ZwUnmapViewOfSection=ntdll.ZwUnmapViewOfSection @1374
  ZwWaitForMultipleObjects=ntdll.ZwWaitForMultipleObjects @1375
  ZwWaitForSingleObject=ntdll.ZwWaitForSingleObject @1376
  ZwWriteFile=ntdll.ZwWriteFile @1377
  ZwYieldExecution=ntdll.ZwYieldExecution @1378
  _abnormal_termination=msvcrt._abnormal_termination @1379 PRIVATE
  _itoa=msvcrt._itoa @1385 PRIVATE
  _itow=msvcrt._itow @1386 PRIVATE
  _local_unwind=msvcrt._local_unwind @1387 PRIVATE
  _purecall=msvcrt._purecall @1388 PRIVATE
  _snprintf=msvcrt._snprintf @1389 PRIVATE
  _snwprintf=msvcrt._snwprintf @1390 PRIVATE
  _stricmp=msvcrt._stricmp @1391 PRIVATE
  _strlwr=msvcrt._strlwr @1392 PRIVATE
  _strnicmp=msvcrt._strnicmp @1393 PRIVATE
  _strnset=msvcrt._strnset @1394 PRIVATE
  _strrev=msvcrt._strrev @1395 PRIVATE
  _strset=msvcrt._strset @1396 PRIVATE
  _strupr=msvcrt._strupr @1397 PRIVATE
  _vsnprintf=msvcrt._vsnprintf @1398 PRIVATE
  _vsnwprintf=msvcrt._vsnwprintf @1399 PRIVATE
  _wcsicmp=msvcrt._wcsicmp @1400 PRIVATE
  _wcslwr=msvcrt._wcslwr @1401 PRIVATE
  _wcsnicmp=msvcrt._wcsnicmp @1402 PRIVATE
  _wcsnset=msvcrt._wcsnset @1403 PRIVATE
  _wcsrev=msvcrt._wcsrev @1404 PRIVATE
  _wcsupr=msvcrt._wcsupr @1405 PRIVATE
  atoi=msvcrt.atoi @1406 PRIVATE
  atol=msvcrt.atol @1407 PRIVATE
  isdigit=msvcrt.isdigit @1408 PRIVATE
  islower=msvcrt.islower @1409 PRIVATE
  isprint=msvcrt.isprint @1410 PRIVATE
  isspace=msvcrt.isspace @1411 PRIVATE
  isupper=msvcrt.isupper @1412 PRIVATE
  isxdigit=msvcrt.isxdigit @1413 PRIVATE
  mbstowcs=msvcrt.mbstowcs @1414 PRIVATE
  mbtowc=msvcrt.mbtowc @1415 PRIVATE
  memchr=msvcrt.memchr @1416 PRIVATE
  memcpy=msvcrt.memcpy @1417 PRIVATE
  memmove=msvcrt.memmove @1418 PRIVATE
  memset=msvcrt.memset @1419 PRIVATE
  qsort=msvcrt.qsort @1420 PRIVATE
  rand=msvcrt.rand @1421 PRIVATE
  sprintf=msvcrt.sprintf @1422 PRIVATE
  srand=msvcrt.srand @1423 PRIVATE
  strcat=msvcrt.strcat @1424 PRIVATE
  strchr=msvcrt.strchr @1425 PRIVATE
  strcmp=msvcrt.strcmp @1426 PRIVATE
  strcpy=msvcrt.strcpy @1427 PRIVATE
  strlen=msvcrt.strlen @1428 PRIVATE
  strncat=msvcrt.strncat @1429 PRIVATE
  strncmp=msvcrt.strncmp @1430 PRIVATE
  strncpy=msvcrt.strncpy @1431 PRIVATE
  strrchr=msvcrt.strrchr @1432 PRIVATE
  strspn=msvcrt.strspn @1433 PRIVATE
  strstr=msvcrt.strstr @1434 PRIVATE
  swprintf=msvcrt.swprintf @1435 PRIVATE
  tolower=msvcrt.tolower @1436 PRIVATE
  toupper=msvcrt.toupper @1437 PRIVATE
  towlower=msvcrt.towlower @1438 PRIVATE
  towupper=msvcrt.towupper @1439 PRIVATE
  vDbgPrintEx=ntdll.vDbgPrintEx @1440
  vDbgPrintExWithPrefix=ntdll.vDbgPrintExWithPrefix @1441
  vsprintf=msvcrt.vsprintf @1442 PRIVATE
  wcscat=msvcrt.wcscat @1443 PRIVATE
  wcschr=msvcrt.wcschr @1444 PRIVATE
  wcscmp=msvcrt.wcscmp @1445 PRIVATE
  wcscpy=msvcrt.wcscpy @1446 PRIVATE
  wcscspn=msvcrt.wcscspn @1447 PRIVATE
  wcslen=msvcrt.wcslen @1448 PRIVATE
  wcsncat=msvcrt.wcsncat @1449 PRIVATE
  wcsncmp=msvcrt.wcsncmp @1450 PRIVATE
  wcsncpy=msvcrt.wcsncpy @1451 PRIVATE
  wcsrchr=msvcrt.wcsrchr @1452 PRIVATE
  wcsspn=msvcrt.wcsspn @1453 PRIVATE
  wcsstr=msvcrt.wcsstr @1454 PRIVATE
  wcstombs=msvcrt.wcstombs @1455 PRIVATE
  wctomb=msvcrt.wctomb @1456 PRIVATE
  wine_ntoskrnl_main_loop @1457