This file is indexed.

/usr/lib/x86_64-linux-gnu/wine/libntoskrnl.def is in libwine-dev 3.0-1ubuntu1.

This file is owned by root:root, with mode 0o644.

The actual contents of the file can be viewed below.

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
; File generated automatically from ./dlls/ntoskrnl.exe/ntoskrnl.exe.spec; do not edit!

LIBRARY ntoskrnl.exe

EXPORTS
  ExfInterlockedRemoveHeadList @25
  InterlockedCompareExchange=NTOSKRNL_InterlockedCompareExchange @31
  InterlockedDecrement=NTOSKRNL_InterlockedDecrement @32
  InterlockedExchange=NTOSKRNL_InterlockedExchange @33
  InterlockedExchangeAdd=NTOSKRNL_InterlockedExchangeAdd @34
  InterlockedIncrement=NTOSKRNL_InterlockedIncrement @35
  InterlockedPopEntrySList=NTOSKRNL_InterlockedPopEntrySList @36
  InterlockedPushEntrySList=NTOSKRNL_InterlockedPushEntrySList @37
  IofCallDriver @42
  IofCompleteRequest @43
  KeAcquireInStackQueuedSpinLock @44
  KeReleaseInStackQueuedSpinLock @46
  ObfDereferenceObject @53
  ObfReferenceObject @54
  RtlUlonglongByteSwap=ntdll.RtlUlonglongByteSwap @56
  CmRegisterCallback @103
  CmUnRegisterCallback @104
  DbgBreakPoint=ntdll.DbgBreakPoint @105
  DbgPrint=ntdll.DbgPrint @108
  DbgPrintEx=ntdll.DbgPrintEx @109
  ExAcquireResourceExclusiveLite @114
  ExAllocatePool @119
  ExAllocatePoolWithQuota @120
  ExAllocatePoolWithQuotaTag @121
  ExAllocatePoolWithTag @122
  ExCreateCallback @125
  ExDeleteNPagedLookasideList @126
  ExDeletePagedLookasideList @127
  ExDeleteResourceLite @128
  ExFreePool @134
  ExFreePoolWithTag @135
  ExInitializeNPagedLookasideList @142
  ExInitializePagedLookasideList @143
  ExInitializeResourceLite @144
  ExInitializeZone @145
  ExInterlockedRemoveHeadList @156
  ExLocalTimeToSystemTime=ntdll.RtlLocalTimeToSystemTime @160
  ExReleaseResourceForThreadLite @171
  ExSystemTimeToLocalTime=ntdll.RtlSystemTimeToLocalTime @176
  FsRtlRegisterUncProvider @274
  InitSafeBootMode @305 DATA
  IoAcquireCancelSpinLock @306
  IoAcquireRemoveLockEx @307
  IoAllocateDriverObjectExtension @312
  IoAllocateErrorLogEntry @313
  IoAllocateIrp @314
  IoAllocateMdl @315
  IoAllocateWorkItem @316
  IoAttachDevice @318
  IoAttachDeviceToDeviceStack @320
  IoBuildDeviceIoControlRequest @323
  IoBuildSynchronousFsdRequest @325
  IoCallDriver @326
  IoCompleteRequest @336
  IoCreateDevice @339
  IoCreateDriver @341
  IoCreateFile @342
  IoCreateNotificationEvent @344
  IoCreateSymbolicLink @348
  IoCreateSynchronizationEvent @349
  IoCsqInitialize @351
  IoDeleteDevice @356
  IoDeleteDriver @357
  IoDeleteSymbolicLink @358
  IoFreeIrp @373
  IoFreeMdl @374
  IoGetAttachedDevice @376
  IoGetAttachedDeviceReference @377
  IoGetConfigurationInformation @380
  IoGetCurrentProcess @381
  IoGetDeviceInterfaces @384
  IoGetDeviceObjectPointer @385
  IoGetDeviceProperty @386
  IoGetDriverObjectExtension @390
  IoGetRelatedDeviceObject @394
  IoInitializeIrp @400
  IoInitializeRemoveLockEx @401
  IoInitializeTimer @402
  IoInvalidateDeviceRelations @403
  IoIsWdmVersionAvailable @409
  IoQueryDeviceDescription @415
  IoRegisterDriverReinitialization @429
  IoRegisterFileSystem @430
  IoRegisterPlugPlayNotification @433
  IoRegisterShutdownNotification @434
  IoReleaseCancelSpinLock @435
  IoReportResourceForDetection @442
  IoReportResourceUsage @443
  IoSetThreadHardErrorMode @459
  IoStartNextPacket @461
  IoStartTimer @464
  IoStopTimer @466
  IoUnregisterFileSystem @470
  IoUnregisterShutdownNotification @473
  IoWMIRegistrationControl @488
  KdDebuggerEnabled @498 DATA
  Ke386IoSetAccessProcess @506
  Ke386SetIoAccessMap @508
  KeAcquireSpinLockRaiseToDpc @511
  KeClearEvent @519
  KeDelayExecutionThread @522
  KeEnterCriticalRegion @527
  KeGetCurrentThread @533
  KeInitializeDpc @549
  KeInitializeEvent @550
  KeInitializeMutex @553
  KeInitializeSemaphore @555
  KeInitializeSpinLock @556
  KeInitializeTimer @557
  KeInitializeTimerEx @558
  KeInsertQueue @562
  KeLeaveCriticalRegion @567
  KeQueryActiveProcessors @573
  KeQueryInterruptTime @574
  KeQuerySystemTime @577
  KeQueryTickCount @578
  KeQueryTimeIncrement @579
  KeReleaseMutex @591
  KeReleaseSemaphore @592
  KeReleaseSpinLock @593
  KeResetEvent @602
  KeServiceDescriptorTable @608 DATA
  KeSetEvent @612
  KeSetPriorityThread @617
  KeSetSystemAffinityThread @619
  KeSetTimerEx @623
  KeTickCount @627 DATA
  KeWaitForMultipleObjects @632
  KeWaitForMutexObject @633
  KeWaitForSingleObject @634
  LdrAccessResource=ntdll.LdrAccessResource @642
  LdrFindResourceDirectory_U=ntdll.LdrFindResourceDirectory_U @644
  LdrFindResource_U=ntdll.LdrFindResource_U @645
  MmAllocateContiguousMemory @660
  MmAllocateContiguousMemorySpecifyCache @661
  MmAllocateNonCachedMemory @663
  MmAllocatePagesForMdl @664
  MmFreeNonCachedMemory @676
  MmGetSystemRoutineAddress @680
  MmIsAddressValid @684
  MmLockPagableSectionByHandle @692
  MmMapIoSpace @693
  MmMapLockedPagesSpecifyCache @695
  MmPageEntireDriver @705
  MmProbeAndLockPages @707
  MmQuerySystemSize @711
  MmResetDriverPaging @713
  MmUnlockPagableImageSection @721
  MmUnlockPages @722
  MmUnmapIoSpace @723
  NlsAnsiCodePage=ntdll.NlsAnsiCodePage @732 DATA
  NlsMbCodePageTag=ntdll.NlsMbCodePageTag @734 DATA
  NlsMbOemCodePageTag=ntdll.NlsMbOemCodePageTag @735 DATA
  NtAddAtom=ntdll.NtAddAtom @738
  NtAdjustPrivilegesToken=ntdll.NtAdjustPrivilegesToken @739
  NtAllocateLocallyUniqueId=ntdll.NtAllocateLocallyUniqueId @740
  NtAllocateUuids=ntdll.NtAllocateUuids @741
  NtAllocateVirtualMemory=ntdll.NtAllocateVirtualMemory @742
  NtClose=ntdll.NtClose @744
  NtConnectPort=ntdll.NtConnectPort @745
  NtCreateEvent=ntdll.NtCreateEvent @746
  NtCreateFile=ntdll.NtCreateFile @747
  NtCreateSection=ntdll.NtCreateSection @748
  NtDeleteAtom=ntdll.NtDeleteAtom @749
  NtDeleteFile=ntdll.NtDeleteFile @750
  NtDeviceIoControlFile=ntdll.NtDeviceIoControlFile @751
  NtDuplicateObject=ntdll.NtDuplicateObject @752
  NtDuplicateToken=ntdll.NtDuplicateToken @753
  NtFindAtom=ntdll.NtFindAtom @754
  NtFreeVirtualMemory=ntdll.NtFreeVirtualMemory @755
  NtFsControlFile=ntdll.NtFsControlFile @756
  NtLockFile=ntdll.NtLockFile @758
  NtMapViewOfSection=ntdll.NtMapViewOfSection @760
  NtNotifyChangeDirectoryFile=ntdll.NtNotifyChangeDirectoryFile @761
  NtOpenFile=ntdll.NtOpenFile @762
  NtOpenProcess=ntdll.NtOpenProcess @763
  NtOpenProcessToken=ntdll.NtOpenProcessToken @764
  NtOpenProcessTokenEx=ntdll.NtOpenProcessTokenEx @765
  NtOpenThread=ntdll.NtOpenThread @766
  NtOpenThreadToken=ntdll.NtOpenThreadToken @767
  NtOpenThreadTokenEx=ntdll.NtOpenThreadTokenEx @768
  NtQueryDirectoryFile=ntdll.NtQueryDirectoryFile @769
  NtQueryEaFile=ntdll.NtQueryEaFile @770
  NtQueryInformationAtom=ntdll.NtQueryInformationAtom @771
  NtQueryInformationFile=ntdll.NtQueryInformationFile @772
  NtQueryInformationProcess=ntdll.NtQueryInformationProcess @773
  NtQueryInformationThread=ntdll.NtQueryInformationThread @774
  NtQueryInformationToken=ntdll.NtQueryInformationToken @775
  NtQuerySecurityObject=ntdll.NtQuerySecurityObject @777
  NtQuerySystemInformation=ntdll.NtQuerySystemInformation @778
  NtQueryVolumeInformationFile=ntdll.NtQueryVolumeInformationFile @779
  NtReadFile=ntdll.NtReadFile @780
  NtRequestWaitReplyPort=ntdll.NtRequestWaitReplyPort @782
  NtSetEaFile=ntdll.NtSetEaFile @783
  NtSetEvent=ntdll.NtSetEvent @784
  NtSetInformationFile=ntdll.NtSetInformationFile @785
  NtSetInformationProcess=ntdll.NtSetInformationProcess @786
  NtSetInformationThread=ntdll.NtSetInformationThread @787
  NtSetSecurityObject=ntdll.NtSetSecurityObject @789
  NtSetVolumeInformationFile=ntdll.NtSetVolumeInformationFile @790
  NtShutdownSystem=ntdll.NtShutdownSystem @791
  NtUnlockFile=ntdll.NtUnlockFile @793
  NtWaitForSingleObject=ntdll.NtWaitForSingleObject @795
  NtWriteFile=ntdll.NtWriteFile @796
  ObDereferenceObject @803
  ObQueryNameString @812
  ObReferenceObjectByHandle @814
  ObReferenceObjectByName @815
  PoSetPowerState @835
  ProbeForRead @840
  ProbeForWrite @841
  PsCreateSystemThread @848
  PsGetCurrentProcess=IoGetCurrentProcess @854
  PsGetCurrentProcessId @855
  PsGetCurrentThread=KeGetCurrentThread @857
  PsGetCurrentThreadId @858
  PsGetVersion @889
  PsImpersonateClient @890
  PsLookupProcessByProcessId @897
  PsRemoveCreateThreadNotifyRoutine @903
  PsRemoveLoadImageNotifyRoutine @904
  PsSetCreateProcessNotifyRoutine @912
  PsSetCreateThreadNotifyRoutine @913
  PsSetLoadImageNotifyRoutine @916
  PsTerminateSystemThread @924
  READ_REGISTER_BUFFER_UCHAR @926
  RtlAbsoluteToSelfRelativeSD=ntdll.RtlAbsoluteToSelfRelativeSD @932
  RtlAddAccessAllowedAce=ntdll.RtlAddAccessAllowedAce @933
  RtlAddAccessAllowedAceEx=ntdll.RtlAddAccessAllowedAceEx @934
  RtlAddAce=ntdll.RtlAddAce @935
  RtlAddAtomToAtomTable=ntdll.RtlAddAtomToAtomTable @936
  RtlAllocateHeap=ntdll.RtlAllocateHeap @938
  RtlAnsiCharToUnicodeChar=ntdll.RtlAnsiCharToUnicodeChar @939
  RtlAnsiStringToUnicodeSize=ntdll.RtlAnsiStringToUnicodeSize @940
  RtlAnsiStringToUnicodeString=ntdll.RtlAnsiStringToUnicodeString @941
  RtlAppendAsciizToString=ntdll.RtlAppendAsciizToString @942
  RtlAppendStringToString=ntdll.RtlAppendStringToString @943
  RtlAppendUnicodeStringToString=ntdll.RtlAppendUnicodeStringToString @944
  RtlAppendUnicodeToString=ntdll.RtlAppendUnicodeToString @945
  RtlAreAllAccessesGranted=ntdll.RtlAreAllAccessesGranted @946
  RtlAreAnyAccessesGranted=ntdll.RtlAreAnyAccessesGranted @947
  RtlAreBitsClear=ntdll.RtlAreBitsClear @948
  RtlAreBitsSet=ntdll.RtlAreBitsSet @949
  RtlAssert=ntdll.RtlAssert @950
  RtlCaptureContext=ntdll.RtlCaptureContext @951
  RtlCaptureStackBackTrace=ntdll.RtlCaptureStackBackTrace @952
  RtlCharToInteger=ntdll.RtlCharToInteger @953
  RtlCheckRegistryKey=ntdll.RtlCheckRegistryKey @954
  RtlClearAllBits=ntdll.RtlClearAllBits @955
  RtlClearBits=ntdll.RtlClearBits @957
  RtlCompareMemory=ntdll.RtlCompareMemory @958
  RtlCompareMemoryUlong=ntdll.RtlCompareMemoryUlong @959
  RtlCompareString=ntdll.RtlCompareString @960
  RtlCompareUnicodeString=ntdll.RtlCompareUnicodeString @961
  RtlCompressBuffer=ntdll.RtlCompressBuffer @962
  RtlConvertSidToUnicodeString=ntdll.RtlConvertSidToUnicodeString @964
  RtlCopyLuid=ntdll.RtlCopyLuid @965
  RtlCopyMemory=ntdll.RtlCopyMemory @966
  RtlCopySid=ntdll.RtlCopySid @968
  RtlCopyString=ntdll.RtlCopyString @969
  RtlCopyUnicodeString=ntdll.RtlCopyUnicodeString @970
  RtlCreateAcl=ntdll.RtlCreateAcl @971
  RtlCreateAtomTable=ntdll.RtlCreateAtomTable @972
  RtlCreateHeap=ntdll.RtlCreateHeap @973
  RtlCreateSecurityDescriptor=ntdll.RtlCreateSecurityDescriptor @975
  RtlCreateUnicodeString=ntdll.RtlCreateUnicodeString @977
  RtlDecompressBuffer=ntdll.RtlDecompressBuffer @979
  RtlDecompressFragment=ntdll.RtlDecompressFragment @981
  RtlDeleteAce=ntdll.RtlDeleteAce @983
  RtlDeleteAtomFromAtomTable=ntdll.RtlDeleteAtomFromAtomTable @984
  RtlDeleteRegistryValue=ntdll.RtlDeleteRegistryValue @990
  RtlDestroyAtomTable=ntdll.RtlDestroyAtomTable @992
  RtlDestroyHeap=ntdll.RtlDestroyHeap @993
  RtlDowncaseUnicodeString=ntdll.RtlDowncaseUnicodeString @994
  RtlEmptyAtomTable=ntdll.RtlEmptyAtomTable @995
  RtlEnumerateGenericTableWithoutSplaying=ntdll.RtlEnumerateGenericTableWithoutSplaying @999
  RtlEqualLuid=ntdll.RtlEqualLuid @1001
  RtlEqualSid=ntdll.RtlEqualSid @1002
  RtlEqualString=ntdll.RtlEqualString @1003
  RtlEqualUnicodeString=ntdll.RtlEqualUnicodeString @1004
  RtlFillMemory=ntdll.RtlFillMemory @1005
  RtlFillMemoryUlong=ntdll.RtlFillMemoryUlong @1006
  RtlFindClearBits=ntdll.RtlFindClearBits @1007
  RtlFindClearBitsAndSet=ntdll.RtlFindClearBitsAndSet @1008
  RtlFindClearRuns=ntdll.RtlFindClearRuns @1009
  RtlFindLastBackwardRunClear=ntdll.RtlFindLastBackwardRunClear @1011
  RtlFindLeastSignificantBit=ntdll.RtlFindLeastSignificantBit @1012
  RtlFindLongestRunClear=ntdll.RtlFindLongestRunClear @1013
  RtlFindMessage=ntdll.RtlFindMessage @1014
  RtlFindMostSignificantBit=ntdll.RtlFindMostSignificantBit @1015
  RtlFindNextForwardRunClear=ntdll.RtlFindNextForwardRunClear @1016
  RtlFindSetBits=ntdll.RtlFindSetBits @1018
  RtlFindSetBitsAndClear=ntdll.RtlFindSetBitsAndClear @1019
  RtlFormatCurrentUserKeyPath=ntdll.RtlFormatCurrentUserKeyPath @1021
  RtlFreeAnsiString=ntdll.RtlFreeAnsiString @1022
  RtlFreeHeap=ntdll.RtlFreeHeap @1023
  RtlFreeOemString=ntdll.RtlFreeOemString @1024
  RtlFreeUnicodeString=ntdll.RtlFreeUnicodeString @1026
  RtlGUIDFromString=ntdll.RtlGUIDFromString @1027
  RtlGetAce=ntdll.RtlGetAce @1029
  RtlGetCompressionWorkSpaceSize=ntdll.RtlGetCompressionWorkSpaceSize @1031
  RtlGetDaclSecurityDescriptor=ntdll.RtlGetDaclSecurityDescriptor @1032
  RtlGetGroupSecurityDescriptor=ntdll.RtlGetGroupSecurityDescriptor @1037
  RtlGetNtGlobalFlags=ntdll.RtlGetNtGlobalFlags @1039
  RtlGetOwnerSecurityDescriptor=ntdll.RtlGetOwnerSecurityDescriptor @1040
  RtlGetSaclSecurityDescriptor=ntdll.RtlGetSaclSecurityDescriptor @1041
  RtlGetVersion=ntdll.RtlGetVersion @1043
  RtlHashUnicodeString=ntdll.RtlHashUnicodeString @1044
  RtlImageDirectoryEntryToData=ntdll.RtlImageDirectoryEntryToData @1045
  RtlImageNtHeader=ntdll.RtlImageNtHeader @1046
  RtlInitAnsiString=ntdll.RtlInitAnsiString @1047
  RtlInitString=ntdll.RtlInitString @1049
  RtlInitUnicodeString=ntdll.RtlInitUnicodeString @1050
  RtlInitializeBitMap=ntdll.RtlInitializeBitMap @1051
  RtlInitializeGenericTable=ntdll.RtlInitializeGenericTable @1052
  RtlInitializeGenericTableAvl=ntdll.RtlInitializeGenericTableAvl @1053
  RtlInitializeSid=ntdll.RtlInitializeSid @1055
  RtlInsertElementGenericTableAvl=ntdll.RtlInsertElementGenericTableAvl @1058
  RtlInt64ToUnicodeString=ntdll.RtlInt64ToUnicodeString @1062
  RtlIntegerToChar=ntdll.RtlIntegerToChar @1063
  RtlIntegerToUnicodeString=ntdll.RtlIntegerToUnicodeString @1065
  RtlIpv4AddressToStringA=ntdll.RtlIpv4AddressToStringA @1067
  RtlIpv4AddressToStringExA=ntdll.RtlIpv4AddressToStringExA @1068
  RtlIpv4AddressToStringExW=ntdll.RtlIpv4AddressToStringExW @1069
  RtlIpv4AddressToStringW=ntdll.RtlIpv4AddressToStringW @1070
  RtlIpv4StringToAddressExW=ntdll.RtlIpv4StringToAddressExW @1073
  RtlIpv4StringToAddressW=ntdll.RtlIpv4StringToAddressW @1074
  RtlIsNameLegalDOS8Dot3=ntdll.RtlIsNameLegalDOS8Dot3 @1085
  RtlLengthRequiredSid=ntdll.RtlLengthRequiredSid @1088
  RtlLengthSecurityDescriptor=ntdll.RtlLengthSecurityDescriptor @1089
  RtlLengthSid=ntdll.RtlLengthSid @1090
  RtlLookupAtomInAtomTable=ntdll.RtlLookupAtomInAtomTable @1092
  RtlMapGenericMask=ntdll.RtlMapGenericMask @1097
  RtlMoveMemory=ntdll.RtlMoveMemory @1100
  RtlMultiByteToUnicodeN=ntdll.RtlMultiByteToUnicodeN @1101
  RtlMultiByteToUnicodeSize=ntdll.RtlMultiByteToUnicodeSize @1102
  RtlNtStatusToDosError=ntdll.RtlNtStatusToDosError @1104
  RtlNtStatusToDosErrorNoTeb=ntdll.RtlNtStatusToDosErrorNoTeb @1105
  RtlNumberGenericTableElements=ntdll.RtlNumberGenericTableElements @1106
  RtlNumberOfClearBits=ntdll.RtlNumberOfClearBits @1108
  RtlNumberOfSetBits=ntdll.RtlNumberOfSetBits @1109
  RtlOemStringToUnicodeSize=ntdll.RtlOemStringToUnicodeSize @1111
  RtlOemStringToUnicodeString=ntdll.RtlOemStringToUnicodeString @1112
  RtlOemToUnicodeN=ntdll.RtlOemToUnicodeN @1113
  RtlPinAtomInAtomTable=ntdll.RtlPinAtomInAtomTable @1114
  RtlPrefixString=ntdll.RtlPrefixString @1115
  RtlPrefixUnicodeString=ntdll.RtlPrefixUnicodeString @1116
  RtlQueryAtomInAtomTable=ntdll.RtlQueryAtomInAtomTable @1117
  RtlQueryRegistryValues=ntdll.RtlQueryRegistryValues @1118
  RtlQueryTimeZoneInformation=ntdll.RtlQueryTimeZoneInformation @1119
  RtlRaiseException=ntdll.RtlRaiseException @1120
  RtlRandom=ntdll.RtlRandom @1121
  RtlSecondsSince1970ToTime=ntdll.RtlSecondsSince1970ToTime @1127
  RtlSecondsSince1980ToTime=ntdll.RtlSecondsSince1980ToTime @1128
  RtlSelfRelativeToAbsoluteSD=ntdll.RtlSelfRelativeToAbsoluteSD @1130
  RtlSetAllBits=ntdll.RtlSetAllBits @1131
  RtlSetBits=ntdll.RtlSetBits @1133
  RtlSetDaclSecurityDescriptor=ntdll.RtlSetDaclSecurityDescriptor @1134
  RtlSetGroupSecurityDescriptor=ntdll.RtlSetGroupSecurityDescriptor @1135
  RtlSetOwnerSecurityDescriptor=ntdll.RtlSetOwnerSecurityDescriptor @1136
  RtlSetSaclSecurityDescriptor=ntdll.RtlSetSaclSecurityDescriptor @1137
  RtlSetTimeZoneInformation=ntdll.RtlSetTimeZoneInformation @1138
  RtlSizeHeap=ntdll.RtlSizeHeap @1139
  RtlStringFromGUID=ntdll.RtlStringFromGUID @1141
  RtlSubAuthorityCountSid=ntdll.RtlSubAuthorityCountSid @1142
  RtlSubAuthoritySid=ntdll.RtlSubAuthoritySid @1143
  RtlTimeFieldsToTime=ntdll.RtlTimeFieldsToTime @1147
  RtlTimeToElapsedTimeFields=ntdll.RtlTimeToElapsedTimeFields @1148
  RtlTimeToSecondsSince1970=ntdll.RtlTimeToSecondsSince1970 @1149
  RtlTimeToSecondsSince1980=ntdll.RtlTimeToSecondsSince1980 @1150
  RtlTimeToTimeFields=ntdll.RtlTimeToTimeFields @1151
  RtlUnicodeStringToAnsiSize=ntdll.RtlUnicodeStringToAnsiSize @1160
  RtlUnicodeStringToAnsiString=ntdll.RtlUnicodeStringToAnsiString @1161
  RtlUnicodeStringToInteger=ntdll.RtlUnicodeStringToInteger @1163
  RtlUnicodeStringToOemSize=ntdll.RtlUnicodeStringToOemSize @1164
  RtlUnicodeStringToOemString=ntdll.RtlUnicodeStringToOemString @1165
  RtlUnicodeToMultiByteN=ntdll.RtlUnicodeToMultiByteN @1167
  RtlUnicodeToMultiByteSize=ntdll.RtlUnicodeToMultiByteSize @1168
  RtlUnicodeToOemN=ntdll.RtlUnicodeToOemN @1169
  RtlUnwind=ntdll.RtlUnwind @1171
  RtlUnwindEx=ntdll.RtlUnwindEx @1172
  RtlUpcaseUnicodeChar=ntdll.RtlUpcaseUnicodeChar @1173
  RtlUpcaseUnicodeString=ntdll.RtlUpcaseUnicodeString @1174
  RtlUpcaseUnicodeStringToAnsiString=ntdll.RtlUpcaseUnicodeStringToAnsiString @1175
  RtlUpcaseUnicodeStringToCountedOemString=ntdll.RtlUpcaseUnicodeStringToCountedOemString @1176
  RtlUpcaseUnicodeStringToOemString=ntdll.RtlUpcaseUnicodeStringToOemString @1177
  RtlUpcaseUnicodeToMultiByteN=ntdll.RtlUpcaseUnicodeToMultiByteN @1179
  RtlUpcaseUnicodeToOemN=ntdll.RtlUpcaseUnicodeToOemN @1180
  RtlUpperChar=ntdll.RtlUpperChar @1181
  RtlUpperString=ntdll.RtlUpperString @1182
  RtlValidRelativeSecurityDescriptor=ntdll.RtlValidRelativeSecurityDescriptor @1183
  RtlValidSecurityDescriptor=ntdll.RtlValidSecurityDescriptor @1184
  RtlValidSid=ntdll.RtlValidSid @1185
  RtlVerifyVersionInfo=ntdll.RtlVerifyVersionInfo @1186
  RtlWriteRegistryValue=ntdll.RtlWriteRegistryValue @1189
  RtlZeroMemory=ntdll.RtlZeroMemory @1191
  RtlxAnsiStringToUnicodeSize=ntdll.RtlxAnsiStringToUnicodeSize @1192
  RtlxOemStringToUnicodeSize=ntdll.RtlxOemStringToUnicodeSize @1193
  RtlxUnicodeStringToAnsiSize=ntdll.RtlxUnicodeStringToAnsiSize @1194
  RtlxUnicodeStringToOemSize=ntdll.RtlxUnicodeStringToOemSize @1195
  VerSetConditionMask=ntdll.VerSetConditionMask @1248
  ZwAccessCheckAndAuditAlarm=ntdll.ZwAccessCheckAndAuditAlarm @1268 PRIVATE
  ZwAdjustPrivilegesToken=ntdll.ZwAdjustPrivilegesToken @1270 PRIVATE
  ZwAlertThread=ntdll.ZwAlertThread @1271 PRIVATE
  ZwAllocateVirtualMemory=ntdll.ZwAllocateVirtualMemory @1272 PRIVATE
  ZwAssignProcessToJobObject=ntdll.ZwAssignProcessToJobObject @1273 PRIVATE
  ZwCancelIoFile=ntdll.ZwCancelIoFile @1274 PRIVATE
  ZwCancelTimer=ntdll.ZwCancelTimer @1275 PRIVATE
  ZwClearEvent=ntdll.ZwClearEvent @1276 PRIVATE
  ZwClose=ntdll.ZwClose @1277 PRIVATE
  ZwConnectPort=ntdll.ZwConnectPort @1279 PRIVATE
  ZwCreateDirectoryObject=ntdll.ZwCreateDirectoryObject @1280 PRIVATE
  ZwCreateEvent=ntdll.ZwCreateEvent @1281 PRIVATE
  ZwCreateFile=ntdll.ZwCreateFile @1282 PRIVATE
  ZwCreateJobObject=ntdll.ZwCreateJobObject @1283 PRIVATE
  ZwCreateKey=ntdll.ZwCreateKey @1284 PRIVATE
  ZwCreateSection=ntdll.ZwCreateSection @1285 PRIVATE
  ZwCreateSymbolicLinkObject=ntdll.ZwCreateSymbolicLinkObject @1286 PRIVATE
  ZwCreateTimer=ntdll.ZwCreateTimer @1287 PRIVATE
  ZwDeleteFile=ntdll.ZwDeleteFile @1289 PRIVATE
  ZwDeleteKey=ntdll.ZwDeleteKey @1290 PRIVATE
  ZwDeleteValueKey=ntdll.ZwDeleteValueKey @1291 PRIVATE
  ZwDeviceIoControlFile=ntdll.ZwDeviceIoControlFile @1292 PRIVATE
  ZwDisplayString=ntdll.ZwDisplayString @1293 PRIVATE
  ZwDuplicateObject=ntdll.ZwDuplicateObject @1294 PRIVATE
  ZwDuplicateToken=ntdll.ZwDuplicateToken @1295 PRIVATE
  ZwEnumerateKey=ntdll.ZwEnumerateKey @1297 PRIVATE
  ZwEnumerateValueKey=ntdll.ZwEnumerateValueKey @1298 PRIVATE
  ZwFlushInstructionCache=ntdll.ZwFlushInstructionCache @1299 PRIVATE
  ZwFlushKey=ntdll.ZwFlushKey @1300 PRIVATE
  ZwFlushVirtualMemory=ntdll.ZwFlushVirtualMemory @1301 PRIVATE
  ZwFreeVirtualMemory=ntdll.ZwFreeVirtualMemory @1302 PRIVATE
  ZwFsControlFile=ntdll.ZwFsControlFile @1303 PRIVATE
  ZwInitiatePowerAction=ntdll.ZwInitiatePowerAction @1304 PRIVATE
  ZwIsProcessInJob=ntdll.ZwIsProcessInJob @1305 PRIVATE
  ZwLoadDriver @1306
  ZwLoadKey=ntdll.ZwLoadKey @1307 PRIVATE
  ZwMakeTemporaryObject=ntdll.ZwMakeTemporaryObject @1308 PRIVATE
  ZwMapViewOfSection=ntdll.ZwMapViewOfSection @1309 PRIVATE
  ZwNotifyChangeKey=ntdll.ZwNotifyChangeKey @1310 PRIVATE
  ZwOpenDirectoryObject=ntdll.ZwOpenDirectoryObject @1311 PRIVATE
  ZwOpenEvent=ntdll.ZwOpenEvent @1312 PRIVATE
  ZwOpenFile=ntdll.ZwOpenFile @1313 PRIVATE
  ZwOpenJobObject=ntdll.ZwOpenJobObject @1314 PRIVATE
  ZwOpenKey=ntdll.ZwOpenKey @1315 PRIVATE
  ZwOpenProcess=ntdll.ZwOpenProcess @1316 PRIVATE
  ZwOpenProcessToken=ntdll.ZwOpenProcessToken @1317 PRIVATE
  ZwOpenProcessTokenEx=ntdll.ZwOpenProcessTokenEx @1318 PRIVATE
  ZwOpenSection=ntdll.ZwOpenSection @1319 PRIVATE
  ZwOpenSymbolicLinkObject=ntdll.ZwOpenSymbolicLinkObject @1320 PRIVATE
  ZwOpenThread=ntdll.ZwOpenThread @1321 PRIVATE
  ZwOpenThreadToken=ntdll.ZwOpenThreadToken @1322 PRIVATE
  ZwOpenThreadTokenEx=ntdll.ZwOpenThreadTokenEx @1323 PRIVATE
  ZwOpenTimer=ntdll.ZwOpenTimer @1324 PRIVATE
  ZwPowerInformation=ntdll.ZwPowerInformation @1325 PRIVATE
  ZwPulseEvent=ntdll.ZwPulseEvent @1326 PRIVATE
  ZwQueryDefaultLocale=ntdll.ZwQueryDefaultLocale @1329 PRIVATE
  ZwQueryDefaultUILanguage=ntdll.ZwQueryDefaultUILanguage @1330 PRIVATE
  ZwQueryDirectoryFile=ntdll.ZwQueryDirectoryFile @1331 PRIVATE
  ZwQueryDirectoryObject=ntdll.ZwQueryDirectoryObject @1332 PRIVATE
  ZwQueryEaFile=ntdll.ZwQueryEaFile @1333 PRIVATE
  ZwQueryFullAttributesFile=ntdll.ZwQueryFullAttributesFile @1334 PRIVATE
  ZwQueryInformationFile=ntdll.ZwQueryInformationFile @1335 PRIVATE
  ZwQueryInformationJobObject=ntdll.ZwQueryInformationJobObject @1336 PRIVATE
  ZwQueryInformationProcess=ntdll.ZwQueryInformationProcess @1337 PRIVATE
  ZwQueryInformationThread=ntdll.ZwQueryInformationThread @1338 PRIVATE
  ZwQueryInformationToken=ntdll.ZwQueryInformationToken @1339 PRIVATE
  ZwQueryInstallUILanguage=ntdll.ZwQueryInstallUILanguage @1340 PRIVATE
  ZwQueryKey=ntdll.ZwQueryKey @1341 PRIVATE
  ZwQueryObject=ntdll.ZwQueryObject @1342 PRIVATE
  ZwQuerySection=ntdll.ZwQuerySection @1343 PRIVATE
  ZwQuerySecurityObject=ntdll.ZwQuerySecurityObject @1344 PRIVATE
  ZwQuerySymbolicLinkObject=ntdll.ZwQuerySymbolicLinkObject @1345 PRIVATE
  ZwQuerySystemInformation=ntdll.ZwQuerySystemInformation @1346 PRIVATE
  ZwQueryValueKey=ntdll.ZwQueryValueKey @1347 PRIVATE
  ZwQueryVolumeInformationFile=ntdll.ZwQueryVolumeInformationFile @1348 PRIVATE
  ZwReadFile=ntdll.ZwReadFile @1349 PRIVATE
  ZwReplaceKey=ntdll.ZwReplaceKey @1350 PRIVATE
  ZwRequestWaitReplyPort=ntdll.ZwRequestWaitReplyPort @1351 PRIVATE
  ZwResetEvent=ntdll.ZwResetEvent @1352 PRIVATE
  ZwRestoreKey=ntdll.ZwRestoreKey @1353 PRIVATE
  ZwSaveKey=ntdll.ZwSaveKey @1354 PRIVATE
  ZwSetDefaultLocale=ntdll.ZwSetDefaultLocale @1358 PRIVATE
  ZwSetDefaultUILanguage=ntdll.ZwSetDefaultUILanguage @1359 PRIVATE
  ZwSetEaFile=ntdll.ZwSetEaFile @1360 PRIVATE
  ZwSetEvent=ntdll.ZwSetEvent @1361 PRIVATE
  ZwSetInformationFile=ntdll.ZwSetInformationFile @1362 PRIVATE
  ZwSetInformationJobObject=ntdll.ZwSetInformationJobObject @1363 PRIVATE
  ZwSetInformationObject=ntdll.ZwSetInformationObject @1364 PRIVATE
  ZwSetInformationProcess=ntdll.ZwSetInformationProcess @1365 PRIVATE
  ZwSetInformationThread=ntdll.ZwSetInformationThread @1366 PRIVATE
  ZwSetSecurityObject=ntdll.ZwSetSecurityObject @1367 PRIVATE
  ZwSetSystemInformation=ntdll.ZwSetSystemInformation @1368 PRIVATE
  ZwSetSystemTime=ntdll.ZwSetSystemTime @1369 PRIVATE
  ZwSetTimer=ntdll.ZwSetTimer @1370 PRIVATE
  ZwSetValueKey=ntdll.ZwSetValueKey @1371 PRIVATE
  ZwSetVolumeInformationFile=ntdll.ZwSetVolumeInformationFile @1372 PRIVATE
  ZwTerminateJobObject=ntdll.ZwTerminateJobObject @1373 PRIVATE
  ZwTerminateProcess=ntdll.ZwTerminateProcess @1374 PRIVATE
  ZwUnloadDriver @1376
  ZwUnloadKey=ntdll.ZwUnloadKey @1377 PRIVATE
  ZwUnmapViewOfSection=ntdll.ZwUnmapViewOfSection @1378 PRIVATE
  ZwWaitForMultipleObjects=ntdll.ZwWaitForMultipleObjects @1379 PRIVATE
  ZwWaitForSingleObject=ntdll.ZwWaitForSingleObject @1380 PRIVATE
  ZwWriteFile=ntdll.ZwWriteFile @1381 PRIVATE
  ZwYieldExecution=ntdll.ZwYieldExecution @1382 PRIVATE
  _abnormal_termination=msvcrt._abnormal_termination @1383 PRIVATE
  _itoa=msvcrt._itoa @1386 PRIVATE
  _itow=msvcrt._itow @1387 PRIVATE
  _local_unwind=msvcrt._local_unwind @1388 PRIVATE
  _purecall=msvcrt._purecall @1389 PRIVATE
  _snprintf=msvcrt._snprintf @1390 PRIVATE
  _snwprintf=msvcrt._snwprintf @1391 PRIVATE
  _stricmp=msvcrt._stricmp @1392 PRIVATE
  _strlwr=msvcrt._strlwr @1393 PRIVATE
  _strnicmp=msvcrt._strnicmp @1394 PRIVATE
  _strnset=msvcrt._strnset @1395 PRIVATE
  _strrev=msvcrt._strrev @1396 PRIVATE
  _strset=msvcrt._strset @1397 PRIVATE
  _strupr=msvcrt._strupr @1398 PRIVATE
  _vsnprintf=msvcrt._vsnprintf @1399 PRIVATE
  _vsnwprintf=msvcrt._vsnwprintf @1400 PRIVATE
  _wcsicmp=msvcrt._wcsicmp @1401 PRIVATE
  _wcslwr=msvcrt._wcslwr @1402 PRIVATE
  _wcsnicmp=msvcrt._wcsnicmp @1403 PRIVATE
  _wcsnset=msvcrt._wcsnset @1404 PRIVATE
  _wcsrev=msvcrt._wcsrev @1405 PRIVATE
  _wcsupr=msvcrt._wcsupr @1406 PRIVATE
  atoi=msvcrt.atoi @1407 PRIVATE
  atol=msvcrt.atol @1408 PRIVATE
  isdigit=msvcrt.isdigit @1409 PRIVATE
  islower=msvcrt.islower @1410 PRIVATE
  isprint=msvcrt.isprint @1411 PRIVATE
  isspace=msvcrt.isspace @1412 PRIVATE
  isupper=msvcrt.isupper @1413 PRIVATE
  isxdigit=msvcrt.isxdigit @1414 PRIVATE
  mbstowcs=msvcrt.mbstowcs @1415 PRIVATE
  mbtowc=msvcrt.mbtowc @1416 PRIVATE
  memchr=msvcrt.memchr @1417 PRIVATE
  memcpy=msvcrt.memcpy @1418 PRIVATE
  memmove=msvcrt.memmove @1419 PRIVATE
  memset=msvcrt.memset @1420 PRIVATE
  qsort=msvcrt.qsort @1421 PRIVATE
  rand=msvcrt.rand @1422 PRIVATE
  sprintf=msvcrt.sprintf @1423 PRIVATE
  srand=msvcrt.srand @1424 PRIVATE
  strcat=msvcrt.strcat @1425 PRIVATE
  strchr=msvcrt.strchr @1426 PRIVATE
  strcmp=msvcrt.strcmp @1427 PRIVATE
  strcpy=msvcrt.strcpy @1428 PRIVATE
  strlen=msvcrt.strlen @1429 PRIVATE
  strncat=msvcrt.strncat @1430 PRIVATE
  strncmp=msvcrt.strncmp @1431 PRIVATE
  strncpy=msvcrt.strncpy @1432 PRIVATE
  strrchr=msvcrt.strrchr @1433 PRIVATE
  strspn=msvcrt.strspn @1434 PRIVATE
  strstr=msvcrt.strstr @1435 PRIVATE
  swprintf=msvcrt.swprintf @1436 PRIVATE
  tolower=msvcrt.tolower @1437 PRIVATE
  toupper=msvcrt.toupper @1438 PRIVATE
  towlower=msvcrt.towlower @1439 PRIVATE
  towupper=msvcrt.towupper @1440 PRIVATE
  vDbgPrintEx=ntdll.vDbgPrintEx @1441
  vDbgPrintExWithPrefix=ntdll.vDbgPrintExWithPrefix @1442
  vsprintf=msvcrt.vsprintf @1443 PRIVATE
  wcscat=msvcrt.wcscat @1444 PRIVATE
  wcschr=msvcrt.wcschr @1445 PRIVATE
  wcscmp=msvcrt.wcscmp @1446 PRIVATE
  wcscpy=msvcrt.wcscpy @1447 PRIVATE
  wcscspn=msvcrt.wcscspn @1448 PRIVATE
  wcslen=msvcrt.wcslen @1449 PRIVATE
  wcsncat=msvcrt.wcsncat @1450 PRIVATE
  wcsncmp=msvcrt.wcsncmp @1451 PRIVATE
  wcsncpy=msvcrt.wcsncpy @1452 PRIVATE
  wcsrchr=msvcrt.wcsrchr @1453 PRIVATE
  wcsspn=msvcrt.wcsspn @1454 PRIVATE
  wcsstr=msvcrt.wcsstr @1455 PRIVATE
  wcstombs=msvcrt.wcstombs @1456 PRIVATE
  wctomb=msvcrt.wctomb @1457 PRIVATE
  wine_ntoskrnl_main_loop @1458