当前位置: 首页 > news >正文

KiLockDispatcherDatabase函数分析和KeAcquireQueuedSpinLockRaiseToSynch函数分析和全局变量nt!KiDispatcherLock的关系

KiLockDispatcherDatabase函数分析和KeAcquireQueuedSpinLockRaiseToSynch函数分析和全局变量nt!KiDispatcherLock的关系

第一部分:
#if defined(NT_UP)

#if defined(_X86_)

#define KiLockDispatcherDatabase(OldIrql) \
*(OldIrql) = KeRaiseIrqlToDpcLevel()

#else

#define KiLockDispatcherDatabase(OldIrql) \
*(OldIrql) = KeRaiseIrqlToSynchLevel()

#endif

#else // NT_UP

#define KiLockDispatcherDatabase(OldIrql) \
*(OldIrql) = KeAcquireQueuedSpinLockRaiseToSynch(LockQueueDispatcherLock)

#endif // NT_UP

KIRQL
FASTCALL
KeAcquireQueuedSpinLockRaiseToSynch (
IN KSPIN_LOCK_QUEUE_NUMBER Number
)
{
KIRQL OldIrql;

OldIrql = KfRaiseIrql(SYNCH_LEVEL);

#if !defined(NT_UP)

HalpAcquireQueuedSpinLock(&(KeGetCurrentPrcb()->LockQueue[Number]));

#endif

return OldIrql;
}

第二部分:


typedef enum _KSPIN_LOCK_QUEUE_NUMBER {
LockQueueDispatcherLock, 0
LockQueueUnusedSpare1, 1
LockQueuePfnLock, 2
LockQueueSystemSpaceLock,
LockQueueVacbLock,
LockQueueMasterLock,
LockQueueNonPagedPoolLock,
LockQueueIoCancelLock,
LockQueueWorkQueueLock,
LockQueueIoVpbLock,
LockQueueIoDatabaseLock,
LockQueueIoCompletionLock,
LockQueueNtfsStructLock,
LockQueueAfdWorkQueueLock,
LockQueueBcbLock,
LockQueueMmNonPagedPoolLock,
LockQueueMaximumLock 15
} KSPIN_LOCK_QUEUE_NUMBER, *PKSPIN_LOCK_QUEUE_NUMBER;

1: kd> dx -id 0,0,8954e020 -r1 (*((ntkrnlmp!_KSPIN_LOCK_QUEUE (*)[16])0xf7737538))
(*((ntkrnlmp!_KSPIN_LOCK_QUEUE (*)[16])0xf7737538)) [Type: _KSPIN_LOCK_QUEUE [16]]
[0] [Type: _KSPIN_LOCK_QUEUE]
[1] [Type: _KSPIN_LOCK_QUEUE]
[2] [Type: _KSPIN_LOCK_QUEUE]
[3] [Type: _KSPIN_LOCK_QUEUE]
[4] [Type: _KSPIN_LOCK_QUEUE]
[5] [Type: _KSPIN_LOCK_QUEUE]
[6] [Type: _KSPIN_LOCK_QUEUE]
[7] [Type: _KSPIN_LOCK_QUEUE]
[8] [Type: _KSPIN_LOCK_QUEUE]
[9] [Type: _KSPIN_LOCK_QUEUE]
[10] [Type: _KSPIN_LOCK_QUEUE]
[11] [Type: _KSPIN_LOCK_QUEUE]
[12] [Type: _KSPIN_LOCK_QUEUE]
[13] [Type: _KSPIN_LOCK_QUEUE]
[14] [Type: _KSPIN_LOCK_QUEUE]
[15] [Type: _KSPIN_LOCK_QUEUE]
1: kd> dx -id 0,0,8954e020 -r1 (*((ntkrnlmp!_KSPIN_LOCK_QUEUE *)0xf7737538))
(*((ntkrnlmp!_KSPIN_LOCK_QUEUE *)0xf7737538)) [Type: _KSPIN_LOCK_QUEUE]
[+0x000] Next : 0x0 [Type: _KSPIN_LOCK_QUEUE *]
[+0x004] Lock : 0x80b16800 : 0x0 [Type: unsigned long *]

1: kd> x nt!KiDispatcherLock
80b16800 nt!KiDispatcherLock = 0

第三部分:

F:\srv03rtm>grep ">LockQueue" -nri F:\srv03rtm\base\ntos\ke |grep -v "inary"
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:228: KxAcquireQueuedSpinLock(&KeGetCurrentPrcb()->LockQueue[Number]);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:266: KxAcquireQueuedSpinLock(&KeGetCurrentPrcb()->LockQueue[Number]);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:341: if (KxTryToAcquireQueuedSpinLock(&KeGetCurrentPrcb()->LockQueue[Number]) == FALSE) {
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:387: if (KxTryToAcquireQueuedSpinLock(&KeGetCurrentPrcb()->LockQueue[Number]) == FALSE) {
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:463: KxReleaseQueuedSpinLock(&KeGetCurrentPrcb()->LockQueue[Number]);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:534: LockHandle->LockQueue.Lock = SpinLock;
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:535: LockHandle->LockQueue.Next = NULL;
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:536: KxAcquireQueuedSpinLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:573: LockHandle->LockQueue.Lock = SpinLock;
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:574: LockHandle->LockQueue.Next = NULL;
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:575: KxAcquireQueuedSpinLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:611: LockHandle->LockQueue.Lock = SpinLock;
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:612: LockHandle->LockQueue.Next = NULL;
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:613: KxAcquireQueuedSpinLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:645: KxReleaseQueuedSpinLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/amd64/queuelock.c:677: KxReleaseQueuedSpinLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/i386/misc.c:1037: LockNumber = QueuedLock - KeGetCurrentPrcb()->LockQueue;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1141: KiAcquireQueuedLock(&KeGetCurrentPrcb()->LockQueue[Number]);
F:\srv03rtm\base\ntos\ke/i386/misc.c:1154: KiAcquireQueuedLock(&KeGetCurrentPrcb()->LockQueue[Number]);
F:\srv03rtm\base\ntos\ke/i386/misc.c:1175: QueuedLock = &KeGetCurrentPrcb()->LockQueue[Number];
F:\srv03rtm\base\ntos\ke/i386/misc.c:1209: KiReleaseQueuedLock(&KeGetCurrentPrcb()->LockQueue[Number]);
F:\srv03rtm\base\ntos\ke/i386/misc.c:1278: LockHandle->LockQueue.Next = NULL;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1279: LockHandle->LockQueue.Lock = SpinLock;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1280: KiAcquireQueuedLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/i386/misc.c:1289: KiReleaseQueuedLock(&LockHandle->LockQueue);
F:\srv03rtm\base\ntos\ke/i386/misc.c:1330: LockNumber = QueuedLock - Prcb->LockQueue;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1351: LockNumber = QueuedLock - Prcb->LockQueue;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1442: KeGetCurrentPrcb()->LockQueue;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1497: KeGetCurrentPrcb()->LockQueue;
F:\srv03rtm\base\ntos\ke/i386/misc.c:1513: Waiters = KiQueuedLockDepth(&KeGetCurrentPrcb()->LockQueue[LockNumber]);
F:\srv03rtm\base\ntos\ke/i386/spinlock.asm:933: push eax ; save &PRCB->LockQueue[Number]
F:\srv03rtm\base\ntos\ke/kiinit.c:208: Prcb->LockQueue[LockQueueDispatcherLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:209: Prcb->LockQueue[LockQueueDispatcherLock].Lock = &KiDispatcherLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:211: Prcb->LockQueue[LockQueueUnusedSpare1].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:212: Prcb->LockQueue[LockQueueUnusedSpare1].Lock = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:214: Prcb->LockQueue[LockQueuePfnLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:215: Prcb->LockQueue[LockQueuePfnLock].Lock = &MmPfnLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:217: Prcb->LockQueue[LockQueueSystemSpaceLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:218: Prcb->LockQueue[LockQueueSystemSpaceLock].Lock = &MmSystemSpaceLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:220: Prcb->LockQueue[LockQueueBcbLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:221: Prcb->LockQueue[LockQueueBcbLock].Lock = &CcBcbSpinLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:223: Prcb->LockQueue[LockQueueMasterLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:224: Prcb->LockQueue[LockQueueMasterLock].Lock = &CcMasterSpinLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:226: Prcb->LockQueue[LockQueueVacbLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:227: Prcb->LockQueue[LockQueueVacbLock].Lock = &CcVacbSpinLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:229: Prcb->LockQueue[LockQueueWorkQueueLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:230: Prcb->LockQueue[LockQueueWorkQueueLock].Lock = &CcWorkQueueSpinLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:232: Prcb->LockQueue[LockQueueNonPagedPoolLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:233: Prcb->LockQueue[LockQueueNonPagedPoolLock].Lock = &NonPagedPoolLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:235: Prcb->LockQueue[LockQueueMmNonPagedPoolLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:236: Prcb->LockQueue[LockQueueMmNonPagedPoolLock].Lock = &MmNonPagedPoolLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:238: Prcb->LockQueue[LockQueueIoCancelLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:239: Prcb->LockQueue[LockQueueIoCancelLock].Lock = &IopCancelSpinLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:241: Prcb->LockQueue[LockQueueIoVpbLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:242: Prcb->LockQueue[LockQueueIoVpbLock].Lock = &IopVpbSpinLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:244: Prcb->LockQueue[LockQueueIoDatabaseLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:245: Prcb->LockQueue[LockQueueIoDatabaseLock].Lock = &IopDatabaseLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:247: Prcb->LockQueue[LockQueueIoCompletionLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:248: Prcb->LockQueue[LockQueueIoCompletionLock].Lock = &IopCompletionLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:250: Prcb->LockQueue[LockQueueNtfsStructLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:251: Prcb->LockQueue[LockQueueNtfsStructLock].Lock = &NtfsStructLock;
F:\srv03rtm\base\ntos\ke/kiinit.c:253: Prcb->LockQueue[LockQueueAfdWorkQueueLock].Next = NULL;
F:\srv03rtm\base\ntos\ke/kiinit.c:254: Prcb->LockQueue[LockQueueAfdWorkQueueLock].Lock = &AfdWorkQueueSpinLock;

F:\srv03rtm>

F:\srv03rtm\base\ntos\ke/kiinit.c:215: Prcb->LockQueue[LockQueuePfnLock].Lock = &MmPfnLock;


第四部分:

1: kd> dx -id 0,0,8954e020 -r1 ((ntkrnlmp!_KPRCB *)0xf7737120)
((ntkrnlmp!_KPRCB *)0xf7737120) : 0xf7737120 [Type: _KPRCB *]
[+0x000] MinorVersion : 0x1 [Type: unsigned short]
[+0x002] MajorVersion : 0x1 [Type: unsigned short]
[+0x004] CurrentThread : 0x89804020 [Type: _KTHREAD *]
[+0x008] NextThread : 0x0 [Type: _KTHREAD *]
[+0x00c] IdleThread : 0xf7739fa0 [Type: _KTHREAD *]
[+0x010] Number : 1 [Type: char]
[+0x011] Reserved : 0 [Type: char]
[+0x012] BuildType : 0x1 [Type: unsigned short]
[+0x014] SetMember : 0x2 [Type: unsigned long]
[+0x018] CpuType : 6 [Type: char]
[+0x019] CpuID : 1 [Type: char]
[+0x01a] CpuStep : 0x503 [Type: unsigned short]
[+0x01c] ProcessorState [Type: _KPROCESSOR_STATE]
[+0x33c] KernelReserved [Type: unsigned long [16]]
[+0x37c] HalReserved [Type: unsigned long [16]]
[+0x3bc] PrcbPad0 [Type: unsigned char [92]]
[+0x418] LockQueue [Type: _KSPIN_LOCK_QUEUE [16]]


1: kd> dx -id 0,0,8954e020 -r1 (*((ntkrnlmp!_KSPIN_LOCK_QUEUE (*)[16])0xf7737538))


[2] [Type: _KSPIN_LOCK_QUEUE]


1: kd> dx -id 0,0,8954e020 -r1 (*((ntkrnlmp!_KSPIN_LOCK_QUEUE *)0xf7737548))
(*((ntkrnlmp!_KSPIN_LOCK_QUEUE *)0xf7737548)) [Type: _KSPIN_LOCK_QUEUE]
[+0x000] Next : 0x0 [Type: _KSPIN_LOCK_QUEUE *]
[+0x004] Lock : 0x80b16a80 : 0x0 [Type: unsigned long *]

1: kd> x nt!MmPfnLock
80b16a80 nt!MmPfnLock = 0

typedef enum _KSPIN_LOCK_QUEUE_NUMBER {
LockQueueDispatcherLock, 0
LockQueueUnusedSpare1, 1
LockQueuePfnLock, 2
LockQueueSystemSpaceLock,
LockQueueVacbLock,
LockQueueMasterLock,
LockQueueNonPagedPoolLock,
LockQueueIoCancelLock,
LockQueueWorkQueueLock,
LockQueueIoVpbLock,
LockQueueIoDatabaseLock,
LockQueueIoCompletionLock,
LockQueueNtfsStructLock,
LockQueueAfdWorkQueueLock,
LockQueueBcbLock,
LockQueueMmNonPagedPoolLock,
LockQueueMaximumLock 15
} KSPIN_LOCK_QUEUE_NUMBER, *PKSPIN_LOCK_QUEUE_NUMBER;

http://www.cnnetsun.cn/news/140028.html

相关文章:

  • vue和springboot框架开发的协同过滤算法的电影推荐系统 电影评价管理系统_ 影评解说系统z9p6gctw
  • vscode 连接失败
  • 【Linux系统】初探虚拟地址空间
  • vue和springboot框架开发的小程序 健身服务与轻食间平台系统健身减肥系统_xj840td0
  • vue和springboot框架开发的小程序儿童疫苗接种预约医疗提醒系统_5dq9226p
  • 【记录】Rust|Rust开发相关的7个VSCode插件的介绍和推荐指数(2025年)
  • C++小程序编写系列(2)
  • python-flask-django公司企业员工出差报销管理系统_04446nsn
  • Glyph2D 同一个图形根据点云的输入产生不同位置的输出
  • Lombok 注解:简化 Java 代码
  • 别让大数据“全表扫描”掏空你:数据分区策略与分区裁剪的实战心经
  • (转载)真正的缘分,“推背感”都跟强
  • Hadoop生态下的数据预处理:MapReduce实战案例解析
  • 2025 年 CTF 零基础入门全攻略!新手必藏!这种实战网络对抗机会千万别错过!
  • 新手也能轻松建站!VanBlog+cpolar让博客创作和分享更简单
  • vue导出excel文件
  • 基于STM32的自动售货机控制系统设计
  • 液压挖掘机回转能量回收系统设计与仿真
  • android 媒体之 MediaSession
  • 校园网络规划
  • 护眼灯已足够优秀,为何仍需眼调节训练灯?答案藏在近视防控里
  • Visual Studio中的多态
  • MindSpore硬核实战:彻底搞懂自动混合精度(AMP)与函数式训练
  • Java异常处理详解。零基础小白到精通,收藏这篇就够了
  • 基于深度学习YOLOv12的犬种识别检测系统(YOLOv12+YOLO数据集+UI界面+登录注册界面+Python项目源码+模型)
  • 基于深度学习YOLOv11的犬种识别检测系统(YOLOv11+YOLO数据集+UI界面+登录注册界面+Python项目源码+模型)
  • [插电式混合动力车辆][交替方向乘子法(ADMM)结合CVX]插电式混合动力车辆的能源管理:基于凸优化算法用于模型预测控制MPC研究附Matlab代码
  • 【别花冤枉钱】学生党专享!2025年把AI率90%降到10%的“低成本”组合拳(含免费/付费工具避坑指南)
  • 前端Vue制作日历插件FullCalendar,零基础入门到精通,收藏这篇就够了
  • 基于MPC算法的P2构型混合动力汽车能量管理优化策略