Win32 API 日本語リファレンス
ホームSystem.Diagnostics.Etw › EventWriteString

EventWriteString

関数
文字列データを含むETWイベントを記録する。
DLLADVAPI32.dll呼出規約winapi対応OSWindows Vista 以降

シグネチャ

// ADVAPI32.dll
#include <windows.h>

DWORD EventWriteString(
    REGHANDLE RegHandle,
    BYTE Level,
    ULONGLONG Keyword,
    LPCWSTR String
);

パラメーター

名前方向
RegHandleREGHANDLEin
LevelBYTEin
KeywordULONGLONGin
StringLPCWSTRin

戻り値の型: DWORD

各言語での呼び出し定義

// ADVAPI32.dll
#include <windows.h>

DWORD EventWriteString(
    REGHANDLE RegHandle,
    BYTE Level,
    ULONGLONG Keyword,
    LPCWSTR String
);
[DllImport("ADVAPI32.dll", ExactSpelling = true)]
static extern uint EventWriteString(
    long RegHandle,   // REGHANDLE
    byte Level,   // BYTE
    ulong Keyword,   // ULONGLONG
    [MarshalAs(UnmanagedType.LPWStr)] string String   // LPCWSTR
);
<DllImport("ADVAPI32.dll", ExactSpelling:=True)>
Public Shared Function EventWriteString(
    RegHandle As Long,   ' REGHANDLE
    Level As Byte,   ' BYTE
    Keyword As ULong,   ' ULONGLONG
    <MarshalAs(UnmanagedType.LPWStr)> [String] As String   ' LPCWSTR
) As UInteger
End Function
' RegHandle : REGHANDLE
' Level : BYTE
' Keyword : ULONGLONG
' String : LPCWSTR
Declare PtrSafe Function EventWriteString Lib "advapi32" ( _
    ByVal RegHandle As LongLong, _
    ByVal Level As Byte, _
    ByVal Keyword As LongLong, _
    ByVal String As LongPtr) As Long
' VBA7前提(PtrSafe)。32bit Office では LongPtr→Long。Integer=16bit / Long=32bit / LongLong=64bit。
import ctypes
from ctypes import wintypes

EventWriteString = ctypes.windll.advapi32.EventWriteString
EventWriteString.restype = wintypes.DWORD
EventWriteString.argtypes = [
    ctypes.c_longlong,  # RegHandle : REGHANDLE
    ctypes.c_ubyte,  # Level : BYTE
    ctypes.c_ulonglong,  # Keyword : ULONGLONG
    wintypes.LPCWSTR,  # String : LPCWSTR
]
require 'fiddle'
require 'fiddle/import'

lib = Fiddle.dlopen('ADVAPI32.dll')
EventWriteString = Fiddle::Function.new(
  lib['EventWriteString'],
  [
    Fiddle::TYPE_LONG_LONG,  # RegHandle : REGHANDLE
    -Fiddle::TYPE_CHAR,  # Level : BYTE
    -Fiddle::TYPE_LONG_LONG,  # Keyword : ULONGLONG
    Fiddle::TYPE_VOIDP,  # String : LPCWSTR
  ],
  -Fiddle::TYPE_INT)
#[link(name = "advapi32")]
extern "system" {
    fn EventWriteString(
        RegHandle: i64,  // REGHANDLE
        Level: u8,  // BYTE
        Keyword: u64,  // ULONGLONG
        String: *const u16  // LPCWSTR
    ) -> u32;
}
// crates: windows-sys provides ready-made bindings for this API.
$sig = @"
[DllImport("ADVAPI32.dll")]
public static extern uint EventWriteString(long RegHandle, byte Level, ulong Keyword, [MarshalAs(UnmanagedType.LPWStr)] string String);
"@
$api = Add-Type -MemberDefinition $sig -Name 'ADVAPI32_EventWriteString' -Namespace Win32 -PassThru
# $api::EventWriteString(RegHandle, Level, Keyword, String)
#uselib "ADVAPI32.dll"
#func global EventWriteString "EventWriteString" sptr, sptr, sptr, sptr
; EventWriteString RegHandle, Level, Keyword, String   ; 戻り値は stat
; RegHandle : REGHANDLE -> "sptr"
; Level : BYTE -> "sptr"
; Keyword : ULONGLONG -> "sptr"
; String : LPCWSTR -> "sptr"
; ※HSP3.7は int64 引数(64bit値渡し)に非対応です。
; ※HSP3.7は #func のため戻り値はシステム変数 stat に格納されます。
#uselib "ADVAPI32.dll"
#cfunc global EventWriteString "EventWriteString" int64, int, int64, wstr
; res = EventWriteString(RegHandle, Level, Keyword, String)
; RegHandle : REGHANDLE -> "int64"
; Level : BYTE -> "int"
; Keyword : ULONGLONG -> "int64"
; String : LPCWSTR -> "wstr"
; ※int64 引数の DLL 値渡しは x64 ランタイム(hsp3_64)のみ対応(x86 は未対応)。
; DWORD EventWriteString(REGHANDLE RegHandle, BYTE Level, ULONGLONG Keyword, LPCWSTR String)
#uselib "ADVAPI32.dll"
#cfunc global EventWriteString "EventWriteString" int64, int, int64, wstr
; res = EventWriteString(RegHandle, Level, Keyword, String)
; RegHandle : REGHANDLE -> "int64"
; Level : BYTE -> "int"
; Keyword : ULONGLONG -> "int64"
; String : LPCWSTR -> "wstr"
import (
	"golang.org/x/sys/windows"
	"unsafe"
)

var (
	advapi32 = windows.NewLazySystemDLL("ADVAPI32.dll")
	procEventWriteString = advapi32.NewProc("EventWriteString")
)

// RegHandle (REGHANDLE), Level (BYTE), Keyword (ULONGLONG), String (LPCWSTR)
r1, _, err := procEventWriteString.Call(
	uintptr(RegHandle),
	uintptr(Level),
	uintptr(Keyword),
	uintptr(unsafe.Pointer(windows.StringToUTF16Ptr(String))),
)
_ = err  // syscall.Errno (valid when the call sets last-error)
_ = r1   // DWORD
function EventWriteString(
  RegHandle: Int64;   // REGHANDLE
  Level: Byte;   // BYTE
  Keyword: UInt64;   // ULONGLONG
  String: PWideChar   // LPCWSTR
): DWORD; stdcall;
  external 'ADVAPI32.dll' name 'EventWriteString';
result := DllCall("ADVAPI32\EventWriteString"
    , "Int64", RegHandle   ; REGHANDLE
    , "UChar", Level   ; BYTE
    , "Int64", Keyword   ; ULONGLONG
    , "WStr", String   ; LPCWSTR
    , "UInt")   ; return: DWORD
●EventWriteString(RegHandle, Level, Keyword, String) = DLL("ADVAPI32.dll", "dword EventWriteString(int64, byte, qword, char*)")
# 呼び出し: EventWriteString(RegHandle, Level, Keyword, String)
# RegHandle : REGHANDLE -> "int64"
# Level : BYTE -> "byte"
# Keyword : ULONGLONG -> "qword"
# String : LPCWSTR -> "char*"
# なでしこ1は32bit・ANSI(Shift_JIS)。文字列=char*(ANSI)、ポインタ/ハンドル=void*(4byte)。