ホーム › System.Diagnostics.Etw › EventWriteString
EventWriteString
関数文字列データを含むETWイベントを記録する。
シグネチャ
// ADVAPI32.dll
#include <windows.h>
DWORD EventWriteString(
REGHANDLE RegHandle,
BYTE Level,
ULONGLONG Keyword,
LPCWSTR String
);パラメーター
| 名前 | 型 | 方向 |
|---|---|---|
| RegHandle | REGHANDLE | in |
| Level | BYTE | in |
| Keyword | ULONGLONG | in |
| String | LPCWSTR | in |
戻り値の型: DWORD
各言語での呼び出し定義
// ADVAPI32.dll
#include <windows.h>
DWORD EventWriteString(
REGHANDLE RegHandle,
BYTE Level,
ULONGLONG Keyword,
LPCWSTR String
);[DllImport("ADVAPI32.dll", ExactSpelling = true)]
static extern uint EventWriteString(
long RegHandle, // REGHANDLE
byte Level, // BYTE
ulong Keyword, // ULONGLONG
[MarshalAs(UnmanagedType.LPWStr)] string String // LPCWSTR
);<DllImport("ADVAPI32.dll", ExactSpelling:=True)>
Public Shared Function EventWriteString(
RegHandle As Long, ' REGHANDLE
Level As Byte, ' BYTE
Keyword As ULong, ' ULONGLONG
<MarshalAs(UnmanagedType.LPWStr)> [String] As String ' LPCWSTR
) As UInteger
End Function' RegHandle : REGHANDLE
' Level : BYTE
' Keyword : ULONGLONG
' String : LPCWSTR
Declare PtrSafe Function EventWriteString Lib "advapi32" ( _
ByVal RegHandle As LongLong, _
ByVal Level As Byte, _
ByVal Keyword As LongLong, _
ByVal String As LongPtr) As Long
' VBA7前提(PtrSafe)。32bit Office では LongPtr→Long。Integer=16bit / Long=32bit / LongLong=64bit。import ctypes
from ctypes import wintypes
EventWriteString = ctypes.windll.advapi32.EventWriteString
EventWriteString.restype = wintypes.DWORD
EventWriteString.argtypes = [
ctypes.c_longlong, # RegHandle : REGHANDLE
ctypes.c_ubyte, # Level : BYTE
ctypes.c_ulonglong, # Keyword : ULONGLONG
wintypes.LPCWSTR, # String : LPCWSTR
]require 'fiddle'
require 'fiddle/import'
lib = Fiddle.dlopen('ADVAPI32.dll')
EventWriteString = Fiddle::Function.new(
lib['EventWriteString'],
[
Fiddle::TYPE_LONG_LONG, # RegHandle : REGHANDLE
-Fiddle::TYPE_CHAR, # Level : BYTE
-Fiddle::TYPE_LONG_LONG, # Keyword : ULONGLONG
Fiddle::TYPE_VOIDP, # String : LPCWSTR
],
-Fiddle::TYPE_INT)#[link(name = "advapi32")]
extern "system" {
fn EventWriteString(
RegHandle: i64, // REGHANDLE
Level: u8, // BYTE
Keyword: u64, // ULONGLONG
String: *const u16 // LPCWSTR
) -> u32;
}
// crates: windows-sys provides ready-made bindings for this API.$sig = @"
[DllImport("ADVAPI32.dll")]
public static extern uint EventWriteString(long RegHandle, byte Level, ulong Keyword, [MarshalAs(UnmanagedType.LPWStr)] string String);
"@
$api = Add-Type -MemberDefinition $sig -Name 'ADVAPI32_EventWriteString' -Namespace Win32 -PassThru
# $api::EventWriteString(RegHandle, Level, Keyword, String)#uselib "ADVAPI32.dll"
#func global EventWriteString "EventWriteString" sptr, sptr, sptr, sptr
; EventWriteString RegHandle, Level, Keyword, String ; 戻り値は stat
; RegHandle : REGHANDLE -> "sptr"
; Level : BYTE -> "sptr"
; Keyword : ULONGLONG -> "sptr"
; String : LPCWSTR -> "sptr"
; ※HSP3.7は int64 引数(64bit値渡し)に非対応です。
; ※HSP3.7は #func のため戻り値はシステム変数 stat に格納されます。#uselib "ADVAPI32.dll"
#cfunc global EventWriteString "EventWriteString" int64, int, int64, wstr
; res = EventWriteString(RegHandle, Level, Keyword, String)
; RegHandle : REGHANDLE -> "int64"
; Level : BYTE -> "int"
; Keyword : ULONGLONG -> "int64"
; String : LPCWSTR -> "wstr"
; ※int64 引数の DLL 値渡しは x64 ランタイム(hsp3_64)のみ対応(x86 は未対応)。; DWORD EventWriteString(REGHANDLE RegHandle, BYTE Level, ULONGLONG Keyword, LPCWSTR String)
#uselib "ADVAPI32.dll"
#cfunc global EventWriteString "EventWriteString" int64, int, int64, wstr
; res = EventWriteString(RegHandle, Level, Keyword, String)
; RegHandle : REGHANDLE -> "int64"
; Level : BYTE -> "int"
; Keyword : ULONGLONG -> "int64"
; String : LPCWSTR -> "wstr"import (
"golang.org/x/sys/windows"
"unsafe"
)
var (
advapi32 = windows.NewLazySystemDLL("ADVAPI32.dll")
procEventWriteString = advapi32.NewProc("EventWriteString")
)
// RegHandle (REGHANDLE), Level (BYTE), Keyword (ULONGLONG), String (LPCWSTR)
r1, _, err := procEventWriteString.Call(
uintptr(RegHandle),
uintptr(Level),
uintptr(Keyword),
uintptr(unsafe.Pointer(windows.StringToUTF16Ptr(String))),
)
_ = err // syscall.Errno (valid when the call sets last-error)
_ = r1 // DWORDfunction EventWriteString(
RegHandle: Int64; // REGHANDLE
Level: Byte; // BYTE
Keyword: UInt64; // ULONGLONG
String: PWideChar // LPCWSTR
): DWORD; stdcall;
external 'ADVAPI32.dll' name 'EventWriteString';result := DllCall("ADVAPI32\EventWriteString"
, "Int64", RegHandle ; REGHANDLE
, "UChar", Level ; BYTE
, "Int64", Keyword ; ULONGLONG
, "WStr", String ; LPCWSTR
, "UInt") ; return: DWORD●EventWriteString(RegHandle, Level, Keyword, String) = DLL("ADVAPI32.dll", "dword EventWriteString(int64, byte, qword, char*)")
# 呼び出し: EventWriteString(RegHandle, Level, Keyword, String)
# RegHandle : REGHANDLE -> "int64"
# Level : BYTE -> "byte"
# Keyword : ULONGLONG -> "qword"
# String : LPCWSTR -> "char*"
# なでしこ1は32bit・ANSI(Shift_JIS)。文字列=char*(ANSI)、ポインタ/ハンドル=void*(4byte)。