kd> u nt!KeSetTimer
nt!KeSetTimer:
fffff800`03ed80a8 4883ec38 sub rsp,38h
fffff800`03ed80ac 4c89442420 mov qword ptr [rsp+20h],r8
fffff800`03ed80b1 4533c9 xor r9d,r9d
fffff800`03ed80b4 4533c0 xor r8d,r8d
[COLOR=
"red"
]fffff800`03ed80b7 e814000000 call nt!KiSetTimerEx (fffff800`03ed80d0)[
/COLOR
]
fffff800`03ed80bc 4883c438 add rsp,38h
fffff800`03ed80c0 c3 ret
fffff800`03ed80c1 90 nop
kd> u nt!KiSetTimerEx l20
nt!KiSetTimerEx:
fffff800`03ed80d0 48895c2408 mov qword ptr [rsp+8],rbx
fffff800`03ed80d5 4889542410 mov qword ptr [rsp+10h],rdx
fffff800`03ed80da 55 push rbp
fffff800`03ed80db 56 push rsi
fffff800`03ed80dc 57 push rdi
fffff800`03ed80dd 4154 push r12
fffff800`03ed80df 4155 push r13
fffff800`03ed80e1 4156 push r14
fffff800`03ed80e3 4157 push r15
fffff800`03ed80e5 4883ec50 sub rsp,50h
[COLOR=
"red"
]fffff800`03ed80e9 488b0518502200 mov rax,qword ptr [nt!KiWaitNever (fffff800`040fd108)]
fffff800`03ed80f0 488b1de9502200 mov rbx,qword ptr [nt!KiWaitAlways (fffff800`040fd1e0)]
fffff800`03ed80f7 4c8bb424b0000000 mov r14,qword ptr [rsp+0B0h]
fffff800`03ed80ff 4933de xor rbx,r14
fffff800`03ed8102 488bf1 mov rsi,rcx[
/COLOR
]
fffff800`03ed8105 450fb6f9 movzx r15d,r9b
[COLOR=
"red"
]fffff800`03ed8109 480fcb bswap rbx[
/COLOR
]
fffff800`03ed810c 418bf8 mov edi,r8d
[COLOR=
"red"
]fffff800`03ed810f 4833d9 xor rbx,rcx
fffff800`03ed8112 8bc8 mov ecx,eax
fffff800`03ed8114 48d3cb ror rbx,cl
fffff800`03ed8117 4833d8 xor rbx,rax[
/COLOR
]
fffff800`03ed811a 450f20c4 mov r12,cr8
fffff800`03ed811e b802000000 mov eax,2
fffff800`03ed8123 440f22c0 mov cr8,rax
fffff800`03ed8127 65488b2c2520000000 mov rbp,qword ptr gs:[20h]
fffff800`03ed8130 33d2 xor edx,edx
fffff800`03ed8132 488bce mov rcx,rsi
fffff800`03ed8135 e88ae6ffff call nt!KiCancelTimer (fffff800`03ed67c4)
[COLOR=
"red"
]fffff800`03ed813a 48895e30 mov qword ptr [rsi+30h],rbx[
/COLOR
]
fffff800`03ed813e 488b9c2498000000 mov rbx,qword ptr [rsp+98h]
fffff800`03ed8146 440fb6e8 movzx r13d,al