Min version2003/XP64 SP1
Max version10 TH2
x64 offset
offset:bitpos
Field Name
0x0000struct _UNICODE_STRING
DosPath
0x0010void *
Handle