FileObject

final class ntoseye.FileObject

Subclass of BaseRecord.

A _FILE_OBJECT (!fileobj).

property address: int
property current_byte_offset: Diagnostic[int]
property delete_access: Diagnostic[bool]
property delete_pending: Diagnostic[bool]
property device_name: Diagnostic[str | None]

The object name of the device, or None for an unnamed device.

property device_object: Diagnostic[int]
property device_type: Diagnostic[int]
property file_name: Diagnostic[str]
property file_type: Diagnostic[int]

Type, which is IO_TYPE_FILE (5) for a valid file object.

property final_status: Diagnostic[int]

The NTSTATUS that the file object completed with.

property flags: Diagnostic[int]
property fs_context: Diagnostic[int]

The FsContext of the file system (its FCB).

property fs_context2: Diagnostic[int]

The FsContext2 of the file system (its CCB).

property lock_operation: Diagnostic[bool]
property private_cache_map: Diagnostic[int]
property read_access: Diagnostic[bool]
property related_file_object: Diagnostic[int]
property section_object_pointer: Diagnostic[int]
property shared_delete: Diagnostic[bool]
property shared_read: Diagnostic[bool]
property shared_write: Diagnostic[bool]
property size: Diagnostic[int]
property write_access: Diagnostic[bool]