HandleTable

final class ntoseye.HandleTable

Subclass of BaseRecord.

The handle table of a process (!handle).

property advertised_handles: int

The handle count that the table reports.

property entries: list[HandleEntry]
property process: ProcessIdentity

The process that owns the table.

property scanned_handles: int
property skipped_entries: int

The number of entries that ntoseye could not read.

property table: int

The _HANDLE_TABLE.

property table_level: int

The level of the table (0-2), which is the number of pointer levels before the entries.

property truncated: bool

Whether the enumeration stopped at its limit.