WdfHandle

final class ntoseye.WdfHandle

Subclass of BaseRecord.

A WDF handle and the object it names (!wdfkd.wdfhandle).

property address: int

The FxObject.

property contexts: list[WdfContext]
property contexts_stopped: str | None

Why the walk of the context header chain stopped before a null NextHeader. None if the walk got to a null NextHeader.

property driver: str | None

The owning driver’s name, when it has one.

property flag_names: list[str]

The FXOBJECT_FLAGS set in flags.

property flags: int

m_ObjectFlags.

property globals: int

The owning driver’s _FX_DRIVER_GLOBALS.

property handle: int
property object_size: int

m_ObjectSize: the size of the object and its extra bytes.

property offset: int | None

For an offset handle, the WDFOBJECT_OFFSET value to subtract from the address that the handle points to.

property parent: WdfObjectRef | None
property refcount: int
property state: WdfState

m_ObjectState (FxObjectState).

property type_name: str

Its FX_OBJECT_TYPES name.

property type_value: int

m_Type.