Package vtrace :: Package tools :: Module win32stealth :: Class StealthZwClose
[hide private]
[frames] | no frames]

Class StealthZwClose

source code

When called with a invalid handle (-1) the malware will simply return so an exception is not thrown when a debugger is attached.

Instance Methods [hide private]
__init__(self, sym) source code
notify(self, event, trace) source code

Inherited from StealthBreak: disablePatch, enablePatch, getName, isPatched

Method Details [hide private]

__init__(self, sym)

source code 
Overrides: StealthBreak.__init__

notify(self, event, trace)

source code 
Overrides: StealthBreak.notify