Hi everybody,
Attached please find a drop-in replacement for forensics/x86.py. It's
a complete rewrite of the code using the latest edition of the Intel
Architectures Software Developer's Manual [1]. The manual, now at
revision 031, has changed significantly over the past few years. The
current version has a new (and much simpler) approach for finding
offsets. The result is cleaner code! Hopefully this will be easier to
maintain over the years! I've also added pydoc style documentation for
each function.
Please let me know what you think,
[1]
http://www.intel.com/products/processor/manuals/index.htm
--
Jesse
research(a)jessekornblum.com