From 3790ca03e1a1acb8967614e758828562e1d472f8 Mon Sep 17 00:00:00 2001 From: Mike Auty Date: Tue, 7 May 2013 23:44:31 +0100 Subject: [PATCH] Add in some TODOs, and swap to the File layer for testing. --- test_rig.py | 5 +++-- trig_data.bin | Bin 0 -> 10 bytes volatility/framework/interfaces/symbols.py | 2 ++ 3 files changed, 5 insertions(+), 2 deletions(-) create mode 100644 trig_data.bin diff --git a/test_rig.py b/test_rig.py index 12aaf29f9..73663e6d8 100644 --- a/test_rig.py +++ b/test_rig.py @@ -42,14 +42,15 @@ def test_memory(): ctx = framework.Context(nativelst) ctx.symbol_space.append(ntkrnlmp) - base = layers.physical.BufferDataLayer(ctx, 'data', buffer = b"\x04\x00\x00\x00\x01\x02\x03\x04\x02\x00") + base = layers.physical.FileLayer(ctx, 'data', filename = 'trig_data.bin') ctx.memory.add_layer(base) val = ctx.object('ntkrnlmp!TEST_POINTER', 'data', 0) print(hex(val.point1.test1), val.point1.test2) # TODO: # -# Plugins - Tree/List input/output +# Config system +# Plugins - Dataout Tree/List input/output # Architectures # Scanning Framework # GUI/UI diff --git a/trig_data.bin b/trig_data.bin new file mode 100644 index 0000000000000000000000000000000000000000..4eaf2bb550e4180058027f9c3ee3377cea51e3b7 GIT binary patch literal 10 RcmZQ!U|?WmVrF4t0001901*HH literal 0 HcmV?d00001 diff --git a/volatility/framework/interfaces/symbols.py b/volatility/framework/interfaces/symbols.py index 93d779e1e..eee21a3ef 100644 --- a/volatility/framework/interfaces/symbols.py +++ b/volatility/framework/interfaces/symbols.py @@ -13,6 +13,8 @@ class SymbolTableInterface(validity.ValidityRoutines): self.name = self.type_check(name or None, str) self._native_symbols = self.type_check(native_symbols, NativeTableInterface) + #TODO: Add in support for constants + ### Required Symbol List functions def resolve(self, symbol):