disassemble_range
Decode a byte range of a native PE (x86-64) starting at an RVA into assembly instructions. Optionally records the range as a function in an autopsy database.
Instructions
Disassemble an arbitrary byte range of a native PE (x86-64) starting at an RVA. Resolves the RVA to its section and file offset, reads ONLY that slice (read-only on the binary), and decodes it with Capstone. Returns the instruction listing. If db_path or game_path is given AND the binary is catalogued in that autopsy DB, the decoded instructions are also summarized into The Model as a 'function' row spanning the range (provenance=verified for the bytes). Pure read-only when no DB is supplied.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| rva | Yes | Relative virtual address to start at (e.g. 0x1000). | |
| length | No | Number of bytes to disassemble (default 256, clamped to the section). | |
| db_path | No | Optional .autopsy.db for writeback. | |
| game_path | No | Optional game dir; its default .autopsy DB is used if db_path is omitted. | |
| binary_path | Yes | Path to the PE (.exe/.dll) to disassemble. |