Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

Latest commit

 

History

History
History
103 lines (81 loc) · 2.67 KB

File metadata and controls

103 lines (81 loc) · 2.67 KB
Copy raw file
Download raw file
Open symbols panel
Edit and raw actions
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
/**/
#include <tuple>
#include <cstring>
#include <cstdlib>
#include <iomanip>
#include <sstream>
#include "disassembler.h"
Disasm::Disassembler::Disassembler()
{
cs_err e = cs_open(CS_ARCH_X86, CS_MODE_16, &this->handle);
if (e != CS_ERR_OK) {
fprintf(stderr, "ERROR: Failed to initialize engine!\n");
fprintf(stderr, "cs_open: %s\n", cs_strerror(e));
exit(EXIT_FAILURE);
}
cs_option(this->handle, CS_OPT_DETAIL, CS_OPT_ON);
cs_option(this->handle, CS_OPT_SKIPDATA, CS_OPT_ON);
cs_option(this->handle, CS_OPT_SYNTAX, CS_OPT_SYNTAX_INTEL);
}
Disasm::Disassembler::~Disassembler()
{
cs_close(&this->handle);
}
void Disasm::Disassembler::set_syntax(cs_opt_value syntax)
{
cs_option(this->handle, CS_OPT_SYNTAX, syntax);
}
static std::string get_opcodes_str(const cs_insn insn)
{
std::stringstream ss;
for (auto i = 0; i < insn.size; ++i)
ss << std::hex << std::setw(2) << std::setfill('0') << static_cast<uint16_t>(insn.bytes[i]) << " ";
return ss.str();
}
Disasm::Instruction::Instruction(const cs_insn insn)
{
this->id = insn.id;
this->address = insn.address;
this->size = insn.size;
this->opcodes = get_opcodes_str(insn);
this->mnemonic = insn.mnemonic;
this->op_str = insn.op_str;
memcpy(&this->groups, &insn.detail->groups, 8);
this->groups_count = insn.detail->groups_count;
this->op_count = insn.detail->x86.op_count;
memcpy(&this->operands, &insn.detail->x86.operands, sizeof(cs_x86_op) * 8);
}
void Disasm::Instruction::print()
{
printf("0x%06" PRIx64 ":\t %-20s\t%s %s\n",
this->address, this->opcodes.c_str(), this->mnemonic.c_str(), this->op_str.c_str());
}
// Return true if the instruction change the control flow
bool Disasm::Instruction::change_cf()
{
for (int i = 0; i < this->groups_count; i++) {
if (this->groups[i] == X86_GRP_JUMP || this->groups[i] ==X86_GRP_CALL)
return true;
}
return false;
}
// Return the address of a direct branch instruction zero
uint64_t Disasm::Instruction::get_target_addr()
{
if (this->op_count == 1 && this->operands[0].type == X86_OP_IMM)
return this->operands[0].imm;
return 0;
}
// Return the content of AH/AX if available or false
std::tuple<uint8_t, bool> Disasm::Instruction::get_reg_ah()
{
if (this->op_count == 2) {
if (this->operands[0].type == X86_OP_REG && this->operands[1].type == X86_OP_IMM) {
if (this->operands[0].reg == X86_REG_AH)
return { this->operands[1].imm, true };
if (this->operands[0].reg == X86_REG_AX)
return { this->operands[1].imm >> 8, true };
}
}
return { 0xff, false };
}
Morty Proxy This is a proxified and sanitized view of the page, visit original site.