[27040] 2020-07-10_【学员笔记分享】二进制逆向学习笔记:汇编之通用寄存器

文档创建者:s7ckTeam
浏览次数:1
最后更新:2025-01-19
2020-07-10_【学员笔记分享】二进制逆向学习笔记:汇编之通用寄存器     M s 0 8 0 6 7   2 0 2 0 - 0 7 - 1 0 1 - - 2 3 m r _ b i u M s 0 8 0 6 7         3 2 E A X ( )   E B X ( D S ) E C X ( ) E D X ( I / O ) E B P ( S S ) E S I ( ) E D I ( ) E S P ( S S ) h t t p s : / / z h u a n l a n . z h i h u . c o m / p / 7 6 9 5 0 6 0 7


h t t p s : / / b l o g . c s d n . n e t / c q k x b o y 1 6 8 / a r t i c l e / d e t a i l s / 8 9 9 4 4 7 9 C P U I R P C A R D R A C P S W : 3 2 C P U 4 ( E A X E B X E C X E D X ) 2 ( E S I E D I )   2 ( E S P E B P ) 6 ( E S C S S S D S F S G S ) 1 ( E I P )   1 ( E F l a g s ) 1 线 访 3 2 C P U 4 3 2 E A X E B X E C X E D X
1 6 1 6 1 6 A X B X C X D X C P U 4 1 6 8 8 ( A X A H - A L B X B H - B L C X C H C L D X D H - D L ) / E A X ( A c c u m u l a t o r ) / 使 E B X ( B a s e   R e g i s t e r ) 使 E C X ( C o u n t   R e g i s t e r ) C L E D X ( D a t a   R e g i s t e r ) I / O 1 6 C P U A X B X C X D X 3 2 C P U 3 2 E A X E B X E C X E D X 3 2 2 3 2 C P U 2 3 2 E S I E D I 1 6 C P U S I D I 1 6 1 6 E S I E D I S I D I ( I n d e x   R e g i s t e r ) 访 便 8 使 3 1 6 C P U B P S P 1 6 1 6 3 2 C P U 2 3 2 E B P E S P 访 E B P ( B a s e   P o i n t e r ) E S P ( S t a c k   P o i n t e r ) 访 E B P E S P B P S P ( P o i n t e r   R e g i s t e r ) 访 便 8 4 访 C P U E C S ( C o d e   S e g m e n t R e g i s t e r ) E D S ( D a t a   S e g m e n t R e g i s t e r ) E E S ( E x t r a   S e g m e n t R e g i s t e r ) E S S ( S t a c k   S e g m e n t R e g i s t e r ) E F S ( E x t r a   S e g m e n t R e g i s t e r ) E G S ( E x t r a   S e g m e n t R e g i s t e r ) 1 6 C P U 4 4 使 访 3 2 6 访 6 3 2 C P U 4 C S D S E S S S C P U 访 使 ( S e l e c t o r )
5 3 2 C P U 3 2 E I P E I P 1 6 C P U I P E I P I P ( I n s t r u c t i o n   P o i n t e r ) 6 1 C F ( C a r r y   F l a g ) C F 1 0 使 ( ) ( ) C F 2 P F ( P a r i t y   F l a g ) P F 1 1 P F 1 0 P F 使 3 A F ( A u x i l i a r y C a r r y   F l a g ) A F 1 0 ( 1 ) ( 2 ) 4 4 4 Z F ( Z e r o   F l a g ) Z F 0 0 1 0 0 使 5 S F ( S i g n   F l a g ) S F S F S F 0 1 6 O F ( O v e r f l o w F l a g ) O F O F 1 O F 0 C P U 使 1 T F ( T r a p   F l a g ) T F 1 C P U T F 2 I F ( I n t e r r u p t - e n a b l e F l a g ) I F C P U C P U C P U C P U C P U ( 1 ) I F = 1 C P U C P U ( 2 ) I F = 0 C P U C P U C P U I F
3 D F ( D i r e c t i o n F l a g ) D F 5 . 2 . 1 1 D F 3 2 1 I / O I O P L ( I / O P r i v i l e g e   L e v e l ) I / O I / O I / O I O P L I / O 2 N T ( N e s t e d T a s k ) N T I R E T ( 1 ) N T = 0 E F L A G S C S E I P ( 2 ) N T = 1 3 R F ( R e s t a r t F l a g ) R F R F = 0 R F 0 1 4 8 0 8 6 V M ( V i r t u a l 8 0 8 6   M o d e ) 1 8 0 8 6 2 5 0 0 0 +
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则