2011-10-14 23:38:50 +02:00
|
|
|
;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;
|
|
|
|
;; ;;
|
2024-05-22 17:15:14 +02:00
|
|
|
;; Copyright (C) KolibriOS team 2004-2024. All rights reserved. ;;
|
2011-10-14 23:38:50 +02:00
|
|
|
;; Distributed under terms of the GNU General Public License ;;
|
|
|
|
;; ;;
|
|
|
|
;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;
|
|
|
|
|
|
|
|
|
|
|
|
; diamond, 2006
|
|
|
|
sys_debug_services:
|
|
|
|
cmp ebx, 9
|
|
|
|
ja @f
|
2022-02-12 18:27:41 +01:00
|
|
|
jmp dword [sys_debug_services_table + ebx*4]
|
2011-10-14 23:38:50 +02:00
|
|
|
@@:
|
|
|
|
ret
|
|
|
|
iglobal
|
|
|
|
align 4
|
|
|
|
sys_debug_services_table:
|
|
|
|
dd debug_set_event_data
|
|
|
|
dd debug_getcontext
|
|
|
|
dd debug_setcontext
|
|
|
|
dd debug_detach
|
|
|
|
dd debug_suspend
|
|
|
|
dd debug_resume
|
|
|
|
dd debug_read_process_memory
|
|
|
|
dd debug_write_process_memory
|
|
|
|
dd debug_terminate
|
|
|
|
dd debug_set_drx
|
|
|
|
endg
|
|
|
|
debug_set_event_data:
|
|
|
|
; in: ecx = pointer
|
|
|
|
; destroys eax
|
|
|
|
mov eax, [current_slot]
|
2022-02-12 18:27:41 +01:00
|
|
|
mov [eax + APPDATA.dbg_event_mem], ecx
|
2011-10-14 23:38:50 +02:00
|
|
|
ret
|
|
|
|
|
|
|
|
get_debuggee_slot:
|
|
|
|
; in: ecx=PID
|
|
|
|
; out: CF=1 if error
|
|
|
|
; CF=0 and eax=slot*0x20 if ok
|
|
|
|
; out: interrupts disabled
|
|
|
|
cli
|
|
|
|
mov eax, ecx
|
|
|
|
call pid_to_slot
|
2023-04-09 20:19:13 +02:00
|
|
|
;call pid_to_appdata
|
2011-10-14 23:38:50 +02:00
|
|
|
test eax, eax
|
|
|
|
jz .ret_bad
|
2022-02-09 18:07:51 +01:00
|
|
|
shl eax, BSF sizeof.APPDATA
|
2011-10-14 23:38:50 +02:00
|
|
|
push ebx
|
2021-06-17 11:41:16 +02:00
|
|
|
mov ebx, [current_slot_idx]
|
2022-02-12 18:27:41 +01:00
|
|
|
cmp [SLOT_BASE + eax + APPDATA.debugger_slot], ebx
|
2023-04-09 20:19:13 +02:00
|
|
|
;cmp [eax + APPDATA.debugger_slot], ebx
|
2011-10-14 23:38:50 +02:00
|
|
|
pop ebx
|
|
|
|
jnz .ret_bad
|
|
|
|
; clc ; automatically
|
|
|
|
ret
|
|
|
|
.ret_bad:
|
|
|
|
stc
|
|
|
|
ret
|
|
|
|
|
|
|
|
debug_detach:
|
|
|
|
; in: ecx=pid
|
|
|
|
; destroys eax,ebx
|
|
|
|
call get_debuggee_slot
|
|
|
|
jc .ret
|
2022-02-12 18:27:41 +01:00
|
|
|
and dword [eax + SLOT_BASE + APPDATA.debugger_slot], 0
|
2023-04-09 20:19:13 +02:00
|
|
|
;and dword [eax + APPDATA.debugger_slot], 0
|
2011-10-14 23:38:50 +02:00
|
|
|
call do_resume
|
|
|
|
.ret:
|
|
|
|
sti
|
|
|
|
ret
|
|
|
|
|
|
|
|
debug_terminate:
|
|
|
|
; in: ecx=pid
|
|
|
|
call get_debuggee_slot
|
|
|
|
jc debug_detach.ret
|
|
|
|
mov ecx, eax
|
2023-04-09 20:19:13 +02:00
|
|
|
|
2022-02-09 18:07:51 +01:00
|
|
|
shr ecx, BSF sizeof.APPDATA
|
2023-04-09 20:19:13 +02:00
|
|
|
;movzx ecx, ch ; del when sysfn_term... will using APPDATA
|
|
|
|
|
2011-10-14 23:38:50 +02:00
|
|
|
; push 2
|
|
|
|
; pop ebx
|
2023-04-09 20:19:13 +02:00
|
|
|
mov edx, esi ; what?
|
2011-10-14 23:38:50 +02:00
|
|
|
jmp sysfn_terminate
|
|
|
|
|
|
|
|
debug_suspend:
|
|
|
|
; in: ecx=pid
|
|
|
|
; destroys eax,ecx
|
2021-01-12 11:13:20 +01:00
|
|
|
; { Patch by Coldy (rev. 7125), reason: http://board.kolibrios.org/viewtopic.php?f=1&t=1712&p=75957#p75957
|
|
|
|
; cli
|
|
|
|
; mov eax, ecx
|
|
|
|
; call pid_to_slot
|
|
|
|
; shl eax, 5
|
|
|
|
; jz .ret
|
|
|
|
call get_debuggee_slot
|
|
|
|
jc .ret
|
|
|
|
; } End patch
|
2022-02-09 18:07:51 +01:00
|
|
|
mov cl, [SLOT_BASE + eax + APPDATA.state] ; process state
|
2023-04-09 20:19:13 +02:00
|
|
|
;mov cl, [eax + APPDATA.state] ; process state
|
2011-10-14 23:38:50 +02:00
|
|
|
test cl, cl
|
|
|
|
jz .1
|
2023-04-09 20:19:13 +02:00
|
|
|
cmp cl, TSTATE_WAITING
|
2011-10-14 23:38:50 +02:00
|
|
|
jnz .ret
|
2023-04-09 20:19:13 +02:00
|
|
|
mov cl, TSTATE_WAIT_SUSPENDED
|
2011-10-14 23:38:50 +02:00
|
|
|
.2:
|
2022-02-09 18:07:51 +01:00
|
|
|
mov [SLOT_BASE + eax + APPDATA.state], cl
|
2023-04-09 20:19:13 +02:00
|
|
|
;mov [eax + APPDATA.state], cl
|
2011-10-14 23:38:50 +02:00
|
|
|
.ret:
|
|
|
|
sti
|
|
|
|
ret
|
|
|
|
.1:
|
|
|
|
inc ecx
|
|
|
|
jmp .2
|
|
|
|
|
|
|
|
do_resume:
|
2022-02-09 18:07:51 +01:00
|
|
|
mov cl, [SLOT_BASE + eax + APPDATA.state]
|
2023-04-09 20:19:13 +02:00
|
|
|
;mov cl, [eax + APPDATA.state]
|
|
|
|
cmp cl, TSTATE_RUN_SUSPENDED
|
2011-10-14 23:38:50 +02:00
|
|
|
jz .1
|
2023-04-09 20:19:13 +02:00
|
|
|
cmp cl, TSTATE_WAIT_SUSPENDED
|
2011-10-14 23:38:50 +02:00
|
|
|
jnz .ret
|
2023-04-09 20:19:13 +02:00
|
|
|
mov cl, TSTATE_WAITING
|
2011-10-14 23:38:50 +02:00
|
|
|
.2:
|
2022-02-09 18:07:51 +01:00
|
|
|
mov [SLOT_BASE + eax + APPDATA.state], cl
|
2023-04-09 20:19:13 +02:00
|
|
|
;mov [eax + APPDATA.state], cl
|
2011-10-14 23:38:50 +02:00
|
|
|
.ret:
|
|
|
|
ret
|
|
|
|
.1:
|
|
|
|
dec ecx
|
|
|
|
jmp .2
|
|
|
|
|
|
|
|
debug_resume:
|
|
|
|
; in: ecx=pid
|
|
|
|
; destroys eax,ebx
|
|
|
|
cli
|
|
|
|
mov eax, ecx
|
|
|
|
call pid_to_slot
|
2022-02-09 18:07:51 +01:00
|
|
|
shl eax, BSF sizeof.APPDATA
|
2011-10-14 23:38:50 +02:00
|
|
|
jz .ret
|
|
|
|
call do_resume
|
|
|
|
.ret:
|
|
|
|
sti
|
|
|
|
ret
|
|
|
|
|
|
|
|
debug_getcontext:
|
|
|
|
; in:
|
|
|
|
; ecx=pid
|
|
|
|
; edx=sizeof(CONTEXT)
|
|
|
|
; esi->CONTEXT
|
2023-04-09 20:19:13 +02:00
|
|
|
; destroys eax,ebx,ecx,edx,esi,edi, ebp
|
2014-04-25 01:03:14 +02:00
|
|
|
|
|
|
|
xor ebx, ebx ; 0 - get only gp regs
|
|
|
|
cmp edx, 40
|
|
|
|
je .std_ctx
|
|
|
|
|
|
|
|
cmp edx, 48+288
|
|
|
|
jne .ret
|
|
|
|
|
|
|
|
inc ebx ; 1 - get sse context
|
|
|
|
; TODO legacy 32-bit FPU/MMX context
|
|
|
|
.std_ctx:
|
2011-10-14 23:38:50 +02:00
|
|
|
call get_debuggee_slot
|
|
|
|
jc .ret
|
2014-04-25 01:03:14 +02:00
|
|
|
|
2022-02-12 18:27:41 +01:00
|
|
|
shr eax, BSF sizeof.APPDATA
|
2023-04-09 20:19:13 +02:00
|
|
|
;movzx ebp, ah
|
|
|
|
|
2014-04-25 01:03:14 +02:00
|
|
|
cmp eax, [fpu_owner]
|
2023-04-09 20:19:13 +02:00
|
|
|
;cmp ebp, [fpu_owner]
|
2014-04-25 01:03:14 +02:00
|
|
|
jne @f
|
|
|
|
inc bh ; set swap context flag
|
|
|
|
@@:
|
2022-02-09 18:07:51 +01:00
|
|
|
shl eax, BSF sizeof.APPDATA
|
2011-10-14 23:38:50 +02:00
|
|
|
mov edi, esi
|
2022-02-12 18:27:41 +01:00
|
|
|
mov eax, [SLOT_BASE + eax + APPDATA.pl0_stack]
|
2023-04-09 20:19:13 +02:00
|
|
|
;mov eax, [eax + APPDATA.pl0_stack]
|
2022-02-12 18:27:41 +01:00
|
|
|
lea esi, [eax + RING0_STACK_SIZE]
|
2011-10-14 23:38:50 +02:00
|
|
|
|
|
|
|
.ring0:
|
|
|
|
; note that following code assumes that all interrupt/exception handlers
|
2017-12-05 06:24:21 +01:00
|
|
|
; save ring-3 context by pushad in this order
|
2011-10-14 23:38:50 +02:00
|
|
|
; top of ring0 stack: ring3 stack ptr (ss+esp), iret data (cs+eip+eflags), pushad
|
|
|
|
sub esi, 8+12+20h
|
|
|
|
lodsd ;edi
|
|
|
|
mov [edi+24h], eax
|
|
|
|
lodsd ;esi
|
|
|
|
mov [edi+20h], eax
|
|
|
|
lodsd ; ebp
|
|
|
|
mov [edi+1Ch], eax
|
|
|
|
lodsd ;esp
|
|
|
|
lodsd ;ebx
|
|
|
|
mov [edi+14h], eax
|
|
|
|
lodsd ;edx
|
|
|
|
mov [edi+10h], eax
|
|
|
|
lodsd ;ecx
|
|
|
|
mov [edi+0Ch], eax
|
|
|
|
lodsd ;eax
|
|
|
|
mov [edi+8], eax
|
|
|
|
lodsd ;eip
|
|
|
|
mov [edi], eax
|
|
|
|
lodsd ;cs
|
|
|
|
lodsd ;eflags
|
|
|
|
mov [edi+4], eax
|
|
|
|
lodsd ;esp
|
|
|
|
mov [edi+18h], eax
|
2014-04-25 01:03:14 +02:00
|
|
|
|
|
|
|
dec bl
|
|
|
|
js .ret
|
|
|
|
dec bl
|
|
|
|
jns .ret
|
|
|
|
|
|
|
|
test bh, bh ; check swap flag
|
|
|
|
jz @F
|
|
|
|
|
|
|
|
ffree st0 ; swap context
|
|
|
|
@@:
|
|
|
|
|
|
|
|
add esi, 4 ;top of ring0 stack
|
|
|
|
;fpu/sse context saved here
|
|
|
|
add edi, 40
|
|
|
|
mov eax, 1 ;sse context
|
|
|
|
stosd
|
|
|
|
xor eax, eax ;reserved dword
|
|
|
|
stosd
|
|
|
|
|
|
|
|
mov ecx, 288/4
|
|
|
|
rep movsd ;copy sse context
|
|
|
|
|
2011-10-14 23:38:50 +02:00
|
|
|
.ret:
|
|
|
|
sti
|
|
|
|
ret
|
|
|
|
|
|
|
|
debug_setcontext:
|
|
|
|
; in:
|
|
|
|
; ecx=pid
|
|
|
|
; edx=sizeof(CONTEXT)
|
|
|
|
; esi->CONTEXT
|
|
|
|
; destroys eax,ecx,edx,esi,edi
|
|
|
|
cmp edx, 28h
|
|
|
|
jnz .ret
|
2021-06-13 22:51:08 +02:00
|
|
|
|
2011-10-14 23:38:50 +02:00
|
|
|
call get_debuggee_slot
|
|
|
|
jc .stiret
|
|
|
|
; mov esi, edx
|
2022-02-12 18:27:41 +01:00
|
|
|
mov eax, [eax + SLOT_BASE+APPDATA.pl0_stack]
|
2023-04-09 20:19:13 +02:00
|
|
|
;mov eax, [eax + APPDATA.pl0_stack]
|
2022-02-12 18:27:41 +01:00
|
|
|
lea edi, [eax + RING0_STACK_SIZE]
|
2011-10-14 23:38:50 +02:00
|
|
|
|
|
|
|
.ring0:
|
|
|
|
sub edi, 8+12+20h
|
|
|
|
mov eax, [esi+24h] ;edi
|
|
|
|
stosd
|
|
|
|
mov eax, [esi+20h] ;esi
|
|
|
|
stosd
|
|
|
|
mov eax, [esi+1Ch] ;ebp
|
|
|
|
stosd
|
|
|
|
scasd
|
|
|
|
mov eax, [esi+14h] ;ebx
|
|
|
|
stosd
|
|
|
|
mov eax, [esi+10h] ;edx
|
|
|
|
stosd
|
|
|
|
mov eax, [esi+0Ch] ;ecx
|
|
|
|
stosd
|
|
|
|
mov eax, [esi+8] ;eax
|
|
|
|
stosd
|
|
|
|
mov eax, [esi] ;eip
|
|
|
|
stosd
|
|
|
|
scasd
|
|
|
|
mov eax, [esi+4] ;eflags
|
|
|
|
stosd
|
|
|
|
mov eax, [esi+18h] ;esp
|
|
|
|
stosd
|
|
|
|
.stiret:
|
|
|
|
sti
|
|
|
|
.ret:
|
|
|
|
ret
|
|
|
|
|
|
|
|
debug_set_drx:
|
|
|
|
call get_debuggee_slot
|
|
|
|
jc .errret
|
|
|
|
mov ebp, eax
|
2022-02-12 18:27:41 +01:00
|
|
|
lea eax, [eax + SLOT_BASE + APPDATA.dbg_regs]
|
2023-04-09 20:19:13 +02:00
|
|
|
;lea eax, [eax + APPDATA.dbg_regs]
|
2011-10-14 23:38:50 +02:00
|
|
|
; [eax]=dr0, [eax+4]=dr1, [eax+8]=dr2, [eax+C]=dr3
|
|
|
|
; [eax+10]=dr7
|
|
|
|
cmp esi, OS_BASE
|
|
|
|
jae .errret
|
|
|
|
cmp dl, 3
|
|
|
|
ja .errret
|
|
|
|
mov ecx, dr7
|
|
|
|
;fix me
|
|
|
|
xchg ecx, edx
|
|
|
|
shr edx, cl
|
|
|
|
shr edx, cl
|
|
|
|
xchg ecx, edx
|
|
|
|
|
|
|
|
test ecx, 2 ; bit 1+2*index = G0..G3, global break enable
|
|
|
|
jnz .errret2
|
|
|
|
test dh, dh
|
|
|
|
jns .new
|
|
|
|
; clear breakpoint
|
|
|
|
movzx edx, dl
|
|
|
|
add edx, edx
|
2022-02-12 18:27:41 +01:00
|
|
|
and dword [eax + edx*2], 0 ; clear DR<i>
|
|
|
|
btr dword [eax + 10h], edx ; clear L<i> bit
|
|
|
|
test byte [eax + 10h], 55h
|
2011-10-14 23:38:50 +02:00
|
|
|
jnz .okret
|
|
|
|
; imul eax, ebp, tss_step/32
|
|
|
|
; and byte [eax + tss_data + TSS._trap], not 1
|
2022-02-12 18:27:41 +01:00
|
|
|
and [SLOT_BASE + ebp + APPDATA.dbg_state], not 1
|
2023-04-09 20:19:13 +02:00
|
|
|
;and [ebp + APPDATA.dbg_state], not 1
|
2011-10-14 23:38:50 +02:00
|
|
|
.okret:
|
2023-04-09 20:19:13 +02:00
|
|
|
and dword [esp + SYSCALL_STACK.eax], 0
|
2011-10-14 23:38:50 +02:00
|
|
|
sti
|
|
|
|
ret
|
|
|
|
.errret:
|
|
|
|
sti
|
2023-04-09 20:19:13 +02:00
|
|
|
mov dword [esp + SYSCALL_STACK.eax], 1
|
2011-10-14 23:38:50 +02:00
|
|
|
ret
|
|
|
|
.errret2:
|
|
|
|
sti
|
2023-04-09 20:19:13 +02:00
|
|
|
mov dword [esp + SYSCALL_STACK.eax], 2
|
2011-10-14 23:38:50 +02:00
|
|
|
ret
|
|
|
|
.new:
|
|
|
|
; add new breakpoint
|
|
|
|
; dl=index; dh=flags; esi=address
|
|
|
|
test dh, 0xF0
|
|
|
|
jnz .errret
|
|
|
|
mov cl, dh
|
|
|
|
and cl, 3
|
|
|
|
cmp cl, 2
|
|
|
|
jz .errret
|
|
|
|
mov cl, dh
|
|
|
|
shr cl, 2
|
|
|
|
cmp cl, 2
|
|
|
|
jz .errret
|
|
|
|
|
|
|
|
mov ebx, esi
|
|
|
|
test bl, dl
|
|
|
|
|
|
|
|
jnz .errret
|
2022-02-12 18:27:41 +01:00
|
|
|
or byte [eax + 10h+1], 3 ; set GE and LE flags
|
2011-10-14 23:38:50 +02:00
|
|
|
|
|
|
|
movzx edx, dh
|
|
|
|
movzx ecx, dl
|
|
|
|
add ecx, ecx
|
2022-02-12 18:27:41 +01:00
|
|
|
bts dword [eax + 10h], ecx ; set L<i> flag
|
2011-10-14 23:38:50 +02:00
|
|
|
add ecx, ecx
|
2022-02-12 18:27:41 +01:00
|
|
|
mov [eax + ecx], ebx;esi ; set DR<i>
|
2011-10-14 23:38:50 +02:00
|
|
|
shl edx, cl
|
|
|
|
mov ebx, 0xF
|
|
|
|
shl ebx, cl
|
|
|
|
not ebx
|
2022-02-12 18:27:41 +01:00
|
|
|
and [eax + 10h+2], bx
|
|
|
|
or [eax + 10h+2], dx ; set R/W and LEN fields
|
2011-10-14 23:38:50 +02:00
|
|
|
; imul eax, ebp, tss_step/32
|
|
|
|
; or byte [eax + tss_data + TSS._trap], 1
|
2022-02-12 18:27:41 +01:00
|
|
|
or [SLOT_BASE + ebp + APPDATA.dbg_state], 1
|
2023-04-09 20:19:13 +02:00
|
|
|
;or [ebp + APPDATA.dbg_state], 1
|
2011-10-14 23:38:50 +02:00
|
|
|
jmp .okret
|
|
|
|
|
|
|
|
debug_read_process_memory:
|
|
|
|
; in:
|
|
|
|
; ecx=pid
|
|
|
|
; edx=length
|
|
|
|
; edi->buffer in debugger
|
|
|
|
; esi=address in debuggee
|
|
|
|
; out: [esp+36]=sizeof(read)
|
|
|
|
; destroys all
|
|
|
|
call get_debuggee_slot
|
|
|
|
jc .err
|
2022-02-12 18:27:41 +01:00
|
|
|
shr eax, BSF sizeof.APPDATA
|
2023-04-09 20:19:13 +02:00
|
|
|
;movzx eax,ah
|
2011-10-14 23:38:50 +02:00
|
|
|
mov ecx, edi
|
|
|
|
call read_process_memory
|
|
|
|
sti
|
2023-04-09 20:19:13 +02:00
|
|
|
mov dword [esp + SYSCALL_STACK.eax], eax
|
2011-10-14 23:38:50 +02:00
|
|
|
ret
|
|
|
|
.err:
|
2023-04-09 20:19:13 +02:00
|
|
|
or dword [esp + SYSCALL_STACK.eax], -1
|
2011-10-14 23:38:50 +02:00
|
|
|
ret
|
|
|
|
|
|
|
|
debug_write_process_memory:
|
|
|
|
; in:
|
|
|
|
; ecx=pid
|
|
|
|
; edx=length
|
|
|
|
; edi->buffer in debugger
|
|
|
|
; esi=address in debuggee
|
|
|
|
; out: [esp+36]=sizeof(write)
|
|
|
|
; destroys all
|
|
|
|
call get_debuggee_slot
|
|
|
|
jc debug_read_process_memory.err
|
2022-02-12 18:27:41 +01:00
|
|
|
shr eax, BSF sizeof.APPDATA
|
2023-04-09 20:19:13 +02:00
|
|
|
;movzx eax,ah
|
2011-10-14 23:38:50 +02:00
|
|
|
mov ecx, edi
|
|
|
|
call write_process_memory
|
|
|
|
sti
|
2023-04-09 20:19:13 +02:00
|
|
|
mov [esp + SYSCALL_STACK.eax], eax
|
2011-10-14 23:38:50 +02:00
|
|
|
ret
|
|
|
|
|
|
|
|
debugger_notify:
|
|
|
|
; in: eax=debugger slot
|
|
|
|
; ecx=size of debug message
|
|
|
|
; [esp+4]..[esp+4+ecx]=message
|
|
|
|
; interrupts must be disabled!
|
|
|
|
; destroys all general registers
|
|
|
|
; interrupts remain disabled
|
|
|
|
xchg ebp, eax
|
|
|
|
mov edi, [timer_ticks]
|
|
|
|
add edi, 500 ; 5 sec timeout
|
|
|
|
.1:
|
|
|
|
mov eax, ebp
|
2022-02-12 18:27:41 +01:00
|
|
|
shl eax, BSF sizeof.APPDATA
|
|
|
|
mov esi, [SLOT_BASE + eax + APPDATA.dbg_event_mem]
|
2011-10-14 23:38:50 +02:00
|
|
|
test esi, esi
|
|
|
|
jz .ret
|
|
|
|
; read buffer header
|
|
|
|
push ecx
|
|
|
|
push eax
|
|
|
|
push eax
|
|
|
|
mov eax, ebp
|
|
|
|
mov ecx, esp
|
|
|
|
mov edx, 8
|
|
|
|
call read_process_memory
|
|
|
|
cmp eax, edx
|
|
|
|
jz @f
|
|
|
|
add esp, 12
|
|
|
|
jmp .ret
|
|
|
|
@@:
|
|
|
|
cmp dword [ecx], 0
|
|
|
|
jg @f
|
|
|
|
.2:
|
|
|
|
pop ecx
|
|
|
|
pop ecx
|
|
|
|
pop ecx
|
2021-06-17 11:41:16 +02:00
|
|
|
cmp dword [current_slot_idx], 1
|
2011-10-14 23:38:50 +02:00
|
|
|
jnz .notos
|
|
|
|
cmp [timer_ticks], edi
|
|
|
|
jae .ret
|
|
|
|
.notos:
|
|
|
|
sti
|
|
|
|
call change_task
|
|
|
|
cli
|
|
|
|
jmp .1
|
|
|
|
@@:
|
|
|
|
mov edx, [ecx+8]
|
|
|
|
add edx, [ecx+4]
|
|
|
|
cmp edx, [ecx]
|
|
|
|
ja .2
|
|
|
|
; advance buffer position
|
|
|
|
push edx
|
|
|
|
mov edx, 4
|
|
|
|
sub ecx, edx
|
|
|
|
mov eax, ebp
|
|
|
|
add esi, edx
|
|
|
|
call write_process_memory
|
|
|
|
pop eax
|
|
|
|
; write message
|
|
|
|
mov eax, ebp
|
|
|
|
add esi, edx
|
|
|
|
add esi, [ecx+8]
|
|
|
|
add ecx, 20
|
|
|
|
pop edx
|
|
|
|
pop edx
|
|
|
|
pop edx
|
|
|
|
call write_process_memory
|
|
|
|
; new debug event
|
|
|
|
mov eax, ebp
|
2021-06-19 10:41:09 +02:00
|
|
|
shl eax, BSF sizeof.APPDATA
|
2022-02-12 18:27:41 +01:00
|
|
|
or [SLOT_BASE + eax + APPDATA.occurred_events], EVENT_DEBUG
|
2011-10-14 23:38:50 +02:00
|
|
|
.ret:
|
|
|
|
ret
|