summaryrefslogtreecommitdiffhomepage
path: root/include/pemagine/bits/nt32
diff options
context:
space:
mode:
Diffstat (limited to 'include/pemagine/bits/nt32')
-rw-r--r--include/pemagine/bits/nt32/pe_inline_asm__gcc.h89
-rw-r--r--include/pemagine/bits/nt32/pe_inline_asm__msvc.h67
2 files changed, 156 insertions, 0 deletions
diff --git a/include/pemagine/bits/nt32/pe_inline_asm__gcc.h b/include/pemagine/bits/nt32/pe_inline_asm__gcc.h
new file mode 100644
index 0000000..10473b4
--- /dev/null
+++ b/include/pemagine/bits/nt32/pe_inline_asm__gcc.h
@@ -0,0 +1,89 @@
+static __inline__ void * pe_get_teb_address(void)
+{
+ void * ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x18, %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+
+static __inline__ void * pe_get_peb_address(void)
+{
+ void * ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x18, %0\n\t"
+ "mov %%ds:0x30(%0), %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+
+static __inline__ void * pe_get_peb_address_alt(void)
+{
+ void * ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x30, %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+
+static __inline__ void * pe_get_peb_ldr_data_address(void)
+{
+ void * ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x18, %0\n\t"
+ "mov %%ds:0x30(%0), %0\n\t"
+ "mov %%ds:0x0C(%0), %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+
+static __inline__ void * pe_get_peb_ldr_data_address_alt(void)
+{
+ void * ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x30, %0\n\t"
+ "mov %%ds:0x0C(%0), %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+static __inline__ uint32_t pe_get_current_process_id(void)
+{
+ uint32_t ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x20, %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+static __inline__ uint32_t pe_get_current_thread_id(void)
+{
+ uint32_t ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x24, %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
+
+static __inline__ uint32_t pe_get_current_session_id(void)
+{
+ uint32_t ptrRet;
+ __asm__ __volatile__ (
+ "mov %%fs:0x18, %0\n\t"
+ "mov %%ds:0x30(%0), %0\n\t"
+ "mov %%ds:0x1d4(%0), %0\n\t"
+ : "=r" (ptrRet) : :
+ );
+ return ptrRet;
+}
diff --git a/include/pemagine/bits/nt32/pe_inline_asm__msvc.h b/include/pemagine/bits/nt32/pe_inline_asm__msvc.h
new file mode 100644
index 0000000..161a846
--- /dev/null
+++ b/include/pemagine/bits/nt32/pe_inline_asm__msvc.h
@@ -0,0 +1,67 @@
+/* optimize: use __readfsdword rather than explicit eax */
+
+static __inline__ void * pe_get_teb_address(void)
+{
+ __asm {
+ mov eax, fs:0x18
+ };
+}
+
+
+static __inline__ void * pe_get_peb_address(void)
+{
+ __asm {
+ mov eax, fs:0x18
+ mov eax, ds:[eax+0x30]
+ };
+}
+
+
+static __inline__ void * pe_get_peb_address_alt(void)
+{
+ __asm {
+ mov eax, fs:0x30
+ };
+}
+
+
+static __inline__ void * pe_get_peb_ldr_data_address(void)
+{
+ __asm {
+ mov eax, fs:0x18
+ mov eax, ds:[eax+0x30]
+ mov eax, ds:[eax+0x0C]
+ };
+}
+
+
+static __inline__ void * pe_get_peb_ldr_data_address_alt(void)
+{
+ __asm {
+ mov eax, fs:0x30
+ mov eax, ds:[eax+0x0C]
+ };
+}
+
+static __inline__ uint32_t pe_get_current_process_id(void)
+{
+ __asm {
+ mov eax, fs:0x20
+ };
+}
+
+static __inline__ uint32_t pe_get_current_thread_id(void)
+{
+ __asm {
+ mov eax, fs:0x24
+ };
+}
+
+static __inline__ uint32_t pe_get_current_session_id(void)
+{
+ __asm {
+ mov eax, fs:0x18
+ mov eax, ds:[eax+0x30]
+ mov eax, ds:[eax+0x1d4]
+ };
+}