2

该页面http://daeken.pastebin.ca/raw/843310包含所有汇编代码及其描述。但我不是很明白,例如0xa1 : ['MOV', 'rAX,Ov'],...,看它的描述我无法弄清楚它是什么意思。

这里有很多这样的例子:

Ob - Ov - rAX - Yb - Xb - etc...

谁能解释一下那些奇怪的符号是什么意思?

4

2 回答 2

1

例如:

0xa1 : ['MOV', 'rAX,Ov']

根据英特尔® 64 和 IA-32 架构开发人员手册:组合卷表 A-2。一字节操作码映射:(00H — F7H)0xa1mov rAX, Ov.

然后表 A.2.1 寻址方法代码解释了寻址中使用的缩写:

O The instruction has no ModR/M byte. The offset of the operand is coded as
a word or double word (depending on address size attribute) in the instruction.
No base register, index register, or scaling factor can be applied (for example,
MOV (A0–A3)).

表 A.2.2 操作数类型代码解释了操作数类型:

v Word, doubleword or quadword (in 64-bit mode), depending on operand-size
attribute.

And below A.2.3 Register Codes it says:

A register identifier of the form eXX or rXX is used when register width depends
on the operand-size attribute. eXX is used when 16 or 32-bit sizes are possible;
rXX is used when 16, 32, or 64-bit sizes are possible. For example: eAX indicates
that the AX register is used when the operand-size attribute is 16 and the EAX
register is used when the operand-size attribute is 32. rAX can indicate AX, EAX
or RAX.

So here are some example instruction encodings for 0xa1 opcode (confirmed with udcli -x):

a10102               mov ax,  [0x201]             ; in x86 16-bit code
a101020304           mov eax, [0x4030201]         ; in x86 32-bit code
a10102030405060708   mov eax, [0x807060504030201] ; in x86-64

66a101020304         mov ax,  [0x4030201]         ; with 0x66, in x86 32-bit code
66a10102030405060708 mov ax,  [0x807060504030201] ; with 0x66, in x86-64

48a10102030405060708 mov rax, [0x807060504030201] ; with 0x48 REX.W, in x86-64
于 2013-03-10T10:36:44.080 回答
0

看看这个:

80806 操作码映射

在底部你会找到那些的描述

于 2013-03-10T10:36:06.110 回答