1 This README describes a sample invocation of disasm.py whose purpose is to test 2 the low level ARM/Thumb disassembly functionality from llvm using the llvm-mc 3 command line. We invoke gdb on an executable, try to disassemble a function, 4 and then read the memory contents of the disassembled function. 5 6 The byte contents are written into a file named disasm-input.txt and then we 7 invoke llvm-mc -disassemble plus options (set with the -o/--options) on the 8 byte contents. 9 10 See the following for a sample session using this command: 11 12 [16:26:57] johnny:/Volumes/data/Radar/9131529 $ /Volumes/data/lldb/svn/trunk/utils/test/disasm.py -C 'set shlib-path-substitutions /usr /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/usr /System /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/System /Library /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/Library' -O '-arch armv7' -m /Volumes/data/lldb/llvm/Debug+Asserts/bin/llvm-mc -e /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/usr/lib/libSystem.B.dylib -f printf --options='-triple=thumb-apple-darwin -debug-only=arm-disassembler' 13 gdb commands: ['set shlib-path-substitutions /usr /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/usr /System /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/System /Library /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/Library'] 14 gdb options: -arch armv7 15 executable: /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/usr/lib/libSystem.B.dylib 16 function: printf 17 llvm-mc: /Volumes/data/lldb/llvm/Debug+Asserts/bin/llvm-mc 18 llvm-mc options: -triple=thumb-apple-darwin -debug-only=arm-disassembler 19 GNU gdb 6.3.50-20050815 (Apple version gdb-1518) (Sat Feb 12 02:56:02 UTC 2011) 20 Copyright 2004 Free Software Foundation, Inc. 21 GDB is free software, covered by the GNU General Public License, and you are 22 welcome to change it and/or distribute copies of it under certain conditions. 23 Type "show copying" to see the conditions. 24 There is absolutely no warranty for GDB. Type "show warranty" for details. 25 This GDB was configured as "--host=x86_64-apple-darwin --target=arm-apple-darwin". 26 <Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/Library 27 <eloper/SDKs/iPhoneOS4.3.sdk/usr/lib/libSystem.B.dylib 28 Reading symbols for shared libraries ................ done 29 Reading symbols from /Developer/Platforms/iPhoneOS.platform/Developer/SDKs/iPhoneOS4.3.sdk/usr/lib/libSystem.B.dylib...done. 30 (gdb) disassemble printf 31 Dump of assembler code for function printf: 32 0x0704cdd0 <printf+0>: push {r0, r1, r2, r3} 33 0x0704cdd2 <printf+2>: push {r4, r5, r7, lr} 34 0x0704cdd4 <printf+4>: add r7, sp, #8 35 0x0704cdd6 <printf+6>: sub sp, #4 36 0x0704cdd8 <printf+8>: add r3, sp, #20 37 0x0704cdda <printf+10>: ldr.w r5, [r3], #4 38 0x0704cdde <printf+14>: str r3, [sp, #0] 39 0x0704cde0 <printf+16>: ldr r3, [pc, #52] (0x704ce18 <printf+72>) 40 0x0704cde2 <printf+18>: add r3, pc 41 0x0704cde4 <printf+20>: ldr r0, [r3, #0] 42 0x0704cde6 <printf+22>: ldr r4, [r0, #0] 43 0x0704cde8 <printf+24>: ldr r0, [pc, #48] (0x704ce1c <printf+76>) 44 0x0704cdea <printf+26>: add r0, pc 45 0x0704cdec <printf+28>: ldr r0, [r0, #0] 46 0x0704cdee <printf+30>: ldr r0, [r0, #0] 47 0x0704cdf0 <printf+32>: blx 0x707ba30 <pthread_getspecific> 48 0x0704cdf4 <printf+36>: cbnz r0, 0x704cdfe <printf+46> 49 0x0704cdf6 <printf+38>: ldr r1, [pc, #40] (0x704ce20 <printf+80>) 50 0x0704cdf8 <printf+40>: add r1, pc 51 0x0704cdfa <printf+42>: ldr r1, [r1, #0] 52 0x0704cdfc <printf+44>: b.n 0x704ce00 <printf+48> 53 0x0704cdfe <printf+46>: mov r1, r0 54 0x0704ce00 <printf+48>: mov r0, r4 55 0x0704ce02 <printf+50>: mov r2, r5 56 0x0704ce04 <printf+52>: ldr r3, [sp, #0] 57 0x0704ce06 <printf+54>: bl 0x704ad44 <vfprintf_l> 58 0x0704ce0a <printf+58>: sub.w sp, r7, #8 ; 0x8 59 0x0704ce0e <printf+62>: ldmia.w sp!, {r4, r5, r7, lr} 60 0x0704ce12 <printf+66>: add sp, #16 61 0x0704ce14 <printf+68>: bx lr 62 0x0704ce16 <printf+70>: nop 63 0x0704ce18 <printf+72>: movs r3, #142 64 0x0704ce1a <printf+74>: lsls r5, r0, #0 65 0x0704ce1c <printf+76>: adds r1, #122 66 0x0704ce1e <printf+78>: lsls r5, r0, #0 67 0x0704ce20 <printf+80>: adds r1, #104 68 0x0704ce22 <printf+82>: lsls r5, r0, #0 69 End of assembler dump. 70 (gdb) x /2b 0x0704cdd0 71 0x704cdd0 <printf>: 0x0f 0xb4 72 (gdb) x /2b 0x0704cdd2 73 0x704cdd2 <printf+2>: 0xb0 0xb5 74 (gdb) x /2b 0x0704cdd4 75 0x704cdd4 <printf+4>: 0x02 0xaf 76 (gdb) x /2b 0x0704cdd6 77 0x704cdd6 <printf+6>: 0x81 0xb0 78 (gdb) x /2b 0x0704cdd8 79 0x704cdd8 <printf+8>: 0x05 0xab 80 (gdb) x /4b 0x0704cdda 81 0x704cdda <printf+10>: 0x53 0xf8 0x04 0x5b 82 (gdb) x /2b 0x0704cdde 83 0x704cdde <printf+14>: 0x00 0x93 84 (gdb) x /2b 0x0704cde0 85 0x704cde0 <printf+16>: 0x0d 0x4b 86 (gdb) x /2b 0x0704cde2 87 0x704cde2 <printf+18>: 0x7b 0x44 88 (gdb) x /2b 0x0704cde4 89 0x704cde4 <printf+20>: 0x18 0x68 90 (gdb) x /2b 0x0704cde6 91 0x704cde6 <printf+22>: 0x04 0x68 92 (gdb) x /2b 0x0704cde8 93 0x704cde8 <printf+24>: 0x0c 0x48 94 (gdb) x /2b 0x0704cdea 95 0x704cdea <printf+26>: 0x78 0x44 96 (gdb) x /2b 0x0704cdec 97 0x704cdec <printf+28>: 0x00 0x68 98 (gdb) x /2b 0x0704cdee 99 0x704cdee <printf+30>: 0x00 0x68 100 (gdb) x /4b 0x0704cdf0 101 0x704cdf0 <printf+32>: 0x2e 0xf0 0x1e 0xee 102 (gdb) x /2b 0x0704cdf4 103 0x704cdf4 <printf+36>: 0x18 0xb9 104 (gdb) x /2b 0x0704cdf6 105 0x704cdf6 <printf+38>: 0x0a 0x49 106 (gdb) x /2b 0x0704cdf8 107 0x704cdf8 <printf+40>: 0x79 0x44 108 (gdb) x /2b 0x0704cdfa 109 0x704cdfa <printf+42>: 0x09 0x68 110 (gdb) x /2b 0x0704cdfc 111 0x704cdfc <printf+44>: 0x00 0xe0 112 (gdb) x /2b 0x0704cdfe 113 0x704cdfe <printf+46>: 0x01 0x46 114 (gdb) x /2b 0x0704ce00 115 0x704ce00 <printf+48>: 0x20 0x46 116 (gdb) x /2b 0x0704ce02 117 0x704ce02 <printf+50>: 0x2a 0x46 118 (gdb) x /2b 0x0704ce04 119 0x704ce04 <printf+52>: 0x00 0x9b 120 (gdb) x /4b 0x0704ce06 121 0x704ce06 <printf+54>: 0xfd 0xf7 0x9d 0xff 122 (gdb) x /4b 0x0704ce0a 123 0x704ce0a <printf+58>: 0xa7 0xf1 0x08 0x0d 124 (gdb) x /4b 0x0704ce0e 125 0x704ce0e <printf+62>: 0xbd 0xe8 0xb0 0x40 126 (gdb) x /2b 0x0704ce12 127 0x704ce12 <printf+66>: 0x04 0xb0 128 (gdb) x /2b 0x0704ce14 129 0x704ce14 <printf+68>: 0x70 0x47 130 (gdb) x /2b 0x0704ce16 131 0x704ce16 <printf+70>: 0x00 0xbf 132 (gdb) x /2b 0x0704ce18 133 0x704ce18 <printf+72>: 0x8e 0x23 134 (gdb) x /2b 0x0704ce1a 135 0x704ce1a <printf+74>: 0x05 0x00 136 (gdb) x /2b 0x0704ce1c 137 0x704ce1c <printf+76>: 0x7a 0x31 138 (gdb) x /2b 0x0704ce1e 139 0x704ce1e <printf+78>: 0x05 0x00 140 (gdb) x /2b 0x0704ce20 141 0x704ce20 <printf+80>: 0x68 0x31 142 (gdb) x /2b 0x0704ce22 143 0x704ce22 <printf+82>: 0x05 0x00 144 (gdb) quit 145 146 Executing command: /Volumes/data/lldb/llvm/Debug+Asserts/bin/llvm-mc -disassemble -triple=thumb-apple-darwin -debug-only=arm-disassembler disasm-input.txt 147 Opcode=2305 Name=tPUSH Format=ARM_FORMAT_THUMBFRM(25) 148 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 149 ------------------------------------------------------------------------------------------------- 150 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 0: 1: 0: 0| 0: 0: 0: 0| 1: 1: 1: 1| 151 ------------------------------------------------------------------------------------------------- 152 153 push {r0, r1, r2, r3} 154 Opcode=2305 Name=tPUSH Format=ARM_FORMAT_THUMBFRM(25) 155 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 156 ------------------------------------------------------------------------------------------------- 157 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 0: 1: 0: 1| 1: 0: 1: 1| 0: 0: 0: 0| 158 ------------------------------------------------------------------------------------------------- 159 160 push {r4, r5, r7, lr} 161 Opcode=2228 Name=tADDrSPi Format=ARM_FORMAT_THUMBFRM(25) 162 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 163 ------------------------------------------------------------------------------------------------- 164 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 0| 1: 1: 1: 1| 0: 0: 0: 0| 0: 0: 1: 0| 165 ------------------------------------------------------------------------------------------------- 166 167 add r7, sp, #8 168 Opcode=2328 Name=tSUBspi Format=ARM_FORMAT_THUMBFRM(25) 169 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 170 ------------------------------------------------------------------------------------------------- 171 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 0: 0: 0: 0| 1: 0: 0: 0| 0: 0: 0: 1| 172 ------------------------------------------------------------------------------------------------- 173 174 sub sp, #4 175 Opcode=2228 Name=tADDrSPi Format=ARM_FORMAT_THUMBFRM(25) 176 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 177 ------------------------------------------------------------------------------------------------- 178 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 0| 1: 0: 1: 1| 0: 0: 0: 0| 0: 1: 0: 1| 179 ------------------------------------------------------------------------------------------------- 180 181 add r3, sp, #20 182 Opcode=1963 Name=t2LDR_POST Format=ARM_FORMAT_THUMBFRM(25) 183 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 184 ------------------------------------------------------------------------------------------------- 185 | 1: 1: 1: 1| 1: 0: 0: 0| 0: 1: 0: 1| 0: 0: 1: 1| 0: 1: 0: 1| 1: 0: 1: 1| 0: 0: 0: 0| 0: 1: 0: 0| 186 ------------------------------------------------------------------------------------------------- 187 188 ldr r5, [r3], #4 189 Opcode=2324 Name=tSTRspi Format=ARM_FORMAT_THUMBFRM(25) 190 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 191 ------------------------------------------------------------------------------------------------- 192 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 0: 1| 0: 0: 1: 1| 0: 0: 0: 0| 0: 0: 0: 0| 193 ------------------------------------------------------------------------------------------------- 194 195 str r3, [sp] 196 Opcode=2275 Name=tLDRpci Format=ARM_FORMAT_THUMBFRM(25) 197 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 198 ------------------------------------------------------------------------------------------------- 199 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 1: 0: 1: 1| 0: 0: 0: 0| 1: 1: 0: 1| 200 ------------------------------------------------------------------------------------------------- 201 202 ldr.n r3, #52 203 Opcode=2223 Name=tADDhirr Format=ARM_FORMAT_THUMBFRM(25) 204 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 205 ------------------------------------------------------------------------------------------------- 206 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 0: 0| 0: 1: 1: 1| 1: 0: 1: 1| 207 ------------------------------------------------------------------------------------------------- 208 209 add r3, pc 210 Opcode=2274 Name=tLDRi Format=ARM_FORMAT_THUMBFRM(25) 211 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 212 ------------------------------------------------------------------------------------------------- 213 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 1: 0| 1: 0: 0: 0| 0: 0: 0: 1| 1: 0: 0: 0| 214 ------------------------------------------------------------------------------------------------- 215 216 ldr r0, [r3] 217 Opcode=2274 Name=tLDRi Format=ARM_FORMAT_THUMBFRM(25) 218 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 219 ------------------------------------------------------------------------------------------------- 220 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 1: 0| 1: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 221 ------------------------------------------------------------------------------------------------- 222 223 ldr r4, [r0] 224 Opcode=2275 Name=tLDRpci Format=ARM_FORMAT_THUMBFRM(25) 225 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 226 ------------------------------------------------------------------------------------------------- 227 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 1: 0: 0: 0| 0: 0: 0: 0| 1: 1: 0: 0| 228 ------------------------------------------------------------------------------------------------- 229 230 ldr.n r0, #48 231 Opcode=2223 Name=tADDhirr Format=ARM_FORMAT_THUMBFRM(25) 232 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 233 ------------------------------------------------------------------------------------------------- 234 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 0: 0| 0: 1: 1: 1| 1: 0: 0: 0| 235 ------------------------------------------------------------------------------------------------- 236 237 add r0, pc 238 Opcode=2274 Name=tLDRi Format=ARM_FORMAT_THUMBFRM(25) 239 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 240 ------------------------------------------------------------------------------------------------- 241 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 1: 0| 1: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 242 ------------------------------------------------------------------------------------------------- 243 244 ldr r0, [r0] 245 Opcode=2274 Name=tLDRi Format=ARM_FORMAT_THUMBFRM(25) 246 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 247 ------------------------------------------------------------------------------------------------- 248 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 1: 0| 1: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 249 ------------------------------------------------------------------------------------------------- 250 251 ldr r0, [r0] 252 Opcode=2243 Name=tBLXi_r9 Format=ARM_FORMAT_THUMBFRM(25) 253 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 254 ------------------------------------------------------------------------------------------------- 255 | 1: 1: 1: 1| 0: 0: 0: 0| 0: 0: 1: 0| 1: 1: 1: 0| 1: 1: 1: 0| 1: 1: 1: 0| 0: 0: 0: 1| 1: 1: 1: 0| 256 ------------------------------------------------------------------------------------------------- 257 258 blx #191548 259 Opcode=2255 Name=tCBNZ Format=ARM_FORMAT_THUMBFRM(25) 260 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 261 ------------------------------------------------------------------------------------------------- 262 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 1: 0: 0: 1| 0: 0: 0: 1| 1: 0: 0: 0| 263 ------------------------------------------------------------------------------------------------- 264 265 cbnz r0, #6 266 Opcode=2275 Name=tLDRpci Format=ARM_FORMAT_THUMBFRM(25) 267 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 268 ------------------------------------------------------------------------------------------------- 269 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 1: 0: 0: 1| 0: 0: 0: 0| 1: 0: 1: 0| 270 ------------------------------------------------------------------------------------------------- 271 272 ldr.n r1, #40 273 Opcode=2223 Name=tADDhirr Format=ARM_FORMAT_THUMBFRM(25) 274 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 275 ------------------------------------------------------------------------------------------------- 276 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 0: 0| 0: 1: 1: 1| 1: 0: 0: 1| 277 ------------------------------------------------------------------------------------------------- 278 279 add r1, pc 280 Opcode=2274 Name=tLDRi Format=ARM_FORMAT_THUMBFRM(25) 281 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 282 ------------------------------------------------------------------------------------------------- 283 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 1: 0| 1: 0: 0: 0| 0: 0: 0: 0| 1: 0: 0: 1| 284 ------------------------------------------------------------------------------------------------- 285 286 ldr r1, [r1] 287 Opcode=2238 Name=tB Format=ARM_FORMAT_THUMBFRM(25) 288 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 289 ------------------------------------------------------------------------------------------------- 290 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 1: 1: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 291 ------------------------------------------------------------------------------------------------- 292 293 b #0 294 Opcode=2294 Name=tMOVr Format=ARM_FORMAT_THUMBFRM(25) 295 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 296 ------------------------------------------------------------------------------------------------- 297 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 1: 0| 0: 0: 0: 0| 0: 0: 0: 1| 298 ------------------------------------------------------------------------------------------------- 299 300 mov r1, r0 301 Opcode=2294 Name=tMOVr Format=ARM_FORMAT_THUMBFRM(25) 302 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 303 ------------------------------------------------------------------------------------------------- 304 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 1: 0| 0: 0: 1: 0| 0: 0: 0: 0| 305 ------------------------------------------------------------------------------------------------- 306 307 mov r0, r4 308 Opcode=2294 Name=tMOVr Format=ARM_FORMAT_THUMBFRM(25) 309 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 310 ------------------------------------------------------------------------------------------------- 311 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 1: 0| 0: 0: 1: 0| 1: 0: 1: 0| 312 ------------------------------------------------------------------------------------------------- 313 314 mov r2, r5 315 Opcode=2278 Name=tLDRspi Format=ARM_FORMAT_THUMBFRM(25) 316 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 317 ------------------------------------------------------------------------------------------------- 318 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 0: 1| 1: 0: 1: 1| 0: 0: 0: 0| 0: 0: 0: 0| 319 ------------------------------------------------------------------------------------------------- 320 321 ldr r3, [sp] 322 Opcode=2246 Name=tBLr9 Format=ARM_FORMAT_THUMBFRM(25) 323 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 324 ------------------------------------------------------------------------------------------------- 325 | 1: 1: 1: 1| 0: 1: 1: 1| 1: 1: 1: 1| 1: 1: 0: 1| 1: 1: 1: 1| 1: 1: 1: 1| 1: 0: 0: 1| 1: 1: 0: 1| 326 ------------------------------------------------------------------------------------------------- 327 328 bl #-8390 329 Opcode=2153 Name=t2SUBri Format=ARM_FORMAT_THUMBFRM(25) 330 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 331 ------------------------------------------------------------------------------------------------- 332 | 1: 1: 1: 1| 0: 0: 0: 1| 1: 0: 1: 0| 0: 1: 1: 1| 0: 0: 0: 0| 1: 1: 0: 1| 0: 0: 0: 0| 1: 0: 0: 0| 333 ------------------------------------------------------------------------------------------------- 334 335 sub.w sp, r7, #8 336 Opcode=1926 Name=t2LDMIA_UPD Format=ARM_FORMAT_THUMBFRM(25) 337 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 338 ------------------------------------------------------------------------------------------------- 339 | 1: 1: 1: 0| 1: 0: 0: 0| 1: 0: 1: 1| 1: 1: 0: 1| 0: 1: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 0: 0: 0: 0| 340 ------------------------------------------------------------------------------------------------- 341 342 pop.w {r4, r5, r7, lr} 343 Opcode=2230 Name=tADDspi Format=ARM_FORMAT_THUMBFRM(25) 344 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 345 ------------------------------------------------------------------------------------------------- 346 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 347 ------------------------------------------------------------------------------------------------- 348 349 add sp, #16 350 Opcode=2250 Name=tBX_RET Format=ARM_FORMAT_THUMBFRM(25) 351 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 352 ------------------------------------------------------------------------------------------------- 353 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 0| 0: 1: 1: 1| 0: 1: 1: 1| 0: 0: 0: 0| 354 ------------------------------------------------------------------------------------------------- 355 356 bx lr 357 Opcode=2300 Name=tNOP Format=ARM_FORMAT_THUMBFRM(25) 358 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 359 ------------------------------------------------------------------------------------------------- 360 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 1: 0: 1: 1| 1: 1: 1: 1| 0: 0: 0: 0| 0: 0: 0: 0| 361 ------------------------------------------------------------------------------------------------- 362 363 nop 364 Opcode=2293 Name=tMOVi8 Format=ARM_FORMAT_THUMBFRM(25) 365 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 366 ------------------------------------------------------------------------------------------------- 367 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 1: 0| 0: 0: 1: 1| 1: 0: 0: 0| 1: 1: 1: 0| 368 ------------------------------------------------------------------------------------------------- 369 370 movs r3, #142 371 Opcode=2290 Name=tMOVSr Format=ARM_FORMAT_THUMBFRM(25) 372 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 373 ------------------------------------------------------------------------------------------------- 374 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 1| 375 ------------------------------------------------------------------------------------------------- 376 377 movs r5, r0 378 Opcode=2225 Name=tADDi8 Format=ARM_FORMAT_THUMBFRM(25) 379 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 380 ------------------------------------------------------------------------------------------------- 381 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 1: 1| 0: 0: 0: 1| 0: 1: 1: 1| 1: 0: 1: 0| 382 ------------------------------------------------------------------------------------------------- 383 384 adds r1, #122 385 Opcode=2290 Name=tMOVSr Format=ARM_FORMAT_THUMBFRM(25) 386 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 387 ------------------------------------------------------------------------------------------------- 388 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 1| 389 ------------------------------------------------------------------------------------------------- 390 391 movs r5, r0 392 Opcode=2225 Name=tADDi8 Format=ARM_FORMAT_THUMBFRM(25) 393 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 394 ------------------------------------------------------------------------------------------------- 395 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 1: 1| 0: 0: 0: 1| 0: 1: 1: 0| 1: 0: 0: 0| 396 ------------------------------------------------------------------------------------------------- 397 398 adds r1, #104 399 Opcode=2290 Name=tMOVSr Format=ARM_FORMAT_THUMBFRM(25) 400 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0 401 ------------------------------------------------------------------------------------------------- 402 | 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 0: 0: 0| 0: 1: 0: 1| 403 ------------------------------------------------------------------------------------------------- 404 405 movs r5, r0 406 [16:28:00] johnny:/Volumes/data/Radar/9131529 $ 407