1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
|
/* unexec for GNU Emacs on Windows NT.
Copyright (C) 1994 Free Software Foundation, Inc.
This file is part of GNU Emacs.
GNU Emacs is free software; you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation; either version 2, or (at your option)
any later version.
GNU Emacs is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
You should have received a copy of the GNU General Public License
along with GNU Emacs; see the file COPYING. If not, write to
the Free Software Foundation, Inc., 59 Temple Place - Suite 330,
Boston, MA 02111-1307, USA.
Geoff Voelker (voelker@cs.washington.edu) 8-12-94
*/
#include <stdlib.h> /* _fmode */
#include <stdio.h>
#include <fcntl.h>
#include <windows.h>
extern BOOL ctrl_c_handler (unsigned long type);
#include "ntheap.h"
/* A convenient type for keeping all the info about a mapped file together. */
typedef struct file_data {
char *name;
unsigned long size;
HANDLE file;
HANDLE file_mapping;
unsigned char *file_base;
} file_data;
/* Basically, our "initialized" flag. */
BOOL need_to_recreate_heap = FALSE;
/* So we can find our heap in the file to recreate it. */
unsigned long heap_index_in_executable = 0;
void open_input_file (file_data *p_file, char *name);
void open_output_file (file_data *p_file, char *name, unsigned long size);
void close_file_data (file_data *p_file);
void get_section_info (file_data *p_file);
void copy_executable_and_dump_data_section (file_data *, file_data *);
void dump_bss_and_heap (file_data *p_infile, file_data *p_outfile);
/* Cached info about the .data section in the executable. */
PUCHAR data_start_va = 0;
DWORD data_start_file = 0;
DWORD data_size = 0;
/* Cached info about the .bss section in the executable. */
PUCHAR bss_start = 0;
DWORD bss_size = 0;
#ifdef HAVE_NTGUI
HINSTANCE hinst = NULL;
HINSTANCE hprevinst = NULL;
LPSTR lpCmdLine = "";
int nCmdShow = 0;
int __stdcall
WinMain (_hinst, _hPrevInst, _lpCmdLine, _nCmdShow)
HINSTANCE _hinst;
HINSTANCE _hPrevInst;
LPSTR _lpCmdLine;
int _nCmdShow;
{
int i, j, new_argc;
char **new_argv;
/* Need to parse command line */
hinst = _hinst;
hprevinst = _hPrevInst;
lpCmdLine = _lpCmdLine;
nCmdShow = _nCmdShow;
new_argc = __argc;
new_argv = (char **) xmalloc (sizeof (char *) * new_argc);
if (!new_argv)
return main (__argc, __argv, _environ);
for (i = j = 0; i < __argc; i++)
{
/* Allocate a console window for stdout and stderr if requested.
We want to allocate as soon as we possibly can to catch
debugging output. */
if (!strcmp ("-output_console", __argv[i]))
{
AllocConsole ();
new_argc--;
continue;
}
new_argv[j++] = __argv[i];
}
return main (new_argc, new_argv, _environ);
}
#endif /* HAVE_NTGUI */
/* Startup code for running on NT. When we are running as the dumped
version, we need to bootstrap our heap and .bss section into our
address space before we can actually hand off control to the startup
code supplied by NT (primarily because that code relies upon malloc ()). */
void
_start (void)
{
#ifdef HAVE_NTGUI
extern void WinMainCRTStartup (void);
#else
extern void mainCRTStartup (void);
#endif /* HAVE_NTGUI */
/* Cache system info, e.g., the NT page size. */
cache_system_info ();
/* If we're a dumped version of emacs then we need to recreate
our heap and play tricks with our .bss section. Do this before
start up. (WARNING: Do not put any code before this section
that relies upon malloc () and runs in the dumped version. It
won't work.) */
if (need_to_recreate_heap)
{
char executable_path[MAX_PATH];
if (GetModuleFileName (NULL, executable_path, MAX_PATH) == 0)
{
printf ("Failed to find path for executable.\n");
exit (1);
}
recreate_heap (executable_path);
need_to_recreate_heap = FALSE;
}
/* The default behavior is to treat files as binary and patch up
text files appropriately, in accordance with the MSDOS code. */
_fmode = O_BINARY;
/* This prevents ctrl-c's in shells running while we're suspended from
having us exit. */
SetConsoleCtrlHandler ((PHANDLER_ROUTINE) ctrl_c_handler, TRUE);
/* Invoke the NT CRT startup routine now that our housecleaning
is finished. */
#ifdef HAVE_NTGUI
WinMainCRTStartup ();
#else
mainCRTStartup ();
#endif /* HAVE_NTGUI */
}
/* Dump out .data and .bss sections into a new executable. */
void
unexec (char *new_name, char *old_name, void *start_data, void *start_bss,
void *entry_address)
{
file_data in_file, out_file;
char out_filename[MAX_PATH], in_filename[MAX_PATH];
unsigned long size;
char *ptr;
/* Make sure that the input and output filenames have the
".exe" extension...patch them up if they don't. */
strcpy (in_filename, old_name);
ptr = in_filename + strlen (in_filename) - 4;
if (strcmp (ptr, ".exe"))
strcat (in_filename, ".exe");
strcpy (out_filename, new_name);
ptr = out_filename + strlen (out_filename) - 4;
if (strcmp (ptr, ".exe"))
strcat (out_filename, ".exe");
printf ("Dumping from %s\n", in_filename);
printf (" to %s\n", out_filename);
/* We need to round off our heap to NT's allocation unit (64KB). */
round_heap (get_allocation_unit ());
/* Open the undumped executable file. */
open_input_file (&in_file, in_filename);
/* Get the interesting section info, like start and size of .bss... */
get_section_info (&in_file);
/* The size of the dumped executable is the size of the original
executable plus the size of the heap and the size of the .bss section. */
heap_index_in_executable = (unsigned long)
round_to_next ((unsigned char *) in_file.size, get_allocation_unit ());
size = heap_index_in_executable + get_committed_heap_size () + bss_size;
open_output_file (&out_file, out_filename, size);
/* Set the flag (before dumping). */
need_to_recreate_heap = TRUE;
copy_executable_and_dump_data_section (&in_file, &out_file);
dump_bss_and_heap (&in_file, &out_file);
close_file_data (&in_file);
close_file_data (&out_file);
}
/* File handling. */
void
open_input_file (file_data *p_file, char *filename)
{
HANDLE file;
HANDLE file_mapping;
void *file_base;
unsigned long size, upper_size;
file = CreateFile (filename, GENERIC_READ, FILE_SHARE_READ, NULL,
OPEN_EXISTING, FILE_ATTRIBUTE_NORMAL, 0);
if (file == INVALID_HANDLE_VALUE)
{
printf ("Failed to open %s (%d)...bailing.\n",
filename, GetLastError ());
exit (1);
}
size = GetFileSize (file, &upper_size);
file_mapping = CreateFileMapping (file, NULL, PAGE_READONLY,
0, size, NULL);
if (!file_mapping)
{
printf ("Failed to create file mapping of %s (%d)...bailing.\n",
filename, GetLastError ());
exit (1);
}
file_base = MapViewOfFile (file_mapping, FILE_MAP_READ, 0, 0, size);
if (file_base == 0)
{
printf ("Failed to map view of file of %s (%d)...bailing.\n",
filename, GetLastError ());
exit (1);
}
p_file->name = filename;
p_file->size = size;
p_file->file = file;
p_file->file_mapping = file_mapping;
p_file->file_base = file_base;
}
void
open_output_file (file_data *p_file, char *filename, unsigned long size)
{
HANDLE file;
HANDLE file_mapping;
void *file_base;
int i;
file = CreateFile (filename, GENERIC_READ | GENERIC_WRITE, 0, NULL,
CREATE_ALWAYS, FILE_ATTRIBUTE_NORMAL, 0);
if (file == INVALID_HANDLE_VALUE)
{
i = GetLastError ();
printf ("open_output_file: Failed to open %s (%d).\n",
filename, i);
exit (1);
}
file_mapping = CreateFileMapping (file, NULL, PAGE_READWRITE,
0, size, NULL);
if (!file_mapping)
{
i = GetLastError ();
printf ("open_output_file: Failed to create file mapping of %s (%d).\n",
filename, i);
exit (1);
}
file_base = MapViewOfFile (file_mapping, FILE_MAP_WRITE, 0, 0, size);
if (file_base == 0)
{
i = GetLastError ();
printf ("open_output_file: Failed to map view of file of %s (%d).\n",
filename, i);
exit (1);
}
p_file->name = filename;
p_file->size = size;
p_file->file = file;
p_file->file_mapping = file_mapping;
p_file->file_base = file_base;
}
/* Close the system structures associated with the given file. */
static void
close_file_data (file_data *p_file)
{
UnmapViewOfFile (p_file->file_base);
CloseHandle (p_file->file_mapping);
CloseHandle (p_file->file);
}
/* Routines to manipulate NT executable file sections. */
static void
get_bss_info_from_map_file (file_data *p_infile, PUCHAR *p_bss_start,
DWORD *p_bss_size)
{
int n, start, len;
char map_filename[MAX_PATH];
char buffer[256];
FILE *map;
/* Overwrite the .exe extension on the executable file name with
the .map extension. */
strcpy (map_filename, p_infile->name);
n = strlen (map_filename) - 3;
strcpy (&map_filename[n], "map");
map = fopen (map_filename, "r");
if (!map)
{
printf ("Failed to open map file %s, error %d...bailing out.\n",
map_filename, GetLastError ());
exit (-1);
}
while (fgets (buffer, sizeof (buffer), map))
{
if (!(strstr (buffer, ".bss") && strstr (buffer, "DATA")))
continue;
n = sscanf (buffer, " %*d:%x %x", &start, &len);
if (n != 2)
{
printf ("Failed to scan the .bss section line:\n%s", buffer);
exit (-1);
}
break;
}
*p_bss_start = (PUCHAR) start;
*p_bss_size = (DWORD) len;
}
static unsigned long
get_section_size (PIMAGE_SECTION_HEADER p_section)
{
/* The section size is in different locations in the different versions. */
switch (get_nt_minor_version ())
{
case 10:
return p_section->SizeOfRawData;
default:
return p_section->Misc.VirtualSize;
}
}
/* Flip through the executable and cache the info necessary for dumping. */
static void
get_section_info (file_data *p_infile)
{
PIMAGE_DOS_HEADER dos_header;
PIMAGE_NT_HEADERS nt_header;
PIMAGE_SECTION_HEADER section, data_section;
unsigned char *ptr;
int i;
dos_header = (PIMAGE_DOS_HEADER) p_infile->file_base;
if (dos_header->e_magic != IMAGE_DOS_SIGNATURE)
{
printf ("Unknown EXE header in %s...bailing.\n", p_infile->name);
exit (1);
}
nt_header = (PIMAGE_NT_HEADERS) (((unsigned long) dos_header) +
dos_header->e_lfanew);
if (nt_header == NULL)
{
printf ("Failed to find IMAGE_NT_HEADER in %s...bailing.\n",
p_infile->name);
exit (1);
}
/* Check the NT header signature ... */
if (nt_header->Signature != IMAGE_NT_SIGNATURE)
{
printf ("Invalid IMAGE_NT_SIGNATURE 0x%x in %s...bailing.\n",
nt_header->Signature, p_infile->name);
}
/* Flip through the sections for .data and .bss ... */
section = (PIMAGE_SECTION_HEADER) IMAGE_FIRST_SECTION (nt_header);
for (i = 0; i < nt_header->FileHeader.NumberOfSections; i++)
{
if (!strcmp (section->Name, ".bss"))
{
/* The .bss section. */
ptr = (char *) nt_header->OptionalHeader.ImageBase +
section->VirtualAddress;
bss_start = ptr;
bss_size = get_section_size (section);
}
if (!strcmp (section->Name, ".data"))
{
/* From lastfile.c */
extern char my_edata[];
/* The .data section. */
data_section = section;
ptr = (char *) nt_header->OptionalHeader.ImageBase +
section->VirtualAddress;
data_start_va = ptr;
data_start_file = section->PointerToRawData;
/* We want to only write Emacs data back to the executable,
not any of the library data (if library data is included,
then a dumped Emacs won't run on system versions other
than the one Emacs was dumped on). */
data_size = my_edata - data_start_va;
}
section++;
}
if (!bss_start && !bss_size)
{
/* Starting with MSVC 4.0, the .bss section has been eliminated
and appended virtually to the end of the .data section. Our
only hint about where the .bss section starts in the address
comes from the SizeOfRawData field in the .data section
header. Unfortunately, this field is only approximate, as it
is a rounded number and is typically rounded just beyond the
start of the .bss section. To find the start and size of the
.bss section exactly, we have to peek into the map file. */
get_bss_info_from_map_file (p_infile, &ptr, &bss_size);
bss_start = ptr + nt_header->OptionalHeader.ImageBase
+ data_section->VirtualAddress;
}
}
/* The dump routines. */
static void
copy_executable_and_dump_data_section (file_data *p_infile,
file_data *p_outfile)
{
unsigned char *data_file, *data_va;
unsigned long size, index;
/* Get a pointer to where the raw data should go in the executable file. */
data_file = (char *) p_outfile->file_base + data_start_file;
/* Get a pointer to the raw data in our address space. */
data_va = data_start_va;
size = (DWORD) data_file - (DWORD) p_outfile->file_base;
printf ("Copying executable up to data section...\n");
printf ("\t0x%08x Offset in input file.\n", 0);
printf ("\t0x%08x Offset in output file.\n", 0);
printf ("\t0x%08x Size in bytes.\n", size);
memcpy (p_outfile->file_base, p_infile->file_base, size);
size = data_size;
printf ("Dumping .data section...\n");
printf ("\t0x%08x Address in process.\n", data_va);
printf ("\t0x%08x Offset in output file.\n",
data_file - p_outfile->file_base);
printf ("\t0x%08x Size in bytes.\n", size);
memcpy (data_file, data_va, size);
index = (DWORD) data_file + size - (DWORD) p_outfile->file_base;
size = p_infile->size - index;
printf ("Copying rest of executable...\n");
printf ("\t0x%08x Offset in input file.\n", index);
printf ("\t0x%08x Offset in output file.\n", index);
printf ("\t0x%08x Size in bytes.\n", size);
memcpy ((char *) p_outfile->file_base + index,
(char *) p_infile->file_base + index, size);
}
static void
dump_bss_and_heap (file_data *p_infile, file_data *p_outfile)
{
unsigned char *heap_data, *bss_data;
unsigned long size, index;
printf ("Dumping heap into executable...\n");
index = heap_index_in_executable;
size = get_committed_heap_size ();
heap_data = get_heap_start ();
printf ("\t0x%08x Heap start in process.\n", heap_data);
printf ("\t0x%08x Heap offset in executable.\n", index);
printf ("\t0x%08x Heap size in bytes.\n", size);
memcpy ((PUCHAR) p_outfile->file_base + index, heap_data, size);
printf ("Dumping .bss into executable...\n");
index += size;
size = bss_size;
bss_data = bss_start;
printf ("\t0x%08x BSS start in process.\n", bss_data);
printf ("\t0x%08x BSS offset in executable.\n", index);
printf ("\t0x%08x BSS size in bytes.\n", size);
memcpy ((char *) p_outfile->file_base + index, bss_data, size);
}
/* Reload and remap routines. */
/* Load the dumped .bss section into the .bss area of our address space. */
void
read_in_bss (char *filename)
{
HANDLE file;
unsigned long size, index, n_read, total_read;
char buffer[512], *bss;
int i;
file = CreateFile (filename, GENERIC_READ, FILE_SHARE_READ, NULL,
OPEN_EXISTING, FILE_ATTRIBUTE_NORMAL, 0);
if (file == INVALID_HANDLE_VALUE)
{
i = GetLastError ();
exit (1);
}
/* Seek to where the .bss section is tucked away after the heap... */
index = heap_index_in_executable + get_committed_heap_size ();
if (SetFilePointer (file, index, NULL, FILE_BEGIN) == 0xFFFFFFFF)
{
i = GetLastError ();
exit (1);
}
/* Ok, read in the saved .bss section and initialize all
uninitialized variables. */
if (!ReadFile (file, bss_start, bss_size, &n_read, NULL))
{
i = GetLastError ();
exit (1);
}
CloseHandle (file);
}
/* Map the heap dumped into the executable file into our address space. */
void
map_in_heap (char *filename)
{
HANDLE file;
HANDLE file_mapping;
void *file_base;
unsigned long size, upper_size, n_read;
int i;
file = CreateFile (filename, GENERIC_READ, FILE_SHARE_READ, NULL,
OPEN_EXISTING, FILE_ATTRIBUTE_NORMAL, 0);
if (file == INVALID_HANDLE_VALUE)
{
i = GetLastError ();
exit (1);
}
size = GetFileSize (file, &upper_size);
file_mapping = CreateFileMapping (file, NULL, PAGE_WRITECOPY,
0, size, NULL);
if (!file_mapping)
{
i = GetLastError ();
exit (1);
}
size = get_committed_heap_size ();
file_base = MapViewOfFileEx (file_mapping, FILE_MAP_COPY, 0,
heap_index_in_executable, size,
get_heap_start ());
if (file_base != 0)
{
return;
}
/* If we don't succeed with the mapping, then copy from the
data into the heap. */
CloseHandle (file_mapping);
if (VirtualAlloc (get_heap_start (), get_committed_heap_size (),
MEM_RESERVE | MEM_COMMIT, PAGE_READWRITE) == NULL)
{
i = GetLastError ();
exit (1);
}
/* Seek to the location of the heap data in the executable. */
i = heap_index_in_executable;
if (SetFilePointer (file, i, NULL, FILE_BEGIN) == 0xFFFFFFFF)
{
i = GetLastError ();
exit (1);
}
/* Read in the data. */
if (!ReadFile (file, get_heap_start (),
get_committed_heap_size (), &n_read, NULL))
{
i = GetLastError ();
exit (1);
}
CloseHandle (file);
}
|