namespace X86Disassembler.X86.Handlers.Mov; /// /// Handler for MOV r32, r/m32 instruction (0x8B) and MOV r8, r/m8 instruction (0x8A) /// public class MovRegMemHandler : InstructionHandler { /// /// Initializes a new instance of the MovRegMemHandler class /// /// The buffer containing the code to decode /// The instruction decoder that owns this handler /// The length of the buffer public MovRegMemHandler(byte[] codeBuffer, InstructionDecoder decoder, int length) : base(codeBuffer, decoder, length) { } /// /// Checks if this handler can decode the given opcode /// /// The opcode to check /// True if this handler can decode the opcode public override bool CanHandle(byte opcode) { return opcode == 0x8A || opcode == 0x8B; } /// /// Decodes a MOV r32, r/m32 or MOV r8, r/m8 instruction /// /// The opcode of the instruction /// The instruction object to populate /// True if the instruction was successfully decoded public override bool Decode(byte opcode, Instruction instruction) { // Save the original position for raw bytes calculation int startPosition = Decoder.GetPosition(); // Set the mnemonic instruction.Mnemonic = "mov"; if (startPosition >= Length) { instruction.Operands = "??"; instruction.RawBytes = new byte[] { opcode }; return true; } // Determine operand size (0 = 8-bit, 1 = 32-bit) bool operandSize32 = (opcode & 0x01) != 0; int operandSize = operandSize32 ? 32 : 8; // Use ModRMDecoder to decode the ModR/M byte var (mod, reg, rm, rmOperand) = ModRMDecoder.ReadModRM(false); // false for 32-bit operand // Get register name based on size string regName; if (operandSize == 8) { regName = GetRegister8(reg); } else { regName = GetRegister32(reg); } // Get the position after decoding the ModR/M byte int newPosition = Decoder.GetPosition(); // Set the operands - register is the destination, r/m is the source (for 0x8B) // This matches the correct x86 instruction format: MOV r32, r/m32 instruction.Operands = $"{regName}, {rmOperand}"; // Set the raw bytes int totalBytes = newPosition - startPosition + 1; // +1 for opcode byte[] rawBytes = new byte[totalBytes]; rawBytes[0] = opcode; for (int i = 0; i < totalBytes - 1; i++) { if (startPosition + i < Length) { rawBytes[i + 1] = CodeBuffer[startPosition + i]; } } instruction.RawBytes = rawBytes; return true; } }