-
Notifications
You must be signed in to change notification settings - Fork 27
/
Copy pathmbr.asm
413 lines (329 loc) · 19.3 KB
/
mbr.asm
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
;********************************************************************;
;* x86 Master Boot Record *;
;* *;
;* github.com/egormkn/MBR-Boot-Manager *;
;********************************************************************;
%define SIZE 512 ; MBR sector size (512 bytes)
%define BASE 0x7C00 ; Address at which BIOS will load MBR
%define DEST 0x0600 ; Address at which MBR should be copied
%define ENTRY_NUM 4 ; Number of partition entries
%define ENTRY_SIZE 16 ; Partition table entry size
%define DISK_ID 0x12345678 ; NT Drive Serial Number (4 bytes)
%define TOP 8 ; Padding from the top
%define LEFT 32 ; Padding from the left
%define COLOR 0x02 ; Background and text color
;********************************************************************;
;* NASM settings *;
;********************************************************************;
[BITS 16] ; Enable 16-bit real mode
[ORG BASE] ; Set the base address for MBR
;********************************************************************;
;* Prepare registers *;
;********************************************************************;
CLI ; Clear interrupts
MOV SP, BASE ; Set Stack Pointer to BASE
XOR AX, AX ; Zero out the Accumulator register
MOV SS, AX ; Zero out Stack Segment register
MOV ES, AX ; Zero out Extra Segment register
MOV DS, AX ; Zero out Data Segment register
PUSH DX ; Save DX value passed by BIOS
;********************************************************************;
;* Copy MBR to DEST and jump there *;
;********************************************************************;
MOV SI, BASE ; Source Index to copy code from
MOV DI, DEST ; Destination Index to copy code to
MOV CX, SIZE ; Number of bytes to be copied
CLD ; Clear Direction Flag (move forward)
REP MOVSB ; Repeat MOVSB instruction for CX times
JMP SKIP + DEST ; Jump to copied code skipping part above
SKIP: EQU ($ - $$) ; Go here in copied code
;********************************************************************;
;* Set BIOS video mode *;
;********************************************************************;
STI ; Enable interrupts
MOV AX, 0x0003 ; Set video mode to 0x03 (80x25, 4-bit)
INT 0x10 ; Change video mode (function 0x00)
; Destroyed: AX, SP, BP, SI, DI
MOV AX, 0x0600 ; Scroll window (0x00 lines => clear)
MOV BH, COLOR ; Background and text color
XOR CX, CX ; Upper-left point (row: 0, column: 0)
MOV DX, 0x184F ; Lower-right point (row: 24, column: 79)
INT 0x10 ; Scroll up window (function 0x06)
; Destroyed: AX, SP, BP, SI, DI
MOV AX, 0x0103 ; Set cursor shape for video mode 0x03
MOV CX, 0x0105 ; Display lines 1-5 (max: 0-7)
INT 0x10 ; Change cursor shape (function 0x01)
; Destroyed: AX, SP, BP, SI, DI
;********************************************************************;
;* Print Partition table *;
;********************************************************************;
MOV CX, ENTRY_NUM ; Maximum of four entries as loop counter
MOV BP, 494 + DEST ; Location of last entry in the table
XOR BX, BX ; BL = active index, BH = page number
%define ZERO BH ; BH now always holds 0x00, that will be
; used to minify the generated code
FOR_PARTITIONS: ; Loop for each partition entry (4 to 1)
PUSH BP ; Save BP state
CMP BYTE [BP], 0x80 ; Check for active state of partition
JNE NOT_ACTIVE ; Partition is not active, skip
MOV BL, CL ; Save index of active partition
NOT_ACTIVE: ; Go here if partition is not active
MOV AH, 0x02 ; Set cursor position, BH set to 0x00
MOV DX, TOP*0x100+LEFT+2 ; DH = row, DL = column
ADD DH, CL ; Change the row according to CL
INT 0x10 ; Change cursor position (function 0x02)
; Destroyed: AX, SP, BP, SI, DI
MOV SI, PARTITION_STR_ID ; Print partition title
CALL PRINT_STRING ; Call printing routine
MOV AL, 0x30 ; Put ASCII code for 0 to AL
ADD AL, CL ; Get partition number ASCII code
MOV AH, 0x0E ; Character print function
INT 0x10 ; Print partition number
; Destroyed: AX
CMP BL, CL ; Compare current partition with active
JNE SKIP_ACTIVE_LABEL ; If current is not active, skip printing
MOV SI, ACTIVE_STR_ID ; Print partition title
CALL PRINT_STRING ; Call printing routine
SKIP_ACTIVE_LABEL: ; Go here to skip printing of "active"
POP BP ; Restore BP state
SUB BP, ENTRY_SIZE ; Switch to the previous partition entry
LOOP FOR_PARTITIONS ; Print another entry unless CX = 0
CMP BYTE BL, ZERO ; Check if we found an active partition
JNE RUN_MANAGER ; If there is one, just display menu
INC BX ; If not, set cursor to first entry
JMP MENU_LOOP ; And display menu
RUN_MANAGER:
;********************************************************************;
;* Skip menu if Shift key is not pressed *;
;********************************************************************;
MOV AH, 0x02 ; Get the shift status of the keyboard
INT 0x16 ; Get flags of keyboard state to AL
AND AL, 0x03 ; AND bitmask for left and right shift
CMP AL, ZERO ; Check for shift keys
JE BOOT ; Skip menu if shift key is not pressed
;********************************************************************;
;* Display boot menu *;
;********************************************************************;
MENU_LOOP: ; Menu loop
MOV AH, 0x02 ; Set cursor position, BH set to 0x00
MOV DX, TOP*0x100+LEFT ; DH = row, DL = column
ADD DH, BL ; Change the row according to BL
INT 0x10 ; Change cursor position (function 0x02)
; Destroyed: AX, SP, BP, SI, DI
MOV AH, ZERO ; Read key code from keyboard
INT 0x16 ; Get key code (function 0x00)
CMP AX, 0x4800 ; Check for UP arrow
JE MOVE_UP ; Move selection up
CMP AX, 0x5000 ; Check for DOWN arrow
JE MOVE_DOWN ; Move selection down
CMP AX, 0x011B ; Check for Esc key
JE REBOOT ; Reboot
CMP AX, 0x1C0D ; Check for Enter key
JE BOOT ; Boot from selected partition
JMP MENU_LOOP ; Read another key
;********************************************************************;
;* Boot menu routines *;
;********************************************************************;
MOVE_UP: ; Move cursor up
CMP BL, 0x01 ; Check if cursor is at the first entry
JLE MOVE_UP_RET ; If it is, do nothing
DEC BX ; Move it up by decrementing index
MOVE_UP_RET:
JMP MENU_LOOP ; Return to menu loop
MOVE_DOWN: ; Move cursor down
CMP BL, 0x04 ; Check if cursor is at the last entry
JAE MOVE_DOWN_RET ; If it is, do nothing
INC BX ; Move it down by incrementing index
MOVE_DOWN_RET:
JMP MENU_LOOP ; Return to menu loop
;********************************************************************;
;* Print Partition subroutine *;
;********************************************************************;
PRINT_ERROR:
MOV SI, ERROR_STR_ID ; Put error message id to SI
CALL PRINT_STRING ; Print error message from SI
MOV AX, 0x8600 ; Function 0x86 - wait
MOV CX, 0x002D ; Put time in microseconds to CX:DX
XOR DX, DX ; Use zero here to minify code
INT 0x15 ; Wait 3 seconds
JMP REBOOT ; Reboot
ROM_BASIC:
INT 0x18 ; Start ROM-BASIC or display an error
RELOAD:
INT 0x19 ; Jump to first sector of disk
REBOOT:
JMP 0xFFFF:0x0000 ; Perform a cold reboot
HALT:
HLT ; Halt system
JMP HALT ; Forever loop just because
;********************************************************************;
;* Select the way of working with the disk *;
;********************************************************************;
; BX = selected partition (1..4), DX is on stack
BOOT:
PUSH BX ; Save state of BX (selected partition)
MOV AH, 0x02 ; Set cursor position, BH set to 0x00
MOV DX, 0x0101 ; DH = row, DL = column
INT 0x10 ; Change cursor position (function 0x02)
; Destroyed: AX, SP, BP, SI, DI
MOV AX, 0x0600 ; Scroll window (0x00 lines => clear)
MOV BH, COLOR ; Background and text color
XOR CX, CX ; Upper-left point (row: 0, column: 0)
MOV DX, 0x184F ; Lower-right point (row: 24, column: 79)
INT 0x10 ; Scroll up window (function 0x06)
; Destroyed: AX, SP, BP, SI, DI
MOV BP, 430 + DEST ; Put (446 - ENTRY_NUM) to BP
POP BX ; Restore saved state of BX
SHL BX, 4 ; Multiply partition index by 16
ADD BP, BX ; Add offset to BP
POP DX ; Restore saved state of DX got from BIOS
MOV [BP], DL ; Put DH = BIOS disk number to [BP]
PUSH BP ; Save Base Pointer on Stack
MOV BYTE [BP+0x11], 5 ; Number of attempts of reading the disk
MOV BYTE [BP+0x10], ZERO ; Used as a flag for the INT13 Extensions
MOV AH, 0x41 ;/ INT13h BIOS Extensions check
MOV BX, 0x55AA ;| AH = 0x41, BX = 0x55AA,
INT 0x13 ;| DL = BIOS disk number (HDD1 = 0x80)
;| If CF flag cleared and [BX] changes to
;| 0xAA55, they are installed
;| Major version is in AH: 01h=1.x;
;| 20h=2.0/EDD-1.0; 21h=2.1/EDD-1.1;
;| 30h=EDD-3.0.
;| CX = API subset support bitmap.
;| If bit 0 is set, extended disk access
;| functions (AH=42h-44h,47h,48h) are
;| supported. Only if no extended support
;\ is available, will it fail TEST
POP BP ; Restore Base Pointer from stack
JB TRY_READ ; CF not cleared, no INT 13 Extensions
CMP BX, 0xAA55 ; Did contents of BX reverse?
JNZ TRY_READ ; BX not reversed, no INT 13 Extensions
TEST CX, 0x0001 ; Check functions support
JZ TRY_READ ; Bit 0 not set, no INT 13 Extensions
INC BYTE [BP+0x10] ; Set INT13 Extensions flag
TRY_READ:
PUSHAD ; Save all registers on the stack
; ax, cx, dx, bx, sp, bp, si, di
CMP BYTE [BP+10], 00 ; Compare INT13 Extensions flag to zero
JZ INT13_BASIC ; If 0, can't use Extensions.
;********************************************************************;
;* Read VBR with INT13 Extended Read *;
;********************************************************************;
; The following code uses INT 13, Function 0x42 ("Extended Read")
; by first pushing the "Disk Address Packet" onto the Stack in
; reverse order of how it will read the data
;
; Offset Size Description of DISK ADDRESS PACKET's Contents
; ------ ------ ------------------------------------------------------
; 0x00 BYTE Size of packet (0x10 or 0x18; 16 or 24 bytes)
; 0x01 BYTE Reserved (0x00)
; 0x02 WORD Number of blocks to transfer (Only 1 sector for us)
; 0x04 DWORD Points to -> Transfer Buffer (00007C00 for us)
; 00x8 QWORD Starting Absolute Sector (get from Partition Table:
; (00000000 + DWORD PTR [BP+0x08]). Remember, the
; Partition Table Preceding Sectors entry can only be
; a max. of 32 bits!
; 10h QWORD (EDD-3.0, optional) 64-bit flat address of transfer
; buffer; only used if DWORD at 04h is FFFF:FFFF
PUSH DWORD 0x0 ; Push 4 zero-bytes (32-bits) onto
; Stack to pad VBR's Starting Sector
PUSH DWORD [BP+0x08] ; Location of VBR Sector
PUSH WORD 0x0 ; Segment then Offset parts, so:
PUSH WORD 0x7C00 ; copy Sector to 0x7c00 in Memory
PUSH WORD 0x0001 ; Copy only 1 sector
PUSH WORD 0x0010 ; Reserved and Packet Size (16 bytes)
MOV AH, 0x42 ; Function 42h
MOV DL, [BP] ; Drive Number
MOV SI, SP ; DS:SI must point to Disk Address Packet
INT 0x13 ; Try to get VBR Sector from disk
; If successful, CF is cleared (0) and AH set to 00h.
; If any errors, CF is set to 1 and AH = error code. In either case,
; DAP's block count field is set to number of blocks actually transferred
LAHF ; Load Status flags into AH.
ADD SP, 0x10 ; Effectively removes all the DAP bytes
; from Stack by changing Stack Pointer.
SAHF ; Save AH into flags register, so we do
; not change Status flags by doing so!
JMP READ_SECTOR
;********************************************************************;
;* Read VBR without INT13 Extensions *;
;********************************************************************;
INT13_BASIC:
MOV AX, 0x0201 ; Function 02h, read only 1 sector
MOV BX, 0x7C00 ; Buffer for read starts at 7C00
MOV DL, [BP+00] ; DL = Disk Drive
MOV DH, [BP+01] ; DH = Head number (never use FFh).
MOV CL, [BP+02] ; Bits 0-5 of CL (max. value 3Fh)
; make up the Sector number.
MOV CH, [BP+03] ; Bits 6-7 of CL become highest two
; bits (8-9) with bits 0-7 of CH to
; make Cylinder number (max. 3FFh).
INT 0x13 ; INT13, Function 02h: READ SECTORS
; into Memory at ES:BX (0000:7C00).
;********************************************************************;
;* Read loaded VBR sector *;
;********************************************************************;
READ_SECTOR:
POPAD ; Restore all 32-bit Registers from stack
JNB CHECK_OS ; Sector loaded successfully
DEC BYTE [BP+0x11] ; Decrement count of trials (set to 5)
JZ PRINT_ERROR ; If 0, we tried five times. Show error
RESET_DISK:
PUSH BP ; Save BP state
XOR AH, AH ; Function 0x00
MOV DL, [BP+00] ; Put BIOS disk number to DL
INT 0x13 ; Reset disk
POP BP ; Restore BP state
JMP TRY_READ ; Try again
CHECK_OS:
CMP WORD [0x7DFE], 0xAA55
JNZ PRINT_ERROR ; Missing bootable mark
CMP WORD [0x7C00], 0x0000
JE PRINT_ERROR ; No bootloader code
;********************************************************************;
;* Jump to loaded VBR *;
;********************************************************************;
MOV DX, [BP] ; Get disk ID from BIOS; often 0x80
XOR DH, DH ; Only DL part matters
JMP 0x0000:0x7C00 ; Jump to VBR
;********************************************************************;
;* Print String and Print Char *;
;********************************************************************;
; ===== PRINT_STRING =====
; SI: string with 0-end
; BH: page (text mode only)
; BL: color (graphics mode)
PRINT_STRING: ; Changes: SI, AX; BH set to 0x00
MOV AH, 0x0E ; Character print function
LOAD_CHAR: ; Print all characters in loop
LODSB ; Load character into AL from [SI]
CMP AL, 0x00 ; Check for end of string
JZ PRINT_STRING_RET ; Return if string is printed
INT 0x10 ; Print character
JMP LOAD_CHAR ; Go for another character
PRINT_STRING_RET: RET ; Return
;********************************************************************;
;* Strings *;
;********************************************************************;
PARTITION_STR: DB "Partition ", 0
ACTIVE_STR: DB " (A)", 0
ERROR_STR: DB "Boot sector error", 0x0D, 0x0A, 0
PARTITION_STR_ID: EQU PARTITION_STR - BASE + DEST
ACTIVE_STR_ID: EQU ACTIVE_STR - BASE + DEST
ERROR_STR_ID: EQU ERROR_STR - BASE + DEST
;********************************************************************;
;* Fill other bytes with 0x00 *;
;********************************************************************;
TIMES 440 - ($ - $$) DB 0x00 ; Fill the rest with 0x00
;********************************************************************;
;* NT Disk Number *;
;********************************************************************;
DD DISK_ID ; NT Drive Serial Number
DW 0x0000 ; Padding (must be 0x0000)
;********************************************************************;
;* Partition Table *;
;********************************************************************;
TABLE_SIZE: EQU (ENTRY_NUM * ENTRY_SIZE) ; Should be 4*16 = 64
TABLE_OFFSET: EQU (SIZE - TABLE_SIZE - 2) ; Should be 512-64-2 = 446
TIMES TABLE_SIZE DB 0x00 ; Zero out partition table
DB 0x55, 0xAA ; Mark sector as bootable