[*] Binary protection state of mod_dlink_anti_brf.so
No RELRO No Canary found NX disabled DSO RPATH No RUNPATH No Symbols
[*] Function printf tear down of mod_dlink_anti_brf.so
; assembly | /* r2dec pseudo code output */
| /* /logs/firmware/patool_extraction/DUMP/mtdblock8_unblob_extracted/mtdblock8_extract/0-9650176.squashfs_v4_le_extract/lib/mod_dlink_anti_brf.so @ 0xb58 */
| #include <stdint.h>
|
; (fcn) fcn.00000b58 () | void fcn_00000b58 () {
0x00000b58 lui gp, 2 |
0x00000b5c addiu gp, gp, -0x6fa8 |
0x00000b60 addu gp, gp, t9 | gp += t9;
0x00000b64 addiu sp, sp, -0x30 |
0x00000b68 sw ra, 0x2c(sp) | *(var_2ch) = ra;
0x00000b6c sw s3, 0x28(sp) | *(var_28h) = s3;
0x00000b70 sw s2, 0x24(sp) | *(var_24h) = s2;
0x00000b74 sw s1, 0x20(sp) | *(var_20h) = s1;
0x00000b78 sw s0, 0x1c(sp) | *(var_1ch) = s0;
0x00000b7c lw t8, -0x7fe4(gp) | t8 = *((gp - 8185));
0x00000b80 sw gp, 0x10(sp) | *(var_10h) = gp;
0x00000b84 lbu v0, 0x1c60(t8) | v0 = *((t8 + 7264));
0x00000b88 move s1, t8 | s1 = t8;
| if (v0 != 0) {
0x00000b8c bnez v0, 0xc14 | goto label_0;
| }
0x00000b90 lw t8, -0x7f64(gp) | t8 = *((gp - 8153));
0x00000b94 lw t8, -0x7fe0(gp) | t8 = *((gp - 8184));
| if (t8 != 0) {
0x00000b98 beqz t8, 0xbac |
0x00000b9c lw t9, -0x7f64(gp) | t9 = *((gp - 8153));
0x00000ba0 lw a0, (t8) | a0 = *(t8);
0x00000ba4 jalr t9 | t9 ();
0x00000ba8 lw gp, 0x10(sp) | gp = *(var_10h);
| }
0x00000bac lw v0, -0x7fe4(gp) | v0 = *((gp - 8185));
0x00000bb0 lw s2, -0x7fdc(gp) | s2 = *((gp - 8183));
0x00000bb4 addiu v0, v0, 0x1bb0 | v0 += 0x1bb0;
0x00000bb8 subu s2, s2, v0 | __asm ("subu s2, s2, v0");
0x00000bbc move s3, v0 | s3 = v0;
0x00000bc0 sra s2, s2, 2 | s2 >>= 2;
0x00000bc4 lw s0, -0x7fe4(gp) | s0 = *((gp - 8185));
0x00000bc8 addiu s2, s2, -1 | s2 += -1;
| do {
0x00000bcc lw v0, 0x1c64(s0) | v0 = *((s0 + 1817));
0x00000bd0 sltu t8, v0, s2 | t8 = (v0 < s2) ? 1 : 0;
0x00000bd4 addiu v0, v0, 1 | v0++;
| if (t8 == 0) {
0x00000bd8 beqz t8, 0xbfc | goto label_1;
| }
0x00000bdc sw v0, 0x1c64(s0) | *((s0 + 1817)) = v0;
0x00000be0 sll v0, v0, 2 | v0 <<= 2;
0x00000be4 addu v0, s3, v0 | v0 = s3 + v0;
0x00000be8 lw t9, (v0) | t9 = *(v0);
0x00000bec jalr t9 | t9 ();
0x00000bf0 nop |
0x00000bf4 lw gp, 0x10(sp) | gp = *(var_10h);
0x00000bf8 b 0xbcc |
| } while (1);
| label_1:
0x00000bfc lw t9, -0x7fd8(gp) | t9 = *((gp - 8182));
0x00000c00 addiu t9, t9, 0xac0 | t9 += entry0;
0x00000c04 jalr t9 | t9 ();
0x00000c08 nop |
0x00000c0c addiu t8, zero, 1 | t8 = 1;
0x00000c10 sb t8, 0x1c60(s1) | *((s1 + 7264)) = t8;
| label_0:
0x00000c14 lw ra, 0x2c(sp) | ra = *(var_2ch);
0x00000c18 lw s3, 0x28(sp) | s3 = *(var_28h);
0x00000c1c lw s2, 0x24(sp) | s2 = *(var_24h);
0x00000c20 lw s1, 0x20(sp) | s1 = *(var_20h);
0x00000c24 lw s0, 0x1c(sp) | s0 = *(var_1ch);
0x00000c28 addiu sp, sp, 0x30 |
0x00000c2c jr ra | return v0;
| }
[*] Function printf used 1 times mod_dlink_anti_brf.so