3 * Copyright (C) 2005 Filip Navara
5 * The purpose of this utility is fix PE binaries generated by binutils and
6 * to manipulate flags that can't be set by binutils.
8 * Currently two features are implemented:
10 * - Setting flags on PE sections for use by drivers. The sections
11 * .text, .data, .idata, .bss are marked as non-pageable and
12 * non-discarable, section PAGE is marked as pageable and section
13 * INIT is marked as discaradable.
15 * - Sorting of export name table in executables. DLLTOOL has bug
16 * in sorting algorithm when the --kill-at flag is used. The exports
17 * are sorted in the decorated form and so the fastcall symbols are
18 * incorrectly put at the beginning of export table. This option
19 * allow to correct sort the table, so binary search can be used
32 /* The following definitions are ripped from MinGW W32API headers. We don't
33 use these headers directly in order to allow compilation on Linux hosts. */
35 typedef unsigned char BYTE
, *PBYTE
;
36 typedef unsigned short WORD
;
37 typedef unsigned int DWORD
;
40 #define IMAGE_NUMBEROF_DIRECTORY_ENTRIES 16
41 #define IMAGE_SIZEOF_SHORT_NAME 8
42 #define IMAGE_DOS_SIGNATURE 0x5A4D
43 #define IMAGE_NT_SIGNATURE 0x00004550
44 #define IMAGE_SCN_MEM_DISCARDABLE 0x2000000
45 #define IMAGE_SCN_MEM_NOT_PAGED 0x8000000
46 #define FIELD_OFFSET(t,f) ((LONG)&(((t*)0)->f))
47 #define IMAGE_FIRST_SECTION(h) ((PIMAGE_SECTION_HEADER) ((unsigned long)h+FIELD_OFFSET(IMAGE_NT_HEADERS,OptionalHeader)+((PIMAGE_NT_HEADERS)(h))->FileHeader.SizeOfOptionalHeader))
48 #define IMAGE_DIRECTORY_ENTRY_EXPORT 0
51 typedef struct _IMAGE_DOS_HEADER
{
71 } IMAGE_DOS_HEADER
,*PIMAGE_DOS_HEADER
;
74 typedef struct _IMAGE_EXPORT_DIRECTORY
{
75 DWORD Characteristics
;
81 DWORD NumberOfFunctions
;
83 DWORD AddressOfFunctions
;
85 DWORD AddressOfNameOrdinals
;
86 } IMAGE_EXPORT_DIRECTORY
,*PIMAGE_EXPORT_DIRECTORY
;
87 typedef struct _IMAGE_FILE_HEADER
{
89 WORD NumberOfSections
;
91 DWORD PointerToSymbolTable
;
92 DWORD NumberOfSymbols
;
93 WORD SizeOfOptionalHeader
;
95 } IMAGE_FILE_HEADER
, *PIMAGE_FILE_HEADER
;
96 typedef struct _IMAGE_DATA_DIRECTORY
{
99 } IMAGE_DATA_DIRECTORY
,*PIMAGE_DATA_DIRECTORY
;
100 typedef struct _IMAGE_OPTIONAL_HEADER
{
102 BYTE MajorLinkerVersion
;
103 BYTE MinorLinkerVersion
;
105 DWORD SizeOfInitializedData
;
106 DWORD SizeOfUninitializedData
;
107 DWORD AddressOfEntryPoint
;
111 DWORD SectionAlignment
;
113 WORD MajorOperatingSystemVersion
;
114 WORD MinorOperatingSystemVersion
;
115 WORD MajorImageVersion
;
116 WORD MinorImageVersion
;
117 WORD MajorSubsystemVersion
;
118 WORD MinorSubsystemVersion
;
124 WORD DllCharacteristics
;
125 DWORD SizeOfStackReserve
;
126 DWORD SizeOfStackCommit
;
127 DWORD SizeOfHeapReserve
;
128 DWORD SizeOfHeapCommit
;
130 DWORD NumberOfRvaAndSizes
;
131 IMAGE_DATA_DIRECTORY DataDirectory
[IMAGE_NUMBEROF_DIRECTORY_ENTRIES
];
132 } IMAGE_OPTIONAL_HEADER
,*PIMAGE_OPTIONAL_HEADER
;
133 typedef struct _IMAGE_NT_HEADERS
{
135 IMAGE_FILE_HEADER FileHeader
;
136 IMAGE_OPTIONAL_HEADER OptionalHeader
;
137 } IMAGE_NT_HEADERS
,*PIMAGE_NT_HEADERS
;
138 typedef struct _IMAGE_SECTION_HEADER
{
139 BYTE Name
[IMAGE_SIZEOF_SHORT_NAME
];
141 DWORD PhysicalAddress
;
144 DWORD VirtualAddress
;
146 DWORD PointerToRawData
;
147 DWORD PointerToRelocations
;
148 DWORD PointerToLinenumbers
;
149 WORD NumberOfRelocations
;
150 WORD NumberOfLinenumbers
;
151 DWORD Characteristics
;
152 } IMAGE_SECTION_HEADER
,*PIMAGE_SECTION_HEADER
;
155 /* End of ripped definitions */
157 typedef struct _export_t
{
162 unsigned char *buffer
;
163 PIMAGE_DOS_HEADER dos_header
;
164 PIMAGE_NT_HEADERS nt_header
;
166 static inline WORD
dtohs(WORD in
)
168 PBYTE in_ptr
= (PBYTE
)&in
;
169 return in_ptr
[0] | (in_ptr
[1] << 8);
172 static inline WORD
htods(WORD in
)
175 PBYTE out_ptr
= (PBYTE
)&out
;
176 out_ptr
[0] = in
; out_ptr
[1] = in
>> 8;
180 static inline DWORD
dtohl(DWORD in
)
182 PBYTE in_ptr
= (PBYTE
)&in
;
183 return in_ptr
[0] | (in_ptr
[1] << 8) | (in_ptr
[2] << 16) | (in_ptr
[3] << 24);
186 static inline DWORD
htodl(DWORD in
)
189 PBYTE out_ptr
= (PBYTE
)&out
;
190 out_ptr
[0] = in
; out_ptr
[1] = in
>> 8;
191 out_ptr
[2] = in
>> 16; out_ptr
[3] = in
>> 24;
195 void *rva_to_ptr(DWORD rva
)
197 PIMAGE_SECTION_HEADER section_header
;
200 for (i
= 0, section_header
= IMAGE_FIRST_SECTION(nt_header
);
201 i
< dtohl(nt_header
->OptionalHeader
.NumberOfRvaAndSizes
);
202 i
++, section_header
++)
204 if (rva
>= dtohl(section_header
->VirtualAddress
) &&
205 rva
< dtohl(section_header
->VirtualAddress
) +
206 dtohl(section_header
->Misc
.VirtualSize
))
208 return buffer
+ rva
- dtohl(section_header
->VirtualAddress
) +
209 dtohl(section_header
->PointerToRawData
);
216 int export_compare_func(const void *a
, const void *b
)
218 const export_t
*ap
= a
;
219 const export_t
*bp
= b
;
220 char *an
= rva_to_ptr(ap
->name
);
221 char *bn
= rva_to_ptr(bp
->name
);
222 return strcmp(an
, bn
);
225 int main(int argc
, char **argv
)
229 PIMAGE_SECTION_HEADER section_header
;
230 PIMAGE_DATA_DIRECTORY data_dir
;
232 unsigned long checksum
;
233 int fixup_exports
= 0;
234 int fixup_sections
= 0;
237 * Process parameters.
242 printf("Usage: %s <filename> <options>\n"
244 " -sections Sets section flags for PE image.\n"
245 " -exports Sort the names in export table.\n",
250 for (i
= 2; i
< argc
; i
++)
252 if (!strcmp(argv
[i
], "-sections"))
254 else if (!strcmp(argv
[i
], "-exports"))
257 { printf("Invalid option: %s\n", argv
[i
]); return 1; }
260 if (fixup_sections
== 0 && fixup_exports
== 0)
262 printf("Nothing to do.\n");
267 * Read the whole file to memory.
270 fd_in
= open(argv
[1], O_RDONLY
| O_BINARY
);
273 printf("Can't open input file.\n");
277 len
= lseek(fd_in
, 0, SEEK_END
);
278 if (len
< sizeof(IMAGE_DOS_HEADER
))
281 printf("'%s' isn't a PE image (too short)\n", argv
[1]);
285 /* Lower down we overwrite the byte at len, so here, we need at least
286 * one more byte than len. We'll be guaranteed one or two now. */
287 buffer
= malloc((len
+ 2) & ~1);
291 printf("Not enough memory available.\n");
295 /* Read the whole input file into a buffer */
296 lseek(fd_in
, 0, SEEK_SET
);
297 read(fd_in
, buffer
, len
);
298 /* Here is where the block end overwrite was */
305 * Check the headers and save pointers to them.
308 dos_header
= (PIMAGE_DOS_HEADER
)buffer
;
309 nt_header
= (PIMAGE_NT_HEADERS
)(buffer
+ dtohl(dos_header
->e_lfanew
));
311 if (dtohs(dos_header
->e_magic
) != IMAGE_DOS_SIGNATURE
||
312 dtohl(nt_header
->Signature
) != IMAGE_NT_SIGNATURE
)
314 printf("'%s' isn't a PE image (bad headers)\n", argv
[1]);
321 /* Sort export directory */
322 data_dir
= &nt_header
->OptionalHeader
.DataDirectory
[IMAGE_DIRECTORY_ENTRY_EXPORT
];
323 if (dtohl(data_dir
->Size
) != 0)
325 PIMAGE_EXPORT_DIRECTORY export_directory
;
330 export_directory
= (PIMAGE_EXPORT_DIRECTORY
)rva_to_ptr(dtohl(data_dir
->VirtualAddress
));
331 if (export_directory
!= NULL
)
333 exports
= malloc(sizeof(export_t
) * dtohl(export_directory
->NumberOfNames
));
336 printf("Not enough memory.\n");
341 name_ptr
= (DWORD
*)rva_to_ptr(dtohl(export_directory
->AddressOfNames
));
342 ordinal_ptr
= (WORD
*)rva_to_ptr(dtohl(export_directory
->AddressOfNameOrdinals
));
344 for (i
= 0; i
< dtohl(export_directory
->NumberOfNames
); i
++)
346 exports
[i
].name
= dtohl(name_ptr
[i
]);
347 exports
[i
].ordinal
= dtohl(ordinal_ptr
[i
]);
350 qsort(exports
, dtohl(export_directory
->NumberOfNames
), sizeof(export_t
),
351 export_compare_func
);
353 for (i
= 0; i
< dtohl(export_directory
->NumberOfNames
); i
++)
355 name_ptr
[i
] = htodl(exports
[i
].name
);
356 ordinal_ptr
[i
] = htodl(exports
[i
].ordinal
);
366 /* Update section flags */
367 for (i
= 0, section_header
= IMAGE_FIRST_SECTION(nt_header
);
368 i
< dtohl(nt_header
->OptionalHeader
.NumberOfRvaAndSizes
);
369 i
++, section_header
++)
371 if (!strcmp((char*)section_header
->Name
, ".text") ||
372 !strcmp((char*)section_header
->Name
, ".data") ||
373 !strcmp((char*)section_header
->Name
, ".idata") ||
374 !strcmp((char*)section_header
->Name
, ".bss"))
376 section_header
->Characteristics
|= htodl(IMAGE_SCN_MEM_NOT_PAGED
);
377 section_header
->Characteristics
&= htodl(~IMAGE_SCN_MEM_DISCARDABLE
);
379 else if (!strcmp((char*)section_header
->Name
, "INIT"))
381 section_header
->Characteristics
|= htodl(IMAGE_SCN_MEM_DISCARDABLE
);
383 else if (!strcmp((char*)section_header
->Name
, "PAGE"))
385 section_header
->Characteristics
|= htodl(IMAGE_SCN_MEM_NOT_PAGED
);
390 /* Recalculate checksum */
391 nt_header
->OptionalHeader
.CheckSum
= 0;
393 for (i
= 0; i
< len
; i
+= 2)
395 checksum
+= *(unsigned short *)(buffer
+ i
);
396 checksum
= (checksum
+ (checksum
>> 16)) & 0xffff;
399 nt_header
->OptionalHeader
.CheckSum
= htods(checksum
);
401 /* Write the output file */
402 fd_out
= open(argv
[1], O_WRONLY
| O_BINARY
);
403 write(fd_out
, buffer
, len
);