r****y 发帖数: 26819 | 1 我认为'xboxkrnl.exe'不是总在硬盘上的。我的硬盘上也找不到。
这个文件在那个1M大小的Flash ROM里压缩着。文章中清清楚楚写了:
The decompressed kernel is a PE-format executable ('xboxkrnl.exe'). Once
decompressed, the 2BL grabs the entry point address from the PE header and
jumps to it. Two arguments are passed to the kernel entry point function: a
pointer to string 'arguments' to the KERNEL (only used in debug kernel), and
the base address of two 16-byte encryption keys. One of the keys is the
EEPROM key (offset 00006C into 2BL), the other is the |
|