windbg调试windows下的程序

第一步:查看官方帮助文档

Microsoft Windows Debugger (WinDbg) is a powerful Windows-based debugging tool. It is capable of both user-mode and kernel-mode debugging.


第二步:attach到被调试进程

windbg中有如下提示,没有符号表

*** wait with pending attach
Symbol search path is: *** Invalid ***
****************************************************************************
* Symbol loading may be unreliable without a symbol search path.           *
* Use .symfix to have the debugger choose a symbol path.                   *
* After setting your symbol path, use .reload to refresh symbol locations. *
****************************************************************************

所以我要搞清楚,什么是符号表?


第三步:debuger命令

?显示帮助

posted @ 2022-03-06 10:39  叶常落  阅读(113)  评论(0)    收藏  举报