What are the differences between OllyDbg and WinDbg?

My simple understanding is OllyDbg, a user mode debugger that you can use to debug "normal" applications. WinDbg is a kernel-mode debugger that you can use to debug yourself.

Is it correct?

+5
source share
2 answers

WinDbg is a kernel-mode debugger developed by Microsoft that can be used to debug the operating system on which it is running. Technically, this means that it can debug kernel code, which is privileged code running in Ring 0.

OllyDbg - , , Exe.

, Windbg - , Ollydbg. , , . Ollydbg - GUI, Visual Studio.

+6

WinDbg - GUI, usermode. , kd () ntsd (). Windbg usermode usermode. .

+4
source

All Articles