Exetools  

Go Back   Exetools > General > Developer Section

Notices

View Poll Results: Would you use this debugger?
Yes (mainly x32) 97 29.04%
Not at all 25 7.49%
Yes, if it gets better (please post feature suggestions) 90 26.95%
Yes (mainly x64) 122 36.53%
Voters: 334. You may not vote on this poll

Reply
 
Thread Tools Display Modes
  #1  
Old 10-18-2015, 19:58
Syoma Syoma is offline
reverse engineer
 
Join Date: May 2009
Posts: 338
Rept. Given: 35
Rept. Rcvd 77 Times in 50 Posts
Thanks Given: 15
Thanks Rcvd at 78 Times in 51 Posts
Syoma Reputation: 77
IDA Pro is also nice for x64.
Reply With Quote
  #2  
Old 10-18-2015, 20:02
mr.exodia mr.exodia is offline
Retired Moderator
 
Join Date: Nov 2011
Posts: 783
Rept. Given: 490
Rept. Rcvd 1,123 Times in 305 Posts
Thanks Given: 89
Thanks Rcvd at 716 Times in 333 Posts
mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299
I don't wanna be rude here but the question about passing arguments has been answered in this thread multiple times

Also check out the FAQ before you ask questions : http://faq.x64dbg.com
Reply With Quote
The Following User Says Thank You to mr.exodia For This Useful Post:
u_f_o (10-19-2015)
  #3  
Old 10-19-2015, 01:42
u_f_o u_f_o is offline
Friend
 
Join Date: Feb 2005
Posts: 33
Rept. Given: 19
Rept. Rcvd 7 Times in 5 Posts
Thanks Given: 10
Thanks Rcvd at 12 Times in 9 Posts
u_f_o Reputation: 7
excuse me for my carelessness.
thank you for your patience and link.
Reply With Quote
The Following User Gave Reputation+1 to u_f_o For This Useful Post:
mr.exodia (10-21-2015)
  #4  
Old 10-21-2015, 17:08
giv's Avatar
giv giv is offline
VIP
 
Join Date: Jan 2011
Location: Romania
Posts: 1,663
Rept. Given: 803
Rept. Rcvd 1,283 Times in 561 Posts
Thanks Given: 228
Thanks Rcvd at 567 Times in 241 Posts
giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299
Version 25 is out.
eXoDia added the search in memory feature.
Reply With Quote
The Following 2 Users Say Thank You to giv For This Useful Post:
niculaita (10-21-2015), tonyweb (10-21-2015)
  #5  
Old 10-23-2015, 05:29
Newbie_Cracker's Avatar
Newbie_Cracker Newbie_Cracker is offline
VIP
 
Join Date: Jan 2005
Posts: 227
Rept. Given: 72
Rept. Rcvd 26 Times in 12 Posts
Thanks Given: 50
Thanks Rcvd at 25 Times in 18 Posts
Newbie_Cracker Reputation: 26
Quote:
Originally Posted by giv View Post
Version 25 is out.
eXoDia added the search in memory feature.
I think Oleh Yuschuk should retire OllyDbg 64.
It seems that OllyDbg 64 is dead; but hopefully we have x64_Dbg
__________________
In memory of UnREal RCE...
Reply With Quote
The Following User Gave Reputation+1 to Newbie_Cracker For This Useful Post:
b30wulf (10-23-2015)
  #6  
Old 10-23-2015, 15:57
giv's Avatar
giv giv is offline
VIP
 
Join Date: Jan 2011
Location: Romania
Posts: 1,663
Rept. Given: 803
Rept. Rcvd 1,283 Times in 561 Posts
Thanks Given: 228
Thanks Rcvd at 567 Times in 241 Posts
giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299 giv Reputation: 1100-1299
Quote:
Originally Posted by Newbie_Cracker View Post
I think Oleh Yuschuk should retire OllyDbg 64.
It seems that OllyDbg 64 is dead; but hopefully we have x64_Dbg
I think that you are wrong. Olly is more advanced than eXoDia debugger but X64/X32 dbg keep a good rythm and will catch and hopefuly pass Olly soon.
A debugger on X64 from Oleh will be a good competitor alo.
Reply With Quote
  #7  
Old 10-23-2015, 19:56
b30wulf's Avatar
b30wulf b30wulf is offline
Family
 
Join Date: Nov 2013
Posts: 194
Rept. Given: 211
Rept. Rcvd 116 Times in 38 Posts
Thanks Given: 202
Thanks Rcvd at 229 Times in 74 Posts
b30wulf Reputation: 100-199 b30wulf Reputation: 100-199
I agree with GIV. But x64dbg is open source so it gives space for expansion for advance programmers to make their private builds, to others a chance to learn debugging mechanism, and its regularly updating and getting better, so olly for now is still better choice for 32bit systems, mor or less because of its code analysis feature and wide range of plugins for noob and medium level users.

PS. My vote goes to x64dbg. For sure in a near feature it will overcome olly
Reply With Quote
The Following 2 Users Say Thank You to b30wulf For This Useful Post:
Newbie_Cracker (01-29-2016), zeuscane (10-23-2015)
  #8  
Old 10-24-2015, 01:42
mr.exodia mr.exodia is offline
Retired Moderator
 
Join Date: Nov 2011
Posts: 783
Rept. Given: 490
Rept. Rcvd 1,123 Times in 305 Posts
Thanks Given: 89
Thanks Rcvd at 716 Times in 333 Posts
mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299
As for the function analysis (no stack/arguments yet) there is a nice command to try:
'anal'

Greetings
Reply With Quote
The Following User Says Thank You to mr.exodia For This Useful Post:
b30wulf (10-24-2015)
  #9  
Old 11-03-2015, 08:04
Jasi2169's Avatar
Jasi2169 Jasi2169 is offline
Family
 
Join Date: Sep 2015
Location: India/TSRh
Posts: 323
Rept. Given: 3
Rept. Rcvd 72 Times in 49 Posts
Thanks Given: 47
Thanks Rcvd at 524 Times in 202 Posts
Jasi2169 Reputation: 72
There are 16 pages gone n i dont wanna check one by one if its said or not

From last couple of days i am playing with it seems ok to be before it was scary

I miss stack trace it doesnot show main modules calls like olly when we pause it any progress in it

After that i found analysis ofcourse cant see any calls in subroutine from where it is getting called

N yup last thing is that cant we enter call without any BP on it cus sometimes i dont get BP but i know the code is excuting assuming 32bit patch on olly assuming atleast close on x64 now i click enter on call444balbla but it dont enter untill BP comes and u press f7 i had to find those hexes from hex editors n manually patched it.

Anyway it is going good n i appreciate exodia work +1 cus last time i tried alpha 21 i guess seems progress slowly but steady
Reply With Quote
The Following 2 Users Say Thank You to Jasi2169 For This Useful Post:
niculaita (01-10-2016), Sir.V65j (01-03-2016)
  #10  
Old 11-03-2015, 08:07
Jasi2169's Avatar
Jasi2169 Jasi2169 is offline
Family
 
Join Date: Sep 2015
Location: India/TSRh
Posts: 323
Rept. Given: 3
Rept. Rcvd 72 Times in 49 Posts
Thanks Given: 47
Thanks Rcvd at 524 Times in 202 Posts
Jasi2169 Reputation: 72
Anal is command haha nice command i will try oh man cant stop laughing
Reply With Quote
The Following User Says Thank You to Jasi2169 For This Useful Post:
niculaita (01-11-2016)
  #11  
Old 11-03-2015, 08:09
mr.exodia mr.exodia is offline
Retired Moderator
 
Join Date: Nov 2011
Posts: 783
Rept. Given: 490
Rept. Rcvd 1,123 Times in 305 Posts
Thanks Given: 89
Thanks Rcvd at 716 Times in 333 Posts
mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299
@Jasi: Call stack is indeed broken. It will be fixed soon hopefully (still working on merging Nukem's branch). The second issue is kind of hard to understand for me. Could you make a video and upload it somewhere please?

Thank you.
Reply With Quote
  #12  
Old 11-03-2015, 16:37
Jasi2169's Avatar
Jasi2169 Jasi2169 is offline
Family
 
Join Date: Sep 2015
Location: India/TSRh
Posts: 323
Rept. Given: 3
Rept. Rcvd 72 Times in 49 Posts
Thanks Given: 47
Thanks Rcvd at 524 Times in 202 Posts
Jasi2169 Reputation: 72
By second i mean taking example with olly

now when you load 32bit execu. in olly then on subroutines you find $ sign which means its another subrountine entry point and when you press right click and you can see the all calls which are pointing to this subroutine

thats what x64dbg lacks hope its clear now

like i never know when new subroutine starts i assume its starts from PUSH BLA BLA i assume not clear though until we trace it
Reply With Quote
The Following User Says Thank You to Jasi2169 For This Useful Post:
niculaita (01-10-2016)
  #13  
Old 11-04-2015, 07:30
mr.exodia mr.exodia is offline
Retired Moderator
 
Join Date: Nov 2011
Posts: 783
Rept. Given: 490
Rept. Rcvd 1,123 Times in 305 Posts
Thanks Given: 89
Thanks Rcvd at 716 Times in 333 Posts
mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299
Hello,

Thanks for your feedback. For now you can find references to a subroutine by using Ctrl+R on the entry point of the call.

Greetings
Reply With Quote
The Following 3 Users Say Thank You to mr.exodia For This Useful Post:
Jasi2169 (11-04-2015), mak (12-06-2015), pps44 (11-05-2015)
  #14  
Old 11-10-2015, 01:17
Artic Artic is offline
Friend
 
Join Date: Jul 2014
Location: target folder
Posts: 112
Rept. Given: 48
Rept. Rcvd 15 Times in 9 Posts
Thanks Given: 202
Thanks Rcvd at 44 Times in 25 Posts
Artic Reputation: 15
just used this today (find refs) and it works perfect.
i love my x64dbg so much, thanks for all the work on this project.
Reply With Quote
The Following User Gave Reputation+1 to Artic For This Useful Post:
mr.exodia (11-12-2015)
  #15  
Old 11-10-2015, 05:35
swell swell is offline
Friend
 
Join Date: Oct 2015
Posts: 13
Rept. Given: 0
Rept. Rcvd 6 Times in 3 Posts
Thanks Given: 6
Thanks Rcvd at 13 Times in 5 Posts
swell Reputation: 6
I love this debugger, it works great & it's good looking...
But more important it's open source and I learned a lot from the sources.

I've used it to reverse a few programs and learn unpacking!
Reply With Quote
The Following User Gave Reputation+1 to swell For This Useful Post:
mr.exodia (11-12-2015)
Reply

Tags
bit, debugger, x32, x64, x64_dbg

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Debug with x64dbg dnvthv General Discussion 2 03-22-2025 21:49
Add .lib file on x64dbg ? LaDidi General Discussion 0 02-18-2022 14:39
DBG2AP - x64dbg plugin Agmcz Community Tools 1 06-15-2019 07:14
nfd - x64dbg plugin hors Community Tools 2 04-01-2018 08:18
x64dbg python Storm Shadow Developer Section 6 08-04-2017 15:29


All times are GMT +8. The time now is 07:35.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )