From Collaborative RCE Tool Library

Jump to: navigation, search

Ring 0 Debuggers


Tool name: Syser
Rating: 4.0 (2 votes)
Author: Syser Software                        
Website: http://www.sysersoft.com
Current version: 1.99.1900.1220
Last updated: July 21, 2011
Direct D/L link: http://www.sysersoft.com/download/SyserSetupTrial.zip
License type: Commercial (with trial)
Description: A new promising ring 0 debugger for Windows,
aiming to take the place of the once almighty SoftICE.

is designed for Windows NT Family based on X86 platform.
It is a kernel debugger with full-graphical interfaces and supports assembly debugging and source code debugging.

Very capable SoftICE alternative, this tool has become truly powerful!
Also listed in: (Not listed in any other category)
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: WinDbg
  • Currently3.6666666666667/5
  • 1
  • 2
  • 3
  • 4
  • 5
Rating: 3.7 (3 votes)
Author: Microsoft                        
Website: http://msdn.microsoft.com/en-us/windows/hardware/gg463009.aspx
Current version: 6.2.9200.16384
Last updated: December 28, 2012
Direct D/L link: N/A
License type: Free
Description: Note: version 6.2 came with Windows 8 and is actually newer than the latest version 6.12.0002.633 for Windows 7.

Microsoft's own ring 0 debugger. Quite unfriendly to use, but one of the remaining stable options since the discontinuation of SoftICE.

You will find some extensions that make it at least somewhat easier to use, in the WinDbg extensions category.
Also listed in: Ring 3 Debuggers
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: Compuware DriverStudio Version 3.2 patch
Rating: 0.0 (0 votes)
Author: Compuware / Numega                        
Website: http://www.compuware.com/
Current version:
Last updated: Jan, 2006
Direct D/L link: Locally archived copy
License type: Commercial (Discontinued)
Description: This is the official and final patch released for Compuware DriverStudio Version 3.2.

It was originally located, but is no longer offered, at:
ftp://ftp.compuware.com/pub/driverstudio/outgoing/patch/DS3.2.1.zip

The purpose of this patch is to update DriverStudio – DriverSuite to fix several bugs that have been found. It also has the operating system update patch.
Also listed in: (Not listed in any other category)
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: HyperDbg
Rating: 0.0 (0 votes)
Author: Aristide Fattori, Roberto Paleari and Lorenzo Martignoni                        
Website: http://security.dico.unimi.it/hyperdbg/
Current version: 20100325
Last updated: March 25, 2010
Direct D/L link: http://security.dico.unimi.it/hyperdbg/releases/hyperdbg_20100325.zip
License type: GPLv3
Description: HyperDbg is a kernel debugger that leverages hardware-assisted virtualization. More precisely, HyperDbg is based on a minimalistic hypervisor that is installed while the system runs. Compared to traditional kernel debuggers (e.g., WinDbg, SoftIce, Rasta R0 Debugger) HyperDbg is completely transparent to the kernel and can be used to debug kernel code without the need of serial (or USB) cables. For example, HyperDbg allows to single step the execution of the kernel, even when the kernel is executing exception and interrupt handlers. Compared to traditional virtual machine based debuggers (e.g., the VMware builtin debugger), HyperDbg does not require the kernel to be run as a guest of a virtual machine, although it is as powerful.
Also listed in: (Not listed in any other category)
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: Linice
Rating: 0.0 (0 votes)
Author: Goran Devic                        
Website: http://www.linice.com
Current version: 2.6
Last updated: July 28, 2005
Direct D/L link: Locally archived copy
License type: GPL
Description: What is Linice?

Linice is an Intel x86-based, Linux source-level kernel debugger with the look and feel of SoftIce for MS Windows.

Linice is designed to be used by the people who have SoftIce experience. Linice provides a major subset of SoftIce commands, and adds a few new ones. For that reason the documentation describing individual commands is not provided. There are a number of good resources on the Web that describe all SoftIce commands (Google "SoftIce" keyword.)

What can I use it for?

You can use Linice to debug a kernel module or a user application. You can also debug a Linux kernel. Kernel does not need to be recompiled or patched in any way. The debugger proper loads as a module into the running kernel and supports debugging using the following devices:
local VGA frame buffer
X-Window
remote serial terminal
monochrome monitor

You can break into a running kernel at any time by a hotkey. Place breakpoints, single step, watch variables etc. Multiple international keyboard layouts are supported.
Also listed in: Linux Debuggers
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: Rasta Ring 0 Debugger (RR0D)
Rating: 0.0 (0 votes)
Author: Droids Corporation                        
Website: https://github.com/ice799/rr0d
Current version: 0.3
Last updated: , 2006
Direct D/L link: N/A
License type: Open Source
Description: Open source ring 0 debugger for both Windows, Linux and BSD.
Also listed in: (Not listed in any other category)
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: SoftICE
Rating: 0.0 (0 votes)
Author: Compuware / Numega                        
Website: http://www.compuware.com
Current version:
Last updated: April, 2006
Direct D/L link: Locally archived copy
License type: Commercial (Discontinued)
Description: SoftICE was the king of ring 0 debuggers until Windows XP came along. At that point it turned very unstable on many computers, and never really recovered. It was sadly discontinued in April 2006.

SoftICE began its story already as a DOS debugger, brought to fame by the ORC tutorials. These ancient DOS versions, 2.62 (with snap feature) and 2.80 (snap feature removed), are downloadable here for history preserving reasons.
Also listed in: 16 bit and DOS Debuggers
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)



Tool name: TRW 2000
Rating: 0.0 (0 votes)
Author: KnlSoft                        
Website: http://www.knlsoft.com
Current version: 1.23
Last updated: December 20, 2002
Direct D/L link: N/A
License type: Commercial (with demo)
Description: Once promising ring 0 debugger, contesting to be the SoftICE replacement.
Also listed in: (Not listed in any other category)
More details: Click here for more details, screenshots, related URLs & comments for this tool! (or to update its entry)


RSS feed Feed containing all updates and additions for this category.

RSS feed Feed containing all updates and additions for this category, including sub-categories.





Views
Category Navigation Tree
   Code Coverage Tools  (13)
   Code Ripping Tools  (2)
   .NET Debuggers  (4)
   Debugger Libraries  (5)
   Ring 0 Debuggers  (8)
   Ring 3 Debuggers  (15)
   Symbol Retrievers  (4)
   VM Debugging Tools  (1)
   Helper Tools  (3)
   Hex Editors  (13)
   Memory Patchers  (7)
   Packers  (20)
   Profiler Tools  (11)
   String Finders  (10)
   Tool Hiding Tools  (7)
   Tracers  (22)
   Needs New Category  (3)