PDA

View Full Version : SOFTICE or Syser?



chimerahitman
07-21-2008, 12:22 AM
Hello, I am fairly new to the scene and I would like the recommendation of the better debugger out there.

SoftICE was a jewel, used to use it, but I read it got discontinued. Syser is its successor and was thinking if I should get the older (SoftICE) or newer (Syser).

And while we are at it, if there is another debugger out there that pwns these, please name it.

Thank you for your time.
CH.

xgx
07-21-2008, 06:23 AM
as long as you dont need a ring0 debugger you can stick with ollydbg...old softice has been discontinued but now its part of compuwares driverstudio

chimerahitman
07-21-2008, 12:18 PM
I think compuware dropped SoftICE as well.

I was trying out OllyDbg, but I can't get it do the things I want. I am just to noobish.

It is strange. When I try running the game on a debugger like Syser I get a Themida message stating that no debuggers allowed. When I try with OllyDbg I just get an error. Strange one at it, an "Access Violation"

ReVoLT
07-21-2008, 04:36 PM
Syser is quite buggy atm, causes a quite a few BSODs and isn't worth it. imo

devcode
07-21-2008, 05:51 PM
ollydbg

ReVoLT
07-21-2008, 06:14 PM
ollydbg

Amen, with a side order of IDA pro

chimerahitman
07-22-2008, 12:53 AM
Heh, I guess I will take OllyDbg with IDA Pro.

ReVoLT: I know what you mean. BSODed my laptop 3 times already. I don't know if I was the cause, pressing Ctrl+F12 repeatedly, or fate. Thanks for the information.

Back to OllyDbg. I hear there are scripts and plugins to "hide" the debugger so that it isn't spotted by anti-debugger code. Is it specialized for each anti-debugger system or works in general?

If it helps, I'm trying to get through HackShield.

chimerahitman
07-22-2008, 12:30 PM
I used some intuition and read someones HackShield anti-cheat post, then using the information to remove the "anti-debugger" code and now I am freely able to debug the code.

Question is, what to do now? XD

DeepblueSea
07-22-2008, 01:12 PM
Question is, what to do now? XD
http://www.abload.de/img/1216285872760vfg.jpg

ReVoLT
07-22-2008, 04:17 PM
Heh, I guess I will take OllyDbg with IDA Pro.

ReVoLT: I know what you mean. BSODed my laptop 3 times already. I don't know if I was the cause, pressing Ctrl+F12 repeatedly, or fate. Thanks for the information.

Back to OllyDbg. I hear there are scripts and plugins to "hide" the debugger so that it isn't spotted by anti-debugger code. Is it specialized for each anti-debugger system or works in general?

If it helps, I'm trying to get through HackShield.

Yeah I've tried running Syser in a VM and after a while I just couldn't be bothered with same problems.

OllyAdvanced script for ollydbg has some good anti-debugging options and they are general ones but they do include some for certain protections (though I think it only mentions that in the help box)

chimerahitman
07-23-2008, 12:01 AM
Sweet, I am going to get my hands on the OllyAdvanced script asap.

bonerofthemonth
08-25-2008, 06:03 PM
New version of Syser Kernel Debugger came out yesterday. No BSODs and works great. It's nice not having to do anything to circumvent protections.

peterslone
08-29-2008, 05:46 AM
get hold of phantom plugin for olly

monster64
08-29-2008, 02:09 PM
I may have to give it a try again then, although it disables Daemon Tools which I find annoying.

intellitech
09-07-2008, 06:42 PM
Also, if you are still having problems with Syser, you can try RR0D. I haven't personally used it, but some people I've talked to have had good experience with it.

http://rr0d.droids-corp.org/