第一步:查看官方帮助文档
Microsoft Windows Debugger (WinDbg) is a powerful Windows-based debugging tool. It is capable of both user-mode and kernel-mode debugging.
第二步:attach到被调试进程
windbg中有如下提示,没有符号表
*** wait with pending attach
Symbol search path is: *** Invalid ***
****************************************************************************
* Symbol loading may be unreliable without a symbol search path. *
* Use .symfix to have the debugger choose a symbol path. *
* After setting your symbol path, use .reload to refresh symbol locations. *
****************************************************************************
所以我要搞清楚,什么是符号表?
第三步:debuger命令
?显示帮助