Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- From The “Ultimate”Anti-Debugging Reference
- Process-level:
- CheckRemoteDebuggerPresent
- Parent Process
- CreateToolhelp32Snapshot
- DbgBreakPoint
- DbgPrint
- DbgSetDebugFilterState
- IsDebuggerPresent
- NtQueryInformationProcess
- OutputDebugString
- RtlQueryProcessHeapInformation
- RtlQueryProcessDebugInformation
- SwitchToThread
- Toolhelp32ReadProcessMemory
- UnhandledExceptionFilter
- VirtualProtect
- System-level:
- FindWindow
- NtQueryObject
- NtQuerySystemInformationSelectors
- Selectors
- User-interface:
- FLD
- NtSetInformationThread
- SuspendThread
- SwitchDesktop
- Uncontrolled execution:
- CreateProcess
- CreateThread
- DebugActiveProcess
- Enum
- GenerateConsoleCtrlEvent
- NtSetInformationProcess
- NtSetLdtEntries
- QueueUserAPC
- RaiseException
- RtlProcessFlsData
- WriteProcessMemory
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement