Functions:1.Hide IsDebuggerPresent2.Hide NtGlobalFlag3.Hide ProcessHeapFlag (auto hide)4.Patch ZwQueryInformationProcess (==patch UnhandledExceptionFilter)5.Patch ZwSetInformationThread6.Patch CheckRemoteDebuggerPresent7.Patch OutputDebugStringA8.Anti heap-checking (auto hide)V1.02:! Fixed the bug of patching ZwSetInformationThread (For themida 1.9.5.0)+ ADD heap-checking(auto hide).for winxp.sp2,win2k,win2k3...
[培训]传播安全知识、拓宽行业人脉——看雪讲师团队等你加入!