Anti-Debugging

Technique Name Technique ID's
SuspendThread U0101
Guard Pages U0102
NtSetDebugFilterState U0103
Bad String Format U0104
INT3 Instruction Scanning U0105
Interrupts U0106
Performing Code Checksum U0107
Unhandled Exception Filter U0108
Detecting Running Process: EnumProcess API U0109 U0405 U1306
GetLocalTime, GetSystemTime, timeGetTime, NtQueryPerformanceCounter U0110 U1308
NtGlobalFlag U0111
Heap Flag U0112
IsDebugged Flag U0113
CloseHandle, NtClose U0114
CsrGetProcessID U0115
EventPairHandles U0116
OutputDebugString U0117
NtQueryObject U0118
NtSetInformationThread U0119
NtQueryInformationProcess U0120
CheckRemoteDebuggerPresent U0121
IsDebuggerPresent U0122
TLS Callback U0124
GetTickCount U0125
RDTSC U0126
Debug Registers, Hardware Breakpoints U0127
Detecting Window with FindWindow API U0406 U0123