Skip to content
Back to skills

Binary Protect Bypass

ASecurity

Binary protection bypass — packer detection, integrity check bypass, obfuscation removal. Trigger: protection bypass, unpack, deobfuscate, integrity bypass, anti-tamper, 脱壳, 去保护.

  • 34 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 24, 2026
ai-agents

Security analysis

A100/100

Scanned September 24, 2026

npx -y skills add alicewe1/alice_skill --skill binary-protect-bypass --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Binary Protect Bypass?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Binary Protect Bypass
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/alicewe1-binary-protect-bypass/badge)](https://www.skillsdirectory.com/skills/alicewe1-binary-protect-bypass)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: binary-protect-bypass
description: Binary protection bypass — packer detection, integrity check bypass, obfuscation removal. Trigger: protection bypass, unpack, deobfuscate, integrity bypass, anti-tamper, 脱壳, 去保护.
x-alice-class: reverse
---# Binary Protection Bypass

## Protection Types
- Packing: UPX, ASPack, Themida, VMProtect, Enigma
- Integrity: CRC/checksum, code signing, hash verification
- Obfuscation: control flow flattening, instruction substitution, opaque predicates
- Anti-tamper: self-checksumming, dual-layer verification
- Virtualization: VMProtect/Code Virtualizer bytecode

## Bypass Methods
1. Unpacking: dump after OEP, rebuild IAT, fix relocations
2. Integrity: patch checksum function to return expected value
3. Deobfuscation: symbolic execution (angr), pattern simplification
4. Anti-tamper: NOP the verification call, hook GetModuleHandle
5. Virtualization: trace VM handler, lift to IR, decompile

## Execution Chain
1. Identify protection → entropy scan, section analysis, import check
2. Choose bypass method based on protection type
3. Execute unpack/deobfuscate/patch
4. Rebuild PE if needed
5. Write clean binary to disk

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…