DNSveil

DNSveil — Free Download. Secure DNS client
DNSveil is a secure DNS client for Windows that implements advanced encryption protocols to protect DNS queries. The software utilizes Msmh Agnostic Server, DNSLookup, and GoodbyeDPI to provide bypass and security functionalities. It supports client implementations such as DNSCrypt, Anonymized DNSCrypt, DoH, DoT, and plain DNS (UDP and TCP). On the server side, it handles DoH and plain DNS (UDP and TCP). The program finds and uses the fastest secure DNS servers, hides SNI and website addresses from the ISP via Fragment or Fake SNI, and allows bypassing YouTube, Twitter, and any SNI/DNS-based blocked websites. It also includes capabilities for encoding and decoding DNSCrypt stamps (sdns://) and sharing connections to other devices via Proxy (HTTP, HTTPS, SOCKS4, SOCKS4A, SOCKS5). DNSveil requires .NET Desktop Runtime 6 and ASP.NET Core Runtime 6. It is not a VPN and does not change the user's IP address.
5.0(1 ratings)

Download DNSveil (Official links)
File size: 84.7 MB
The latest version of DNSveil is: 3.2.9
Operating system: Windows
Languages: English
Price: $0.00 USD

  • Automatic DNS server selection. DNSveil analyzes and tests multiple secure DNS servers to identify the fastest available. The system performs latency and speed measurements to determine the optimal servers, ensuring efficient DNS resolution performance without manual user intervention.
  • Support for multiple DNS protocols. The application supports DNSCrypt, Anonymized DNSCrypt, DNS over HTTPS (DoH), DNS over TLS (DoT), and traditional DNS (UDP and TCP). This versatility allows it to adapt to different network infrastructures and security requirements.
  • SNI hiding. Implements Fragment SNI and Fake SNI techniques to hide requested domain names from the internet service provider. This feature prevents the ISP from inspecting or logging which specific websites the user is visiting.
  • DNS-based censorship bypass. Uses advanced methods to bypass content restrictions implemented through DNS or SNI blocking. This allows access to platforms like YouTube and Twitter on networks where they are restricted.
  • Integrated DNS server. Includes a local DNS server capable of handling queries via DoH and traditional DNS (UDP and TCP) protocols. This server acts as an intermediary between the user's device and remote DNS servers.
  • SSL decryption. Provides SSL decryption capabilities to inspect and process encrypted traffic. This function requires restarting the web browser after activation for the changes to take full effect.
  • DNSCrypt stamp encoding. Offers tools for encoding and decoding DNSCrypt stamps (sdns://), facilitating the configuration and exchange of information for DNSCrypt-compatible DNS servers.
  • Integrated proxy server. Includes proxy server functionality with support for HTTP, HTTPS, SOCKS4, SOCKS4A, and SOCKS5 protocols. This allows sharing secure DNS connections with other devices on the local network.
  • Granular configuration interface. Presents detailed configuration options for every aspect of DNS functionality, allowing specific adjustments to protocols, servers, and bypass methods according to particular needs.
  • Real-time monitoring. Provides monitoring dashboards displaying DNS query statistics, server performance, and the status of active connections, offering complete visibility into system operation.
  • Exclusion management. Allows defining specific domains to be excluded from DNSveil's processing, useful for local services or applications requiring direct DNS resolution without intermediaries.
  • Activity logging. Maintains detailed logs of all DNS operations, including queries made, servers used, errors encountered, and bypass activities, facilitating problem diagnosis.
  • Integration with GoodbyeDPI. Incorporates GoodbyeDPI technology to bypass deep packet inspection (DPI) implemented by some internet providers, enhancing bypass capability in restrictive networks.
  • SSL certificate management. Automates the installation and management of SSL certificates necessary for HTTPS traffic interception and decryption operations, simplifying security configuration.

DNSveil was developed by MSANMH as a publicly available source code project. Development began in 2023 and continues actively with regular updates. The application is built using the .NET 6 framework, specifically with .NET Desktop Runtime and ASP.NET Core Runtime technologies. The software implements several specialized libraries and components, including WinDivert for low-level network operations, which may occasionally generate false positive alerts in antivirus software.


Alternatives to DNSveil:

ProxyBridge — Free Download. Windows application traffic redirection

ProxyBridge

ProxyBridge is an open-source alternative to Proxifier that provides transparent proxy routing for Windows applications.
Price: Free   Size: 15.6 MB   Version: 3.0.0   OS: Windows, MacOS