A forum for reverse engineering, OS internals and malware analysis 

Search found 124 matches: AntiVM

Searched query: antivm

 Go to advanced search

Re: VirtualBox Anti-AntiVM

 by kmd ¦  Sun Jul 27, 2014 4:15 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

u mean there is no anti-detect patches for vbox from now?

Re: VirtualBox Anti-AntiVM

 by EP_X0FF ¦  Sun Jul 27, 2014 3:05 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

crappy and bugged code full of exploits You talking about guest-side components, or about hypervisor kernel as well? I'm talking in retrospective of last known exploits they are aware, I've no doubts they have more of the same kind, thats why all resources now thrown not to fix bugs but to make exp...

Re: VirtualBox Anti-AntiVM

 by Cr4sh ¦  Sun Jul 27, 2014 3:00 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

crappy and bugged code full of exploits
You talking about guest-side components, or about hypervisor kernel as well?

Re: VirtualBox Anti-AntiVM

 by EP_X0FF ¦  Sun Jul 27, 2014 2:00 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

Since 4.3.14 vbox developers being are under drugs added number of "security" "fixes" to protect their crappy and bugged code full of exploits. Yes, instead of code refactoring they added additional layer of bullshit. From now, VirtualBox application and components "protected": 1) from binary modifi...

Re: VirtualBox Anti-AntiVM

 by EP_X0FF ¦  Wed May 21, 2014 3:45 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

Patched dlls for Win64 VirtualBox-4.3.12-93733. Backup original Vbox files and replace with attached. Due to patch digital signature is broken, however it is not important and do not affect Vbox work.

Re: VirtualBox Anti-AntiVM

 by EP_X0FF ¦  Sun May 18, 2014 3:01 am ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

VirtualBox cannot be hidden at all, even we have a prof in vmde. All the above is only works for very stupid general malware.

Re: VirtualBox Anti-AntiVM

 by n0mad ¦  Thu May 08, 2014 8:34 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

Hello, My first post. I love this forums I am learning much. :shock: I will post a Anti-AntiVM process I found on the Net: 1, Installation of VirtualBox Xp32bit VirtualMachine. 2, Use this 2 scripts (In windows you need Python 2 : https://www.python.org/downloads/ ): ...

Re: VirtualBox Anti-AntiVM

 by DerW_234 ¦  Sun Mar 30, 2014 10:39 am ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

New version (4.3.10-93012), new DLLs :).

Re: VirtualBox Anti-AntiVM

 by DerW_234 ¦  Fri Mar 14, 2014 8:26 pm ¦  Forum: Tools/Software ¦  Topic: VirtualBox Anti-AntiVM ¦  Replies: 63 ¦  Views: 214167

New version for v4.3.8 r92456.
Also highly recommended reading (VMDE): http://www.kernelmode.info/forum/viewto ... =16&t=3178

VMDE

 by EP_X0FF ¦  Sat Feb 22, 2014 4:19 pm ¦  Forum: Malware ¦  Topic: VMDE ¦  Replies: 10 ¦  Views: 17222

This document contains short overview of existing and exploited by WinNT malicious software (malware) methods (AntiVM) that help malware detect execution in the controlled environment such as virtual machine (VM) or/and sandbox. However, this is not complete R&D of each malware ...

  • 1
  • 2
  • 3
  • 4
  • 5
  • 13