Using CPUID for detecting VMs
by Loki - Monday July 8, 2024 at 09:57 AM
#1
Hidden Content
You must register or login to view this content.

On a virtual machine, this returns a hypervisor-specific string across EBX, ECX, and EDX, such as "VMwareVMware," "Microsoft Hv," "VBoxVBoxVBox," or "XenVMMXenVMM.
Reply
#2
I'll check this against the hiddenvm I posted.

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | https://breachforums.ai/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#3
hello than you for that
Reply
#4
This is a neat little trick, but can also be easily thwarted by modifying the VM configuration file to set the CPUID to be whatever you want, such as a legit machine's CPUID. This shouldn't be used by itself, but along with several other anti-vm/anti-detect methods.
Reply
#5
(Jul 31, 2024, 07:39 PM)notagh0st Wrote: This is a neat little trick, but can also be easily thwarted by modifying the VM configuration file to set the CPUID to be whatever you want, such as a legit machine's CPUID. This shouldn't be used by itself, but along with several other anti-vm/anti-detect methods.

certainly, this is just one of the tricks
Reply
#6
other than the cpuid if i remember correctly there are environment variables that are set by default by the hypervisor
Reply
#7
Making a custom protector so thanks
Reply
#8
(Aug 13, 2024, 03:34 AM)Nukemaster1113 Wrote: Making a custom protector so thanks

that sounds like a cool project!
Reply
#9
learning more on vm shit so this is helpful thanks
Reply
#10
(Aug 13, 2024, 04:05 AM)Loki Wrote:
(Aug 13, 2024, 03:34 AM)Nukemaster1113 Wrote: Making a custom protector so thanks

that sounds like a cool project!

It’s really fun man just takes a ton of time because I’m trying to one up vmp
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [2026] PACK Reverse Engineering Spearr 16 413 Apr 22, 2026, 11:40 AM
Last Post: nekate_fdg2yq
  Ida Pro 9.0 Crack with Video Tutorial for Windows kraber 32 2,352 Apr 22, 2026, 06:35 AM
Last Post: Usercomplex
  How to start on Reverse Engineering? Tmmbt2 8 2,266 Apr 20, 2026, 08:17 AM
Last Post: Usercomplex
  Binary Ninja v5.2.8722 Personal arsium 3 232 Feb 09, 2026, 11:01 PM
Last Post: HarmedThem
  Reverse Engineering: A Comprehensive Guide Blue_Hawk 69 5,302 Feb 07, 2026, 06:19 AM
Last Post: thegodfather34

Forum Jump:


 Users browsing this forum: 1 Guest(s)