Using CPUID for detecting VMs
by Loki - Monday July 8, 2024 at 09:57 AM
#1
Hidden Content
You must register or login to view this content.

On a virtual machine, this returns a hypervisor-specific string across EBX, ECX, and EDX, such as "VMwareVMware," "Microsoft Hv," "VBoxVBoxVBox," or "XenVMMXenVMM.
Reply
#2
I'll check this against the hiddenvm I posted.

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | https://breachforums.ai/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#3
hello than you for that
Reply
#4
This is a neat little trick, but can also be easily thwarted by modifying the VM configuration file to set the CPUID to be whatever you want, such as a legit machine's CPUID. This shouldn't be used by itself, but along with several other anti-vm/anti-detect methods.
Reply
#5
(Jul 31, 2024, 07:39 PM)notagh0st Wrote: This is a neat little trick, but can also be easily thwarted by modifying the VM configuration file to set the CPUID to be whatever you want, such as a legit machine's CPUID. This shouldn't be used by itself, but along with several other anti-vm/anti-detect methods.

certainly, this is just one of the tricks
Reply
#6
other than the cpuid if i remember correctly there are environment variables that are set by default by the hypervisor
Reply
#7
Making a custom protector so thanks
Reply
#8
(Aug 13, 2024, 03:34 AM)Nukemaster1113 Wrote: Making a custom protector so thanks

that sounds like a cool project!
Reply
#9
learning more on vm shit so this is helpful thanks
Reply
#10
(Aug 13, 2024, 04:05 AM)Loki Wrote:
(Aug 13, 2024, 03:34 AM)Nukemaster1113 Wrote: Making a custom protector so thanks

that sounds like a cool project!

It’s really fun man just takes a ton of time because I’m trying to one up vmp
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Ida Pro 9.0 Crack with Video Tutorial for Windows kraber 33 2,377 34 minutes ago
Last Post: reversemaster123
  [2026] PACK Reverse Engineering Spearr 16 418 Apr 22, 2026, 11:40 AM
Last Post: nekate_fdg2yq
  How to start on Reverse Engineering? Tmmbt2 8 2,266 Apr 20, 2026, 08:17 AM
Last Post: Usercomplex
  Binary Ninja v5.2.8722 Personal arsium 3 232 Feb 09, 2026, 11:01 PM
Last Post: HarmedThem
  Reverse Engineering: A Comprehensive Guide Blue_Hawk 69 5,302 Feb 07, 2026, 06:19 AM
Last Post: thegodfather34

Forum Jump:


 Users browsing this forum: 1 Guest(s)