![]() |
|
|
|
#1
|
|||
|
|||
|
I will make an article and will share it ..
You can verify your system file with this : https://github.com/LordNoteworthy/al-khaser there are two main difficulty .. assigning actual hard drive to virtual machine to avoid using the VMWare IDE/SCSI/SATA Controller and BIOS patching .. you need to extract the BIOS and Change the VMWare values in the BIOS , modify the .vmx file to read your modified BIOS .. I will share everything in that article .. |
|
#2
|
|||
|
|||
|
Quote:
![]() Quote:
![]() What I ( and I presume others following this thread) are looking for, is mainly an account of how you actually managed to achieve it, so that we could possibly replicate it . Articles are numerous and while they are useful, since you'd specifically stated earlier in this thread that "I was unable to get this software to work but by Modifying Vmware using a Custom BIOS I was able to defeat all the targets with virtual machine detection in VMWare Environment .. " , we are looking to see a practical example of how you managed to accomplish it... In fact, content from this repo is still relevant but seems to fail when attempting to bypass the VM Check of VMP 3.1 .. These steps still continue to work on a majority of targets... As I said earlier, a good PoC would be if you could show us an example of how a VM Check of an executable protected with VMProtect >v3.1 could be bypassed without any modification to the executable (or to its image in memory using a loader etc) itself, as we are already well aware of how to do so when we are allowed to patch the executable or its memory space. Thank you
Last edited by TechLord; 01-12-2018 at 11:13. |
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| kernelmode.info (The End of Adventure) | Insid3Code | General Discussion | 10 | 04-01-2018 07:21 |
| DSEFix x64 (kernelmode.info) | Insid3Code | x64 OS | 1 | 05-15-2017 01:53 |
| [C/C++] UACME (kernelmode.info) | Insid3Code | Source Code | 0 | 03-29-2015 18:32 |
| [C/C++ ] VMDE (kernelmode.info) | Insid3Code | Source Code | 0 | 03-18-2015 20:47 |
| WinObjEx64 (kernelmode.info) | Insid3Code | Community Tools | 1 | 03-02-2015 00:04 |