2.0 Release 🎉
- added optional
VM::vmawarestructure - added new functions:
VM::type()VM::conclusion()VM::detected_count()
- added improvements to Hyper-X (version 5)

- added argument support of
VM::NO_MEMOtoVM::check() - added 24 new techniques:
VM::GPU_CHIPTYPEby @koughingVM::DRIVER_NAMESVM::VBOX_IDTVM::HDD_SERIALVM::PORT_CONNECTORSVM::VM_HDDVM::ACPI_HYPERVVM::GPU_NAMEVM::VMWARE_DEVICESVM::VMWARE_MEMORYVM::IDT_GDT_MISMATCHVM::PROCESSOR_NUMBERVM::NUMBER_OF_CORESVM::WMI_MODELVM::WMI_MANUFACTURERVM::WMI_TEMPERATUREVM::PROCESSOR_IDVM::CPU_FANSVM::POWER_CAPABILITIESVM::SETUPAPI_DISKVM::VMWARE_HARDENERVM::WMI_QUERIESVM::SYS_QEMUVM::LSHW_QEMU
- added 5 option flags to the CLI:
--no-color--high-threshold--dynamic--verbose--compact
- added improvements and fixes to
VM::add_custom() - added 3 new brands:
- Barevisor
- HyperPlatform
- Minivisor
note: all of these brands were made by @tandasat
- added new WMI structure module and overall WMI improvements
- updated the scores of most techniques (see the scoring system)
- updated:
VM::HKLM_REGISTRIESVM::DRIVER_NAMESVM::REGISTRY
- optimized
VM::INTEL_THREAD_MISMATCH - fixed MacOS bugs [link]
- disabled
VM::VMWARE_DMESGby default - removed
VM::SPOOFABLEand--spoofable - removed:
VM::MOUSE_DEVICEVM::VBOX_FOLDERSVM::CURSORVM::HYPERV_WMIVM::HYPERV_REGVM::ANYRUN_DRIVER(still present in the CLI)VM::ANYRUN_DIRECTORY(same)VM::CWSANDBOX_VMVM::MEMORY
(these were removed either due to unreliability, unpredictability, overall low quality, ethical reasons, or a combination of them)
Credits to
- @NotRequiem
- @koughing
- MeGaMax
VirusTotal results (17/72)
I'm fully aware this looks really suspicious, but the binaries were generated through the CI/CD here purely from the source code. The score might fluctuate as it did previously, so if it doesn't match, please notify me with an issue.
Extra
For any inquiries, contact me on discord at kr.nl or email me at jeanruyv@gmail.com