Skip to content
/ goware Public

anti vm techniques for triage, virtualbox, vmware, windows sandbox

License

Notifications You must be signed in to change notification settings

9dl/goware

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

11 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation


Various detection mechanisms for anti-debugging and anti-virtual machine (VM) environments.

made in golang.



Anti VM

Triage

Platform Background Detection Serials Detection Date/time Screenshot
Windows 10 (2004) x64 Triggered Triggered 26/10/2024
Windows 10 (LTSC 2021) x64 Triggered Triggered 26/10/2024
Windows 11 (21H2) x64 Triggered Triggered 26/10/2024

VMWare

Platform Diskdrive Detection BIOS Detection Model Detection Date/time Screenshot
Windows 11 (24H2) x64 Triggered Triggered Triggered 27/10/2024
Windows 10 (22H2) x64 Triggered Triggered Triggered 27/10/2024

Windows SandBox

Platform Username Detection Date/time Screenshot
Windows 11 (24H2) x64 Triggered 27/10/2024

VirtualBox

Platform Motherboard Detection Discdrive Detection BIOS Detection Date/time Screenshot
Windows 11 (24H2) x64 Triggered Triggered Triggered 27/10/2024

Installation

  1. Clone the repository:
    git clone https://github.com/9dl/goware.git
  2. Navigate to the project directory:
    cd goware
  3. Build the project:
    go build

Usage

Run the compiled binary:

./goware