Skip to content
This repository has been archived by the owner on Apr 2, 2023. It is now read-only.

Why this detected by VMProtect? #84

Closed
KVPV opened this issue Sep 4, 2020 · 5 comments
Closed

Why this detected by VMProtect? #84

KVPV opened this issue Sep 4, 2020 · 5 comments

Comments

@KVPV
Copy link

KVPV commented Sep 4, 2020

I try do test this on one programm with VMP, and this can detected from kernel. How do resolve this problem?

@hfiref0x
Copy link
Owner

hfiref0x commented Sep 4, 2020

Why it should not be detected by commercial protection software? How to resolve? Figure out what it uses to detect VBox, if this is yet another Oracle VMM bug, like #39, find a root of problem, submit it as bugreport to Oracle and hope for the fix... in about few(?) years.

@KVPV
Copy link
Author

KVPV commented Sep 5, 2020

Thanks for the answer.

Maybe you can tell? I am very interested in one question about Kernel and Windows.

I am using Windows 10 with debug mode.

When trying to open the one application that loads the driver. My Windows is hangs. After In the event log, I find that an error has occurred: Kernel Power 41.

This happens when Windows debugging is enabled. I don’t know who to ask, no one knows and cannot give an answer. Why it's happening? Thank!

@hfiref0x
Copy link
Owner

hfiref0x commented Sep 5, 2020

Configure your system to capture memory dump and disable automatic restart. Then you can use windbg to analyze this dump and figure out what is wrong.

@KVPV
Copy link
Author

KVPV commented Sep 7, 2020

I've tried this already. WinDbg tells me that the exception was in the driver that starts to run. Can I share a dump for you?

@hfiref0x
Copy link
Owner

hfiref0x commented Sep 7, 2020

I don't see how this is related to this repository, sorry.

@hfiref0x hfiref0x closed this as completed Sep 8, 2020
@hfiref0x hfiref0x pinned this issue Sep 8, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants