The script at the link below creates fake entries and services within Windows to offer the allusion that the OS in question is running within a virtual machine. Some malware attempt to check to determine if a VM is being used, so in theory it may not execute.
https://github.com/NavyTitanium/Fake-Sandbox-Artifacts
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.