LLVM-Powered Devirtualization

(blog.thalium.re)

81 points | by dddnzzz334 5 hours ago ago

1 comments

  • anthk 3 hours ago

    Also, Bochs can fool most VM detectors as it can emulate a whole CPU in software, but an i7 might be able to run a fully emulated Pentium 4 based computer with ease in almost real time. But Bochs' debugger can do crazy things to most malware and propietary obfuscators.