1.7 Release
-
added better heuristic checks for Hyper-V host virtualisation
-
added argument handler improvements to the CLI
-
added VM type information to the CLI
-
added 4 new techniques:
VM::CPUID_SIGNATUREVM::HYPERV_BITMASKVM::KVM_BITMASKVM::KGT_SIGNATURE
-
added 7 new VM brands:
JailhouseApple VZIntel KGT (Trusty)VMware FusionMicrosoft Azure Hyper-VXbox NanoVisor (Hyper-V)SimpleVisor
-
renamed VM brand "Thread Expert" to "ThreatExpert" (i fucked up)
-
renamed
VM::HYPERV_CPUIDtechnique toVM::CPUID_BITSET -
removed
VM::EXTREMEsettings flag -
removed 2 techniques (both due to potential false positives):
VM::CPUID_SPACINGVM::CPUID_0X4