Skip to content
View moshuiD's full-sized avatar
🎯
专注
🎯
专注

Organizations

@BFBAN @BattlefieldV-Robot @Frostbite-Reversal @moshui-s-Private-Space @ifr-cv

Block or report moshuiD

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

kernel

31 repositories

《关于编写 x64 Windows 10 驱动以了解虚拟内存这件事》系列视频附带的代码和材料

C 101 27 Updated Jan 26, 2023

Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation.

C++ 251 70 Updated Aug 25, 2023

The Next Generation of Anti-Rookit(ARK) tool for Windows.

C++ 10,132 946 Updated Jan 28, 2025

A library to read/write memory to Windows on KVM

C 267 83 Updated Sep 11, 2020

blacksun framework for QEMU/KVM game cheat development

C++ 235 86 Updated Sep 1, 2023

QEMU patched to avoid detection from various anticheats such as Battleye/EAC

C 69 22 Updated Jun 9, 2024

windows泄露源码

228 126 Updated Dec 2, 2013

Disable PatchGuard and Driver Signature Enforcement at boot time

C++ 1,934 349 Updated Feb 24, 2025

Detailed Instructions on the creation of custom/modified DMA (attack) Firmware based on pcileech-fpga

Python 1 Updated Feb 15, 2024

Windows Kernel inject (no module no thread)

C++ 1 Updated Nov 11, 2022
C++ 1 Updated May 6, 2022

一次偶然的研究中发现可以利用EasyAntiCheat.sys驱动来保护我们指定的进程

C 1 Updated May 15, 2022

update face injector by KANKOSHEV

C 1 Updated Oct 27, 2021

Windows kernel samples

C++ 1 Updated Apr 28, 2019

query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.

C++ 150 45 Updated Sep 14, 2024

可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。

C++ 107 36 Updated Sep 1, 2022

PdbView shows the contents of PDB files

C# 83 28 Updated Aug 23, 2018

Kernel driver that .text hooks a syscall in dxgkrnl.sys which can be called from our user-mode client to send instructions like rpm/wpm and even draw rectangles for esp. This was made to hack video…

C++ 163 23 Updated Dec 16, 2022

VirtualKD-Redux - A revival and modernization of VirtualKD

C++ 863 140 Updated Jun 23, 2024

Windows memory hacking library

C++ 4,968 1,363 Updated Jan 26, 2024

KDMapper is a simple tool that exploits iqvw64e.sys Intel driver to manually map non-signed drivers in memory

C++ 2,172 526 Updated Feb 9, 2025

Kernel-Mode extended version of https://github.com/microsoft/Detours

C++ 153 35 Updated Jun 29, 2022

Communicate between user-mode and kernel-mode through a swapped QWORD pointer argument.

C++ 137 22 Updated Feb 9, 2022

a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.

C++ 152 72 Updated Sep 13, 2024

The Windows Kernel Programming book samples

C++ 621 129 Updated Sep 25, 2023

WFP Traffic Redirection Driver is used to redirect NIC traffic on network layer and framing layer, based on Windows Filtering Platform (WFP).

C 110 47 Updated Jun 30, 2018

Hook system calls, context switches, page faults and more.

C++ 2,510 502 Updated May 9, 2023

eBPF implementation that runs on top of Windows

C 3,101 249 Updated Mar 8, 2025