Pinned Repositories
0cchext
0CCh Windbg extension
30dayMakeOS
《30天自制操作系统》源码中文版。自己制作一个操作系统(OSASK)的过程
A-Protect
A-Protect Anti Rootkit Tool
access
Access without a real handle
AheadLib-x86-x64
hijack dll Source Code Generator. support x86/x64
Ark-tools
Windows Ark 工具的工程和一些demo
Waterman178's Repositories
Waterman178/AlternativeShellcodeExec
Alternative Shellcode Execution Via Callbacks
Waterman178/auto_game
Waterman178/disable-threat-tracing
Disable threat tracing from the kernel..
Waterman178/DLLHijackTest
DLL and PowerShell script to assist with finding DLL hijacks
Waterman178/dwmhook
noob hooking dwm for overlay
Waterman178/eft
Waterman178/ept-hook-detection
Different aproaches to detecting EPT hooks
Waterman178/EQProtect
Waterman178/EvCommunication
Waterman178/evil-mhyprot-cli
A PoC for vulnerable driver "mhyprot" that allows us to read/write memory in kernel/user from usermode.
Waterman178/executor
fecurity executor from factory
Waterman178/hwid-checker-mg
hwid-checker-mg is simple, proof-of-concept, hardware id checker made in C++ that utilizes the SMBIOS/DMI standards to output information that's been described by the BIOS.
Waterman178/hwid_generation
your computer id
Waterman178/ICPin
An Integrity-Check Monitoring Pintool
Waterman178/Kernel-Anit-Anit-Debug-Plugins
Kernel Anit Anit Debug Plugins 内核反反调试插件
Waterman178/KernelHackBase
Waterman178/KiSystemStartupMeme
Custom KiSystemStartup, can be used to modificate kernel before boot.
Waterman178/MalwareSourceCode
Collection of malware source code for a variety of platforms in an array of different programming languages.
Waterman178/MemScanner
Analyze Windows x64 Kernel Memory Layout
Waterman178/NNXOS64
A 64 bit OS
Waterman178/PeerTube
ActivityPub-federated video streaming platform using P2P directly in your web browser
Waterman178/physmem-Scanner
scans through physical memory and paging tables in kernel mode
Waterman178/pyautogui
A cross-platform GUI automation Python module for human beings. Used to programmatically control the mouse & keyboard.
Waterman178/Sysmon
Sysmon shenanigans
Waterman178/SysWhispers2
AV/EDR evasion via direct system calls.
Waterman178/Themidie
x64dbg plugin to bypass Themida 3.x Anti-Debugger / VM / Monitoring programs checks (x64)
Waterman178/vmware-rpc
Header-only VMWare Backdoor API Implementation & Effortless VMX Patcher for Custom Guest-to-Host RPCs
Waterman178/WebSocket-overlay
external websocket overlay
Waterman178/win10
tenonvpn for windows
Waterman178/xFindOut
A plugin to x64dbg that lets you find out what writes to/accesses particular address