reveng007 / ReflectiveNtdll

A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFucntion033 NtApi and No new thread via Fiber

Date Created 2023-01-30 (about a year ago)
Commits 20 (last one about a year ago)
Stargazers 161 (0 this week)
Watchers 3 (0 this week)
Forks 23
License mit
Ranking

RepositoryStats indexes 534,551 repositories, of these reveng007/ReflectiveNtdll is ranked #196,224 (63rd percentile) for total stargazers, and #398,999 for total watchers. Github reports the primary language for this repository as C, for repositories using this language it is ranked #8,183/20,185.

reveng007/ReflectiveNtdll is also tagged with popular topics, for these it's ranked: malware (#244/531),  bypass (#93/208)

Star History

Github stargazers over time

Watcher History

Github watchers over time, collection started in '23

Recent Commit History

20 commits on the default branch (main) since jan '22

Yearly Commits

Commits to the default branch (main) per year

Issue History

No issues have been posted

Languages

The primary language is C but there's also others...

updated: 2024-06-21 @ 04:16pm, id: 595028107 / R_kgDOI3doiw