reveng007 / ReflectiveNtdll

A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFucntion033 NtApi and No new thread via Fiber

Date Created 2023-01-30 (2 years ago)
Commits 20 (last one 2 years ago)
Stargazers 171 (0 this week)
Watchers 5 (0 this week)
Forks 23
License mit
Ranking

RepositoryStats indexes 618,350 repositories, of these reveng007/ReflectiveNtdll is ranked #207,386 (66th percentile) for total stargazers, and #339,715 for total watchers. Github reports the primary language for this repository as C, for repositories using this language it is ranked #8,527/22,869.

reveng007/ReflectiveNtdll is also tagged with popular topics, for these it's ranked: malware (#262/612),  bypass (#101/247),  antivirus (#49/116)

Star History

Github stargazers over time

180180160160140140120120100100808060604040202000Mar '23Mar '23May '23May '23Jul '23Jul '23Aug '23Aug '23Oct '23Oct '23Dec '23Dec '23Feb '24Feb '24Apr '24Apr '24Jun '24Jun '24Aug '24Aug '24Oct '24Oct '24Dec '24Dec '24Feb '25Feb '25

Watcher History

Github watchers over time, collection started in '23

554.54.5443.53.5332.52.522Mar '23Mar '23May '23May '23Jul '23Jul '23Aug '23Aug '23Oct '23Oct '23Dec '23Dec '23Feb '24Feb '24Apr '24Apr '24Jun '24Jun '24Aug '24Aug '24Oct '24Oct '24Dec '24Dec '24Feb '25Feb '25

Recent Commit History

20 commits on the default branch (main) since jan '22

2020181816161414121210108866442200Feb '23Feb '23Apr '23Apr '23Jun '23Jun '23Aug '23Aug '23Oct '23Oct '23Dec '23Dec '23Feb '24Feb '24Apr '24Apr '24Jun '24Jun '24Aug '24Aug '24Oct '24Oct '24Dec '24Dec '24Feb '25Feb '25

Yearly Commits

Commits to the default branch (main) per year

2222111111000020242024

Issue History

No issues have been posted

Languages

The primary language is C but there's also others...

CCC++C++BatchfileBatchfile

updated: 2025-02-19 @ 08:48am, id: 595028107 / R_kgDOI3doiw