reveng007 / ReflectiveNtdll
View external linksLinks

A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFucntion033 NtApi and No new thread via Fiber
181Feb 10, 2023Updated 3 years ago

Alternatives and similar repositories for ReflectiveNtdll

Users that are interested in ReflectiveNtdll are comparing it to the libraries listed below

Sorting:

Are these results useful?