TheD1rkMtr

Results 2 repositories owned by TheD1rkMtr

NTDLLReflection

169
Stars
22
Forks
Watchers

Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll , and trigger exported APIs from the export table

FilelessPELoader

261
Stars
60
Forks
Watchers

Loading Remote AES Encrypted PE in memory , Decrypted it and run it