ntdll-unhooking topic

List ntdll-unhooking repositories

Fuck-Etw

92
Stars
12
Forks
Watchers

Bypass the Event Trace Windows(ETW) and unhook ntdll.

ReflectiveNtdll

163
Stars
23
Forks
Watchers

A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (using pe2shc by @hasherezade). Payload encryption via SystemFuc...

inline-syscall

172
Stars
30
Forks
Watchers

Inline syscalls made for MSVC supporting x64 and WOW64