- Joined
- Jan 8, 2019
- Messages
- 56,618
- Solutions
- 2
- Reputation
- 32
- Reaction score
- 100,455
- Points
- 2,313
- Credits
- 32,700
6 Years of Service
76%

It’s an AV/EDR Evasion tool created to bypass security tools for learning, until now the tool is FUD.
Features:
Module Stomping for Memory scanning evasion
DLL Unhooking by fresh ntdll copy
IAT Hiding and Obfuscation & API Unhooking
ETW Patching for bypassing some security controls
Included sandbox evasion techniques & Basic Anti-Debugging
Fully obfuscated (Functions – Keys – Shellcode) by XOR-ing
Shellcode reversed and Encrypted
Moving payload into hallowed memory without using APIs
Runs without creating new thread & Suppoers x64 and x86 arch
To see this hidden content, you must like this content.