dll_hijack_detect. Detects DLL hijacking in running processes on Windows systems
155jmp2it. Transfer EIP control to shellcode during malware analysis investigation
77handle_monitor. Identifying and Disrupting Crypto-Ransomware (and Destructive Malware) using handle heurustics
56rapid_env. Rapid deployment of Windows environment (files, registry keys, mutex etc) to facilitate malware analysis
41reg_export. C++
12shape_shift. Python
9check_first. Just-in-time VirusTotal checker (proof of concept)
7attack_surface_monitor. Python
4handleinheritor. C++
3film_reel. Python
2create_mutex. This program will create one or more mutex as specified by the passed arguments and keep them active as long as the program keeps running.
2