Media Summary: Analyzing a new type of malicious document: Working on a new tool to extract macros and embedded files from MS Office files. Showing how to analyze a malicious Excel document with

Oledump And Yet Another Xml - Detailed Analysis & Overview

Analyzing a new type of malicious document: Working on a new tool to extract macros and embedded files from MS Office files. Showing how to analyze a malicious Excel document with One more time I want to demo to you I received Showing some features of my ClipboardTransformer when deobfuscating VBS code found in a malicious document. I'm showing how to analyze a malicious Word document (macro malware) without Microsoft technology.

I've made some more interesting Yahoo's for VBA I jaw who'll that will detect auto open your document open ... then it will replace the complete output file like this so you Day 124 of Becoming a SOC Analyst — SOC303 Indirect Command Execution via Forfiles and PowerShell (True Positive) User ...

Photo Gallery

oledump And Yet Another XML (Bis)
oledump And Yet Another XML
oledump XML
oledump.py beta
oledump plugin_biff
oledump Decoders
oledump: plugin_http_heuristics
oledump  & ClipboardTransformer
oledump Indicators
oledump With Plugins: Malicious Word Document Analysis
oledump & YARA
oledump.py --extra
View Detailed Profile
oledump And Yet Another XML (Bis)

oledump And Yet Another XML (Bis)

Analyzing

oledump And Yet Another XML

oledump And Yet Another XML

Analyzing

oledump XML

oledump XML

Analyzing a new type of malicious document:

oledump.py beta

oledump.py beta

Working on a new tool to extract macros and embedded files from MS Office files.

oledump plugin_biff

oledump plugin_biff

Showing how to analyze a malicious Excel document with

oledump Decoders

oledump Decoders

One more time I want to demo to you I received

oledump: plugin_http_heuristics

oledump: plugin_http_heuristics

More info: https://videos.didierstevens.com/2020/02/10/

oledump  & ClipboardTransformer

oledump & ClipboardTransformer

Showing some features of my ClipboardTransformer when deobfuscating VBS code found in a malicious document.

oledump Indicators

oledump Indicators

More info: https://videos.didierstevens.com/2020/11/30/oledump_indicators/

oledump With Plugins: Malicious Word Document Analysis

oledump With Plugins: Malicious Word Document Analysis

I'm showing how to analyze a malicious Word document (macro malware) without Microsoft technology.

oledump & YARA

oledump & YARA

I've made some more interesting Yahoo's for VBA I jaw who'll that will detect auto open your document open

oledump.py --extra

oledump.py --extra

... then it will replace the complete output file like this so you

Indirect Command Execution — Forfiles LOLBin, GitHub Dropper & MSHTA Persistence | LetsDefend SOC303

Indirect Command Execution — Forfiles LOLBin, GitHub Dropper & MSHTA Persistence | LetsDefend SOC303

Day 124 of Becoming a SOC Analyst — SOC303 Indirect Command Execution via Forfiles and PowerShell (True Positive) User ...