Sample: 7ea8e50ce884dab89a13803ccebea26e
Tools: CyberChef
ISC Diary entry: CyberChef: BASE64/XOR Recipe
Sample: 7ea8e50ce884dab89a13803ccebea26e
Tools: CyberChef
ISC Diary entry: CyberChef: BASE64/XOR Recipe
Sample: f450ab337c93b7cb62599b0f6aa485e8
Tools: oledump.py
Blog post: Analyzing PowerPoint Maldocs with oledump Plugin plugin_ppt
Sample: dfff3a02e6e6a4d079c12f83dcc2f7a5
Tools: re-search.py, sets.py, python-per-line.py
ISC Diary entry: When DOSfuscation Helps…
Tools: oledump.py, re-research.py, sets.py and numbers-to-string.py.
ISC diary entry: Dealing with numeric obfuscation in malicious scripts
Sample: a564cd735132eccde401d6978651b66d
Tools: oledump.py.
ISC diary entry: Maldoc analysis with standard Linux tools
Sample: 2f87105fea2d4bae72ebc00efc6ede56
Tools: oledump.py, re-research.py, sets.py and numbers-to-string.py.
ISC diary entry: Dealing with numeric obfuscation in malicious scripts
Sample: f25a16298240f2faefee654478050a62
Tools: re-research.py, base64dump.py and pecheck.py.
Tools: oledump.py, re-research.py, sets.py and instantiation.py.
ISC diary entry: Malicious Word documents using DOSfuscation
Sample: 47827f618056ef15563138ebe69225d0