Devices: iStorage datashur PRO, datashur PRO² and diskashur PRO².
video
My Encrypted Storage
Maldoc Analysis With CyberChef
Tools: CyberChef
Sample: 969ff75448ea54feccc0d5f652e00172af8e1848352e9a5877d705fc97fa0238
ISC diary entry: Maldoc Analysis With CyberChef
December 2020: Jupiter & Saturn
Process Explorer & VirusTotal: Fixed!
Tools: Fiddler, Process Explorer
ISC diary entry: Heads-up: VirusTotal Functionality in Sysinternals Tools Not Working
Previous video: Inspecting Process Explorer Traffic With Fiddler
Hobo Knife
Tools: KA-BAR Hobo Knife.
Inspecting Process Explorer Traffic With Fiddler
Tools: Fiddler, Process Explorer
ISC diary entry: Heads-up: VirusTotal Functionality in Sysinternals Tools Not Working
Analyzing FireEye Maldocs
Tools: oledump.py, numbers-to-string.py
Sample: 41b70737fa8dda75d5e95c82699c2e9b
ISC diary entry: Analyzing FireEye Maldocs
oledump Indicators
Decrypting With translate.py
Tools: base64dump.py, translate.py
Blog post: Decrypting With translate.py
ISC diary entry: Decrypting PowerShell Payloads (video)
Example script: https://pastebin.com/QUGiWTHj