killchain-compendium/Forensics/OLEtools.md

432 B

oletools & Vmonkey

Usage

  • Check content of a stream
oledump.py file.doc  -Ss <No. of stream>
oledump.py file.doc  -Ss <No. of stream> -v
oledump.py -i file.doc
olevba file.doc

Vipermonkey

  • For the lazy ones
vmonkey file.doc

scdbg