0xm4v3rick / Extract-MacroLinks
This PS script will extract macro from Excel and Word files. Also checks the macro for suspecious code patterns Includes temporary DDE check for word documents
☆34Updated last year
Alternatives and similar repositories for Extract-Macro
Users that are interested in Extract-Macro are comparing it to the libraries listed below
Sorting:
- A sample of proof of concept scripts that run Calc.exe with full source code.☆96Updated last year
- Dynamic PowerShell Analysis Framework Based Upon PowerShell Debugging Functionality☆83Updated 2 years ago
- Windows link file (shortcuts) examiner☆68Updated last year
- ☆62Updated 5 years ago
- DLL Password Filter Implant with Exfiltration Capabilities☆138Updated 5 years ago
- InsecurePowerShell is PowerShell with some security features removed.☆106Updated 7 years ago
- ☆93Updated 3 years ago
- A simple python implementation of a BITS server.☆105Updated 3 years ago
- DPAPI offline decryption utility☆70Updated 2 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆147Updated 5 years ago
- A tool for detecting VBA stomping.☆100Updated 3 years ago
- Userland API monitor for threat hunting☆58Updated 5 years ago
- WMI Shell project : proof-of-concept of remote access to a Windows machine using only the WMI service.☆44Updated 6 years ago
- A set of commands to bypass Defender (and some other AVs)☆20Updated 6 years ago
- ☆58Updated 4 years ago
- ☆52Updated 5 years ago
- SettingContent-MS File Execution vulnerability in Windows 10☆25Updated 6 months ago
- isodump - ISO dump utility☆41Updated 6 years ago
- volatility explorer☆91Updated 4 years ago
- C2Bridges allow developers to create new custom communication protocols and quickly utilize them within Covenant.☆69Updated 4 years ago
- The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.☆56Updated 4 years ago
- Inject Encrypted Commands Into EMF Shapes for C2 In VBA / Office Malware☆38Updated 5 years ago
- ☆50Updated 7 years ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆44Updated 4 years ago
- DNS File EXfiltration☆46Updated last year
- A C# tool for enumerating remote access policies through group policy.☆73Updated 6 years ago
- LLMNR/NBNS/mDNS Spoofing Detection Toolkit☆60Updated 3 years ago
- Windows Share Enumerator☆129Updated 6 years ago
- ReVBShell - Reverse VBS Shell☆81Updated 5 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆138Updated 8 years ago