BrunoMCBraga / VBA-Macros-Events-Cheat-Sheet
Cheat-Sheet with events too look out for when analysing malicious Office documents
☆19Updated 7 years ago
Alternatives and similar repositories for VBA-Macros-Events-Cheat-Sheet:
Users that are interested in VBA-Macros-Events-Cheat-Sheet are comparing it to the libraries listed below
- windows-operating-system-archaeology @Enigma0x3 @subTee☆45Updated 8 years ago
- Remove individual lines from Windows Event Viewer Log (EVT) files☆44Updated 4 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 6 months ago
- ☆25Updated 6 years ago
- A simple reflective dll example☆19Updated 8 years ago
- Loads the AutoIt DLL and PowerShell assemblies into memory and executes the specified keystrokes☆61Updated 7 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- Run Managed Assemblies with RunDll☆17Updated 6 years ago
- Discover MSSQL Instances via UDP Scanning☆25Updated 6 years ago
- IoC's, PCRE's, YARA's etc☆24Updated last month
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- DeepToad is a library and a tool to clusterize similar files using fuzzy hashing☆20Updated 5 years ago
- A set of compiled application restriction bypasses☆29Updated 8 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆41Updated 6 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 8 years ago
- Network detector for Winnti malware☆20Updated 7 years ago
- ☆24Updated 8 years ago
- Use bitsadmin to maintain persistence and bypass Autoruns☆66Updated 7 years ago
- Making shellcode UD - https://osandamalith.com☆24Updated 8 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago
- A simple shellcode runner☆20Updated 11 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆31Updated 7 years ago
- ☆47Updated 5 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- Invoke remote powershell scripts in memory of compromised hosts.☆11Updated 10 years ago
- All TMF files that I extracted from Microsoft PDBs.☆12Updated 5 years ago
- Programmatically access a TLS certificate chain in C++ and C#☆13Updated 6 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- ☆26Updated 6 years ago
- .NET tool for enumeration processes and dumping memory.☆56Updated 6 years ago