Logo white

Peter M. Groen / oletools

Sign in
  • Sign in
  • Project
  • Files
  • Commits
  • Network
  • Graphs
  • Milestones
  • Issues 0
  • Merge Requests 0
  • Labels
  • Wiki
  • Commits 1,521
  • Compare
  • Branches 1
  • Tags 0
  • oletools
14 Apr, 2021
1 commit
  • olevba, mraptor: added detection of Workbook_BeforeClose, fixes #518
    622d9a2b
    decalage2 authored
    2021-04-14 21:03:32 +0200  
    Browse Code »

13 Apr, 2021
1 commit
  • clsid: added two CLSIDs related to CVE-2021-27058
    c638dcc7
    decalage2 authored
    2021-04-13 22:46:20 +0200  
    Browse Code »

11 Apr, 2021
1 commit
  • clsid: added Virtual Disk Service Loader - vdsldr.exe (related to MS Office clic… ...
    1522a114
    …k-to-run issue CVE-2021-27058)
    decalage2 authored
    2021-04-11 00:41:29 +0200  
    Browse Code »

04 Apr, 2021
1 commit
  • readme: added link to Splunk add-on for MS O365 Email
    f4c960c1
    decalage2 authored
    2021-04-04 15:13:27 +0200  
    Browse Code »

02 Apr, 2021
2 commits
  • updated README, removed unnecessary README.rst
    9444569b
    decalage2 authored
    2021-04-02 23:45:58 +0200  
    Browse Code »
  • bumped version to 0.56.1
    d4835565
    decalage2 authored
    2021-04-02 23:29:41 +0200  
    Browse Code »

29 Mar, 2021
3 commits
  • oleobj: bumped version to 0.56.1
    e8585b78
    decalage2 authored
    2021-03-29 22:45:47 +0200  
    Browse Code »
  • Merge pull request #670 from ljuturu/fix/#641---oleobj ...
    25c8b1ab
    oleobj: Missing commas in BLACKLISTED_RELATIONSHIP_TYPES
    Philippe Lagadec authored
    2021-03-29 22:26:08 +0200  
    Browse Code »
  • oleobj: Missing commas in BLACKLISTED_RELATIONSHIP_TYPES
    bfb43f38
    sindhuri.juturu authored
    2021-03-29 13:28:03 -0600  
    Browse Code »

06 Mar, 2021
1 commit
  • setup.py: avoid installing msoffcrypto-tool if platform is PyPy except PyPy3 on Linux (fixes #473)
    6f8d1cdc
    decalage2 authored
    2021-03-06 23:28:56 +0100  
    Browse Code »

03 Mar, 2021
2 commits
  • travis.yml: removed msoffcrypto-tool to avoid issues with PyPy
    fc660e7e
    decalage2 authored
    2021-03-03 23:45:26 +0100  
    Browse Code »
  • setup.py: avoid installing msoffcrypto-tool if platform is PyPy+Windows (fixes #473)
    f1d12815
    decalage2 authored
    2021-03-03 23:16:48 +0100  
    Browse Code »

15 Nov, 2020
1 commit
  • clsid: added CLSID for DOCM files
    96cd17cc
    decalage2 authored
    2020-11-15 21:57:34 +0100  
    Browse Code »

09 Nov, 2020
1 commit
  • readme: added link to MalwareBazaar
    b5d79b38
    decalage2 authored
    2020-11-09 22:20:16 +0100  
    Browse Code »

15 Oct, 2020
1 commit
  • olevba: relaxed mode should be a bit less relaxed (fixes #629)
    1af723f0
    decalage2 authored
    2020-10-15 22:15:50 +0200  
    Browse Code »

11 Oct, 2020
1 commit
  • olevba: improved error logs, added some comments
    20bcb688
    decalage2 authored
    2020-10-11 23:12:56 +0200  
    Browse Code »

04 Oct, 2020
1 commit
  • olevba: check_value now raises a warning instead of an error
    00beb81e
    decalage2 authored
    2020-10-04 22:35:20 +0200  
    Browse Code »

28 Sep, 2020
8 commits
  • setup: bumped version to 0.56
    46eb60f6
    decalage2 authored
    2020-09-28 22:55:18 +0200  
    Browse Code »
  • olevba: added mention that --relaxed is now deprecated
    fa4cf394
    decalage2 authored
    2020-09-28 22:44:58 +0200  
    Browse Code »
  • readme, documentation and comment updates for v0.56 release
    6540ccbc
    decalage2 authored
    2020-09-28 22:39:41 +0200  
    Browse Code »
  • Merge branch 'pull/591' ...
    a854e61e
    # Conflicts:
    #	oletools/olevba.py
    decalage2 authored
    2020-09-28 22:08:29 +0200  
    Browse Code »
  • Merge pull request #569 from mlodic/master ...
    f189b26c
    improvements to analysis of XLM macros (encrypted ones + contained in XLSM) + template injection
    Philippe Lagadec authored
    2020-09-28 21:48:28 +0200  
    Browse Code »
  • Merge pull request #613 from jloehel/feature/update/plugin_biff/0.0.17 ...
    69b085b9
    plugin_biff: updated to v0.0.17
    Philippe Lagadec authored
    2020-09-28 21:25:04 +0200  
    Browse Code »
  • olevba: added VBA_Parser.get_vba_code_all_modules, partial fix for issue #619, u… ...
    2394f619
    …pdated mraptor to use it
    decalage2 authored
    2020-09-28 21:03:31 +0200  
    Browse Code »
  • merge from upstream
    4274e151
    Matteo Lodi authored
    2020-09-28 15:06:58 +0200  
    Browse Code »

21 Sep, 2020
2 commits
  • olevba: bumped version to 0.56dev11 after merging PR #479
    40faecbf
    decalage2 authored
    2020-09-21 23:43:43 +0200  
    Browse Code »
  • Merge branch 'pcode-options' ...
    45aec6e6
    # Conflicts:
    #	oletools/olevba.py
    decalage2 authored
    2020-09-21 23:31:46 +0200  
    Browse Code »

17 Sep, 2020
1 commit
  • readme: added link to DIARIO
    d4df0c06
    Philippe Lagadec authored
    2020-09-17 14:42:32 +0200  
    Browse Code »

16 Sep, 2020
1 commit
  • olevba: enabled relaxed mode by default (issues #477, #593), fixed detect_vba_ma… ...
    e7e7f97b
    …cros to always return VBA code as unicode on Python 3 (issues  #455, #477, #587, #593)
    decalage2 authored
    2020-09-16 22:56:09 +0200  
    Browse Code »

15 Sep, 2020
2 commits
  • plugin_biff: updated to v0.0.17 ...
    f2f6134a
    New version of the BIFF plugin from Didier Stevens. Changelog:
    
    - 2020/05/26: 0.0.16 added logic for reserved bits in BOUNDSHEET
    - 2020/07/17: 0.0.17 added option --statistics
    
    Signed-off-by: Jürgen Löhel <juergen.loehel@inlyse.com>
    Jürgen Löhel authored
    2020-09-15 16:30:34 -0500  
    Browse Code »
  • olevba: enabled --relaxed by default, until a solution is found to issue #593
    be57af2f
    decalage2 authored
    2020-09-15 21:15:30 +0200  
    Browse Code »

14 Sep, 2020
3 commits
  • olevba: bumped version to 0.56dev9 after PR #595
    a7a9ff7e
    decalage2 authored
    2020-09-14 22:43:33 +0200  
    Browse Code »
  • Merge remote-tracking branch 'origin/master'
    8a4ce710
    decalage2 authored
    2020-09-14 22:32:00 +0200  
    Browse Code »
  • Merge pull request #595 from iwfratz/fix_relaxed ...
    ce043b63
    fixed command line option --relaxed
    Philippe Lagadec authored
    2020-09-14 22:29:33 +0200  
    Browse Code »

10 Sep, 2020
2 commits
  • olevba: bumped version to 0.56dev8 after PR #450
    31377969
    decalage2 authored
    2020-09-10 12:50:12 +0200  
    Browse Code »
  • Merge pull request #450 from christian-intra2net/ppt-parser-type-error ...
    03c107c5
    ppt_parser: fix type of decompressed data
    Philippe Lagadec authored
    2020-09-10 12:43:57 +0200  
    Browse Code »

03 Sep, 2020
3 commits
  • olevba: bumped version to 0.56dev7 after PR #604
    c629ef7d
    decalage2 authored
    2020-09-03 22:29:13 +0200  
    Browse Code »
  • Merge pull request #604 from matthieuxyz/master ...
    48057ab3
    olevba: prevent side effects on python lib "email"
    Philippe Lagadec authored
    2020-09-03 22:23:11 +0200  
    Browse Code »
  • olevba: add a try.. finally clause around monkey patch of email lib
    13a73734
    matthieuxyz authored
    2020-09-03 13:46:57 +0200  
    Browse Code »

01 Sep, 2020
1 commit
  • olevba: prevent side effects on python lib "email" by patching and unpatching when needed
    a7fcbcc4
    matthieuxyz authored
    2020-09-01 11:39:09 +0200  
    Browse Code »