Logo white

Peter M. Groen / oletools

Sign in
  • Sign in
  • Project
  • Files
  • Commits
  • Network
  • Graphs
  • Milestones
  • Issues 0
  • Merge Requests 0
  • Labels
  • Wiki
  • Commits 1,521
  • Compare
  • Branches 1
  • Tags 0
  • oletools
07 May, 2021
3 commits
  • Merge pull request #585 from ninoseki/fix-issue-in-check-excel ...
    f5ddf80e
    Fix an issue in OleID check_excel()
    Philippe Lagadec authored
    2021-05-07 23:12:28 +0200  
    Browse Code »
  • bumped version to 0.56.2.dev3 after merging PR #648
    24be7f46
    decalage2 authored
    2021-05-07 22:59:32 +0200  
    Browse Code »
  • Merge pull request #648 from ddash-ct/507-rtfpackage ...
    69810db4
    Strip trailing nulls for package check
    Philippe Lagadec authored
    2021-05-07 22:51:48 +0200  
    Browse Code »

06 May, 2021
2 commits
  • Merge pull request #678 from conitrade/hotfix/clsid-case ...
    2f764df7
    ensure uppercase KNOWN_CLSIDS matching
    Philippe Lagadec authored
    2021-05-06 23:20:45 +0200  
    Browse Code »
  • ensure uppercase KNOWN_CLSIDS matching
    2e20e6fa
    Alexander Sennhauser authored
    2021-05-06 10:27:37 +0000  
    Browse Code »

04 May, 2021
1 commit
  • updated plugin_biff to v0.0.22, fixes #647, fixes #674
    04b118c2
    decalage2 authored
    2021-05-04 21:13:05 +0200  
    Browse Code »

14 Apr, 2021
1 commit
  • olevba, mraptor: added detection of Workbook_BeforeClose, fixes #518
    622d9a2b
    decalage2 authored
    2021-04-14 21:03:32 +0200  
    Browse Code »

13 Apr, 2021
1 commit
  • clsid: added two CLSIDs related to CVE-2021-27058
    c638dcc7
    decalage2 authored
    2021-04-13 22:46:20 +0200  
    Browse Code »

11 Apr, 2021
1 commit
  • clsid: added Virtual Disk Service Loader - vdsldr.exe (related to MS Office clic… ...
    1522a114
    …k-to-run issue CVE-2021-27058)
    decalage2 authored
    2021-04-11 00:41:29 +0200  
    Browse Code »

04 Apr, 2021
1 commit
  • readme: added link to Splunk add-on for MS O365 Email
    f4c960c1
    decalage2 authored
    2021-04-04 15:13:27 +0200  
    Browse Code »

02 Apr, 2021
2 commits
  • updated README, removed unnecessary README.rst
    9444569b
    decalage2 authored
    2021-04-02 23:45:58 +0200  
    Browse Code »
  • bumped version to 0.56.1
    d4835565
    decalage2 authored
    2021-04-02 23:29:41 +0200  
    Browse Code »

29 Mar, 2021
3 commits
  • oleobj: bumped version to 0.56.1
    e8585b78
    decalage2 authored
    2021-03-29 22:45:47 +0200  
    Browse Code »
  • Merge pull request #670 from ljuturu/fix/#641---oleobj ...
    25c8b1ab
    oleobj: Missing commas in BLACKLISTED_RELATIONSHIP_TYPES
    Philippe Lagadec authored
    2021-03-29 22:26:08 +0200  
    Browse Code »
  • oleobj: Missing commas in BLACKLISTED_RELATIONSHIP_TYPES
    bfb43f38
    sindhuri.juturu authored
    2021-03-29 13:28:03 -0600  
    Browse Code »

06 Mar, 2021
1 commit
  • setup.py: avoid installing msoffcrypto-tool if platform is PyPy except PyPy3 on Linux (fixes #473)
    6f8d1cdc
    decalage2 authored
    2021-03-06 23:28:56 +0100  
    Browse Code »

03 Mar, 2021
2 commits
  • travis.yml: removed msoffcrypto-tool to avoid issues with PyPy
    fc660e7e
    decalage2 authored
    2021-03-03 23:45:26 +0100  
    Browse Code »
  • setup.py: avoid installing msoffcrypto-tool if platform is PyPy+Windows (fixes #473)
    f1d12815
    decalage2 authored
    2021-03-03 23:16:48 +0100  
    Browse Code »

02 Dec, 2020
1 commit
  • Update package comparison to strip trailing nulls in oleobj.OleObject class names
    96818359
    Dan Dash authored
    2020-12-02 08:49:39 -0500  
    Browse Code »

15 Nov, 2020
1 commit
  • clsid: added CLSID for DOCM files
    96cd17cc
    decalage2 authored
    2020-11-15 21:57:34 +0100  
    Browse Code »

09 Nov, 2020
1 commit
  • readme: added link to MalwareBazaar
    b5d79b38
    decalage2 authored
    2020-11-09 22:20:16 +0100  
    Browse Code »

15 Oct, 2020
1 commit
  • olevba: relaxed mode should be a bit less relaxed (fixes #629)
    1af723f0
    decalage2 authored
    2020-10-15 22:15:50 +0200  
    Browse Code »

11 Oct, 2020
1 commit
  • olevba: improved error logs, added some comments
    20bcb688
    decalage2 authored
    2020-10-11 23:12:56 +0200  
    Browse Code »

04 Oct, 2020
1 commit
  • olevba: check_value now raises a warning instead of an error
    00beb81e
    decalage2 authored
    2020-10-04 22:35:20 +0200  
    Browse Code »

28 Sep, 2020
8 commits
  • setup: bumped version to 0.56
    46eb60f6
    decalage2 authored
    2020-09-28 22:55:18 +0200  
    Browse Code »
  • olevba: added mention that --relaxed is now deprecated
    fa4cf394
    decalage2 authored
    2020-09-28 22:44:58 +0200  
    Browse Code »
  • readme, documentation and comment updates for v0.56 release
    6540ccbc
    decalage2 authored
    2020-09-28 22:39:41 +0200  
    Browse Code »
  • Merge branch 'pull/591' ...
    a854e61e
    # Conflicts:
    #	oletools/olevba.py
    decalage2 authored
    2020-09-28 22:08:29 +0200  
    Browse Code »
  • Merge pull request #569 from mlodic/master ...
    f189b26c
    improvements to analysis of XLM macros (encrypted ones + contained in XLSM) + template injection
    Philippe Lagadec authored
    2020-09-28 21:48:28 +0200  
    Browse Code »
  • Merge pull request #613 from jloehel/feature/update/plugin_biff/0.0.17 ...
    69b085b9
    plugin_biff: updated to v0.0.17
    Philippe Lagadec authored
    2020-09-28 21:25:04 +0200  
    Browse Code »
  • olevba: added VBA_Parser.get_vba_code_all_modules, partial fix for issue #619, u… ...
    2394f619
    …pdated mraptor to use it
    decalage2 authored
    2020-09-28 21:03:31 +0200  
    Browse Code »
  • merge from upstream
    4274e151
    Matteo Lodi authored
    2020-09-28 15:06:58 +0200  
    Browse Code »

21 Sep, 2020
2 commits
  • olevba: bumped version to 0.56dev11 after merging PR #479
    40faecbf
    decalage2 authored
    2020-09-21 23:43:43 +0200  
    Browse Code »
  • Merge branch 'pcode-options' ...
    45aec6e6
    # Conflicts:
    #	oletools/olevba.py
    decalage2 authored
    2020-09-21 23:31:46 +0200  
    Browse Code »

17 Sep, 2020
1 commit
  • readme: added link to DIARIO
    d4df0c06
    Philippe Lagadec authored
    2020-09-17 14:42:32 +0200  
    Browse Code »

16 Sep, 2020
1 commit
  • olevba: enabled relaxed mode by default (issues #477, #593), fixed detect_vba_ma… ...
    e7e7f97b
    …cros to always return VBA code as unicode on Python 3 (issues  #455, #477, #587, #593)
    decalage2 authored
    2020-09-16 22:56:09 +0200  
    Browse Code »

15 Sep, 2020
2 commits
  • plugin_biff: updated to v0.0.17 ...
    f2f6134a
    New version of the BIFF plugin from Didier Stevens. Changelog:
    
    - 2020/05/26: 0.0.16 added logic for reserved bits in BOUNDSHEET
    - 2020/07/17: 0.0.17 added option --statistics
    
    Signed-off-by: Jürgen Löhel <juergen.loehel@inlyse.com>
    Jürgen Löhel authored
    2020-09-15 16:30:34 -0500  
    Browse Code »
  • olevba: enabled --relaxed by default, until a solution is found to issue #593
    be57af2f
    decalage2 authored
    2020-09-15 21:15:30 +0200  
    Browse Code »

14 Sep, 2020
2 commits
  • olevba: bumped version to 0.56dev9 after PR #595
    a7a9ff7e
    decalage2 authored
    2020-09-14 22:43:33 +0200  
    Browse Code »
  • Merge remote-tracking branch 'origin/master'
    8a4ce710
    decalage2 authored
    2020-09-14 22:32:00 +0200  
    Browse Code »