A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #2041  by Evilcry
 Wed Aug 18, 2010 4:43 am
Hi,

Some hour ago I've written a blog post on Malware Analysis of Infected OLE2 (doc/ppt/xls) Files, including also pyOLEScanner,
a python based script that detects malicious OLE2 files.

Due to the len. of the post I'll not dump it here, but report relative links.

BlogPost
http://evilcodecave.blogspot.com/2010/0 ... lysis.html

pyOLEScanner
http://evilcry.netsons.org/other/pyOLEScanner.py

Have a nice Read :)
Evilcry