728x90
Last week I received another malicious document with embedded payload encoded with base64. A bit tired of repeating the same manual operations to extract and decode base64 content, I quickly wrote a small Python script to help me. base64dump.py searches through the given file for base64 strings (delimited by non-base64 characters), and produce a report like this one:
Here is a video of the tool in action.
728x90
'malware ' 카테고리의 다른 글
Searching Through the VirusTotal Database (0) | 2015.07.23 |
---|---|
A .BUP File Is An OLE File (0) | 2015.07.06 |
Analysis of CVE-2015-2360 – Duqu 2.0 Zero Day (0) | 2015.06.20 |
The Samsung SwiftKey Vulnerability – What You Need To Know, And How To Protect Yourself (0) | 2015.06.20 |
Magnitude Exploit Kit"수정 된 막 Adobe Flash Player의 취약점을 이용. 가장 영향을받은 국가는 미국 (0) | 2015.06.20 |