-
-
[转帖]Malicious Excel 4.0 Macro Analysis
-
发表于: 2020-12-19 15:23 1648
-
Malicious Excel 4.0 Macro Analysis
17 December 2020
A while back I gave a brief analysis about an obfuscation technique used in a malicious Excel document on Twitter. This technique utilized Excel 4.0 macros to grab a second stage and had some interesting Anti-Sandbox evasion. In this post I want to give an in-depth analysis on the obf
uscation that was used and how to deobfuscate the macros to get the second stage.
c73K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6%4N6%4N6Q4x3X3g2Y4L8$3N6Y4L8r3g2Z5k6h3q4V1k6h3c8Z5j5h3y4C8k6i4u0Q4x3X3g2U0L8$3#2Q4x3V1k6T1L8r3!0Y4i4K6u0r3M7r3!0K6N6q4)9J5c8U0t1I4
赞赏
他的文章
赞赏
雪币:
留言: