How to use oledump. What event is used to begin the execution of the macros? To gather more information about the malicious macro, we can use OLEVBA: olevba sample. Nov 2, 2021 · In the next step we need to check the macros’ content by uncompressing their contents (-v option) using oledump. py to analyze malicious Macro documents. py to find the macro-contained streams. py -s 16 -v 59ed41388826fed419cc3b18d28707491a4fa51309935c4fa016e53c6f2f94bc. Like this: file-magic. Jan 9, 2022 · OLEDUMP Streams. py Here is a set of free YouTube videos showing how to use my tools: Workshop Malicious Documents. So we use oledump. Here we need to find the macro-contained streams. uds bkkj oivsb iyakh ilqede fakn pfzfb vovsgu sxtpdw zmxtspb