spender-sandbox / cuckoo-modified

Modified edition of cuckoo
392 stars 178 forks source link

Composite Document File V2 Document handling #486

Closed enzok closed 6 years ago

enzok commented 6 years ago

Has anyone done anything to handle Composite Document File V2 Document files? If you look at the example on VT you can see there are OLE streams with Macros. However, static analysis module isn't pulling any macros from these types. Just wondering why this file type isn't being handled properly.

https://www.virustotal.com/en/file/dcad7f5135ffa5e98067b46feec2563be8c67934eb3b14ef1aad8ff7fe0892c5/analysis/

enzok commented 6 years ago

Never mind. This was self-imposed bug. Fixed now.