Home Artists Posts Import Register
Patreon importer is back online! Tell your friends ✅

Content

In this Twitch stream we continue our 3-part research series on emulating VBScript with a deep dive into the vbscript.dll.

Note: This is a research stream so it is long and progress is slow as I make a lot of mistakes while learning how all the components in the scripting engine work together.  

Emotet WScript Sample

1c3a7f886a544fc56e91b7232402a1d86282165e2699b7bf36e2b1781cb2adc2

Notes

OneNote WSF Malware (Emotet):Taking A Closer Look a The Scripting Engine 

Files

Live Stream VOD: VBScript Emulation Research Part 2 - Debugging VBScript.dll

This is "Live Stream VOD: VBScript Emulation Research Part 2 - Debugging VBScript.dll" by OALABS on Vimeo, the home for high quality videos and the people...

Comments

marienmare

Is it safe debugging vm with internet? how configurations?

oalabs

It depends on what you are doing, you need to understand the risks of the sample the you are analyzing before you make that decision.... in this case I believe I infected my vm with emotet! haha no not a good example!