Skip to content

Conversation

@Brae
Copy link

@Brae Brae commented Aug 27, 2018

Previously js_eval.py simply reported 'Executed javascript' for any COleScript::Compile hook result, but since the VBScript hooking refers to the same function name this incorrectly identifies the language. Added check for VB content.

@Brae Brae changed the title Fixed js_eval.py to support VBScript hooking Minor signature fixes and additions Sep 6, 2018
@Brae
Copy link
Author

Brae commented Oct 18, 2018

Added basic extractor for Kraken Cryptor ransomware configs. Only shows most relevant info, limitations in push_config make it hard to show all the data.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant