{"repo":"decalage2/oletools","free":true,"listed":false,"github":"https://github.com/decalage2/oletools","clone":"git clone https://github.com/decalage2/oletools.git","description":"oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.","language":"Python","stars":3395,"topics":["python","python-library","olefile","malware-analysis","ms-office-documents","compound","rtf","forensics","ole-files","security"],"license":null,"category":"security-tools","readme_excerpt":"python-oletools =============== oletools is a package of python tools to analyze Microsoft OLE2 files (also called Structured Storage, Compound File Binary Format or Compound Document File Format), such as Microsoft Office 97-2003 documents, MSI files or Outlook messages, mainly for malware analysis, forensics and debugging. It is based on the olefile parser. It also provides tools to analyze RTF files and files based on the OpenXML format (aka OOXML) such as MS Office 2007+ documents, XPS or MSIX files. For example, oletools can detect, extract and analyse VBA macros, OLE objects, Excel 4 macros (XLM) and DDE links. See http://www.decalage.info/python/oletools for more info. Quick links: Home page - Download/Install - Documentation - Report Issues/Suggestions/Questions - Contact the Author - Repository - Updates on Twitter Cheatsheet Note: python-oletools is not related to OLETools published by BeCubed Software. News ---- - 2025-05-22 v0.60.3 : - olevba: - fixed a security issue in the CLI display when ANSI escape codes are present (PR #873) - encrypted files: password is now reported in the logs, added --decrypted dir option (PR #842) - 2024-07-02 v0.60.2 : - olevba: - fixed a bug in open slk (issue #797, PR #769) - fixed a bug due to new PROJECTCOMPATVERSION record in dir stream (PR #723, issues #700, #701, #725, #791, #808, #811, #833) - oleobj: fixed SyntaxError with Python 3.12 (PR #855), SyntaxWarning (PR #774) - rtfobj: fixed SyntaxError with Python 3.12 (PR #854) - c","default_branch":null,"files":null,"tree":[],"storefront":"/r/decalage2","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/decalage2/oletools/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}