In yesterday’s analysis “Analysis Of An “ms-msdt” RTF Maldoc”, I forgot to include the output of my oledump plugin plugin_clsid.
Article Link: InfoSec Handlers Diary Blog - SANS Internet Storm Center
In yesterday’s analysis “Analysis Of An “ms-msdt” RTF Maldoc”, I forgot to include the output of my oledump plugin plugin_clsid.
Article Link: InfoSec Handlers Diary Blog - SANS Internet Storm Center