
Collection of DFIR and OSINT Python scripts for parsing malicious LNK samples, extracting OLE objects from MHTML, and hashing favicons to hunt phishing sites.
| Name | Description |
|---|---|
| pyLNK-Forensics | This script is useful for getting valuable information from malicious LNK samples. |
| pyExtract_OLE_from_MHTML | This script is for extracting the OLE object from MHTML. |
| pyDomainMurmurHash | This tool is to calculate the MurmurHash value of a website's favicon. That value is used for hunting phishing website on Shodan |