Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques implemented by malicious documents.
Switch branches/tags
Nothing to show
Clone or download
joesecurity Add files via upload
Added two new checks:

* checkAppCount
* checkApps
Latest commit 79851a4 Jun 27, 2017
Permalink
Failed to load latest commit information.
CHANGELOG
LICENSE Add files via upload Oct 4, 2016
Pafish.docm
README.md
code.vba Add files via upload Jun 27, 2017
pafish.png

README.md

Pafish Macro

(Paranoid Fish)

Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques implemented by recent malicious documents found in the public.

The VBS / VBA code is open source, you can study the code of all evasion tricks.

Code is licensed under GNU/GPL version 3.

You can download the pafish macro document here.

Pafish Macro screenshot

Target

The goal of this project is find and collect evasion tricks seen in recent Office malware samples. The code enables to understand evasions and helps to improve malware analysis systems and sandboxes.

This project is based on famous Pafish by Alberto Ortega

Author

Joe Security (@joe4security - webpage)