Skip to main content

A utility to perform static analysis on files.

Project description

Static-analysis-script

Welcome to the Static Analysis Script! This Python tool is crafted to extract emails, paths, files, URLs, and IPs from the specified file for analysis.

Purpose

This tool aids in the collection of data essential for static analysis, accelerating the detection of Indicators of Compromise (IOCs) and other potentially malicious activities executed by files.

Installation

option 1:

pip install from the pypi project

  python -m pip install static-analysis-script

please make sure to download the latest version, currently 0.2.3

option 2:

git clone the project. pip install local from the git directory

  git clone https://github.com/perzibel/static-analysis-script.git
  cd static-analysis-script
  python -m pip install .

Usage

image

Analysis of Executables and DLL Files

The tool employs strings.exe to pull strings from executable (EXE) and dynamic link library (DLL) files, analyzing these strings to pinpoint paths, files, IP addresses, and URLs.

NEW! extract WinApi commands in the file

Analysis of CSV Files

For Comma-Separated Values (CSV) files, the tool extracts relevant information by directly reading the contents of the files.

Analysis of Word Documents

Utilizing the zipfile library, the tool processes Word documents, extracting embedded emails and URLs from various sections.

Analysis of PDF Files

extract ALL visiable and hidden URIs

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

static_analysis_script-0.2.4.tar.gz (174.8 kB view details)

Uploaded Source

Built Distribution

static_analysis_script-0.2.4-py3-none-any.whl (173.6 kB view details)

Uploaded Python 3

File details

Details for the file static_analysis_script-0.2.4.tar.gz.

File metadata

  • Download URL: static_analysis_script-0.2.4.tar.gz
  • Upload date:
  • Size: 174.8 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/5.0.0 CPython/3.12.2

File hashes

Hashes for static_analysis_script-0.2.4.tar.gz
Algorithm Hash digest
SHA256 8351fd3f0459795d7c0fe05cc9fbc0adb147e712accaed4a9e4b3336e8c98108
MD5 540b5912cab24b1029faeca94085d50a
BLAKE2b-256 626a9b278b29ddf84d44f6e50cb3c3e41a589a10a28b831364f97144fd9f20fd

See more details on using hashes here.

File details

Details for the file static_analysis_script-0.2.4-py3-none-any.whl.

File metadata

File hashes

Hashes for static_analysis_script-0.2.4-py3-none-any.whl
Algorithm Hash digest
SHA256 2f078ba0317ab98bfd62f36163476979a55eeeb0a09174ecc3d60f83ab9ed889
MD5 9006152868af26795e8b03ca92569326
BLAKE2b-256 114502064176829c2948fc8734eb10de94d2185dc1aa9e9563233dae6eb088ee

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page