Skip to main content
Glama
pradeep895

oletools-mcp-server

by pradeep895

OLETools Secure MCP Server

This project provides a secure microservice using FastMCP to analyze Microsoft Office documents (Excel, Word, PowerPoint) and related file types (like XLL add-ins) for potential malicious content using static analysis techniques. It leverages external tools like oletools, XLMMacroDeobfuscator, and pefile.

Features

  • Analyzes VBA Macros (olevba)

  • Detects XLM Macros (XLMMacroDeobfuscator, olevba)

  • Checks for DDE Links (msodde)

  • Extracts embedded OLE Objects (oleobj)

  • Analyzes XLL file exports for suspicious functions (pefile)

  • Extracts IOCs (URLs, IPs, Hashes, Emails) using iocextract

  • Provides basic MIME type and file size validation (python-magic)

  • Uses a configurable scoring system for basic risk classification

  • Designed for integration with systems supporting the MCP protocol (like compatible versions of Claude Desktop).

Related MCP server: Office MCP Server

Prerequisites

  • Python 3.6+

  • OLETools: Install via pip install oletools

  • XLMMacroDeobfuscator: Install via pip install XLMMacroDeobfuscator

  • python-magic: Install via pip install python-magic-bin (Windows)

  • iocextract (optional): Install via pip install iocextract for advanced IOC extraction

  • Claude Desktop application

Installation

  1. Clone the Repository:

    git clone https://github.com/pradeep895/oletools-mcp-server.git
    cd oletools-mcp-server
  2. Install Dependencies:

pip install -r requirements.txt
  1. Download the "Claude Desktop" application go to the Developer settings and Edit the "claude_desktop_config.json" file and paste content in the configuration.json file.Restart the application.

  2. Run the config file:

python config.py
  1. Run the server:

python mcp_service.py
  1. Go to "Claude Desktop" application and check for the "hammer symbol" it appeared means MCP tools are available.

  2. type "analyze_vba_macros in <filepath\example.xlsm>" this will help you to analyze the excel file statically and gave you the findings.

analyze_vba_macros file_path:"C:\path\to\your\example.xlsm"

Related MCP Connectors

Related MCP Servers

  • A
    license
    Not graded
    quality
    D
    maintenance
    Rust-native MCP server for Office document processing (Excel, Word, PowerPoint) enabling sub-millisecond, local-first document manipulation and export to PDF.
    162
    GPL 3.0
  • A
    license
    A
    quality
    D
    maintenance
    MCP server that enables searching and reading binary document files (PDF, DOCX, PPTX, XLSX, ODT, ODS, ODP, RTF, EPUB) using regex patterns and retrieving content by sections.
    2
    MIT
  • F
    license
    Not graded
    quality
    C
    maintenance
    Enables secure text authoring and privacy-focused document processing through MCP. Provides tools for style analysis, conservative text revision, comparison with author samples, and removal of metadata from DOCX/PDF files.
    -