How to extract shellcode from a malicious document:
https://clickallthethings.wordpress.com/2021/03/06/oleobject1-bin-ole10native-shellcode/