410 likes | 1.49k Vues
Macro Viruses. By Justin Reschke COT 4810. Overview. Macro Virus General Info Famous Macro Viruses Methods of Detection and Removal Conclusion References. What Are Macros?. A simple script type program written in an application’s macro language Used for automated processes in a document.
E N D
Macro Viruses By Justin Reschke COT 4810
Overview • Macro Virus General Info • Famous Macro Viruses • Methods of Detection and Removal • Conclusion • References
What Are Macros? • A simple script type program written in an application’s macro language • Used for automated processes in a document
What are Macro Viruses? • Most prevalent type of virus in late 1990s and early 2000s • Infect a document or template rather than executable code • Can infect at different points during a file’s use
Macro Language Requirements for Creating Macro Viruses • Macro programs must link to or reside in a particular file • Macro programs can be copied from file to another • Macro programs must be able to gain control without user intervention
Why are they so dangerous? • Can infect multiple types of operating systems • People don’t normally think of viruses in documents • Easy to learn how to write a macro virus • Because office programs are usually integrated, email programs can be used to further spread the virus
Famous Macro Viruses • Concept - Distributed by Microsoft • Considered to be the first macro virus • Simply showed the potential for macro viruses
Famous Macro Viruses • Melissa Virus – Word97 Virus • Spread via Outlook • Overwrites first macro in open documents and in the normal.dot template • Turns off macro detection
Famous Macro Viruses • ILOVEYOU – Uses word macro to send itself in outlook • Deletes various mp3, mp2, and jpg files • Also sends usernames and passwords to the virus’s author
Common Programs Used ByMacro Viruses • Access • Excel • PowerPoint • Word • AmiPro
Detection and Removal • Anti-Virus Tools • Scanners, Monitors • Integrity Checkers • Cyclic Redundancy Check (CRC) • Behavior Blockers
Summary • Macro languages are good if in the right hands • Although they aren’t so dangerous anymore, its important to note macro viruses • Securing your system is important • Don’t download unknown email attachments
References • Writing Word Macro Viruses by R. Rattus, • http://melissavirus.com, MelissaVirus.com • http://www.infoplease.com/ipa/A0872842.html, Computer Virus Timeline • http://www.itsecurity.com/papers/kaspersky.htm, Macro-Viruses: Genesis, Truth About the Threat and Methods of Protection