Solved

The return of macro viruses

Posted on 2016-08-08
3
18 Views
Last Modified: 2016-08-27
Macro viruses used to be widespread around 2003-2008. Then, they seemed to disappear.  Now it seems in the last year or two that they are back. What was the driver for this?
0
Comment
Question by:furuno
  • 2
3 Comments
 
LVL 78

Accepted Solution

by:
David Johnson, CD, MVP earned 500 total points (awarded by participants)
ID: 41747797
actually the largest growth has been in ransomware virus's as the payload. Anti-Virus detection is pretty good these days and a macro that can access .net runtime can be scanned forever and nothing untoward will be found. One must always be vigilant about any macro enabled document and ensure that it comes from a known safe sender or safe location. Macro Execution is disabled unless the file is from a trusted location and you have had a chance to 'enable macros'.. I've turned off script execution in adobe reader/acrobat for years by default for this reason as well. Not many pdf's need to execute scripting.

The last major macro virus was Melissa in 1999 and due to the security policies in effect at that date it was on a tear and Microsoft had to shut down incoming email to try and stem the tide.

Many experts here on EE will not run any macro enabled documents.
0
 
LVL 2

Author Comment

by:furuno
ID: 41747923
Thanks David for that helpful response.

"Anti-Virus detection is pretty good these days"

Why do you say that?
0
 
LVL 78

Expert Comment

by:David Johnson, CD, MVP
ID: 41772820
FWIW, the anti-virus community is pretty proactive and updates are daily or more often.  The problem being that most ransomware sends out unique payloads so the # of uniques is on the rise. Unfortunately this defeats signature based AV
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

SHARE your personal details only on a NEED to basis. Take CHARGE and SECURE your IDENTITY. How do I then PROTECT myself and stay in charge of my own Personal details (and) - MY own WAY...
In a recent article here at Experts Exchange (http://www.experts-exchange.com/articles/18880/PaperPort-14-in-Windows-10-A-First-Look.html), I discussed my nine-month sandbox testing of the Windows 10 Technical Preview, specifically with respect to r…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

914 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

23 Experts available now in Live!

Get 1:1 Help Now