Thursday, March 3, 2016

Feedly:TrendLabs Security Intelligence Blog. Macro Malware Strides in New Direction, Uses Forms to Store its Code



from TrendLabs Security Intelligence Blog

The resurgence and continued prevalence of macro malware could be linked to several factors, one of which is their ability to bypass traditional antimalware solutions and  sandboxing technologies. Another factor is the continuous enhancements in their routines: just recently, we observe that the macro malware related to DRIDEX and the latest crypto-ransomware variant, Locky Ransomware used Form object in macros to obfuscate the malicious code. With this improvement, it could further aid cybercriminals or attackers to hide any malicious activity they perform in their target network or system.

Post from: Trendlabs Security Intelligence Blog - by Trend Micro

Macro Malware Strides in New Direction, Uses Forms to Store its Code