Macro virus for design software emerges

The first macro virus to infect the most popular PC-based computer-aided design software program, AutoCAD, has been discovered.

John Leyden

The first macro virus to infect the most popular PC-based computer-aided design (CAD) software program, AutoCAD, has been discovered.

The ACAD.Star macro virus is just 568bytes in length and infects AutoCAD version 2000, which is widely used throughout the world for architectural design, cartography, movie and computer games production. Experts said it does not pose a significant threat to users because it is not spreading.

Advertisement

The virus, written in Visual Basic Application (VBA), is primitive not only because of its length, but functionality as well. According to Russian antivirus software vendor Kaspersky Lab, which discovered the virus, its writers made some fatal mistakes, which nearly disable the virus' capabilities for proliferating under normal operating conditions.

"We classify this as a 'first try', which, as is known, are not always successful," said Eugene Kaspersky, head of antivirus research at Kaspersky Lab. "However, the discovery of this virus demonstrates security breaches in AutoCAD, which used to be virusless up to quite a recent time. We consider that these vulnerabilities could be further exploited by other AutoCAD viruses - more vital and even dangerous."

Eric Chien, chief researcher at Symantec's European antivirus research labs, said the security community had expected the appearance of viruses on AutoCAD since Autodesk licensed Microsoft's VBA macro-programming language for use in the software. He said the AutoCAD macro virus used the same sort of code as those found in Word or Excel macro viruses.

"The virus copies itself from one AutoCAD project to another, potentially infecting other projects," said Chien. However, unlike Word or Excel, AutoCAD holds macros separate to a project, and it is unlikely that the virus will spread as rapidly, he added.

"Microsoft made a decision based on a trade-off between functionality and security in incorporating macros in Word and Excel files."

Protection against the ACAD.Star virus has been added to Kaspersky Lab's AntiViral Toolkit Pro security software, and other vendors said the next scheduled update to their virus definitions would recognise the macro.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

bugwatch

Bug Watch: how to deal with hoax viruses

Sophos's 24-hour technical support team has seen a notable increase in virus hoaxes lately. Not only are more hoaxes being reported but the new ones also seem to be becoming increasingly far fetched. Yet, no matter how bizarre and improbable they sound, people still fall for them.

Resellers wary of Symantec's new Axent

Symantec's purchase of Axent Technologies last week has sparked concern in both vendors' channels.

Bug Watch: a two Trojan Horse race

More than 450 viruses are born each month with the potential to destroy applications and operating systems. The last week alone has seen two potentially dangerous 'Trojan Horses' rear their heads.

Outlook contains 'gaping' security hole

Microsoft has warned that Outlook and Outlook Express users could become infected by email viruses before they open or preview infected messages.

Related whitepapers

Related jobs

Most watched

Summit: Salesforce.com on SaaS and information overload

How web services contribute to data headaches

V3.co.uk weekly debrief, 13 Nov 09

This week we discuss the inaugural V3.co.uk Summit

Analysis and Reports

Remote access - Three steps to getting connected

3.4 million UK professionals now work from home – is your company equipped?

Cost benefits of a global collaboration network

This white paper is a must read for organisations looking for evidence of the bottom-line benefits of high-definition video and voice communications

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

White paper library

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Spotlight

V3.co.uk weekly debrief, 13 Nov 09

This week we discuss the inaugural V3.co.uk Summit

Fingers on keyboard

New Flash vulnerability discovered

Web sites could be vulnerable to Flash attacks

Chris Adams

Summit: Microsoft Office to the rescue

Chris Adams, Office Client product manager for Microsoft UK, explains...

Illegal downloader

Industry and human rights campaigners united in opposition to "three strikes" plan

Critics says government proposals to curb illegal downloading are unworkable...

Primary Navigation