Malicious Office Files

  Рет қаралды 5,477

Truttle1

Truttle1

Ай бұрын

Did you know that a Word document can edit the registry, delete System32, and send emails on your behalf? Well, now you know!
Links:
en.wikipedia.org/wiki/Melissa...)
www.zdnet.com/home-and-office...
money.cnn.com/1999/03/29/tech...
www.cnn.com/TECH/computing/990...
Music:
Hypnospace Outlaw - Relaxation
Super Mario 3D World - World 8
Paper Mario Sticker Star - Jungly Jungle
Mario and Luigi: Bowser's Inside Story - SHOWTIME
Action 52 - Cheetahmen
Super Mario Land - Athletic Theme
Hypnospace Outlaw - SquisherZ

Пікірлер: 95
@Truttle1
@Truttle1 Ай бұрын
discord: discord.com/invite/EKPBjjUc65
@Cliffordlonghead
@Cliffordlonghead Ай бұрын
First
@Cliffordlonghead
@Cliffordlonghead Ай бұрын
Awesome video
@literallydoing4425
@literallydoing4425 Ай бұрын
Just wondering here, what animation software do you use? It seems like it'd be a good fit for me to start working with.
@void_vale
@void_vale Ай бұрын
I always forget that Windows hides file extensions by default. That's such a terrible idea, I can't fathom how you would ever justify that, let alone come up with it...
@IceMetalPunk
@IceMetalPunk Ай бұрын
They probably use the Apple excuse of "our customers aren't always technical, this might confuse them".
@eternia15
@eternia15 Ай бұрын
I agree, it has frustrated me for decades at this point. Who would consider this secure.
@matthewrease2376
@matthewrease2376 Ай бұрын
One of Windows' many, many issues.
Ай бұрын
Obviously the best solution would be to ask for confirmation before changes to the file system, registry, mail sending etc. instead of the annoying and obstructive “You shall not open files from the internet. WE protected your device (because we, MS, control your PC, not you)”.
@ETXAlienRobot201
@ETXAlienRobot201 Ай бұрын
even better would've been not giving macros the level of access they have. if they're for automating certain tasks in documents, who do they need full filesystem access, access to the registry, ability to tweak the settings of word, etc... ?
@275hammy
@275hammy Ай бұрын
​@@ETXAlienRobot201 So people using it for legitimate purposes can do powerful things. Can't think of many good ones, but one could use macros to set up a word document with a letter format that is addressed to the person who sent the most recent email, look at a local database file to populate an Excel spreadsheet, etc. Not saying this as my position on the matter, just saying why it was likely made so powerful
@leonidas14775
@leonidas14775 Ай бұрын
They should make macros a feature that the user opts-in to installing. Most people will never use it anyway.
@BringMayFlowers
@BringMayFlowers Ай бұрын
@@leonidas14775 As far as I remember (it's been years since I used Microsoft Office), it is, people just install it for either compatibility (unfortunately, in 80% of cases that compatibility is just with malware) or if they think they *might* need it one day just so they don't have to get the CD out again.
@unicodefox
@unicodefox Ай бұрын
The problem is, users don't read message boxes. The text in a message box or a warning dialogue does not exist to a regular user. Even if you write "DO NOT THIS DO THIS IT IS VERY DESTRUCTIVE" in 72pt flashing text, users *will* ignore it. You cannot make dangerous operations a single dialog box click away because users just want to open this document, and don't care for anything getting in their way. If your response to that is "if they click the button to break their PC it's their fault", you don't understand the point. Microsoft does not make software for consumers. Microsoft makes software for businesses that consumers can buy. And, businesses will *never* buy software that lets a careless user send all their company secrets just by clicking a checkbox, no matter how much you hide it.
@FinnPlanetballs
@FinnPlanetballs Ай бұрын
oh boy! it's august 4th, and i hope my word document hasn't been infected!
@Truttle1
@Truttle1 Ай бұрын
uhm ackshually it’s April 24
@cmyk8964
@cmyk8964 Ай бұрын
Fun fact: Etymologically, “ain’t” comes from “am not”!
@cassandradawn780
@cassandradawn780 Ай бұрын
that is indeed what it meant before the early 19th century, then it started being used as a contraction for "is not", "are not" and others. (just adding onto your comment; etymology is weird)
@carsoncoder
@carsoncoder Ай бұрын
Then why don't we use amn't
@notwithouttext
@notwithouttext 15 күн бұрын
and "aren't i" also comes from "am not"! "amn't" is hard to say, so it was simplified to "an't". and in the south of england, there was a sound change which lengthened a bunch of a's, like in bath, glass, example. it made "an't" and "aunt" no longer sound like "ant", and more like "ahnt". in that same part of england, r's had been dropped, so "an't" sounded exactly like "aren't", and it had a similar meaning. thus "an't i" became "aren't i", and it spread to american english as well.
@algotkristoffersson15
@algotkristoffersson15 13 күн бұрын
Where does the I come from then?
@notwithouttext
@notwithouttext 13 күн бұрын
@@algotkristoffersson15 the "a" sound changes in some accents in some positions before m, n, and g. so can't turns into cain't, but can isn't cain. similarly an't becomes ain't.
@womagrid
@womagrid Ай бұрын
The animation style seems to imply an inaudible reggae soundtrack.
@Vallee152
@Vallee152 Ай бұрын
I had a job specifically for writing macros in Excel documents They used the excel documents as databases
@rigen97
@rigen97 Ай бұрын
happens much too often I think it's because excel is easier to learn and easier to print from for "office" people honestly it probably beats Access in small business
@IceMetalPunk
@IceMetalPunk Ай бұрын
At my company, we're currently in the process of setting up our internal databases for the second time (long story). But this time, we're doing it right; because currently, half our information is stored in various and sundry Google Sheets, often populated from Google Forms, and nowhere else 😑 I'm the one who advocated hard to fix that...
@Vallee152
@Vallee152 Ай бұрын
@@rigen97 they do have a proper database that they pay an enterprise subscription to, forget what it's called, but it's missing some features they would like, so they export any active work orders, claims, etc. as CSV's and put them into XLM's
@garbageyoutubechannel310
@garbageyoutubechannel310 Ай бұрын
why r they moving around so much
@JimWolfie
@JimWolfie Ай бұрын
Bowser has big obfuscation energy. I approve
@lonec1777
@lonec1777 Ай бұрын
The reason variable names in a lot of malware is confusing is because they want it to be difficult to decipher what the malicious code is doing. This is especially true whenever the symbols or code is in someway viewable.
@henke37
@henke37 Ай бұрын
You know the fun part of macros? You can load arbitrary dlls and call functions in them. So even if they didn't include all the destructive features by default, you could just add them to VBA yourself.
@official-obama
@official-obama Ай бұрын
as foretold in the prophecy
@Truttle1
@Truttle1 Ай бұрын
zomg official obama???
@official-obama
@official-obama Ай бұрын
@@Truttle1 yeah i need to become president again can you give me your credit card information
@Truttle1
@Truttle1 Ай бұрын
@@official-obama my old number ended in 666 so if you find my lost card in houston that i cancelled three months ago and it ends in 666 it's probably mine.
@thiesenf
@thiesenf Ай бұрын
The famous "I Love You" malware was written in WBA...
@MrLetsGamePlayHD
@MrLetsGamePlayHD Ай бұрын
It was written in vbs (VBScript) which already comes with windows.
@EdKolis
@EdKolis 14 күн бұрын
Even VBscript is going to be deprecated soon. Wonder what will happen to all the classic ASP web apps?
@matthewrease2376
@matthewrease2376 Ай бұрын
2:30 this is the most praise Visual Basic has ever gotten or will get 😂😂
@Alex1891
@Alex1891 Ай бұрын
As one of the comments ever written, I would like to say that I found it cool and cohesive when you made the point of showing file extensions by showing us the project folder for this video!
@1leon000
@1leon000 Ай бұрын
kilroy was here
@Golem642
@Golem642 Ай бұрын
I remember when i was younger i used to make very simple batch viruses that spams terminal consoles Nostalgia kicking hard
@Truttle1
@Truttle1 Ай бұрын
When I was in AP CS in high school, I made a Java program that moved the mouse to the Start Menu and shut your PC down. It was really fun sending that to students in the class and not telling them what it did. It was even more fun synchronizing all the PCs in the classroom to shut down by having it start at a specific time and play music as it did so :P
@Cliffordlonghead
@Cliffordlonghead Ай бұрын
​@Thiruttle1
@IceMetalPunk
@IceMetalPunk Ай бұрын
In college, I first learned about fork bombs and was like, "that doesn't seem so hard". So I hid a sort of fork bomb in a "game" that added itself to Startup with a flag that would cause the "game" to just keep forking itself exponentially. I released it onto a game dev forum as "a WIP game that I'd like feedback on", from a burner account, and then was amused at my own smugness. A few months later, I forgot what it was and opened it on my machine... ...fun times when you're a cocky little piece of shit who thinks breaking things is fun, and then karma bites you 😂
@rockpie
@rockpie Ай бұрын
10 cmd 20 goto 10
@maker0824
@maker0824 Ай бұрын
That’s some idle animations
@kornsuwin
@kornsuwin Ай бұрын
adobe ads try not to have the worst compressed music ever challenge
@ghasttastic1912
@ghasttastic1912 Ай бұрын
9:05 hypnospace fan detected.
@unicodefox
@unicodefox Ай бұрын
also, microsoft ported the vba editor to macOS because of course they did. it looks as out of place as you'd expect
@the-pink-hacker
@the-pink-hacker Ай бұрын
I love the framing device you chose for this video. Great hidden gem!
@mrdoognoog
@mrdoognoog Ай бұрын
squisherz theme for the outro, that's really cool™️
@i_teleported_bread7404
@i_teleported_bread7404 29 күн бұрын
0:06 Is this the first time we actually learn Eidex's full name? I don't recall it being mentioned in any previous videos.
@Truttle1
@Truttle1 29 күн бұрын
It was in earlier videos such as the Whenever one (I think) but this was the first time I gave him a middle name. Eidex Firben Lagarto is actually a joke name, see if you can find what the joke is :P
@Bautista_Fam._y_Co.
@Bautista_Fam._y_Co. 13 күн бұрын
6:06 That ain't a virus, i'ts a worm!
@jacobusburger
@jacobusburger Ай бұрын
“Bro wake up, new Truttle1 video dropped!”
@angelcaru
@angelcaru Ай бұрын
I would know, I started programming on VBA :)
@nnnArchive
@nnnArchive Ай бұрын
ay how ya doin’? you been feelin’ any different since the redesign? also do you have any plans to bring back cosmos quest?
@gydo1942
@gydo1942 Ай бұрын
ah yes, office macros. I once used it to gain access to my teacher's computer using a metasploit reverse payload. (with permission!) Good times.
@matthewrease2376
@matthewrease2376 Ай бұрын
9:28 office also exists online is and free. It's also more accessible for those with disabilities. And it's not Google so there's that.
@rigen97
@rigen97 Ай бұрын
kinda surprised this didn't touch on popular ransomware
@Aredsus
@Aredsus 21 күн бұрын
i found a programming language ya didnt make a video on it: among us
@enthusiasticgeek7237
@enthusiasticgeek7237 Ай бұрын
hypnospace music???
@matthewrease2376
@matthewrease2376 Ай бұрын
Writes simpson joke Gets 20 months in prison Bruh.
@Truttle1
@Truttle1 Ай бұрын
I think it was the crashing email servers via exponential spam part that got him in prison though
@matthewrease2376
@matthewrease2376 Ай бұрын
@@Truttle1 just a skill issue, it got them to upgrade their servers 😂😂
@user-iy6dt4xp5o
@user-iy6dt4xp5o Ай бұрын
This is your 2^7th video
@unchaynd7266
@unchaynd7266 16 күн бұрын
Have you tried using Linux
@Truttle1
@Truttle1 16 күн бұрын
I use Linux quite often actually.
@Exvixcity
@Exvixcity Ай бұрын
You sound alot like Jan Misali
@Cliffordlonghead
@Cliffordlonghead Ай бұрын
Hi
@Truttle1
@Truttle1 Ай бұрын
Hi!
@Stiky_Piston
@Stiky_Piston Ай бұрын
YAY! ANOTHER 1eltturT vid!
@thescratchguy428
@thescratchguy428 Ай бұрын
BAHAHAHA
@randomazzy11
@randomazzy11 Ай бұрын
OMG HI TRUTTLE1
@Truttle1
@Truttle1 Ай бұрын
OMG HI RANDOMAZZY11
@TopchetoEU
@TopchetoEU Ай бұрын
500 vieews in 2 hours??? criminal
@thescratchguy428
@thescratchguy428 Ай бұрын
lol hhee
@YEWCHENGYINMoe
@YEWCHENGYINMoe Ай бұрын
17h ago
@JoaoCarlos-df1zw
@JoaoCarlos-df1zw Ай бұрын
First!
@1leon000
@1leon000 Ай бұрын
i was here before this video was 5 minutes old
@Cliffordlonghead
@Cliffordlonghead Ай бұрын
NOT
@nnnArchive
@nnnArchive Ай бұрын
BOo
@JoaoCarlos-df1zw
@JoaoCarlos-df1zw Ай бұрын
Let my old KZbin things alone !!!!
Malbolge!: Programming from Hell
17:51
Truttle1
Рет қаралды 36 М.
Atari 2600 Programming is a NIGHTMARE
15:38
Truttle1
Рет қаралды 12 М.
Watermelon Cat?! 🙀 #cat #cute #kitten
00:56
Stocat
Рет қаралды 28 МЛН
Backstage 🤫 tutorial #elsarca #tiktok
00:13
Elsa Arca
Рет қаралды 39 МЛН
(Dead)Fish!
11:40
Truttle1
Рет қаралды 18 М.
SM64 Modding 1: Bowser's EVIL Mods
9:07
Truttle1
Рет қаралды 2,8 М.
P vs. NP: The Unsolvable(?) Computer Science Problem
13:37
Truttle1
Рет қаралды 8 М.
TMMLPTEALPAITAFNFAL!
12:08
Truttle1
Рет қаралды 23 М.
Chess on a Rubik's Cube
13:42
carykh
Рет қаралды 103 М.
Making Minesweeper in COBOL
10:52
Truttle1
Рет қаралды 6 М.
The Legend of YouAreAnIdiot.org
18:01
NationSquid
Рет қаралды 9 МЛН
Did Game Theory ACTUALLY Build a Computer in Mario Maker?
16:12
Hofstadter!
13:43
Truttle1
Рет қаралды 8 М.
WWDC 2024 Recap: Is Apple Intelligence Legit?
18:23
Marques Brownlee
Рет қаралды 5 МЛН
Дени против умной колонки😁
0:40
Deni & Mani
Рет қаралды 12 МЛН
Cadiz smart lock official account unlocks the aesthetics of returning home
0:30
Bardak ile Projektör Nasıl Yapılır?
0:19
Safak Novruz
Рет қаралды 6 МЛН
AI от Apple - ОБЪЯСНЯЕМ
24:19
Droider
Рет қаралды 117 М.