x404.co.uk
http://www.x404.co.uk/forum/

Eltima Mac Software infected wit malware
http://www.x404.co.uk/forum/viewtopic.php?f=19&t=26372
Page 1 of 1

Author:  big_D [ Sun Oct 22, 2017 10:07 am ]
Post subject:  Eltima Mac Software infected wit malware

https://www.theregister.co.uk/2017/10/2 ... r_account/

Eset found malware being injected into Eltima downloads, such as Elmedia Player and Folx.

It installs a root level back door and steals passwords, encryption keys etc.

Eset noticed the problem on the Thursday afternoon and Eltima had eliminated the problem by Friday evening.

If any of the following exist, you are infected with Proton:
/tmp/Updater.app/
/Library/LaunchAgents/com.Eltima.UpdaterAgent.plist
/Library/.rand/
/Library/.rand/updateragent.app/

The only reliable method to clear the infection is a reinstall of the system.

Eltima wrote:
A total system OS reinstall is the only guaranteed way to totally rid your system of this Malware. This is a standard procedure for any system compromise with the affection of administrator account.

Page 1 of 1 All times are UTC
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/