Reply to topic  [ 13 posts ] 
New Mac Trojan horse disables Apple's automatic malware upda 
Author Message
What's a life?
User avatar

Joined: Thu Apr 23, 2009 6:27 pm
Posts: 12251
Reply with quote
Quote:
F-Secure has reported on a new, scarier-than-usual Mac Trojan horse. The good news is that you can only get infected if you double-click on a rogue file masquerading as a Flash installer. The bad news is that if you do fall victim to the Trojan, it disables your Mac’s automatic malware definition updates.


http://www.macworld.com/article/163133/ ... dates.html

I doubt the installer looks anything like Adobe’s still, so that should be a clue to the authenticity. However, the golden rule applies: don’t arbitrarily hand out your admin password to every app that asks for it.

_________________
All the best,
Paul
brataccas wrote:
your posts are just combo chains of funny win

I’m on Twitter, tweeting away... My Photos Random Avatar Explanation


Thu Oct 20, 2011 8:49 am
Profile
What's a life?
User avatar

Joined: Thu Apr 23, 2009 7:26 pm
Posts: 17040
Reply with quote
I wonder, did they pick Flash to 'fake' as because it's popular, or because people just expect it's installer to do weird stuff?

(in fact, I tend to treat anything that isn't 'drag and drop install' with a high degree of scepticism. Unless I already know why it needs my admin password, it doesn't get it).

Jon


Thu Oct 20, 2011 10:38 am
Profile
What's a life?
User avatar

Joined: Thu Apr 23, 2009 8:25 pm
Posts: 10691
Location: Bramsche
Reply with quote
Random installer, that most people will be familiar with. Most people have Flash, know what Flash is and probably know that it suffers from sercurity problems, so wouldn't be surprised when it is offered an update.

It would be very easy to make its installer look genuine, they just need to take a screenshot of the real installer and use it as a background image on their own window and it would look 100% genuine... Making fakes is very easy.

_________________
"Do you know what this is? Hmm? No, I can see you do not. You have that vacant look in your eyes, which says hold my head to your ear, you will hear the sea!" - Londo Molari

Executive Producer No Agenda Show 246


Thu Oct 20, 2011 11:36 am
Profile ICQ
What's a life?
User avatar

Joined: Thu Apr 23, 2009 7:56 pm
Posts: 12030
Reply with quote
Just another reason to never trust anything you haven't downloaded from the developers site.
I rarely trust a third party host, especially for things from a large firm like Adobe. They have the cash to do their own hosting.

_________________
www.alexsmall.co.uk

Charlie Brooker wrote:
Windows works for me. But I'd never recommend it to anybody else, ever.


Thu Oct 20, 2011 5:37 pm
Profile
Doesn't have much of a life
User avatar

Joined: Fri Apr 24, 2009 12:43 pm
Posts: 1798
Location: Manchester
Reply with quote
Haven't Adobe now added automatic updates to Flash (since v10.3) from within a new System Preferences pane? There should be no reason to manually download a Flash Player installer anymore, as long as you're using Flash 10.3.xx or later.

_________________
* Steve *

* Witty statement goes here *


Thu Oct 20, 2011 7:38 pm
Profile
What's a life?
User avatar

Joined: Thu Apr 23, 2009 8:25 pm
Posts: 10691
Location: Bramsche
Reply with quote
It automatically downloads, but you still have to click a few buttons and accept the EULA, before it will install... If they manage to slip the download past the user, it would fool most users.

_________________
"Do you know what this is? Hmm? No, I can see you do not. You have that vacant look in your eyes, which says hold my head to your ear, you will hear the sea!" - Londo Molari

Executive Producer No Agenda Show 246


Fri Oct 21, 2011 6:32 am
Profile ICQ
Doesn't have much of a life
User avatar

Joined: Fri Apr 24, 2009 7:48 am
Posts: 1751
Location: Marbella Spain
Reply with quote
do i need an antimalware for my mac
or just be careful what i download
:? :? :?

_________________
Life should NOT be a journey to the grave with the intention of arriving safely, but rather to skid in sideways, chocolate in one hand, wine in the other, body thoroughly used up, totally worn out and screaming...
Damn, What a ride!!


Sun Nov 13, 2011 2:07 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 7:35 pm
Posts: 6580
Location: Getting there
Reply with quote
lacloss wrote:
do i need an antimalware for my mac
or just be careful what i download
:? :? :?

I've never used any antimalware or av or anything (other than anything built into the OS).

Although I don't particularly dl that much. Used to use tvtorrents a lot but now mainly get apps from the AppStore.

_________________
Oliver Foggin - iPhone Dev

JJW009 wrote:
The count will go up until they stop counting. That's the way counting works.


Doodle Sub!
Game Of Life

Image Image


Sun Nov 13, 2011 2:22 pm
Profile WWW
Doesn't have much of a life
User avatar

Joined: Fri Apr 24, 2009 12:43 pm
Posts: 1798
Location: Manchester
Reply with quote
lacloss wrote:
do i need an antimalware for my mac
or just be careful what i download

Personally, I'd say the latter - at the moment.

10.7 Lion and 10.6 Snow Leopard does include a rudimentary malware checker that alerts you to known trojans and other threats if you try to download them - Apple provide signatures and updates for this as and when new threats are discovered. I think it checks for these daily and automatically updates them in the background. If you also use Safari, then it has anti-phishing support too, though I think you stated you're using Chrome (not sure if that has anything built-in to alert you to phishing attempts?).

If it makes you feel more secure, there are various anti-virus software available for Macs. There's the free Sophos Anti-Virus for Mac Home Edition and the free opensource ClamX AV - both are reporting that they're 10.7 Lion-compatible. Stay clear from Mackeeper though, which many are saying is a trojan in itself!

Common Sense 1.0 is the best antivirus software out there though.

_________________
* Steve *

* Witty statement goes here *


Sun Nov 13, 2011 2:24 pm
Profile
Doesn't have much of a life
User avatar

Joined: Fri Apr 24, 2009 7:48 am
Posts: 1751
Location: Marbella Spain
Reply with quote
steve74 wrote:
lacloss wrote:
do i need an antimalware for my mac
or just be careful what i download

Personally, I'd say the latter - at the moment.

10.7 Lion and 10.6 Snow Leopard does include a rudimentary malware checker that alerts you to known trojans and other threats if you try to download them - Apple provide signatures and updates for this as and when new threats are discovered. I think it checks for these daily and automatically updates them in the background. If you also use Safari, then it has anti-phishing support too, though I think you stated you're using Chrome (not sure if that has anything built-in to alert you to phishing attempts?).

If it makes you feel more secure, there are various anti-virus software available for Macs. There's the free Sophos Anti-Virus for Mac Home Edition and the free opensource ClamX AV - both are reporting that they're 10.7 Lion-compatible. Stay clear from Mackeeper though, which many are saying is a trojan in itself!

Common Sense 1.0 is the best antivirus software out there though.

thankyou

_________________
Life should NOT be a journey to the grave with the intention of arriving safely, but rather to skid in sideways, chocolate in one hand, wine in the other, body thoroughly used up, totally worn out and screaming...
Damn, What a ride!!


Sun Nov 13, 2011 2:42 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 6:36 pm
Posts: 5150
Location: /dev/tty0
Reply with quote
I happily use ClamXAV :)


Mon Nov 14, 2011 9:31 am
Profile WWW
Doesn't have much of a life
User avatar

Joined: Sat Apr 25, 2009 7:57 am
Posts: 1652
Reply with quote
forquare1 wrote:
I happily use ClamXAV :)



Has it proved useful?

_________________
A Mac user Image


Fri Nov 18, 2011 6:45 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 6:36 pm
Posts: 5150
Location: /dev/tty0
Reply with quote
ChurchCat wrote:
forquare1 wrote:
I happily use ClamXAV :)



Has it proved useful?


I've not had any strange activity...It's picked up a number of things in my SPAM box that might be harmful to Windows using friends should I forward them on...


Sat Nov 19, 2011 9:29 am
Profile WWW
Display posts from previous:  Sort by  
Reply to topic   [ 13 posts ] 

Who is online

Users browsing this forum: No registered users and 7 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
cron
Powered by phpBB® Forum Software © phpBB Group
Designed by ST Software.