Discussion OSX Malware Currently Circulating

Status
Not open for further replies.
I've already cleaned that crap off a Mac. Hint: Single User Mode. Try the free Sophos AV software.
 
I currently have Clam XAV installed (on test); also tried Sophos AV (free version) a while back, ended-up re-installing OSX to get rid of it, had no end of problems.

OSX AV products seem to be a mixed bunch, what one person swears by another will swear at!
 
I didn't say Clam Xva was crap, I said Mac Defender was crap since I was replying to the OP.Think before you post!
 
As usual, the free software for security is a bad idea.
Follow the manufacturer instructions if possible:


In the days since its discovery, Apple has acknowledged the threat is real, and the company is reportedly hard at work on an update that will remove the software. Until then, the Mac makers have posted a handy removal guide for those who prefer to take matters into their own hands. Follow the steps below — straight from Apple — to remove Mac Defender and make sure your computer is clean.

Move or close the Scan Window
Go to the Utilities folder in the Applications folder and launch Activity Monitor
Choose All Processes from the pop up menu in the upper right corner of the window
Under the Process Name column, look for the name of the app and click to select it; common app names include: MacDefender, MacSecurity or MacProtector
Click the Quit Process button in the upper left corner of the window and select Quit
Quit Activity Monitor application
Open the Applications folder
Locate the app ex. MacDefender, MacSecurity, MacProtector or other name
Drag to Trash, and empty Trash
Open System Preferences, select Accounts, then Login Items
Select the name of the app you removed in the steps above ex. MacDefender, MacSecurity, MacProtector
Click the minus button

Upon completing these steps, your Mac should be completely free of the program.

Apple via VentureBeat
 
Another variant doing the rounds (MacGuard), this time it doesn't require the user to enter a password to install http://blog.intego.com/2011/05/25/intego-security-memo-new-mac-defender-variant-macguard-doesnt-require-password-for-installation/

I get the impression this is just the start!
 
I'd agree with that. It was only a matter of time before the nasty guys started targetting OS X. I think that it's going to prove very rich pickings for them until some Apple users take their heads out of the sand and realize that it's not just Windows that can suffer from malware.
 
JustSomeJoe:

Agree. I am a Windows convert. MacBook Pro 15" 7i SSD. Best computer I've ever owned. Love the software and ease of access to apps. SSD makes it even slicker.

I am concerned with virus/malware...only a matter of time. Mac users are a fertile field for these maniacs & crooks and now many are state sponsored.

In any event, do the commercial programs work? Many comments I've read suggest the commercial virus software does more damage than benefit. All of those comments have a tone of "don't admit a problem cause you'll tick off the gods", "don't give into the "man"" and "if you have to pay for protection, you're part of the problem".

I want my great computer & software, but want protection also. Non-cult reponses appreciated.

Thank you in advance.

DellConvert
 


Try the free Sophos AV software.
 
Really I have not heard about any trojans on my friends mac computers.
 
Be careful with things like Sophos (& Norton), they can conflict with TimeMachine, they also run services (including update) with root access and can leave you more vulnerable, there are several threads over on MacRumours discussing the the hazards of this.

TBH the best form of defence at the moment is a fresh installation of common sense (with regular updates).
 
(a little more drive-by posting).
This is worth noting: http://www.macrumors.com/2011/06/02/apple-responds-quickly-to-evolving-mac-defender-threat-with-updated-malware-definitions/
OSX already has some form of built-in anti-malware, it just isn't updated very often; installing another AV/AM product on top of it could explain why there are some times conflicts.
 
Status
Not open for further replies.