toggle

AAPL Stock: 431.77 ( -0.23 )

http://www.macnn.com/articles/11/09/26/flashbacka.assumes.guise.of.flash.installer/

OS X updates to block Revir.A as new Mac Trojan appears

updated 04:30 pm EDT, Mon September 26, 2011

 

flashback.A assumes guise of Flash installer


As has become standard, Apple has quietly updated OS X definitions to counter a recently-publicized malware threat, checks show. Lion and Snow Leopard will now block a Trojan fronted by OSX/Revir.A, which in turn installs a backdoor program identified as OSX/Imuler.A. Although neither part of the Trojan is especially dangerous at the moment, Imuler could potentially be used at a later date to capture screenshots or steal files.

Another Trojan known as OSX/flashback.A has already emerged, according to security firm Intego. Although only one instance of the malware has been reported, Intego warns that flashback disguises itself as an installer for the Adobe Flash Player, and may be linked off of malicious websites. If a person is using Safari, the installer will launch automatically after download if a person has not disabled automatic opening in their browser.

Following through with the installation will disable some security software, and install code that allows the malware to inject still more code into a person's apps. The Trojan further connects to a remote server, sharing information such as a computer's MAC address. The threat should be relatively easy to avoid, however, since a person can always quit the installer, or avoid flashback entirely by only downloading Flash Player from Adobe directly. Intego says it has already updated VirusBarrier X6 to halt the attack, but there is no matching definition update from Apple.


by MacNN Staff

Post tools:

TAGS :

 security, Mac OS X, Flash, Snow Leopard, Apple, Lion
toggle

Comments

  1. elroth

    Fresh-Faced Recruit

    Joined: Jul 2006

    0

    no

    I wonder if this fixes the issue with Snow Leopard 10.6.8 not blocking cookies (in Safari 5). Apple software is a mess right now. I have to install everything on a separate clean Snow Leopard drive to see if it works before even thinking about installing it on my main drive. Safari 5.1 is a no, Snow Leopard 10.6.8 is a no (because of the cookie issue).

Login Here

Not a member of the MacNN forums? Register now for free.

 
close
Photo
toggle

Network Headlines

toggle

Most Popular

MacNN Sponsor

Recent Reviews

Logitech FabricSkin Keyboard Folio for iPad

Since the fourth-generation iPad didn't evolve much over its predecessor, the market for iPad accessories has remained somewhat static ...

Huawei Ascend Mate

The Huawei Ascend Mate is a phone that fits the screen-size gap between the 4 to 5-inch smartphone and the seven-inch or more tablet, ...

MaxUpgrades MaxConnect for 2006-2008 Mac Pro

Nobody outside of Cupertino's privileged bunch knows the future of the Mac Pro line for sure. Despite Apple's reluctance to tell us wh ...

toggle

Most Commented