toggle

AAPL Stock: 562.29 ( -3.03 )

OS X updates to block Revir.A as new Mac Trojan appears

updated 04:30 pm EDT, Mon September 26, 2011

flashback.A assumes guise of Flash installer


As has become standard, Apple has quietly updated OS X definitions to counter a recently-publicized malware threat, checks show. Lion and Snow Leopard will now block a Trojan fronted by OSX/Revir.A, which in turn installs a backdoor program identified as OSX/Imuler.A. Although neither part of the Trojan is especially dangerous at the moment, Imuler could potentially be used at a later date to capture screenshots or steal files.

Another Trojan known as OSX/flashback.A has already emerged, according to security firm Intego. Although only one instance of the malware has been reported, Intego warns that flashback disguises itself as an installer for the Adobe Flash Player, and may be linked off of malicious websites. If a person is using Safari, the installer will launch automatically after download if a person has not disabled automatic opening in their browser.

Following through with the installation will disable some security software, and install code that allows the malware to inject still more code into a person's apps. The Trojan further connects to a remote server, sharing information such as a computer's MAC address. The threat should be relatively easy to avoid, however, since a person can always quit the installer, or avoid flashback entirely by only downloading Flash Player from Adobe directly. Intego says it has already updated VirusBarrier X6 to halt the attack, but there is no matching definition update from Apple.


by MacNN Staff

toggle

Comments

  1. elroth

    Fresh-Faced Recruit

    Joined: Jul 2006

    0

    no

    I wonder if this fixes the issue with Snow Leopard 10.6.8 not blocking cookies (in Safari 5). Apple software is a mess right now. I have to install everything on a separate clean Snow Leopard drive to see if it works before even thinking about installing it on my main drive. Safari 5.1 is a no, Snow Leopard 10.6.8 is a no (because of the cookie issue).

Login Here

Not a member of the MacNN forums? Register now for free.

 
close
Photo
toggle

Network Headlines

toggle

Most Popular

MacNN Sponsor

Recent Reviews

iHome iW2 AirPlay speaker

iHome generally isn't known as a luxury brand when it comes to audio, but it is prolific -- the company's docks and speakers are every ...

Logitech Ultrathin Keyboard Cover

One of the iPad's main weaknesses has always been productivity. It's not a question of apps; while it has taken a little time for a na ...

Logitech UE Air Speaker

If maybe a little more slowly than Apple would like, AirPlay is becoming a staple of the wireless speaker market for iOS devices. The ...

toggle

Most Commented