Welcome to the MacNN Forums.

If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

You are here: MacNN Forums > News > Mac News > New cross-platform trojans masquerade as commercial apps

New cross-platform trojans masquerade as commercial apps
Thread Tools
MacNN Staff
Join Date: Jul 2012
Status: Offline
Reply With Quote
Sep 27, 2013, 03:27 PM
 
A new group of cross-platform trojans are masquerading as commercial apps, says security firm Intego. Codenamed OSX/Icefog.A on the Mac, the trojans -- concealed under app names like AppDelete, CleanMyMac, and Img2icna -- secretly copy a backdoor app to a computer when the main app is launched, and immediately try to contact a command-and-control server for instructions by the attacker. The backdoor app, named .launchd.app, incorporates a keylogger and is deliberately concealed during the installation process. It's immediately moved to a separate folder, for instance, and the Dock icon and Command-Tab switching are suppressed.

Intego says the trojans represent a "low-risk" threat, as they appear to be part of a "targeted attack." Updated antivirus programs should be able to halt the malware.
( Last edited by NewsPoster; Sep 27, 2013 at 03:28 PM. )
     
Senior User
Join Date: Jan 2007
Location: SF
Status: Offline
Reply With Quote
Sep 27, 2013, 05:42 PM
 
You know what's missing from this report? The vector. How are people falling for the fake apps when presumable the real apps exist, and where typically are they getting them from? Google search? Targeted email offers? The NSA? Seriously.
     
   
Thread Tools
Forum Links
Forum Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Top
Privacy Policy
All times are GMT -4. The time now is 07:11 AM.
All contents of these forums © 1995-2015 MacNN. All rights reserved.
Branding + Design: www.gesamtbild.com
vBulletin v.3.8.8 © 2000-2015, Jelsoft Enterprises Ltd., Content Relevant URLs by vBSEO 3.3.2