Fake Websites Offer Trojan In Place Of Snow Leopard

by Lee on August 30, 2009

in Operating Systems

So, Mac users don’t get viruses and their machines arn’t targeted by cybercriminals in any way huh?

Yeah, right.

Less than 24 hours after Mac OS v10.6 (Snow Leopard) was released and already there are reports of fake websites trying to trick Mac owners into downloading malicious code.

snow leopard scam

Credit : http://www.flickr.com/photos/bizmac/3863377541

According to security researchers at Trend Micro, fake websites that claim to have Mac OS v10.6 available for download have already been spotted.

Anybody visiting one of those sites is hardly likely to get what they expect, however.

Instead of a copy of Snow Leopard, the only program likely to be on offer is a Trojan called OSX_JAHLAV.K.

Bernadette Irinco of Trend Micro said,

“Once executed, OSX_JAHLAV.K decrypts codes, which include a script that downloads other malicious scripts.”

“The script then alters the DNS (domain name server) configuration and includes two additional IP addresses in its DNS server.

Users are thus possibly redirected to phishing sites and other fraudulent sites.”

Of course Mac owners with common sense will be ok as they will only get Snow Leopard from the official Apple website.

On the other hand, those who are foolish enough to download files from unknown sites, or who are so arrogant that they don’t believe their Mac is at risk, will find out just why Snow Leopard has an in-built antivirus capability.

Share this post: Tweet It | Facebook It | Stumble It | Digg It | Delicious It

Related Posts:

  • Snow Leopard To Include AntiVirus Software?
  • MyWOT May Help You Avoid Potentially Dangerous Websites
  • Trojan Horses
  • Mikeyy, Twitter And Searching Tell You All You Need To Know About Fake Anti-Virus Products
  • 5 Types Of Social Networking Scam – #1 The Fake Identity
  • What Exactly Is A Trojan?
  • Wipeout! New Trojan (Trojan.KillFiles.904) Can Obliterate Your Computer
  • I Got Scammed Again!
  • The 10 Golden Rules For Avoiding Viruses Like A Mac User
  • Which Is More Secure – The Apple Macintosh Or A Windows Based Machine?
  • { 8 comments… read them below or add one }

    Justin Bellinger August 30, 2009 at 7:21 pm

    Good post….as ever Lee.

    As pointed out above (and by your good self), downloading ANYTHING from sites you don’t know is the biggest risk. The providing your admin password to let it install is just dumb.

    The weakest link in ANY computer system is usually the user.

    I’ll be getting my Snow Leopard from Apple, I think! :)

    J.

    Reply

    Colin August 30, 2009 at 5:04 pm

    The only reason Mac users get viruses is through their own stupidity which is the same as Windows users really. The propensity to attract malware is not platform related.

    Reply

    mark August 30, 2009 at 2:42 pm

    Don’t you think its a bit rich calling Mac users stupid when yyou are obviously a windows user yourself? Its hardly a step up is it.

    Reply

    Callum August 30, 2009 at 3:16 am

    I disagree with your assertion that Mac users are either arrogant or foolish. I think the issue here is that they are just so unused to such security threats that there will be a few breaches here and there.

    Reply

    Lee August 30, 2009 at 6:17 pm

    If Mac users are unused to security threats then I’m of the opinion that they better get themselves clued up pretty darn quick.

    More Mac malware is undoubtedly on the way…

    Reply

    Lee August 30, 2009 at 6:18 pm

    Ouch!

    I was actually saying people who don’t take the security of their system are stupid.

    That goes for users of Windows just the same as those who use Macs.

    Reply

    Lee August 30, 2009 at 6:21 pm

    Well said Colin.

    Reply

    Lee August 30, 2009 at 7:39 pm

    The users role in security is something I’m putting some thought into for a future post because they are, without a doubt, the weak link as you say.

    As for you doing things by the book, well, I kind of had an idea you would Justin!

    Reply

    Leave a Comment

    { 1 trackback }

    Previous post:

    Next post: