|
|||||||
![]() |
|
|
Thread Tools | Search this Thread | Display Modes |
|
|
#251 |
|
I think I'm infected
Guys I'm not goetting the does not exist for the first command entering into Terminal - Or am I reading it wrong?
|
|
|
|
0
|
|
|
#252 | ||
|
thank you for posting this...
Quote:
My iMac is completely clean which is more than I can say about my mind... ![]() Thanks so much for posting these... ---------- Quote:
Both came up that does not exist when I did it this way. Hope that helps
|
|||
|
|
1
|
|
|
#253 |
|
Thanks y'all... Im clean
__________________
Dr. 2011(late) MacBook Pro 500gb, 2.4ghz, 16gb RAM 2x Gateway FX series gaming laptops
|
|
|
|
0
|
|
|
#254 |
|
I dispute this figure and the keyword that makes all those warning signs go off in my gut is "RUSSIAN" and appears to me to be a scare tactic to get people to buy antivirus. Now where was that last company from that may have been doing battle with Apple's security updates awhile back and weren't they promoting AV software. Funny how once they were raided Apple won the battle. Could this just be another tactic?
|
|
|
|
0
|
|
|
#255 |
|
I got a Flash (Java) popup today, but I did not install it and closed out immediately. I also have not found Flashback on my computer, but I don't really know where to look.
|
|
|
|
0
|
|
|
#256 |
|
OK just got home from work and copied and pasted the commands in terminal. CLEAN! Woo hoo! I suspected I would be ok since I do not even have java installed but I wanted to be sure. Thanks everyone for the tips and op for the link!
|
|
|
|
0
|
|
|
#257 | |
|
Quote:
|
||
|
|
0
|
|
|
#258 | |
|
Quote:
Using an account that operates at the lowest necessary privilege level is Security 101. Heck, it's remedial - more like Security 097. This is the standard Unix security model, and it works very well. Microsoft has finally followed suit, to the benefit of their users. Mac makes it very easy to do as well - unfortunately a lot of Mac users still don't think about security because they haven't been caught with their pants down. Yet. They get a little scared when these stories come out; they check to make sure their system is clean... and then they forget all about security, until the next scary story hits.
__________________
Your post count is insufficient to view signature |
||
|
|
1
|
|
|
#259 | |
|
Quote:
Microsoft has publicly stated that infection rates for Windows 7 were 0.4% one year ago, but they were increasing by 33% year over year. So it would appear that if this claim is correct, and if Microsoft is correctly reporting infection rates, then assuming that year-over-year increases in infection rates of Windows 7 installations remained constant, then infection rates of OS X and Windows 7 would be quite comparable.
__________________
"...because the people who are crazy enough to think they can change the world, are the ones who do." |
||
|
|
0
|
|
|
#260 | |
|
Quote:
|
||
|
|
-1
|
|
|
#261 | |
|
Quote:
|
||
|
|
0
|
|
|
#262 |
|
We all knew this would happen some day. Macs are no longer virus proof.
|
|
|
|
-1
|
|
|
#263 |
|
|
0
|
|
|
#264 |
|
|
0
|
|
|
#265 | |
|
Quote:
You need to run them individually. Your screenshot showed the correct response for uninfected, but only on one of the two commands. In your screenshot it appears you didn't hit enter after pasting the other. Both of the commands that start with 'defaults' need to have enter pressed after they are pasted - looks like you only did that after 1 of them. |
||
|
|
0
|
|
|
#266 | |
|
Quote:
Personally, given that the number is almost identical to the published rate for Windows 7 infections, I suspect that the number of infected machines was just estimated based on this previously published statistic. There is absolutely no reason to believe that the site that published these numbers has any evidence to back them up. Probably the biggest question regarding the credibility of Dr. Web on this issue is why they didn't disable the botnet when they sinkholed it. This is a serious question to be asked of security companies, because sinkholing a botnet just redirects the illegally incoming information to the security company's server. The more credible security companies use sinkholing to disable botnets, but their less ethical counterparts use these means for financial gain by selling/monetizing the information obtained by the sinkhole.
__________________
"...because the people who are crazy enough to think they can change the world, are the ones who do." Last edited by MacinDoc; Apr 5, 2012 at 08:18 PM. |
||
|
|
-1
|
|
|
#267 | |
|
Quote:
Yes thanks SNG I just didn't press enter like a shmuck. I am clear - thanks! |
||
|
|
0
|
|
|
#268 |
|
ok, so i ran the terminal commands and came up clean, but just noticed that ClamXAV just found jsched / OSX.Flashback 8 and it's still scanning. this was also after i skipped a CLAM update that featured the option to disregard "infected" files for future scans. WTF! what exactly does this virus do to your machine if it's been on my macbook?
|
|
|
|
1
|
|
|
#269 | |
|
Quote:
If I had to make a crude, off the cuff, guess. Then I would say that ClamAV quarantined your infection a few days ago. So it has effectively removed it from your system (which is why the terminal stuff shows you are clean). But ClamAV still knows, and is holding, your infection, so it reports that you still 'have it'. //My guess is based on having a Windows AV 'quarantine' a virus (or suspected one). And how it deals with them. I have no first hand experience with an AV in OS X. |
||
|
|
1
|
|
|
#270 | |
|
Quote:
Let us know what happens with this, because you are the first person I've seen posting to say they have evidence of an infection. You'd think that if more than 600,000 Macs were affected, that at least some people on these forums would be affected.
__________________
"...because the people who are crazy enough to think they can change the world, are the ones who do." |
||
|
|
0
|
|
|
#271 | |
|
Quote:
I think Dr. Web best option is to notify the ISP and let the ISP notify their customers, but this is a time consuming process and potentially costly for both Dr. Web and the ISPs. |
||
|
|
0
|
|
|
#272 | |
|
Quote:
i had no quarantine folder established so i re-ran it, directing it to send it to a folder on my desktop and then i deleted it. i am re-scanning now. it had been a few weeks since i ran Clam before tonight; i figured i was in the clear after running the terminal commands and was shocked to see Clam immediately find it in its scan (it was found within seconds of the clam scan when i first checked tonight). before i deleted the folder i scanned the desktop with Clam and it saw it there, i couldn't actually see the file in the folder but deleting the folder and rescanning seems to turning up clean (it's past the point where it first found it) ---------- PS - i know i was a rare report of an infection, but i don't know if any of the people who figured they were "clean" after running terminal checked a Clam scan yet.. i bet if everyone was running ClamXAV you'd be seeing more reports. i'm pretty careful with what i click on/authenticate so i'm pretty shocked to have even seen it at all on my setup (even if the existence of CLAM on my macbook may have blocked it from actually installing itself). |
||
|
|
1
|
|
|
#273 |
|
oleus - in my experience dealing with windows infections and AV, that seems normal. I think if you can make your AV say the system is clean, and you can pass F-Secure's method of being clean, then you are clean.
I know it is a dirty feeling, knowing that you had something, but if 2 different things say you are clean and you aren't otherwise getting any odd behavior, you should be good to go. |
|
|
|
0
|
|
|
#274 | |
|
Quote:
__________________
"...because the people who are crazy enough to think they can change the world, are the ones who do." |
||
|
|
0
|
|
|
#275 | |
|
Quote:
i still don't fully understand what this virus "does" when fully implemented on a machine. so i don't even know what i was possibly at risk of. what's the point of this virus, i guess is what i am asking. i have read 4 articles and i still don't have that answer. |
||
|
|
0
|
![]() |
|
«
Previous Thread
|
Next Thread
»
| Thread Tools | Search this Thread |
| Display Modes | |
|
|
All times are GMT -5. The time now is 09:20 AM.








Linear Mode
