Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

Milltek

macrumors regular
Original poster
Jun 26, 2011
169
15
U.S. Northeast
Hi,
I was researching an issue with flash player and the article linked below from ZDNET lede to check if I had either of the directories it refers to on my machine.

Article: http://www.zdnet.com/article/new-mac-malware-spies-on-you-via-adium-firefox-safari-skype/

Here are the directories I found on my system:

/Library/ScriptingAdditions/appleHID/

/System/Library/Frameworks/Foundation.framework/XPCServices/

I was concerned so I installed Sophos and did a scan but it says "No threats found". I realize that the trojan will supposedly not work on systems running Mountain Lion or later (I'm on Yosemite 10.10) but I'm surprised that Sophos just ignores it.

So, should I delete these folders? Does anyone have any idea what other files this thing creates? Incidentally I found these directories on both my iMac and my Macair which are both on Yosemite 10.10.

Any information of help appreciated.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.