Flash Player Trojan discovered
27/09/11 10:55
A backdoor Trojan that pretends to be an Adobe Flash Player plugin has been found on compromised websites. If the Trojan runs on your computer it has the potential for remote hackers to control your Mac and retrieve sensitive information.
Users who visit a compromised website will see a link to a Flash Player Installer and because of the downloaded file extension, Safari will categorize the file as ‘safe’ and automatically run the malicious software on your computer when downloaded.
We recommend that users consider disabling the ‘Open “Safe” files after downloading’ option in the Safari General preferences to prevent Safari automatically opening downloaded files such as this and other threats like OSX.MacDefender
If users require Flash Player for Mac OS X then we also recommend that they download it directly from the Adobe website. Users should always be extremely careful when downloading any files from the internet and only download files from trusted sites.
ProtectMac AntiVirus detects the Flash Player Trojan as Trojan.Flashback.
Users who visit a compromised website will see a link to a Flash Player Installer and because of the downloaded file extension, Safari will categorize the file as ‘safe’ and automatically run the malicious software on your computer when downloaded.
We recommend that users consider disabling the ‘Open “Safe” files after downloading’ option in the Safari General preferences to prevent Safari automatically opening downloaded files such as this and other threats like OSX.MacDefender
If users require Flash Player for Mac OS X then we also recommend that they download it directly from the Adobe website. Users should always be extremely careful when downloading any files from the internet and only download files from trusted sites.
ProtectMac AntiVirus detects the Flash Player Trojan as Trojan.Flashback.