jesse_the_k: <a href="https://web.archive.org/web/20040204184222/http://developer.apple.com/technotes/tn/tn1031.html">Bitmapped "dogcow" Apple Technote 1013, and appeared in many OS9 print dialogs</a> (dogcow from OS9)
[personal profile] jesse_the_k
Thanks so much for all your good wishes, which calmed me down enough to do some net research. Best single resource is http://thesafemac.com

Many search results for "how to deal with Mac virus/malware/Trojans." Mostly step-by-step Terminal instructions, which make me nervous. I want to understand the big picture before I type Terminal commands, and the Safe Mac site provides this. (I took the leap of faith that the Safe Mac wasn't another social-engineering trick to gain control of my Mac (like the MacKeeper bullshit I was trying to eradicate).

I discovered ...

1. It wasn't really malware. MacKeeper does inject some Javascript that only permits their windows to display (and the Mac to yell at me to buy their software). OF NOTE: their software claims to have found a virus and you must use MacKeeper to fix the problem -- which they have caused. Some people claim MacKeeper is useful for that purpose; many more people say other, less printable, things.

2. Using Chrome and advice from The Safe Mac, I downloaded three free tools:
a. Easy Find from www.devon-technologies.com from Apple Store
EasyFind displays invisible files in its search results; turned out I didn't need this feature, but it's handy to have
b. ClamxAV virus checker from Apple Store
c. AdwareMedic adware deleter from The Safe Mac site

Then I made yet another bootable backup of my internal drive and ran ClamxAV and AdwareMedic on that latest backup until it was declared clean.

3.
a. Booted from Recovery partition of external drive (command R on boot)
b. Ran Disk Utility from external and formatted my internal drive
c. Ran "Install new OS" from external
d. Downloaded a fresh OS install, installed new Yosemite OS.
e. I'd planned on using Migration Assistant to restore data from my external drive, but surprisingly the OS install automagically copied that info from the external without asking.

3a took around 90 minutes (USB 3.0)
3c took around 120 minutes (on my 30 Mb/s broadband)

In all, with two hours' research it required 7 hours.

Here's hoping you never encounter adware. I am never downloading a file from a "helpful community service" site like MacUpdate, Download.com, CNET, or SourceForge again. If it's not on the Apple Store, or on the author's website (linked from a reputable source like Tidbits), I'm not getting it.
Old Goat Thoughts: I remember when I got all my software from the Info-Mac Archives. Which, it turns out, are still online
http://www.info-mac.org/viewforum.php?f=14
thanks to an enterprising person who's reusing the Info-Mac reputation for their products.
⇾1

(no subject)

Date: 2015-06-07 04:50 pm (UTC)
branchandroot: oak against sky (Default)
From: [personal profile] branchandroot
Thank goodness that worked out. And, yeah, I've been getting really leery of the repositories too. And, for that matter, any site that gives me any kind of "security update" message. Some of them are actually quite fiendish, and I've escaped at least one injection attack by the skin of my teeth and a sudden urge to examine raw headers on vague suspicion. It's a jungle out there.
⇾1

(no subject)

Date: 2015-06-07 07:01 pm (UTC)
firecat: damiel from wings of desire tasting blood on his fingers. text "i has a flavor!" (Default)
From: [personal profile] firecat
Glad you wrested your computer back from those a-holes.
⇾1

(no subject)

Date: 2015-06-07 07:02 pm (UTC)
davidgillon: A pair of crutches, hanging from coat hooks, reflected in a mirror (Default)
From: [personal profile] davidgillon
If it's stopping your computer from functioning normally, then it's absolutely malware!
⇾2

(no subject)

Date: 2015-06-09 08:02 am (UTC)
green_knight: (Default)
From: [personal profile] green_knight
Seconded. Also, anything that injects code - rather than going through Apple's APIs - is malware in my book.


(So glad it's fixed. Saved the instructions, someone else might need them.)
⇾1

(no subject)

Date: 2015-06-07 08:30 pm (UTC)
rhivolution: David Tennant does the Thinker (Default)
From: [personal profile] rhivolution
Glad everything is okay.
⇾1

(no subject)

Date: 2015-06-08 04:20 am (UTC)
vass: Small turtle with green leaf in its mouth (Default)
From: [personal profile] vass
Congrats on fixing your Mac. And yeah, those 'helpful' sites. >:(

Popular Tags

Subscription Filters

June 2025

S M T W T F S
12345 67
891011121314
15161718192021
22232425262728
2930     

Style Credit

Powered by Dreamwidth Studios
Page generated Sunday, June 15th, 2025 04:19 pm