Vhara shambadzo

Mwedzi mitatu yapfuura, kusagadzikana kwakawanikwa muGadheeper basa, iro rinofanirwa kuchengetedza macOS kubva kune inogona kukuvadza software. Hazvina kutora nguva kuti kuedza kwekutanga kushungurudzwa kuoneke.

Muchengeti weGedhi akagadzirirwa kudzora maMac application. Software isina kusainwa neApple inobva yaratidzwa seine ngozi nehurongwa uye inoda imwe mvumo yemushandisi isati yaiswa.

Nekudaro, nyanzvi yekuchengetedza Filippo Cavallarin akafumura dambudziko neiyo app siginecha cheki pachayo. Chokwadi, cheki yechokwadi inogona kupfuudzwa zvachose neimwe nzira.

Mune chimiro chayo chazvino, Gatekeeper anoona madhiraivha ekunze uye network yekuchengetedza se "nzvimbo dzakachengeteka". Izvi zvinoreva kuti inobvumira chero application kuti imhanye munzvimbo idzi pasina kutarisa zvakare.Nenzira iyi, mushandisi anogona kunyengerwa zviri nyore kuisa asingazivi drive yakagovaniswa kana kuchengetedza. Chese chiri muforodha iyoyo chinobva chadarikwa nyore nyore neGadhi.

Mune mamwe mazwi, application imwe yakasainwa inogona kukurumidza kuvhura nzira kune vamwe vazhinji, vasina kusaina. Cavallarin akataura zvine hungwaru kukanganisa kwekuchengetedza kuApple uye ndokumirira mazuva makumi mapfumbamwe kuti apindure. Mushure menguva iyi, ane kodzero yekuburitsa chikanganiso, chaakazoita. Hapana munhu kubva kuCupertino akapindura kune danho rake.

Kusagadzikana muMuchengeti weGedhi muMacOS
Kuedza kwekutanga kushandisa kusazvibata kunotungamira kumafaira eDMG

Zvichakadaro, kambani yekuchengetedza Intego yakafumura kuyedza kushandisa zvakanyanya kusagadzikana uku. Pakupera kwesvondo rapfuura, timu yemalware yakawana kuyedza kugovera iyo malware vachishandisa nzira yakatsanangurwa naCavallarin.

Iyo bug pakutanga yakatsanangurwa yakashandisa ZIP file. Iyo nzira nyowani, kune rumwe rutivi, inoedza rombo rayo nedhisiki mufananidzo faira.

Mufananidzo wedhisiki wanga uri mu ISO 9660 fomati ine .dmg extension, kana kuti yakananga muApple's .dmg format. Kazhinji, mufananidzo weISO unoshandisa zvinyorwa .iso, .cdr, asi macOS, .dmg (Apple Disk Image) yakawanda zvikuru. Hakasi kekutanga malware achiedza kushandisa mafaera aya, sezviri pachena kudzivirira anti-malware zvirongwa.

Intego akatora akakwana mana akasiyana masampuli akatorwa neVirusTotal musi waChikumi 6. Musiyano pakati pezvakawanikwa zvega waive mukurongeka kwemaawa, uye ese aive akabatana nenetiweki nzira kune NFS server.

Iyo adware inomasquerade seAdobe Flash Player installer

OSX/Surfbuyer adware yakavharwa seAdobe Flash Player

Nyanzvi dzakakwanisa kuona kuti masampuli akafanana neiyo OSX/Surfbuyer adware. Iyi adware malware inogumbura vashandisi kwete chete pavanenge vachitsvaga pawebhu.

Iwo mafaera akave akavezwa seAdobe Flash Player installers. Iyi ndiyo nzira inonyanya kufarirwa nevagadziri vanoedza kunyengerera vashandisi kuti vaise malware paMac yavo. Sample yechina yakasainwa neakaundi yekuvandudza Mastura Fenny (2PVD64XRF3), iyo yakashandiswa kumazana emanyepo eFlash installers munguva yakapfuura. Vese vanowira pasi peOSX/Surfbuyer adware.

Parizvino, masampula akatorwa haana chaaita kunze kwekugadzira faira remavara kwenguva pfupi. Nekuti maapplication aive akabatanidzwa zvine simba mumifananidzo yedhisiki, zvaive nyore kushandura sevha nzvimbo chero nguva. Uye izvo pasina kugadzirisa iyo yakagoverwa malware. Saka zvinogoneka kuti vagadziri, mushure mekuyedzwa, vakatogadzira "kugadzira" maapplication ane ane malware. Yakanga isingachafanirwa kubatwa neVirusTotal anti-malware.

Intego yakashuma iyi account yekuvandudza kuApple kuti itore chiremera chekusaina chitupa.

Nezve chengetedzo yakawedzerwa, vashandisi vanorayirwa kuti vaise maapplication kunyanya kubva kuMac App Store uye kufunga nezvekwavakabva kana vachiisa maapuro kubva kunze kwekunze.

Kunobva: 9to5Mac

.