revir

Imuler/Revir Trojan for OS X resurfaces

Last fall, a new Trojan malware scam called Revir and Imuler was uncovered, attempting to coerce Mac users into installing the malware on their systems, and then sending personal information to remote servers.

The scam initially used a Trojan dropper program called OS X/Revir.A that when run would download PDFs containing offensive political rhetoric in foreign languages, and then install a backdoor agent called OS X/Imuler.A. This in turn would try to connect to remote servers and send information about your system to the servers.

The malware did not work very well and appeared to be … Read more

Revir malware for OS X undergoes revision

Recently a new PDF-based malware threat for OS X was discovered that displays a Chinese PDF file while it installs and runs its malicious code in the background. While the initial version of this malware (OSX/Revir.A) was detected over a week ago, the criminals developing the code are busy revising and refining it, and over the weekend a variant has been identified (OSX/Revir.B). As with all malware, new versions of these threats are likely to surface in the future, and as they do, expect malware detection utilities (including Apple's XProtect) to follow close behind and … Read more