• Re: "My Mac Book Air is Been Hacked"!

    From David Brooks@21:1/5 to David Brooks on Wed Jun 14 12:46:12 2023
    XPost: uk.comp.sys.mac, alt.computer.workshop

    On 14/06/2023 11:00, David Brooks wrote:
    On 14/06/2023 10:19, Joerg Lorenz wrote:
    Am 14.06.23 um 10:37 schrieb David Brooks:
    On 14/06/2023 08:43, Joerg Lorenz wrote:
    Am 13.06.23 um 21:22 schrieb David Brooks:
    On 13/06/2023 12:29, Joerg Lorenz wrote:
    Am 13.06.23 um 13:01 schrieb David (BD):
    On 13/06/2023 09:06, Joerg Lorenz wrote:
    Am 13.06.23 um 09:18 schrieb David Brooks:
    Unsigned Files:
             Launchd:
    /Library/LaunchDaemons/com.symantec.sharedsettings.MES.plist >>>>>>>>>              Executable: /Library/Application
    Support/Symantec/Silo/MES/DomainSettings/SymSharedSettingsd
                 Details: Exact match found in the legitimate list
    - probably OK


    *The system is compromised*.


    I wonder if anyone else reading here agrees with you.

    Symantec files on a Mac or any other computer are a
    malware-infection.

    Ha! Guess what *I* found?!!!

    https://ibb.co/88bn2jF

    All now gone. :-D

    Thanks for helping. :-)

    Why do you do that? I'm stunned!

    I was 'testing' EtreCheck, available from Etresoft Inc
    https://www.etresoft.com/index.html

    What showed up as 'interesting' when YOU first used it to scan /your/
    Apple computer?

    I never install malware intentionally on my productive systems ... ;-)

    You appear to be suggesting that EtreCheck is malware. AFAICR, it
    doesn't actually INSTALL itself or ask for one's Admin name and
    password, a requirement before using the FREE trial of ClamXAV!

    Which route is better? In your OPINION of course!

    See: Step 1, here:- https://www.clamxav.com/download/

    Perhaps you've also come across my question asked here under my Apple
    ASC handle, HunterBD?

    https://developer.apple.com/forums/thread/687438

    Perhaps.

    HAVE you now looked?

    Oops! Wrong link!

    https://developer.apple.com/forums/thread/709959

    Sorry about that!

    --
    David

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)