Mais um dia da caça:<div><br></div><div>[]s,</div><div><br></div><div>Ze' Carlos<br><div><br></div><div><span class="Apple-style-span" style="font-family: Times; font-size: medium; ">Tuesday, September 01 2009 @ 11:50 AM PDT<br>
<div class="basicsm" style="font-weight: normal; font-size: 11px; font-family: sans-serif; float: right; "></div><h1 class="articleTitle" style="font-size: 16px !important; font-weight: bold; font-family: sans-serif; text-decoration: none; ">
<span class="articleTitle" style="font-weight: bold; font-size: 19px; font-family: sans-serif; text-decoration: none; ">Mac Malware Update: Unauthorized downloads of Snow Leopard infested with Trojans</span></h1><span class="basicsm" style="font-weight: normal; font-size: 11px; font-family: sans-serif; "></span><span class="articleText" style="font-weight: normal; text-decoration: none; "><p style="font-size: 12px; ">
<i>Edited by Joe Aimonetti</i></p>Several Web sites have sprung up over the last couple days offering users free upgrades of Apple's latest operating system, Mac OS X 10.6 Snow Leopard. Of course, these sites are socially engineered ploys to trick users into downloading malicious software. <br>
<br><br>Much like the iWork '09 and Adobe CS4 infected install packages we reported on in the spring, these Snow Leopard download sites are enticing users to get a free copy of the popular software, only to add a malicious version of a DNS Changer Trojan to their Mac.<p>
<a href="">TrendMicro</a> has reported the threat on their blog:</p><blockquote><i>Once executed, OSX_JAHLAV.K decrypts codes, which include a script that downloads other malicious scripts. The said script then alters the DNS configuration and includes two additional IP addresses in its DNS server. Users are thus possibly redirected to phishing sites and other fraudulent sites. In fact, some of these bogus sites are reportedly hosting FAKEAV (rogue antivirus) variants and components.</i></blockquote>
<b>Users are advised to only obtain copies of Mac OS X 10.6 Snow Leopard from Apple directly, or other trusted retailers.</b></span></span></div><div><font class="Apple-style-span" face="Times"><span class="Apple-style-span" style="font-size: medium;"><br>
</span></font></div><div><font class="Apple-style-span" face="Times"><span class="Apple-style-span" style="font-size: medium;">Link: <span class="Apple-style-span" style="font-family: arial; font-size: small; "><a href=""></a></span></span></font></div>