A rasomware with the FBI as bait, attacks OSX users

fbi-rasomware-0

Rasomware is a malicious software within the malware family that seeks an economic benefit behind, that is, it first attacks and infects the user's computer through a malicious url and later asks for a payment through it to disinfect their computer.

Surely some of you will remember the famous case of the «police virus» also known as ukask, in which the user in question was also accused of consuming child pornography for what he should pay a fine so that your equipment is not rendered useless.

fbi-rasomware-1

In this case we see that according to Malwarebytes the Mac is not getting infected but it executes a Java code that loads 150 frames of the screen in question, over and over again to display the warning and the content of the alleged violation. fbi-rasomware-2

In order to get rid of this if it happens to us we have two very simple options, one of them would be to force the close Safari with CMD + ALT + Esc to then press the Shift key while relaunching Safari and thereby stop page reloading. The other option would be to open the Safari menu and click on "Restore Safari", in this way we will eliminate all passwords, cache and browser history.

In itself, this malware, as I have already said, does not carry any real risk except for the user who decides to pay, since it does not attack the system but if it tries to deceive by all means by making people believe that the computer has been blocked when it really is not. Hopefully Apple do not delay in removing a security patch to cover this.

More information - Increase your security against signed malware


Leave a Comment

Your email address will not be published. Required fields are marked with *

*

*

  1. Responsible for the data: Miguel Ángel Gatón
  2. Purpose of the data: Control SPAM, comment management.
  3. Legitimation: Your consent
  4. Communication of the data: The data will not be communicated to third parties except by legal obligation.
  5. Data storage: Database hosted by Occentus Networks (EU)
  6. Rights: At any time you can limit, recover and delete your information.