May 21, 2024
Apple Tries to Cut Off Server Monitoring Number of Flashback Trojan Infections

Apple Tries to Cut Off Server Monitoring Number of Flashback Trojan Infections

Posted April 10, 2012 at 9:25pm by iClarified
Apple has reportedly tried to shut down a server monitoring the number of Macs infected by the Flashback trojan, according to Forbes.

Boris Sharov, chief executive of the Moscow-based security Dr. Web says he learned Monday from the Russian Web registrar Reggi.ru that Apple had requested the registrar shut down one of its domains, which Apple said was being used as a "command and control" server for the hundreds of thousands of PCs infected with Flashback. In fact, that domain was one of three that Dr. Web has been using as a spoofed command and control server–what researchers call a "sinkhole"–to monitor the collection of hijacked machines and try to understand their behavior, the technique which allowed the firm to first report the size of Apple's botnet last week.

"They told the registrar this [domain] is involved in a malicious scheme. Which would be true if we weren't the ones controlling it and not doing any harm to users," says Sharov. "This seems to mean that Apple is not considering our work as a help. It's just annoying them."


It's unclear if Apple's intent was to shut down the monitor or whether it really thought that Dr. Web's domain was malicious.

"We've given them all the data we have," said Sharov. "We've heard nothing from them until this."

To find out if you are infected with the trojan use this.

Read More



Apple Tries to Cut Off Server Monitoring Number of Flashback Trojan Infections
Add Comment
Would you like to be notified when someone replies or adds a new comment?
Yes (All Threads)
Yes (This Thread Only)
No
iClarified Icon
Notifications
Would you like to be notified when we post a new Apple news article or tutorial?
Yes
No
Comments (5)
You must login or register to add a comment...
thoune
thoune - April 11, 2012 at 12:07am
apple has no virus! which is one of main selling marketing points; now it is being destroyed! Cook needs to act fast.
thoune
thoune - April 11, 2012 at 12:07am
apple has no virus! which is one of main selling marketing points; now it is being destroyed! Cook needs to act fast.
thoune
thoune - April 11, 2012 at 12:07am
apple has no virus! which is one of main selling marketing points; now it is being destroyed! Cook needs to act fast.
iDoktor
iDoktor - April 10, 2012 at 11:07pm
its interesting how can you setup this server to "listen" for eventual bots if you dont have access to the malicious code of the bot itself?
joyz
joyz - April 10, 2012 at 9:53pm
Come on Tim use your $100,000,000,000 to buy some Ruskie "MP"s
Recent. Read the latest Apple News.
RECENT
Tutorials. Help is here.
TUTORIALS
Where to Download macOS Monterey
Where to Download macOS Ventura
AppleTV Firmware Download Locations
Where To Download iPad Firmware Files From
Where To Download iPhone Firmware Files From
Deals. Save on Apple devices and accessories.
DEALS