Snake Vs Snake Mac OS
Snake is a known malware on Windows OS since 2008. In 2017 fox-it found a variant of this malware that was ported to macOS.The malware arrived as the file “Install Adobe Flash Player.zip” which is a modify version of Adobe Flash installation. Within the zip file there is a macOs application bundle signed with a legitimate Apple Developer ID (revoked already):
Source: CheckPoint
See the best Viper Snake HD Wallpapers collection. If you see some Viper Snake HD Wallpapers you’d like to use, just click on the image to download to your desktop or mobile devices. Jan 11, 2016 Page 1 of 7 - OS X Graphics API's: OpenGL vs Metal vs Vulkan - posted in IMG Reviews Discussion: There has been a lot of chatter in the macspere over the past several months about the exciting potential of new graphics technologies that are coming (or might be coming) to OS X. Trusted Mac download Screen Snake 5.3. Virus-free and 100% clean download. Get Screen Snake alternative downloads. Page 1 of 7 - OS X Graphics API's: OpenGL vs Metal vs Vulkan - posted in IMG Reviews Discussion: There has been a lot of chatter in the macspere over the past several months about the exciting potential of new graphics technologies that are coming (or might be coming) to OS X. Incomplete downloads in OS X Mountain Lion have a modified date of Jan. 24, 1984 at 9 a.m. the date Steve Jobs demonstrated the very first Macintosh computer. Snake or Pong on your Mac.
Once executed the malware will execute its script first prior the real Adobe installation. It will use AppleScript in order to execute its infection script with administrator permissions:
Source: CheckPoint
The infection vector contains two scripts. The first will copy the malware files to target locations “/Library/Scripts/” and create a LaunchDaemon in order to persist on the system.
Source: CheckPoint
The second script “installd.sh” will check if “installdp” process is running, and if not, will execute it.It is unknown what the infection vector is, if any infection was there at all. From the malicious binary file “installdp” it might be implied that this version of the malware is not finished as there are a lot of debug strings:
Source: CheckPoint
Links:
Samples:
Snake Vs Snake Mac Os X
b8ee4556dc09b28826359b98343a4e00680971a6f8c6602747bd5d723d26eaea