
There are also additional capabilities beyond encrypting the user’s documents.

It remains to be seen whether the anti-malware community will be able to discover a way to decrypt documents encrypted by this malware.

DOWNLOAD NEFARIOUS FOR OSX SOFTWARE
In other words, this “ransomware” may be better described as a “wiper”-malicious software that encrypts files without providing any way to decrypt them, even if you give in to the extortioner’s demands.
DOWNLOAD NEFARIOUS FOR OSX HOW TO
Although so far this has sounded like standard ransomware behavior, the malware makers actually don’t provide an e-mail address or any other way to contact them, so it is unclear how the extortioners would know who paid them and therefore how to help that person decrypt their files. There’s actually a bit of a twist to the ransomware angle, though. The forum post seems to be dated June 9, so this malware may have gone undiscovered for approximately three weeks.Įvidently, nobody had paid the ransom as of when this article was published. There are probably others as well.īitTorrent magnet links to download these Trojanized installers have been observed on RUTracker, a Russian forum site. Thanks for the info! Been working on that this morning… seems it's getting dropped by some installers wrapping legit software like Little Snitch, Ableton, and Mixed In Key. The EvilQuest malware comes disguised as an installer for any of various Mac applications, including Google Software Update, Ableton, Little Snitch, and Mixed In Key 8. Is this malware in the wild? How does it spread?
