Recommended Posts

Running ESET Cyber Security here. Running the newer beta they have here and it seems to be working pretty good. Not that I need it as much for the Mac side, but I share files with my windows machine at work and its a requirement to have an active antivirus when working form home.

http://www.eset.com/...cyber-security/

  • 2 months later...
  • 4 months later...

I installed Avast, the free edition (don't know if there's a payware edition for Mac). It just consumes my menubar space, lol, and i can ever turn it off from there. It's okay. If i see it slowing down my laptop i'll remove it eventually.

  • 5 months later...

Hello,

 

The likelihood of getting hit by something OS X-specific is orders of magnitudes lower than for Windows-based computers, but there's still some OS X malware out there, as well as threats which are platform-independent (Adobe Flash, PDF, HTML, Java, JavaScript based, etc.).  It has been my experience, though, that some Mac users run anti-malware software if they exchange files with colleagues who use Windows.

 

Regards,

 

Aryeh Goretsky

 

AntiVirus? On a Mac? Serious? I spend some time in the back alley of the web myself, but I have never had any issues. Or have I...

  • 3 weeks later...
  • 4 weeks later...
  • 2 months later...

Do you even need an antivirus on a mac scanning every file you download etc.. or do you just need one to do the occasional scan ever so often?

I run Sophos, and it scans files in realtime I think. It's been very rare that it's found anything, though. I think I've had 2 warnings in the several years I've been using it.

Hello,

 

Malware specifically written for Mac OS X occurs orders of magnitude far less frequently than its Windows-based brethren, but it is still not zero and Macs can still be subject to cross-platfom threats from Flash, HTML, Java, JavaScript, PDF and other frameworks, as well as things like scams, spam, phishing, etc., that can be blocked by anti-malware software.  It's probably a good to run anti-malware software in real-time to catch those kinds of intrusions, even if the actual OS X-specific threats still represent only a minority of threats out there.

 

Regards,

 

Aryeh Goretsky

 

 

Do you even need an antivirus on a mac scanning every file you download etc.. or do you just need one to do the occasional scan ever so often?

  • Like 2
  • 4 weeks later...

Do you even need an antivirus on a mac scanning every file you download etc.. or do you just need one to do the occasional scan ever so often?

 

No, there are not now, nor have there ever been, any viruses in the wild that effect OS X (12+ years). 

 

If you really want to, you can get ClamX, which will scan for nasties and quarantine them. It can clean out a bunch of harmless (for Windows) junk which has no impact anyway. The nice thing about ClamX is it doesn't run in the background, and so it doesn't use any resources until you open it for a scan.

 

Mac Virus/Malware FAQ;

http://guides.macrumors.com/Mac_Virus/Malware_FAQ

No, there are not now, nor have there ever been, any viruses in the wild that effect OS X (12+ years).

I really wish people would stop saying something along these lines as a justification to be lax with safe computing habits and security.  There's other types of malware out there (even for OSX and Linux), real self-replicating viruses are actually a fairly small percentage of that. Most of it is money driven (feed you ads, steal information like banking or passwords, "ransomware", etc) so the Windows users get the bulk of it due to sheer numbers. 

 

No, there are not now, nor have there ever been, any viruses in the wild that effect OS X (12+ years). 

 

If you really want to, you can get ClamX, which will scan for nasties and quarantine them. It can clean out a bunch of harmless (for Windows) junk which has no impact anyway. The nice thing about ClamX is it doesn't run in the background, and so it doesn't use any resources until you open it for a scan.

 

Mac Virus/Malware FAQ;

http://guides.macrumors.com/Mac_Virus/Malware_FAQ

 

 

That's just a pedantic definition that while being strictly correct misses the bigger picture (it's basically a strawman argument). End users don't care if what you are talking about is strictly a virus or more generally what is categorized as malware, cross platform attack, or a phishing scam. Malware does exist for Mac: http://en.wikipedia.org/wiki/Macintosh#Software. Even that FAQ you linked has removal instructions for malware. There's not much of it though so you are generally much safer in OS X than you'd be in Windows*.

 

*Note: If you don't know better though you'll be just as susceptible to a fishing scam as someone running Windows. So that link is basically doing a disservice to readers who may not know better and now are reinforced of a belief that they can just do nothing and be perfectly safe.

Hello,

 

On the Windows side, 10% or less of the malware seen on a daily basis is computer viruses.  The rest is stuff like OSX/Lamadai remote access trojan or OSX/Flashback botnet, except on Windows instead of OS X like those two examples of Mac-specific malware.

Regards,

Aryeh Goretsky

Hello,

 

On the Windows side, 10% or less of the malware seen on a daily basis is computer viruses.  The rest is stuff like OSX/Lamadai remote access trojan or OSX/Flashback botnet, except on Windows instead of OS X like those two examples of Mac-specific malware.

Regards,

Aryeh Goretsky

 

The first link is to not only an article that you wrote but also one that is hosted on an ESET blog (ESET is an A/V company that sells A/V software for Mac OS). The second link goes directly to ESET's site...That would be like me posting a review of my own game here and then linking to my site that sells it...Basically spam/advertising or at the very least quite biased

The first link is to not only an article that you wrote but also one that is hosted on an ESET blog (ESET is an A/V company that sells A/V software for Mac OS). The second link goes directly to ESET's site...That would be like me posting a review of my own game here and then linking to my site that sells it...Basically spam/advertising or at the very least quite biased

 

Based off of your logic, if I had linked the articles then they would have been perfectly valid since I'm not associated with ESET and don't use ESET software. I'll independently vouch for the articles in that case. You were just using his connection to ESET to distract from the point --> that malware for Mac exists and that even in Windows only a small portion seen in actual infections can be considered viruses. In any case, here's a wiki link with 14 secondary sources: http://en.wikipedia.org/wiki/Trojan_BackDoor.Flashback

 

It is worth noting that in general, linking to information about one's own research or one's companies research doesn't make the contained information irrelevant or biased regardless of whether it has a side effect of promoting the person or company. I'm not sure how you think research works, but it doesn't generally include making up results (in this case Inventing the OS X Flashback Trojan or details about it). It shouldn't make any difference whether goretsky provides primary sources of information about it or someone else provides the same sources as second hand sources because you should be judging the information on its merit and not on who tips you off to the information.

  • Like 2

Hello,

Actually I didn't write the first article, but a colleague of mine did. I posted the links because I was aware of them and had them handy. Here are some non-ESET links that you might enjoy:

Intego

McAfee

Symantec

As you can see from these and other articles and telemetry reported from the above companies, OS X-specific malware appears to be on the rise, although it is still far less frequently detected than the Windows kind. 

 

Regards,

 

Aryeh Goretsky

 

The first link is to not only an article that you wrote but also one that is hosted on an ESET blog (ESET is an A/V company that sells A/V software for Mac OS). The second link goes directly to ESET's site...That would be like me posting a review of my own game here and then linking to my site that sells it...Basically spam/advertising or at the very least quite biased

Hello....

 

 

Aryeh Goretsky

 I appreciate your persistence (being that antivirus software is your business) that there have been reports *by antivirus software companies* that Mac users should be at least a little persistent when it comes to security however that flies in the face of the real truth of things. That running real time protection on your Mac is more harm than good. As a user of OS X since its inception I have never had a virus, trojan or anything of a threat on any of my Mac's. 

 

If this were a poll on any Mac centric forum you would find that the savviest of OS X users will agree that a real time A/V running on a Mac is as useful as running a real time CPU resource manager or disk defragmenter or  cache clean up app...The pro's of such by far are outweighed by the cons and in all cases are a waste of time and resources. 

 

I stand by that it is more of a hindrance to run real time antivirus software on a Mac than vice versa... Link me to a scanner and I will install it and report back the findings, if there is anything on my main system that is at all threatening to my OS X environment I will bow down and agree...Years of OS X usage tells me though that the only thing that may come up will be some malware for Windows on my Mac if anything... I think first one has to understand the nature of OS X and its modularity, without a registry. 

Immediately after my last post I downloaded and ran ClamAV and as I thought there was nothing malicious on my Mac, mind you this machine runs 24/7...The only thing found was a possible Windows XP crack in my mail.... The Mac tested is running Mavericks, fully updated, and has been since early developer preview, like I mentioned 24/7...and what was found? Nothing malicious to OS X. The 2 instances of a possible malicious Windows XP crack found in my mail are just that, possible XP threats. 

 

So I should shut down everything and start a real time scanning A/V app on this system? Yeah, not likely :)

 

Not for nothing I urge every Mac user here to do the same, run a scan and see what the results are and then ask yourself if a realtime A/V is worth it or not.

 

 

nVrh6CG.jpg

As a user of OS X since its inception I have never had a virus, trojan or anything of a threat on any of my Mac's.

This is the very definition of anecdotal evidence.  I haven't had malware on my Windows machine in over 10 years, therefore it doesn't exist.  I don't know anyone who owns an iPhone, therefore they don't exist.  I don't know anyone who owns a PS4 either, so obviously nobody has one.  See how this works? 

 

I'm not saying that it means you need full time running protection.  I don't use a resident AV suite on my Windows machines either, I use other means to keep my systems secure.   (I agree with wasted resources.. if you're relying on an AV suite to tell you that you got malware, you probably already messed up.)  But it doesn't mean you're immune to malware and you can just do whatever you please with anything you do or download either.  Malware does exist for other operating systems.  OSX has had it's attacks, even Linux has had some.  (Kernel.org and a few other high profile sites being taking down due to a rootkit anyone?)   There is no such thing as an operating system that's immune to malware or exploitation.  User error, gullibility, vulnerabilities in software, or just plain carelessness, all sorts of ways to do damage to somebody's system.  The only reason Windows machines get targeted the most is due to the sheer number of users, most current malware is money or data theft oriented, they tend to go where the most people are.

 

I think first one has to understand the nature of OS X and its modularity, without a registry.

What does the registry have to do with anything It's just a database of settings with an easy to use API and security model versus configuration files scattered throughout the file system. That's it. (Hint, it's not unique to Windows either.)
  • Like 2

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Posts

    • Dopamine 3.0.6 by Razvan Serea Dopamine is an awesome free audio player which tries to make organizing and listening to music as simple and pretty as possible. Dopamine has been designed for Windows 7, Windows 8.x and Windows 10 and plays mp3, ogg vorbis, flac, wma and m4a/aac music formats quite well. The best part? It's created by long-time Neowin member, Raphaël Godart. If you’re looking for a music player to handle a large music collection, you should definitely give Dopamine a try. Dopamine 3.0.6 changelog: Fixed Manually edited album covers are overwritten on the next collection refresh Fixed AppImage package not working on modern GNU/Linux distributions Deleting song from playlist sometimes fails Playback controls only work when clicking on upper half of the buttons It's unclear that files must be tagged with an external ReplayGain scanner (for example rsgain) before normalization can take effect. Change to Artist or Album tags is not reflected in the song list view nor in the Now Playing information ReplayGain issues Smart playlist filters ignore text containing accents or other special characters Some MP3 files trigger an "MPEG header not found" error due to a too-narrow initial MPEG header scan range Changed Updated the Vietnamese translation Download: Dopamine 3.0.6 | 122.0 MB (Open Source) Links: Home Page | Forum Discussion | Screenshot | Other OSes Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • BleachBit 6.0.1 Beta by Razvan Serea When your computer is getting full, BleachBit quickly frees disk space. When your information is only your business, BleachBit guards your privacy. With BleachBit you can free cache, delete cookies, clear Internet history, shred temporary files, delete logs, and discard junk you didn't know was there. Designed for Linux and Windows systems, it wipes clean thousands of applications including Firefox, Microsoft Edge, Google Chrome, Opera, Safari, and more. Beyond simply deleting files, BleachBit includes advanced features such as shredding files to prevent recovery, wiping free disk space to hide traces of files deleted by other applications, and vacuuming Firefox to make it faster. Better than free, BleachBit is open source. BleachBit has many useful features: Delete your private files so completely that "even God can't read them" according to South Carolina Representative Trey Gowdy. Simple operation: read the descriptions, check the boxes you want, click preview, and click delete. Multi-platform: Linux and Windows Free of charge and no money trail Free to share, learn, and modify (open source) No adware, spyware, malware, browser toolbars, or "value-added software" Translated to 64 languages besides American English Shred files to hide their contents and prevent data recovery Shred any file (such as a spreadsheet on your desktop) Overwrite free disk space to hide previously deleted files Portable app for Windows: run without installation Command line interface for scripting and automation CleanerML allows anyone to write a new cleaner using XML Automatically import and update winapp2.ini cleaner files (a separate download) giving Windows users access to 2500+ additional cleaners Frequent software updates with new features Going beyond standard deletion of files, BleachBit has several advanced cleaners: Clear the memory and swap on Linux Delete broken shortcuts on Linux Delete the Firefox URL history without deleting the whole file—with optional shredding Delete Linux localizations: delete languages you don't use. More powerful than localepurge and available on more Linux distributions. Clean APT for Debian, Ubuntu, Kubuntu, Xubuntu, and Linux Mint Find widely-scattered junk such as Thumbs.db and .DS_Store files. Execute yum clean for CentOS, Fedora, and Red Hat to remove cached package data Delete Windows registry keys—often where MRU (most recently used) lists are stored Delete the OpenOffice.org recent documents list without deleting the whole Common.xcu file Overwrite free disk space to hide previously files Vacuum Firefox, Google Chrome, Liferea, Thunderbird, and Yum databases: shrink files without removing data to save space and improve speed Surgically remove private information from .ini and JSON configuration files and SQLite3 databases without deleting the whole file Overwrite data in SQLite3 before deleting it to prevent recovery (optional) BleachBit 6.0.1 Beta release notes: BleachBit 6.0.1 beta is now available for testing. This maintenance-focused release includes bug fixes, updated translations, and a range of safe enhancements. This release fixes a Windows security issue that could allow arbitrary file deletion during privileged cleaning (reported by Zeze with TeamT5). It also adds new cleaners (including a DNS cache cleaner, Claude Code, and Visual Studio Code forks), support for multiple Chrome and Edge profiles, new deep scan options for developer directories like node_modules and venv, and safer, faster file shredding. All Platforms Added cleaners for Claude Code, DNS cache, and many Visual Studio Code forks. Added support for multiple Chrome and Edge profiles. Chrome can now clean downloaded AI models. Deep Scan can optionally remove venv, __pycache__, node_modules, and .angular directories. Deep Scan is faster by skipping directories on the keep list. File shredding is safer, faster, and leaves fewer recoverable traces. Improved handling of cookies, symlinks, Unicode filenames, external processes, and configuration files. Improved Expert Mode warnings and long warning dialogs. Fixed crashes related to cleaner detection, invalid Unicode, and malformed cleaner data. Clipboard is now cleared automatically after shredding files via paste operations. Linux Added AppImage support. Added cleaners for Visual Studio Code, Codeium, Librewolf (.deb), Transmission (Flatpak), and Profanity. Improved Linux trash detection, including Snap-installed applications and mounted drives. Fixed Wayland root CLI issues and several Snap-related problems. Improved package dependencies, AppStream metadata, and desktop file handling. Fixed startup crashes when Python Requests is unavailable. Windows Fixed a security vulnerability that could allow arbitrary file deletion when cleaning with elevated privileges. Added %WindowsSystem% variable support. Improved clipboard clearing using native Windows APIs. Improved installer experience on unsupported Windows versions. Reduced installer size and improved application robustness. Fixed Unicode handling, filename anonymization, Git revision reporting, and splash screen stability. [full release notes] Download: BleachBit 6.0 | Portable | ~20.0 MB (Open Source) View: BleachBit Home page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • DriversCloud 12.1.6 by Razvan Serea With DriversCloud (formerly My-Config.com), you can explore your computer easily, safely and free. The application quickly scans your PC and identifies the hardware and software components. DriversCloud then establishes a list of the different drivers compatible with your OS and hardware. Download the drivers needed for the proper functioning of your computer. To detect your drivers, DriversCloud also displays a detailed summary of your hardware and software configuration, analyzes your BSOD, monitors in real-time your PC voltages and temperatures and lets you share your configuration online. Once the hardware components have been detected, you will be able to obtain with just a few clicks the latest drivers corresponding to the identified hardware. You can record your configuration on the site for free, and can get the corresponding URL to post the configuration to technical forums, e-mail and social networks. You can also download the detection result (the configuration) as a PDF file. To protect the user's privacy and data confidentiality, a 4-level confidentiality system was created that filters the XML marks and gives control to the user. The default level can be modified in the preferences. Using the maximum level will prevent the user from publishing his configuration and generating a corresponding PDF file. In non-connected mode, each XML configuration is stored on the server for one day (for practical reasons). However, you are given the opportunity to manually delete it. Created in 2004, and continually improved, My-Config.com has established itself on the web as a free service to PC users running Windows and Linux operating systems. The service is designed to work with the most common Internet browsers (Edge, Firefox, Chrome, Safari). Download: DriversCloud 64-bit | 20.0 MB (Freeware) Download: DriversCloud 32-bit | 18.9 MB Link: DriversCloud Home Page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
  • Recent Achievements

    • One Month Later
      AndreaB earned a badge
      One Month Later
    • One Month Later
      agatameier earned a badge
      One Month Later
    • Week One Done
      agatameier earned a badge
      Week One Done
    • Week One Done
      ssd21345 earned a badge
      Week One Done
    • Contributor
      MarkHughes4096 went up a rank
      Contributor
  • Popular Contributors

    1. 1
      +primortal
      516
    2. 2
      +Edouard
      193
    3. 3
      PsYcHoKiLLa
      147
    4. 4
      ATLien_0
      96
    5. 5
      Steven P.
      77
  • Tell a friend

    Love Neowin? Tell a friend!