New Mac Virus Discovered by Sophos
Early this week, security firm Sophos discovered a new Trojan Horse virus which they are calling OSX/RSPlug-F. They even have a video of the virus in action! The virus' method seems to be a variation of the malware DNSChanger which was detected some time ago.
As indicated by the blog entry, the virus is activated by browsing to particular web sites and downloading an infected program. Once the user selects the download, the virus is downloaded via a remote download server and OSX/RSPlug-F will try to change your DNS server settings which could lead to your Internet traffic being redirected through malicious servers.
Blogger Graham Cluley's states, "One of the ways in which the OSX/RSPlug-F Mac Trojan horse is being distributed by hackers is in the form of a poisoned HDTV/DTV program called MacCinema."