Mac malware poses as popular freeware PDF viewer

By Tim Conneally | Published August 25, 2009, 4:07 PM

Foxit Reader, a free, lightweight PDF viewer and printer popular in our FileForum, has an evil twin.

Today, the Foxit Corporation warned that a malware claiming to be Foxit Reader for Macintosh has been perpetrating attacks on users thinking they were downloading an official version of the free PDF reader. The thing is, there is no Foxit Reader for OS X. The software is available for Windows, Windows Mobile, Embedded Linux, Desktop Linux, and U3.

"While imitation may be the sincerest form of flattery, we are not happy about the recent malware attacks masquerading as our Foxit Reader," said George Gao, Vice President of Marketing and Sales of Foxit Corporation. "Foxit has always strived to insure that our solutions are secure for our users, and remains committed to address any Foxit product security issue in a professional and timely manner."

Trend Micro researcher Ivan Macalintal found the malware on Sunday and classified it as a variant of the JAHLAV DNS trojan, a Mac malware discovered earlier this summer that prompts users to download a bit of software or a codec (earlier this month, it pretended to be MacCinema) which, once installed, would reroute users to phishing sites and suchlike.

Foxit has not yet returned Betanews' requests for comment.

Comments

View comments by with a score of at least

In Leopard if you download something from the internet before you can run it - it goes something like, this was downloaded from the internet are you sure you wish to continue...Sounds like they just enhanced what was already in Leopard

Score: -3

|

Vista does that...

Score: 0

|

So then the other one will be fine, good to know :D

Score: 7

|

Hah good one.

Score: 0

|

well at least those with SL will be protected, in late 2009, Apple finally decided, hmm maybe nows a good time to include a anti-virus scanner lol
http://www.theregister.c...pard_malware_protection
http://blogs.zdnet.com/security/?p=4104

funny, never heard of this problem in their latest Ads

Score: 5

|

Your last two steps don't typically occur on OS X. We've been safe so far - though my in my opinion it's been more security through obscurity. If someone is hell-bent on developing malware for OS X then it will happen. But most malware writers are in it for the money and targeting MS will yield a 10x greater payoff. Oh, and your smug attitude will almost guarantee that you'll get infected in the future.

Score: 3

|

Turn on PC, you suck at trolling...There are many people who run without any A/V on a PC and have no problems, they check it by running a web based a/v that confirms they have no viruses

Score: 0

|

Funny I have never been infected by turning on my PC... or from surfing the web... and vista seems to ask me if I want to execute something too...

Score: 2

|

It's about time! Mac's are highly susceptible to viruses and malware. I can't believe Apple didn't add this much needed feature eons ago. It is nice that by doing this Apple essentially created a much improved version of Vista's UAC feature. Now people know why their computer is asking if they really want to do what they've asked their computer to do.

Score: -2

|

"t's about time! Mac's are highly susceptible to viruses and malware."

Oh yea? Name one virus for OS X. This article was about malware. I don't know why anyone would download a PDF reader, OS X does not need one, so it's unlikely many people were affected.

Score: -1

|

Why don't you read the articles you post? Neither one mentions anti-virus protection. Do you even know what malware is?

Score: 0

|

*laughing*

Pedantic. Nice.

Score: -1

|

@veggiedude - There are several different types of malware. Malware is software that damages a computer. This could mean a virus or it could mean spyware. There are probably several other types of malware as well.

Score: 0

|

It's just as easy to infect a Mac with malware as it is Windows Vista or 7. Nobody has really tried very hard to infect a Mac. Yet.

Score: 0

|

"Yet."

Don't hold your breath. No payoff. The money is in Windows Users.

Score: 0

|

So you use everything that comes with OSX? You really HAVE been completely programmed.

See, in the world of Windows, we don't HAVE to use everything shipped with Windows. Some people don't like Windows Media Player so they download VLC or Winamp, etc.
They don't like IE, they get Firefox. They don't like Outlook Express/Windows Mail/Windows Live Mail they get Thunderbird, etc. you get my drift.

So, if someone doesn't like Itunes or the built in PDF viewer, fu%$ them for getting something else online?

Wow.

Score: 0

|

Google Buzz: Another attempt to harness the content firehose

Similar to how Google successfully remolded RSS into a Google tool, the company now wants to remold Gmail into one big Google party

Success: Google's Nexus One shipping support line takes tech support questions

UPDATED Though the support line had been set up for shipping, it now appears Google personnel are happy to hear technical concerns.

Goodnight, moon: What I learned from a space shuttle

Carmi Levy | Wide Angle Zoom: Can the tech sector learn a few lessons from the space program? Certainly, if you believe in learning from someone else's mistakes.

Netflix to FCC: NBCU + Comcast could bypass net neutrality

Weaning itself from the post office as its main means of video transfer, Netflix would like someone to ensure the Internet remains just as unencumbered.

Rhapsody to become an independent company

RealNetworks and Viacom subsidiary MTV Networks have begun the process of spinning off music service Rhapsody into an independent company.

Nvidia debuts new dynamically-switched graphics card technology

Today, Nvidia announced that its Optimus technology for GPU switching will soon be available in a handful of Asus notebooks.

Google lowers 'unusually high' early termination fee on Nexus One

Google has lowered the Nexus One's early termination fees which were twice as high as the norm.

Netgear and Ericsson introduce a mobile broadband hotspot with a twist

It's a mobile broadband hotspot, but it's for use in the home.

Report: Streaming video drove 72% global increase in mobile data consumption

A new study says streaming video is "the single most influential factor driving the need for increased mobile network capacity."

Stymied by continuing Nexus One 3G issues, Google blames the environment

If you're still afflicted with the 3G flip-flop trouble, then you might consider moving. That appears to be the only suggestion Google can give for now.

Wolfram|Alpha makes a strong argument for virtual keyboards

"Answer engine" Wolfram|Alpha has updated its iPhone/iPod Touch app, harnessing the strength of the virtual keyboard.