Skip to main content
Has anyone seen this before?

OSX.Snake.1.r

 

What is it?  I have a feeling it is not the Snake Malware.

 

Thank you
Hey @

 

The malware you are referring to was an attempt of a port of a popular Windows backdoor malware used to get onto systems and maintain persistence. Last I heard, this wasn't very effective, but cannot be sure there isn't a new variant out there. 

 

John
Thanks @.  I spoke to WebRoot support who took logs from multiple machines that are infected.  Still have not heard back from them yet on what it is, but none of these users had an Adobe Flash update on their computers which is how the port was done from the Windows side.  I am curious though as to why no one else has mentioned this on the web, specifically the name that appears.
I've found a writeup on this if you wanna take a look bud. 

 

https://objective-see.com/blog/blog_0x25.html#Snake 

 

John

Reply