Digita Security

Cybersecurity solutions for the

  • modern
  • mobile
  • independent
  • innovative
  • enterprising

macOS workforce

11.6.2014 ( Version 2054 )

MachookA

Also Known As: OSX/WireLurker

OSX/Machook, more commonly known as OSX/WireLurker, is malware distributed with hundreds of pirated OS X apps in China. Once installed on a target computer, it is capable of spreading to iOS devices connected to the infected Mac. It communicates with a command and control (C2) server and collects information about users and their connected devices. It was discovered by PaloAlto Networks in November 2014, and traced to infected applications available in the pirated app store as early as March, 2014 [1].

References:
  1. http://www.thesafemac.com/new-wirelurker-malware-infects-mac-os-x-and-ios/

Sample Hashes (VT links):
e2b9578780ae318dbdb949aac32a7dde6c77d918
bb8cbc2ab928d66fa1f17e02ff2634ad38a477d6