I downloaded a Viruses from FTP!

Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
I was downloading my client's WordPress from the FTP CyberDuck tool. As I was downloading it the app Bitdefender which subscription is about to run out in a few days detected TWO viruses!!! See the screenshots below. I deleted all the FTP files. Then I somehow found the quarantined folder and clicked delete.

Why before I clicked delete in the quarantined folder did Bitdefender's quick scan not detect a virus?

In addition, why do I have something called desktop-rasor on my computer? Is this from the virus or is it from when Adobe came on my computer to fix a problem?

Excuse my ignorance on this subject. I have some studying to do on the subject.

2018-01-13_18-56-51.jpg

2018-01-13_18-41-29.jpg
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
Like I said, I don't know what this is from.

2018-01-13_19-12-26.jpg
 

chscag

Well-known member
Staff member
Admin
Joined
Jan 23, 2008
Messages
65,248
Reaction score
1,833
Points
113
Location
Keller, Texas
Your Mac's Specs
2017 27" iMac, 10.5" iPad Pro, iPhone 8, iPhone 11, iPhone 12 Mini, Numerous iPods, Monterey
Both viruses are of the Windows variety. But it's good that BitDefender warned you so that you won't pass any infections on to your Windows clients. Neither of those viruses can harm your Mac.
 
Joined
Oct 16, 2010
Messages
17,527
Reaction score
1,561
Points
113
Location
Brentwood Bay, BC, Canada
Your Mac's Specs
2011 27" iMac, 1TB(partitioned) SSD, 20GB, OS X 10.11.6 El Capitan
As for your "virus" you received, do a web search on their names, i.e. for "backdoor":

https://www.google.ca/search?client...-8&gfe_rd=cr&dcr=0&ei=zKpaWsLaNsbe8Aenw5DIBg:

Do the same for "cryxos" etc and lean about them

Then head off and download MALWAREBYTES FOR MAC.app and run it.
https://www.malwarebytes.com/mac/

The "shares" desktop name is no doubt the share you got your "free virus gifts" from with your recent FTP file sharing episode. And maybe even still connected as well!!

You really do need to do some reading if you're going to do such stuff with your Mac. Seriously!!



- Patrick
======
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
As for your "virus" you received, do a web search on their names, i.e. for "backdoor":

https://www.google.ca/search?client...-8&gfe_rd=cr&dcr=0&ei=zKpaWsLaNsbe8Aenw5DIBg:

Do the same for "cryxos" etc and lean about them

Then head off and download MALWAREBYTES FOR MAC.app and run it.
https://www.malwarebytes.com/mac/

The "shares" desktop name is no doubt the share you got your "free virus gifts" from with your recent FTP file sharing episode. And maybe even still connected as well!!

You really do need to do some reading if you're going to do such stuff with your Mac. Seriously!!



- Patrick
======

Oh gosh thanks! I did run my malware and bitfinder again and it found nothing.

How can I get rid of the shared desktop thing? What should I do?
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
It says it's connected as.... I do my banking from this computer... what should I do to get rid of it?! :( 2018-01-13_20-22-41.jpg

When I went to System's Preference and to sharing this popped up.
 
Joined
Oct 16, 2010
Messages
17,527
Reaction score
1,561
Points
113
Location
Brentwood Bay, BC, Canada
Your Mac's Specs
2011 27" iMac, 1TB(partitioned) SSD, 20GB, OS X 10.11.6 El Capitan
what should I do to get rid of it?!


Do the firsr standard computer fix — SHUTDOWN.

Then boot up.



- Patrick
======
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
Do the firsr standard computer fix — SHUTDOWN.

Then boot up.



- Patrick
======

Awesome! I shut down my computer just like you said. After I did a boot up that Desktop file was gone! :) What happened?
This forum IS THE BEST!!!
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
Do the firsr standard computer fix — SHUTDOWN.

Then boot up.



- Patrick
======

Oh no it's back! That desktop thing is back! :( :( :(
 
Joined
Oct 16, 2010
Messages
17,527
Reaction score
1,561
Points
113
Location
Brentwood Bay, BC, Canada
Your Mac's Specs
2011 27" iMac, 1TB(partitioned) SSD, 20GB, OS X 10.11.6 El Capitan
Oh no it's back! That desktop thing is back!


What software or app are you using for your FTP stuff??

Try quitting it and also make sure it not part of you startup login apps. System Prefs > Users > username > login items.

Restart if needed.



- Patrick
======
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
What software or app are you using for your FTP stuff??

Try quitting it and also make sure it not part of you startup login apps. System Prefs > Users > username > login items.

Restart if needed.



- Patrick
======

It's gone again.... hmmm I wonder why.

I am using a paid for version of CyberDuck. I will never use FileZilla again because I don't trust the company not to contaminate my computer with malware. Cyberduck seemed like the safer option.

I did as you said and went to System Prefs > Users > username > login items, but did not see any reference to the desktop issue. I did recently purchase several non Apple products made for the Apple via the App store.
 
Joined
Jul 30, 2009
Messages
7,298
Reaction score
302
Points
83
Location
Wisconsin
Your Mac's Specs
Mac Mini (Late 2014) 2.6GHz Intel Core i5 Memory: 8GB 1600MHz DDR3
This forum IS THE BEST!!!

Are you aware that the owners are shutting this forum down?
Look under News and Community Announcements for more info.
Mac Forums is being reorganized at a new location.
 
Joined
Oct 16, 2010
Messages
17,527
Reaction score
1,561
Points
113
Location
Brentwood Bay, BC, Canada
Your Mac's Specs
2011 27" iMac, 1TB(partitioned) SSD, 20GB, OS X 10.11.6 El Capitan
It's gone again.... hmmm I wonder why.

Maybe a FTP file sharing guru will add something to answer your questions here as I don't do much, but I would guess that your FTP CyberDuck tool has taken over your file sharing as your OS X Sharing Pref Pane has all sharing disabled so there should be some way to disable any sharing in the FTP CyberDuck tool.

Maybe do a web search like 'mac disable FTP CyberDuck tool', or whatever FTP stuff you're using, i.e.:
https://www.google.ca/search?client...F-8&gfe_rd=cr&dcr=0&ei=2ppbWqu3FI_t8wfh44TgDQ

And that Desktop icon is no doubt your client's PC that your were doing the FTPing with.

I hope this makes sense and hope you survived the super-cold session and horrible weather that hit your area.

BTW: As a courtesy, you might like to let your client know that they are infected and can sure spread it to any Windows users that it really will affect.


Also, take note of what toMACsh said above in case this site suddenly goes dead and we get cutoff!!!

Good luck.




- Patrick
======
 
OP
MacLover2011
Joined
May 24, 2011
Messages
498
Reaction score
2
Points
18
Location
New York City
Your Mac's Specs
MacBook Pro 16 Inch 2019 MacOS Catalina 10.15.3 (19D76)
Good news! Turns out the file was on my Mac because someone who is staying in my house was accessing my WIFI with his Windows computer. lol
 

Slydude

Well-known member
Staff member
Moderator
Joined
Nov 15, 2009
Messages
17,609
Reaction score
1,076
Points
113
Location
North Louisiana, USA
Your Mac's Specs
M1 MacMini 16 GB - Ventura, iPhone 14 Pro Max, 2015 iMac 16 GB Monterey
I should have thought of that. Glad you got it sorted.
 
Joined
Jul 24, 2013
Messages
5,075
Reaction score
764
Points
113
Location
Ohio (USA)
Your Mac's Specs
2023-14" M3max MBPro, 64GB/1TB, iPhone 15 Pro, Watch Ultra
Well now I am confused. How can a Windows computer on your WiFi put viruses on your mac? Unless you were connected to that Windows computer and were sharing files between it and your Mac I don't see how the viruses got on your mac. Was the owner of the Windows doing a remote connect to your mac?

Lisa
 
Joined
Oct 16, 2010
Messages
17,527
Reaction score
1,561
Points
113
Location
Brentwood Bay, BC, Canada
Your Mac's Specs
2011 27" iMac, 1TB(partitioned) SSD, 20GB, OS X 10.11.6 El Capitan
Good news! Turns out the file was on my Mac because someone who is staying in my house was accessing my WIFI with his Windows computer. lol


Hmmm…??? Maybe.

But like Lisa, I'm not 100% sure as to what's actually going on with your Mac and any "shares"
.



- Patrick
======
 

Slydude

Well-known member
Staff member
Moderator
Joined
Nov 15, 2009
Messages
17,609
Reaction score
1,076
Points
113
Location
North Louisiana, USA
Your Mac's Specs
M1 MacMini 16 GB - Ventura, iPhone 14 Pro Max, 2015 iMac 16 GB Monterey
That looks like the kind of generic icon for a Windows box that has been on your network at some point in time. I have gotten something similar before IIRC.

I bet that if you got in touch with the person in question his computer has a sort of generic name that matches what you are seeing.
 
Joined
Jul 24, 2013
Messages
5,075
Reaction score
764
Points
113
Location
Ohio (USA)
Your Mac's Specs
2023-14" M3max MBPro, 64GB/1TB, iPhone 15 Pro, Watch Ultra
But if there was a connection between the two computers it would have had to be permitted by a person on the mac. But if the situation is resolved and all malware scans are clear then all is good!

Lisa
 

Shop Amazon


Shop for your Apple, Mac, iPhone and other computer products on Amazon.
We are a participant in the Amazon Services LLC Associates Program, an affiliate program designed to provide a means for us to earn fees by linking to Amazon and affiliated sites.
Top