Flashback infections not declining: discoverersApril 23 - 3pm
The Russian web security firm that initially drew attention to the troublesome Mac trojan known as Flashback says reports that infections are dropping are incorrect.
The trojan was revealed to be installed on around 600,000 Mac computers at the beginning of this month, forming a large botnet that many have called the worst the Mac platform has ever seen.
However, according to Russian company Dr Web the number is still around 650,000.
The reason for the discrepancy is that a server with which the bots communicate is not closing the TCP handshake after the communication has ended. This causes the bots to switch to standby mode and cease communicating with other command centres, including those registered by the security vendors.
“At the same time infected computers that have not been registered on the [Flashback] network before join the botnet every day’, Dr Web says in a blog post.