SERVICE ANNOUNCEMENT

Piracy Ransomware

Event Description:

New ransomware and spyware called OSX.ThiefQuest is active in the wild.

Details You Need To Know:

ThiefQuest is being distributed on torrent sites by being bundled with software like the security application Little Snitch, DJ software Mixed In Key, and music production platform Ableton.

This ransomware encrypts computer files, installs a keylogger, a reverse shell, steals cryptocurrency related files, and potentially gives the attacker full access to the infected machine.

Recommended Actions:

In addition to using properly licensed software on all your computers, we strongly advise maintaining a comprehensive backup strategy and to keep your antivirus software up to date.

Call us at (203) 874-1468 to discuss how we can help you keep your Mac safe and secure.

Posted By: Jason Goldfarb

Senior Consultant: ACTC, MTC, CWTS, GCA
Specialist: Mac OSX | Security | Networking | Mobility

Questions/Contact

References:

https://blog.malwarebytes.com/mac/2020/06/new-mac-ransomware-spreading-through-piracy/
https://www.wired.com/story/new-mac-ransomware-thiefquest-evilquest/
https://www.zdnet.com/article/new-evilquest-ransomware-discovered-targeting-macos-users/
https://www.securityweek.com/thiefquest-mac-malware-includes-ransomware-data-theft-capabilities
https://www.bleepingcomputer.com/news/security/thiefquest-ransomware-is-a-file-stealing-mac-wiper-in-disguise/