There are checks one can perform to see
1: If any of their machines have been seen on the Flashback botnet
2: Terminal commands to see if their machine is infected (use copy and paste, then press enter)
3: Preventative methods to avoid becoming infected.
Update Java via Software Update.
Check your status of all browser plug-ins
Firefox + NoScript add-on + Temp Allow All Button on Firefox's toolbar to turn on scripts only on sites you trust.
Learn how to make bootable clones, this way a complete erase can occur and a reverse clone done.
4: Resources if one is infected
Data Recovery, wiping entire machine, reinstalling OS X, returning clean files, etc.
I downloaded and now have run your malware checker, and it asks me if I want to Delete or Keep a file::
Delete file 'com.apple.CSConfigDotMacCert-mynamehere(AT symbol here)me.comSharedServices.Agent.plist' that runs program '/System/Library/Frameworks/CoreServices.framework/Versions/A/Support/CSConfigD otMacCert'?
The first time I ran the checker and just chose Keep. It then asked a similar question and I chose Keep again. Then it checked programs, etc. I rebooted and ran it again, and go the same message. This time, I just did not answer and the script time ran out.
What does this mean? Do I have malware??
Should I delete the file?
How do I proceed?
Sorry, I couldn't get back sooner.
etresoft, Thank you for your posts and your malware checker, it was helpful. I just didn't understand the message the malware checker was giving me about two files. I just ignored it and tried another malware checker as well.
Kapersky posted one, too.
there is a flashback checker/remover posted there.