Thanks @JMF21, mine too appeared about then, as I noticed that I wasn't able to access the internet on my MacBook Pro.
The giveaway is that I use "google" for my search (default) and when the virus is active, the search results appear from "yahoo"
Deleted a few folders, application and am able to "temporarily" access to the internet.
- Looked for the latest install in /Applications folder, which was "openApplication", and deleted it
- Using Finder, search for "open application". I found a bunch of folders (having "open application" at the end, under my "home-directory" (where below, '~' => home-directory). I merrily deleted them
- ~/Library/Scripts/*openapplication*
- ~/Library/Containers/*openapplication*
- ~/Library/Group\ Containers/*openapplication*
Also browed through Safari preferences, like "Extensions" etc for untoward edits.
Check if you are able to regain access to the internet
After a day, the virus had morphed into a new name, "openApplication" => "WindoMode", and apparently installs itself?
When asked to confirm that installation is complete (you have no control of the mouse), I did a "Force exit".(Command+Option+Esc") and exited the hanging application.
Sent the Error Report to Apple, to see if they can identify any security holes.
Went through the above clean-up steps once again and am using my Mac now to respond.
Still monitoring and will explore other suggestions