Files in /private/var/db/uuidtext/dsc reported infected

Hello,


After an Avast analyze, some files in /private/var/db/uuidtext/dsc are reported infected with this message "ELF:MiraiDowloader-OG(Drp)". Is this a true threat or a false positive ?


Thanks for your help,

Prototypes


MacBook Pro

Posted on Nov 12, 2022 4:04 PM

Reply
Question marked as Top-ranking reply

Posted on Nov 12, 2022 4:57 PM

False positive. You do not need a third-party anti-virus tool built by people that did not build macOS and its read-only System partition and built-in security features. That /private/var location is on a read-only partition that even you do not have write permission into, so nothing got installed. Avast is pulling your leg as it has for so many others over the years.


Remove Avast using its vendor's full removal process, and let macOS take care of itself. You won't need to worry about false positives again, and the operating system and other applications will operate as intended.

1 reply
Question marked as Top-ranking reply

Nov 12, 2022 4:57 PM in response to Prototypes

False positive. You do not need a third-party anti-virus tool built by people that did not build macOS and its read-only System partition and built-in security features. That /private/var location is on a read-only partition that even you do not have write permission into, so nothing got installed. Avast is pulling your leg as it has for so many others over the years.


Remove Avast using its vendor's full removal process, and let macOS take care of itself. You won't need to worry about false positives again, and the operating system and other applications will operate as intended.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Files in /private/var/db/uuidtext/dsc reported infected

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.