How to find and remove a Trojan:Win32/Ramnit from an iMac?
I have an office with 6 iMacs and Macbook pros in the UK. We have an BT ASDL router and have broadband with BT. We have one PC laptop on the network, but this was not switched on on the date listed below.
As of today we have been blocked from sending e-mails by Spamhaus.org, who have blacklisted our IP address. On their website they have recorded a CBL advisor that begins:
IP Address 86.167.155.48 is listed in the CBL. It appears to be infected with a spam sending trojan, proxy or some other form of botnet.
It was last detected at 2012-12-07 07:00 GMT (+/- 30 minutes), approximately 5 days, 7 hours, 59 minutes ago.
This IP is infected with, or is NATting for a machine infected withTrojan:Win32/Ramnit(Microsoft)...
We do not have any form of Antivirus on our machines or Mackeeper etc. Before I start checking each Mac I wanted to check if it is possible to get this type of Virus on a Mac, or is it possible that someone has broken into our wireless network and is spamming from it?
If it is more likely that one of the Macs has been infected, any tips on finding out which one and how I go about removing the trojan?
Any help would be much appreciated.
iMac, Mac OS X (10.6.8)