flash player malware

I'm getting a pop up in my dock...bright red flash player..

somehow i think i clicked an flash player update that was fake and now when i use preview it sometimes appears and then goes away...it's ike warning me i have this malware...


what can i do to remove it..


i tried uninstalling flash player ..but it is back

iMac (21.5-inch Mid 2011), iOS 5.1

Posted on Nov 19, 2016 9:57 AM

Reply
8 replies

Nov 19, 2016 10:13 AM in response to stedman1

EtreCheck version: 3.1.3 (337)

Report generated 2016-11-19 13:12:32

Download EtreCheck from https://etrecheck.com

Runtime 2:35

Performance: Excellent


Click the [Support] links for help with non-Apple products.

Click the [Details] links for more information about that line.

Click the [Remove] links to remove adware.


Problem: Other problem

Description:

flash player malware


Hardware Information:

iMac (21.5-inch, Mid 2011)

[Technical Specifications] - [User Guide] - [Warranty & Service]

iMac - model: iMac12,1

1 2.5 GHz Intel Core i5 (i5-2400S) CPU: 4-core

4 GB RAM Upgradeable - [Instructions]

BANK 0/DIMM0

2 GB DDR3 1333 MHz ok

BANK 1/DIMM0

2 GB DDR3 1333 MHz ok

BANK 0/DIMM1

Empty

BANK 1/DIMM1

Empty

Bluetooth: Old - Handoff/Airdrop2 not supported

Wireless: en1: 802.11 a/b/g/n


Video Information:

AMD Radeon HD 6750M - VRAM: 512 MB

iMac 1920 x 1080


System Software:

OS X El Capitan 10.11.6 (15G1108) - Time since boot: about one hour


Disk Information:

WDC WD5000AAKS-402AA0 disk0 : (500.11 GB) (Rotational)

[Show SMART report]

EFI (disk0s1) <not mounted> : 210 MB

Macintosh HD (disk0s2) / [Startup]: 499.25 GB (43.18 GB free)

Recovery HD (disk0s3) <not mounted> [Recovery]: 650 MB


OPTIARC DVD RW AD-5690H ()


USB Information:

Apple Inc. FaceTime HD Camera (Built-in)

Apple Inc. BRCM2046 Hub

Apple Inc. Bluetooth USB Host Controller

Apple Computer, Inc. IR Receiver

Apple Card Reader


Thunderbolt Information:

Apple Inc. thunderbolt_bus


Gatekeeper:

Mac App Store and identified developers


Adware:

~/Library/LaunchAgents/com.applicationstats.AppStats.plist

~/Library/LaunchAgents/com.bittorrent.uTorrent.plist

2 adware files found. [Remove]


Unknown Files:

~/Library/LaunchAgents/com.appart.AppArt.plist

~/Library/Application Support/AppPolicy/AppArt -i -c 808263 -isn 1216CD10-6326-433A-A828-B193AB6A340C

~/Library/LaunchAgents/com.mediageer.agent.update.plist

~/Library/Application Support/mediageer/mediageer.app/Contents/MacOS/Installer -evnt agnt -oprID 80801206|00290|1000019|0|0|1|0|000000000|14112016|04015303|ODE=|UGxheVNlYXJjaE5 vdw==|Q0E=|Q2FuYWRh|R29vZ2xl -dBrowser Safari

2 unknown files found. [Check files]


System Launch Agents:

[not loaded] 8 Apple tasks

[loaded] 156 Apple tasks

[running] 75 Apple tasks


System Launch Daemons:

[not loaded] 47 Apple tasks

[loaded] 155 Apple tasks

[running] 89 Apple tasks


Launch Agents:

[failed] com.adobe.ARMDCHelper.cc24aef4a1b90ed56a725c38014c95072f92651fb65e1bf9c8e43c37a2 3d420d.plist (2016-10-11) [Support]


Launch Daemons:

[loaded] com.adobe.ARMDC.Communicator.plist (2016-10-11) [Support]

[loaded] com.adobe.ARMDC.SMJobBlessHelper.plist (2016-10-11) [Support]

[loaded] com.adobe.fpsaud.plist (2016-10-25) [Support]

[loaded] com.apple.installer.osmessagetracing.plist (2016-09-26)


User Launch Agents:

[failed] com.adobe.ARM.[...].plist (2014-06-25) [Support] - /Applications/Adobe Reader.app/Contents/MacOS/Updater/Adobe Reader Updater Helper.app/Contents/MacOS/Adobe Reader Updater Helper: Executable not found!

[running] com.appart.AppArt.plist (2016-09-06) [Support]

[not loaded] com.apple.AddressBook.ScheduledSync.PHXCardDAVSource.D2CFE4E1-7947-45DB-BABB-38D AB1D86287.plist (2016-09-04)

[not loaded] com.apple.CSConfigDotMacCert-[...]@me.com-SharedServices.Agent.plist (2011-10-22) - /System/Library/Frameworks/CoreServices.framework/Frameworks/OSServices.framewo rk/Versions/A/Support/CSConfigDotMacCert: Executable not found!

[running] com.applicationstats.AppStats.plist (2016-08-24) Adware! [Remove]

~/Library/Application Support/Spigot/AppStats

[loaded] com.bittorrent.uTorrent.plist (2016-03-12) Adware! [Remove]

/usr/bin/open

[loaded] com.google.keystone.agent.plist (2016-08-24) [Support]

[loaded] com.mediageer.agent.update.plist (2016-11-19) [Support]


User Login Items:

Photo Stream URL SMLoginItem (2015-03-22)

(/Applications/iPhoto.app/Contents/Library/LoginItems/PhotoStreamAgent.app)


Internet Plug-ins:

FlashPlayer-10.6: 23.0.0.207 - SDK 10.9 (2016-11-17) [Support]

QuickTime Plugin: 7.7.3 (2016-10-25)

AdobePDFViewerNPAPI: 15.020.20042 - SDK 10.11 (2016-11-03) [Support]

AdobePDFViewer: 15.020.20042 - SDK 10.11 (2016-11-03) [Support]

Flash Player: 23.0.0.207 - SDK 10.9 (2016-11-17) [Support]

Default Browser: 601 - SDK 10.11 (2016-09-04)

RL Secure Plug-In Layer: Unknown - SDK 10.5 (2014-04-20) [Support]

iPhotoPhotocast: 7.0 (2012-02-20)


User internet Plug-ins:

Google Earth Web Plug-in: 7.1 (2013-10-07) [Support]


3rd Party Preference Panes:

Flash Player (2016-10-25) [Support]


Time Machine:

Time Machine not configured!


Top Processes by CPU:

3% sysmond

2% WindowServer

2% kernel_task

1% fontd

0% askpermissiond


Top Processes by Memory:

502 MB kernel_task

451 MB softwareupdated

389 MB Google Chrome Helper(2)

254 MB com.apple.WebKit.WebContent

184 MB Google Chrome


Virtual Memory Information:

1.10 GB Available RAM

44 MB Free RAM

2.90 GB Used RAM

1.06 GB Cached files

0 B Swap Used


Diagnostics Information:

Nov 19, 2016, 11:52:27 AM Self test - passed

Nov 18, 2016, 11:32:26 PM /Library/Logs/DiagnosticReports/firefox_2016-11-18-233226_[redacted].cpu_resour ce.diag [Details]

/Applications/Firefox.app/Contents/MacOS/firefox

Nov 18, 2016, 01:44:07 PM /Library/Logs/DiagnosticReports/firefox_2016-11-18-134407_[redacted].cpu_resour ce.diag [Details]

Nov 16, 2016, 02:33:43 PM /Library/Logs/DiagnosticReports/firefox_2016-11-16-143343_[redacted].cpu_resour ce.diag [Details]

Nov 19, 2016 10:34 AM in response to FunBoo

FunBoo wrote:


as i said did another malware only in other section ...came up blank. so i want to thank you again...and if you could suggest anything to put in there...besides malware ...would trojans cover the same?

I am confused by your question here???? And by the fact that you appear to be replying to yourself. If you are asking about selecting the reason for running EtreCheck, it doesn't really matter which you select. It merely provides a suitable title for the report when posted here.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

flash player malware

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.