How to remove Application.MAC.InstallMiez.BPY & Adware.MAC.Generic.9529

Hello Everyone 🙂


I hope that you can help me. I haven't traditionally used any virus protection because I thought Macs were a bit safer than PCs. I have learned my lesson with having weknow.ac on my chrome, and I can't get it to go away.


I've searched/deleted as many files as I can, although these 2 (Application.MAC.InstallMiez.BPY & Adware.MAC.Generic.9529) are still somewhere on my Mac.


Can anyone tell me the Go directions to Find what I the files I need to delete?


Thank you very much for your help!!

Bryan


P.S. What is the best and most affordable virus protection available for Macs?

MacBook Air, iOS 10.1

Posted on Nov 28, 2018 9:20 AM

Reply
Question marked as Top-ranking reply

Posted on Nov 28, 2018 9:24 AM

You don't need any AV protection as Macs do not get "viruses". They are selling a cure for a disease that doesn't exist. Macs can get other forms of malware/adware as you've found out. Usually from downloading third party software that contains the malware within the installer.

Download and run Malwarebytes. Malwarebytes was developed by one of our own colleagues here in ASC and is about the most proven anti-malware software for Mac. There is a free version.

19 replies

Nov 29, 2018 7:23 AM in response to macjack

Thank you very much for your help! I still see the malware on my Chrome, although when I delete the other search engines and just keep google.com on there it seems to be ok. But, if I close the app and/or restart my mac the malware is still effecting Chrome.


Here is the report from Etrecheck, thanks again for your help!


EtreCheck version:5.0.3 (5018)

Report generated:2018-11-29 16:19:00

Download EtreCheck from https://etrecheck.com

Runtime:3:33

Performance:Good

Sandbox:Enabled

Full drive access:Disabled

Problem:Other problem

Description:

How to remove Application.MAC.InstallMiez.BPY & Adware.MAC.Generic.9529

Major Issues:

Anything that appears on this list needs immediate attention.

More than one antivirus app- This machine has multiple antivirus apps installed.

Minor Issues:

These issues do not need immediate attention but they may indicate future problems.

Clean up- There are orphan files that could be removed.

Unsigned files- There are unsigned software files installed. They appear to be legitimate but should be reviewed.

32-bit Apps- This machine has 32-bits apps that may have problems in the future.

Limited drive access- More information may be available with Full Drive Access.

Hardware Information:

MacBook Air (13-inch, Early 2015)

MacBook Air Model: MacBookAir7,2

1 2.2 GHz Intel Core i7 (i7-5650U) CPU: 2-core

8 GB RAM -Not upgradeable

BANK 0/DIMM0 - 4 GB DDR3 1600 ok

BANK 1/DIMM0 - 4 GB DDR3 1600 ok

Battery: Health = Normal - Cycle count = 100

Video Information:

Intel HD Graphics 6000 - VRAM: 1536 MB

Color LCD 1440 x 900

Drives:

disk0 - APPLE SSD SM0512G 500.28 GB (Solid State - TRIM: Yes)

Internal PCI 5.0 GT/s x4 Serial ATA

disk0s1 - EFI (MS-DOS FAT32) [EFI] 210 MB

disk0s2 [APFS Container] 500.07 GB

disk1 [APFS Virtual drive] 500.07 GB (Shared by 4 volumes)

disk1s1 - Macintosh HD (APFS) (Shared - 208.42 GB used)

disk1s2 - Preboot (APFS) [APFS Preboot] (Shared)

disk1s3 - Recovery (APFS) [Recovery] (Shared)

disk1s4 - VM (APFS) [APFS VM] (Shared - 3.22 GB used)

Mounted Volumes:

disk1s1 - Macintosh HD 500.07 GB (287.73 GB free)

APFS

Mount point: /

Encrypted


disk1s4 - VM [APFS VM] (Shared - 3.22 GB used)

APFS

Mount point: /private/var/vm

Network:

Interface en3: iPhone

Interface en0: Wi-Fi

802.11 a/b/g/n/ac

Interface en2: Bluetooth PAN

Interface bridge0: Thunderbolt Bridge

System Software:

macOS High Sierra 10.13.6 (17G3025)

Time since boot: About 16 hours

Security:

SystemStatus
GatekeeperEnabled
System Integrity ProtectionEnabled

Unsigned Files:

Launchd: /Library/LaunchDaemons/com.avast.init.plist

Executable: /Applications/Avast.app/Contents/Backend/hub/init.sh

Details: Exact match found in the whitelist - probably OK

Launchd: ~/Library/LaunchAgents/com.google.keystone.agent.plist

Executable: ~/Library/Google/GoogleSoftwareUpdate/GoogleSoftwareUpdate.bundle/Contents/Reso urces/GoogleSoftwareUpdateAgent.app/Contents/MacOS/GoogleSoftwareUpdateAgent -runMode ifneeded

Details: Exact match found in the whitelist - probably OK

Launchd: /Library/LaunchDaemons/com.avast.uninstall.plist

Executable: /Library/Application Support/Avast/autouninstall/autouninstall.sh

Details: Exact match found in the whitelist - probably OK

Launchd: /Library/LaunchDaemons/com.avast.update.plist

Executable: /Applications/Avast.app/Contents/Backend/scripts/update/update.sh

Details: Exact match found in the whitelist - probably OK

Launchd: /Library/LaunchAgents/com.avast.userinit.plist

Executable: /Applications/Avast.app/Contents/Backend/hub/userinit.sh

Details: Exact match found in the whitelist - probably OK

32-bit Applications:

5 32-bit apps

Kernel Extensions:

/Applications/Avast.app

AvastFileShield.kext (AVAST Software a.s., 4.0.0 - SDK 10.12)

AvastPacketForwarder.kext (AVAST Software a.s., 2.1 - SDK 10.12)


/Library/Application Support/Malwarebytes/MBAM/Kext

MB_MBAM_Protection.kext (Malwarebytes Corporation, 3.5 - SDK 10.13)

System Launch Agents:

[Not Loaded]16 Apple tasks
[Loaded]164 Apple tasks
[Running]114 Apple tasks

System Launch Daemons:

[Not Loaded]38 Apple tasks
[Loaded]180 Apple tasks
[Running]117 Apple tasks

Launch Agents:

[Running]com.epson.scannermonitor.plist (Seiko Epson Corporation - installed 2018-02-21)
[Loaded]com.avast.userinit.plist (? 4b9d47d7 - installed 2018-11-27)
[Loaded]com.epson.esua.launcher.plist (Seiko Epson Corporation - installed 2018-08-02)
[Other]com.adobe.ARMDCHelper.cc24aef4a1b90ed56a725c38014c95072f92651fb65e1bf9c8e43c37a2 3d420d.plist (Adobe Systems, Inc. - installed 2018-07-30)
[Running]com.malwarebytes.mbam.frontend.agent.plist (Malwarebytes Corporation - installed 2018-11-09)
[Running]com.epson.Epson_Low_Ink_Reminder.launcher.plist (Seiko Epson Corporation - installed 2018-02-07)
[Running]com.epson.eventmanager.agent.plist (Seiko Epson Corporation - installed 2018-02-22)
[Running]com.epson.ecrp.launcher.plist (Seiko Epson Corporation - installed 2018-08-02)

Launch Daemons:

[Running]com.malwarebytes.mbam.rtprotection.daemon.plist (Malwarebytes Corporation - installed 2018-11-28)
[Running]com.malwarebytes.mbam.settings.daemon.plist (Malwarebytes Corporation - installed 2018-11-09)
[Loaded]com.adobe.ARMDC.Communicator.plist (Adobe Systems, Inc. - installed 2018-07-30)
[Loaded]com.avast.init.plist (? fe750b9b - installed 2018-11-27)
[Loaded]com.avast.update.plist (? f4a2548f - installed 2018-11-27)
[Loaded]com.apple.installer.osmessagetracing.plist (Apple - installed 2018-10-26)
[Loaded]com.avast.uninstall.plist (? 1d68eef4 - installed 2018-11-27)
[Loaded]com.adobe.ARMDC.SMJobBlessHelper.plist (Adobe Systems, Inc. - installed 2018-07-30)

User Launch Agents:

[Loaded]com.google.keystone.agent.plist (? 0 - installed 2018-10-06)

User Login Items:

iTunesHelper.app (Apple - installed 2018-08-03)

(/Applications/iTunes.app/Contents/MacOS/iTunesHelper.app)

Internet Plug-ins:

AdobePDFViewerNPAPI: 17.012.20098 (installed 2018-06-29)

QuickTime Plugin: 7.7.3 (installed 2018-11-22)

AdobePDFViewer: 18.011.20055 (installed 2018-06-29)

Time Machine:

Time Machine information not available without Full Drive Access.

Performance:

System Load: 1.79 (1 min ago) 1.70 (5 min ago) 1.68 (15 min ago)

Nominal I/O speed: 0.96 MB/s

File system: 106.57 seconds

Write speed: 1156 MB/s

Read speed: 1199 MB/s

CPU Usage:

TypeOverallIndividual cores
System7 %13 %3 %8 %3 %
User11 %17 %5 %15 %6 %
Idle83 %70 %92 %77 %91 %

Top Processes by CPU:

Process (count)SourceCPULocation
Other processes?38.76 %
FinderApple9.35 %
plugin-container (4)Mozilla Corporation5.77 %
Google ChromeGoogle, Inc.4.96 %
EtreCheckApp Store4.07 %

Top Processes by Memory:

Process (count)SourceRAM usageLocation
EtreCheckApp Store403 MB
plugin-container (4)Mozilla Corporation354 MB
firefoxMozilla Corporation293 MB
Google ChromeGoogle, Inc.103 MB
SafariApple64 MB

Top Processes by Network Use:

ProcessSourceInputOutputLocation
com.avast.proxyAVAST Software a.s.2 MB1 MB
mDNSResponderApple439 KB148 KB
apsdApple4 KB6 KB
netbiosdApple6 KB3 KB
RTProtectionDaemonMalwarebytes Corporation4 KB1 KB

Virtual Memory Information:

Available RAM1.48 GB
Free RAM176 MB
Used RAM6.52 GB
Cached files1.30 GB
Swap Used770 MB

Software Installs (past 30 days):

NameVersionInstall Date
Gatekeeper Configuration Data1562018-10-31
Safari12.0.12018-10-31
Pages7.02018-11-12
Numbers5.02018-11-12
WeChat2.3.202018-11-16
Zoolz2018-11-19
Security Update 2018-00210.13.62018-11-22
Avast Security13.112018-11-27
Malwarebytes for Mac2018-11-28
EtreCheck5.0.32018-11-29

Clean up:

/Applications/Avast.app/Contents/Backend/launch/com.avast.account-sync.plist

@AV_BASE_DIR/utils/com.avast.account-sync

Executable not found

Diagnostics Information (past 7 days):

Directory /Library/Logs/DiagnosticReports is not accessible without Full Drive Access.

End of report

Dec 2, 2018 6:26 AM in response to macjack

Hello!


Since it seems that the combo cleaner is the only solution, what is the long term effect if I can't afford to buy this right now? am i ok for a little while?


Do you know if they are the ones who put this on my computer, and now they are charging me to take it off? It was the only scanner that picked this up on my computer.


Thank you for all the help!

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

How to remove Application.MAC.InstallMiez.BPY & Adware.MAC.Generic.9529

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.