How to Manually Remove the Flashback Trojan Virus
Run the following command in Terminal:defaults read /Applications/Safari.app/Contents/Info LSEnvironment. , Take note of the value, DYLD_INSERT_LIBRARIES. , Proceed to Step 8 if you get the following error message: "The domain/default pair of...
Step-by-Step Guide
-
Step 1: Run the following command in Terminal:defaults read /Applications/Safari.app/Contents/Info LSEnvironment.
Your system is already clean of this variant if you get an error message similar to the following: "The domain/default pair of (/Users/joe/.MacOSX/environment, DYLD_INSERT_LIBRARIES) does not exist". ,,,,, And use it for daily purpose like checking emails and surfing internet (the account that is generally created by default and you use has admin rights). -
Step 2: Take note of the value
It is recommended to use Google Chrome as it got a sandboxing plus and it also comes with a sandboxed flash player of its own. ,, Note:
As you have default Google Chrome you no longer need the default flash player as Chrome comes with the updated flash player. , Apple does not regularly update Java
- it generally does after months since the release of it, and it's not possible to manually update it on Mac.
So if you don’t want to uninstall it because you use some java web applets, it is recommended that you at least disable it from Safari browser. ,, And update and run the antivirus from time to time. , It is a firewall program that shows you which application is trying to use the network and offers you to allow or block that application to connect to network. -
Step 3: DYLD_INSERT_LIBRARIES.
-
Step 4: Proceed to Step 8 if you get the following error message: "The domain/default pair of (/Applications/Safari.app/Contents/Info
-
Step 5: LSEnvironment) does not exist".
-
Step 6: Otherwise
-
Step 7: run the following command in Terminal:grep -a -o ‘__ldpath__*’ %path_obtained_in_step2%.
-
Step 8: Take note of the value after “__ldpath__”.
-
Step 9: Run the following commands in Terminal (first make sure there is only one entry
-
Step 10: from Step 2):sudo defaults delete /Applications/Safari.app/Contents/Info LSEnvironmentsudo chmod 644 /Applications/Safari.app/Contents/Info.plist.
-
Step 11: Delete the files obtained in Steps 2 and 5.
-
Step 12: Run the following command in Terminal:defaults read ~/.MacOSX/environment DYLD_INSERT_LIBRARIES.
-
Step 13: Take note of the result.
-
Step 14: Otherwise
-
Step 15: run the following command in Terminal:grep -a -o ‘__ldpath__*’ %path_obtained_in_step9%.
-
Step 16: Take note of the value after “__ldpath__”.
-
Step 17: Run the following commands in Terminal:defaults delete ~/.MacOSX/environment DYLD_INSERT_LIBRARIESlaunchctl unsetenv DYLD_INSERT_LIBRARIES.
-
Step 18: Finally
-
Step 19: delete the files obtained in Steps 9 and 11.
-
Step 20: Create a non admin account in your Mac.
-
Step 21: Download and use a secure browser.
-
Step 22: After you have downloaded and installed the new browser don't forget to make it your default browser.
-
Step 23: Uninstall or update the default flash player (Apple does not update the flash player regularly).
-
Step 24: Uninstall/Disable Java.
-
Step 25: Update your Mac software on a regular basis
-
Step 26: it won't cost you a dime but will save you from known vulnerabilities.
-
Step 27: Install a good antivirus for Mac.
-
Step 28: Install the Little Snitch.
Detailed Guide
Your system is already clean of this variant if you get an error message similar to the following: "The domain/default pair of (/Users/joe/.MacOSX/environment, DYLD_INSERT_LIBRARIES) does not exist". ,,,,, And use it for daily purpose like checking emails and surfing internet (the account that is generally created by default and you use has admin rights).
It is recommended to use Google Chrome as it got a sandboxing plus and it also comes with a sandboxed flash player of its own. ,, Note:
As you have default Google Chrome you no longer need the default flash player as Chrome comes with the updated flash player. , Apple does not regularly update Java
- it generally does after months since the release of it, and it's not possible to manually update it on Mac.
So if you don’t want to uninstall it because you use some java web applets, it is recommended that you at least disable it from Safari browser. ,, And update and run the antivirus from time to time. , It is a firewall program that shows you which application is trying to use the network and offers you to allow or block that application to connect to network.
About the Author
Anna James
A passionate writer with expertise in practical skills topics. Loves sharing practical knowledge.
Rate This Guide
How helpful was this guide? Click to rate: