Monday May 08, 2017

HandBrake on Mac Malware from the Source

While this will likely not impact a tremendous amount of HardOCP readers, it is worthy of noting that if you have recently downloaded and installed HandBrake for Mac, directly from the HandBrake site, you might be at risk for having been infected with malware. Now, if you use a Mac, you are probably a risk for many other mental illness related afflictions, but you still need to be aware of this specific problem. Removal instructions are posted at the previous link as well. Worth noting is that primary download mirror and website were not affected and our friends at HandBrake have taken the tainted download mirror server offline and are completely rebuilding it, so your current downloads might be a bit slow....but that is probably something Mac users are used to anyway. And everything that is old, is new again too.

News Image

Anyone who has downloaded HandBrake on Mac between [02/May/2017 14:30 UTC] and [06/May/2017 11:00 UTC] needs to verify the SHA1 / 256 sum of the file before running it.

Anyone who has installed HandBrake for Mac needs to verify their system is not infected with a Trojan. You have 50/50 chance if you've downloaded HandBrake during this period.

If you see a process called "Activity_agent" in the OSX Activity Monitor application. You are infected.