There's no worm in your Apple - honest
Published: 01 Nov 2004 17:09 GMT
Apple has denied that the malicious code dubbed 'Opener' is a worm, a Trojan or a virus of any kind.
Discovered a week ago, the Opener program – originally called Renepo - has the ability to disable the firewall in Mac OS X and steal user information. Security experts declared last week that it is almost unheard of for malware to target Apple computers, but said that this could be the start of a spate of attacks to come.
In an emailed statement from a PR company that represents Apple, a spokeswoman said:
"Apple has just released the following statement and will not comment beyond this: 'Opener is not a virus, Trojan horse, or worm. It does not propagate itself across a network, through email, or over the Web. Opener can only be installed by someone who already has access to your system and provides proper administrator authentication. Apple advises users to only install software from vendors and Web sites that they know and trust.'"
But antivirus experts beg to differ, saying that while the program is not an immediate threat, it is a worm because it attempts to copy itself, is therefore a virus as well.
Antivirus company Sophos said: "Renepo is a worm, and since a worm is just a special type of virus - one which neither requires nor uses an existing host file as a carrier - it is a virus."
"I know there has been a lot of debate about this," said Graham Cluley, senior technology consultant for Sophos. "We class it as a worm. It's not going to spread very fast, but it does try to copy itself from Apple Mac drive to Apple Mac drive, and that still makes it a worm. If you saw something similar in the PC world, you would call it a worm."
Symantec declared that Mac owners were protected if they had kept their antivirus software up to date.
Additional reporting by Munir Kotadia
Full Talkback thread
20 comments
-
"Blighting" - one person has this malware installe... Anonymous -
"Apple Macintosh has denied that the malicious cod... Anonymous -
If opener was PC malware, it would be classified a... Anonymous -
You are of course right about the erroneous Macint... Matt Loney -
If someone can sit down on your machine to install... jbelkin -
No worries with Opener.
But the worst thing t... Anonymous -
It does not make sense to pay for and us... Dave Carmean -
So by Sophos' standards, if I try t... Graham Cluley -
Yes. It is just a batch file.... nonono -
Opener is just a script that must... Anonymous -
Thank's to the complete lack o... D W -
The Anti-virus vendors classify it as a virus.
I'm... Anonymous -
Antivirus company Sophos said: "Renepo is a worm,... Anonymous -
If this is a virus, it's like the joke goes w... Terry Wilson -
Facts:-
My apple doesn't get hammered wi... seanthemac -
Well since Sophos representatives are already on r... no_thanks_sophos -
Some versions of Opener are worms, all are spyware... Ptitboul -
"Symantec declared that Mac owners were protected... Walter Medea -
Bullshit! just a buch of jerks try to beat the dru... Anonymous -
grsisoft symantec and webroot are the big men now Anonymous






