F-Secure Flashback Removal Tool finding false positive within Firefox on Mac OS Sierra?
Just updated Firefox on Mac OS Sierra 10.12.6 and I used the 2012 F-Secure Flashback Removal Tool v1.0.2 applescript app and got the message that I was infected.
I suspect this is a false-positive so I didn't opt to remove it and aborted the script. I dragged Firefox into ClamXav and it said it was clean and same with Malwarebytes system scan.
Is the Flashback Removal Tool now defunct and showing a false-positives or should I be concerned that there's a new variant of Flashback that's bypassing Apple's security updates, ClamXav, Malwarebytes, etc.?
The log shows this:
Mon Jun 4 11:28:14 MDT 2018 ------- Scanonly mode 2018-06-04 11:28:16.045 defaults[86329:2151689] The domain/default pair of (/tmp/RemoveFlashback.86271, DYLD_INSERT_LIBRARIES) does not exist Found DYLD_INSERT_LIBRARIES in /Applications/Firefox.app/Contents/Info.plist LSEnvironment: