Raid on Russian Firm May Have Taken Down MacDefender Malware

MacDefender was the most significant malware attack on the Mac in years, if ever. The threat started in May, infecting many less-savvy Mac users, and had become widespread enough that Apple was forced to release a special anti-malware security fix. The software would be downloaded when users visited certain websites and, once installed, looked to be legitimate anti-virus software. Unsuspecting users would get warnings of viruses infecting their system. By entering their credit card number, users could pay to "remove" the viruses.

Except it was all fake. There were no viruses, just a piece of software trying to trick users into handing over their credit card numbers.

macdefender dialog box
The hidden developer behind MacDefender continued to release new variants of the malware into the wild, resulting in a cat-and-mouse game as Apple continued to ban new variants of the software.

Then, one day, MacDefender simply disappeared. Richard Gaywood, at TUAW, pointed out that Apple hadn't updated its malware definitions -- the code designed to kill MacDefender -- since June 18.

Brian Krebs might have the answer:

On June 23, Russian police arrested Pavel Vrublevsky, the co-founder of Russian online payment giant ChronoPay and a major player in the fake AV market.

[...]

In May, I wrote about evidence showing that ChronoPay employees were involved in pushing MacDefender — fake AV software targeting Mac users. ChronoPay later issued a statement denying it had any involvement in the MacDefender scourge.

But last week, Russian cops who raided ChronoPay’s offices in Moscow found otherwise. According to a source who was involved in the raid, police found mountains of evidence that ChronoPay employees were running technical and customer support for a variety of fake AV programs, including MacDefender.

The last release of MacDefender occurred on June 18. ChronoPay's offices are raided June 23. A coincidence perhaps, or Russian law enforcement saving Mac users from fake antivirus software.

Popular Stories

iPhone 17 Pro Blue Feature Tighter Crop

iPhone 17 Pro Launching Later This Year With These 12 New Features

Tuesday May 27, 2025 9:10 am PDT by
While the iPhone 17 Pro and iPhone 17 Pro Max are not expected to launch until September, there are already plenty of rumors about the devices. Below, we recap key changes rumored for the iPhone 17 Pro models as of May 2025: Aluminum frame: iPhone 17 Pro models are rumored to have an aluminum frame, whereas the iPhone 15 Pro and iPhone 16 Pro models have a titanium frame, and the iPhone X ...
maxresdefault

No iOS 19: Apple Going Straight to iOS 26

Wednesday May 28, 2025 11:56 am PDT by
With the design overhaul that's coming this year, Apple plans to rename all of its operating systems, reports Bloomberg. Going forward, iOS, iPadOS, macOS, tvOS, watchOS, and visionOS will be identified by year, rather than by version number. We're not going to be getting iOS 19, we're getting iOS 26. Subscribe to the MacRumors YouTube channel for more videos. iOS 26 will be accompanied by...
iPhone Top Left Hole Punch Face ID Feature 2

Apple Rumored to Redesign the iPhone Every Year Through to 2027

Tuesday May 27, 2025 5:17 am PDT by
Apple is reportedly preparing to implement significant iPhone hardware redesigns each year for the next three generations. According leaks from the Chinese supply chain disclosed by Weibo user "Digital Chat Station," Apple plans to carry out a series of phased industrial design changes affecting different parts of the iPhone across three consecutive years: 2025, 2026, and 2027. The changes...
Generic iPhone 17 Feature With Full Width Dynamic Island

iPhone 17 Display Sizes: What to Expect

Thursday May 29, 2025 11:38 am PDT by
Apple's iPhone 17 lineup will include four iPhones, and two of those are going to get all-new display sizes. There's the iPhone 17 Air, which we've heard about several times, but the standard iPhone 17 is also going to have a different display size. We've heard a bit about the updated size before, but with most rumors focusing on the iPhone 17 Air, it's easy to forget. Display analyst Ross...
Whatsapp Feature

WhatsApp Teases Long-Awaited iPad App

Monday May 26, 2025 10:23 am PDT by
The popular messaging app WhatsApp has teased a long-awaited iPad app, which would be offered alongside its existing iPhone and Mac apps. The official WhatsApp account on X today reacted with an eyes emoji to a post saying that WhatsApp should release an iPad app. This could be a hint that Meta is gearing up to release WhatsApp for iPad, which has already been available for beta testing via...
WWDC 2025 Banner

WWDC is Just Two Weeks Away: Here Are the Biggest iOS 19 Rumors

Monday May 26, 2025 8:12 am PDT by
WWDC 2025 is just two weeks away as of today, with Apple's opening keynote scheduled for Monday, June 9 at 10 a.m. Pacific Time. During the keynote, Apple is expected to announce iOS 19, iPadOS 19, macOS 16, watchOS 12, tvOS 19, visionOS 3, and other software updates, along with new Apple Intelligence features. In some years, there are also hardware announcements at WWDC, but there are no...
macOS 26 visionOS Inspired Feature

macOS 26 Rumored to Drop Support for These Five Macs

Thursday May 29, 2025 5:31 am PDT by
The next major version of macOS, now dubbed "macOS 26," is rumored to drop support for several older Intel-based Mac models currently compatible with macOS Sequoia. According to individuals familiar with the matter cited by AppleInsider, the following Macs will not be supported by the next version of macOS: MacBook Pro (2018) iMac (2019) iMac Pro (2017) Mac mini (2018) MacB...
Emergency SOS via Satellite iPhone YT

Report: Apple Planned to Offer Starlink-Like Home Internet Service

Tuesday May 27, 2025 7:08 am PDT by
Apple had plans to offer a Starlink-like satellite home internet service in collaboration with Boeing, The Information reports. Starting in 2015, Apple held discussions with Boeing about "Project Eagle," a plan to launch a service to provide wireless internet services to iPhones and homes. The companies would have launched thousands of satellites into orbit around the Earth to beam internet...

Top Rated Comments

8ate8 Avatar
180 months ago
In Soviet Russia, anti-virus software....

No, I'm not gonna go there...
Score: 15 Votes (Like | Disagree)
MacRohde Avatar
180 months ago


Maybe I'm being too harsh, but anyone that falls for the old "YOU HAVE VIRUSES!!! Give us your credit card number and we'll get rid of them!" trick deserves what they get.

Yeah, you are absolutely being too harsh.

Just because you are a bit trustworthy and/or naive - or just very new to the world of computers - does not mean you "deserve what you get".
Score: 14 Votes (Like | Disagree)
GenesisST Avatar
180 months ago
Thank god Vladimir Poutine was infected unless this would have never happened :p

Now I'm hungry...

Poutine: http://en.wikipedia.org/wiki/Poutine
Putin: http://en.wikipedia.org/wiki/Vladimir_Putin
Score: 11 Votes (Like | Disagree)
D 5 Avatar
180 months ago
It was Apple's screte service i tell you :D
Score: 10 Votes (Like | Disagree)
Tom8 Avatar
180 months ago


In Soviet Russia, anti-virus software....

No, I'm not gonna go there...

In Soviet Russia, malware...oh screw it, I'm just happy to see them arrested.

I'll do it for you two


In Soviet Russia, anti-virus software infects you!
Score: 9 Votes (Like | Disagree)
Ryth Avatar
180 months ago
THROW AWAY THE KEY... or shoot them.

Siberia baby!
Score: 8 Votes (Like | Disagree)