Help

My Pictures Online: New System

Search This Blog

30 May 2011

_Lark_ is Ready

During a Skype session this evening, Linda & Brad advised us that they have completed the last of their major projects, and that _Lark_ is ready for their passage from Opua, NZ, to Tonga. The remain at anchor off town, awaiting a weather window.

Along the way, they hope to stop at Minerva Reef, which appears to be a "thin" spot in the middle of the Pacific, roughly 250 miles SW of Tonga:

23°38'23.62"S 178°54'53.64"W

Google Earth doesn't know it by name, but paste that position into G.E. to zoom into the center of this nearly complete circular reef.

Mark_
22:19 30 May 2011

28 May 2011

_Lark_ Update: Still in Opua, NZ.

Apparently things aren't going quite as Linda & Brad had expected. His visa was to have expired already--and hers, too, some time after his. Guess they have gotten extension(s).

Mark_
21:40 28 May 2011

25 May 2011

More MacMalware _Bad News_

I'm pretty disappointed to find that the black-hat hackers and my good & decent friends are still on the same side of the Rapture divide.  Worse, the criminals are getting "better" at their work:

"
New MacGuard malware variant gets slightly easier to install"

In this case, of course, "easy" is a bad thing.

The executive summary is that the necessity for the user to provide the system password has been removed; this means one fewer stopping points. Note that this is still not as bad as some of the worst stuff on Windows; one must still run the installer (or permit it to be run automatically by the browser that downloaded it--un-check that setting!) AND one must click at least one of the installer's buttons to complete the installation.

The notification about this new form of Mac Defender, now called "MacGuard" came from a security company that sells anti-malware software for Macintosh. I am not recommending that anyone purchase that product.

As before, I am recommending that we pay attention to what's happening on-screen (operating computers on auto or on insufficient sleep is not good), and then not worry too much. More information is @ LifeHacker.

(I am saving my own rapture for the next iPod iteration. I expect that rapture will not disappoint. )

Mark_

14:02 25 May 2011

21 May 2011

Gang targets users with Mac Defender

Recent attacks ("exploits") against Macintosh are still being discussed. The headline of this Guardian newspaper online article caught my eye.

Some of the comments below the article are interesting, too (although not everything said is helpful).

The advice to disable automatic file opening (i.e., of downloaded picture, program, or other such files) is probably useful. After years of not bothering, I have just done that on my machine. (Exchanging one minor nuisance for another.) Because the actual risk is fairly low, I may change back if having it off is too annoying.

Also, consider enabling _block pop-up windows_ in the Safari menu. Occasionally a legitimate web site may want to open a pop-up, but you'll be prompted if needed.

To make clear: For many years, Windows has been attacked by various kinds of nefarious stuff that arrived and acted without the user's knowing it. This is not like that. The Macintosh victim knows that something is up--perhaps not exactly what--and the exploit must be permitted at more than one point before it can do any actual damage.

Sadly, this situation could change; for now practice relaxed vigilance.


Sophos note: I installed it--and immediately uninstalled it (using their provided uninstaller); it is intended to be running at all times, in background, instead of a being run and quit as needed--an approach widely considered to be at least mildly bothersome if not actively bad. Note that once uninstalled it's completely gone--nothing remains on the hard drive; one cannot retain it in reserve just in case. Instead, retain their web site link for access to the latest version should trouble be suspected. Unlike other 'ware being discussed, this one is probably as real as everybody says it is; it's just that many of us don't like their particular approach to protection.

11 May 2011

Macintosh Malware

Dear Macintosh-using friends,


Historically, Macintosh has seemed to be less vulnerable to malware than Windows; this remains true, although perhaps very, very, slightly less true than in the past. (Note that this is about the OS [the operating system], not about the hardware; Windows running on an Apple computer is real Windows, with all that is implied.)


To help us sleep at night, however, we do pay attention to the issue, so that we can understand what's being said to us if the situation were to change, or so we'll know how to react if we were to see anything strange on our own machines.


This Lifehacker article on anti-malware measures contains useful information. I have (but seldom bother using) ClamXav, and I will download (but infrequently use) the other free one mentioned, Sophos. (Both linked from the article.) (Note that the Lifehacker article will remain available indefinitely, even if it should have changed its URL.)

Anti-malware works in two general ways:

1. Watching for and preventing suspect activity.
2. Searching for suspect code. Sometimes removal is an option.

- Number 2 depends upon actual examples, downloaded from the developer. If not recently updated, this system breaks down.

- Number 1 can interfere with legitimate activity; it's why such software--which must be in place and running at all times--can cause problems where none would have occurred otherwise. Keeping it current is fairly important as well. 

(To be clear: The worst of misbehavior by this type of anti-malware can seem virtually indistinguishable from actual malware, and this situation is apparently not so uncommon.)

A couple of other things are going on, too.

Some of the cheesier "entertainment" sites will cause pop-ups that contain warnings about how your machine has been found to be infected, and you should [download, purchase, whatever]. For years, Macintosh users laughed at these for their attempts to look like Windows system alerts. And we dismissed them without a thought.

Now, however, there is a new push by a company "offering" Macintosh anti-malware: MacKeeper. (The web site seems safe.) It uses somewhat similar scare tactics; several of our friends have reported alerts popping up while browsing the Web; I just saw it a couple of days ago.

This appears to be fairly legitimate software that has a positive review by one (and perhaps only one) accepted source. However, look down that review page for reader comments. (Not so good.) For two reasons, then, one might have to be desperate in the extreme to consider paying for this--especially considering that at least some of what it offers is out there without charge. (Ref. the Lifehacker piece.)

This is what I think I understand about what happens: 

• The user is prompted to download an installer, which does require your permission to complete. 
• The actual software will [appear to] scan the disk
• It claims to have found problems.
• It requests a credit-card number. 
• After a working CC# has been supplied it will [do whatever] and report the disk clean. There is question about whether what it reports having found was ever real.

Dealing with the the MacKeeper alert: 

This could change, but at present it seems to open its own browser window _and_ to pop up what looks like a system alert. It does seems perfectly safe to dismiss these and not look back. It also seems safe to download--and even to launch--the installer, so long as it is not permitted to perform the installation. (Delete the installer from the Downloads folder, or from wherever you are having downloads sent.)

Deleting the installed software itself:

May be more problematic. 
• Quit, Trash, and Empty the software (probably in /Applications). (_Empty Trash_ may fail.)
• Open System Preferences > Accounts > Login Items. (These are applications and background processes that will be launched every time Macintosh starts. Some is esoteric and shouldn't be touched, and some is safe to remove/add as you desire. It's nice to have Mail, iChat, and Skype available immediately, for example. If you access your mail in Safari, put that on the list. 

I cannot check because I don't have access to an installation of MacKeeper, but if something of it is in the Login Items list, remove it: Make a note of its name, click it once, and click the _minus_ beneath the list. This won't actually _stop_ that process; it only tells it not to run automatically at startup.

• Stop that background process--two methods: 

- Use the Macintosh utility _Activity Watcher_ to locate and kill the process (may be in either /Utilities or /Applications; this is powerful magic). 
- Merely restart.

If _empty trash_ had failed before because something was "in use", it should proceed normally now. If it doesn't, more _Login Items_ is needed. Perhaps MacKeep sets _two_ pieces there.

• The last step would be to use Spotlight to search your hard drive for files that contain "mackeeper" in their filenames. If you find anything obvious, Trash it. If it's not so obvious, it may be best (and safer) to leave it.

Looking around on the Web just now, I found many complaints, quite a bit of suspicion, and oddly many "testimonials" insisting that this software is not a scam--it's great protection, and _download here_. 

It walks and quacks like Marketing, and it smells like something that has spent some time standing next to a scam, so I'm staying away.

This is all based upon friends' reports, the online reports of disgruntled "users", and other materials from the Web. Any outright errors come from those sources; the simplifications, omissions, and caution are all mine.

The Google machine can help, but call me if you like.

Mark_
11:55 11 May 2011

05 May 2011

_Lark_ is in the Water

Linda says that their boat went back into the water Wednesday morning, "as planned" (Tuesday for us, I believe--I neglected the International Date Line issue in a previous report); they are tied up between pilings upriver a bit, doing a bit more work. They hope to sail north "early next week."

She promises more before they depart.

Mark_
21:26 05 May 2011

Navigation Software

I won't be investigating this myself, but here are links to a couple of navigation programs I found referenced/recommended in a sailing blog.  One is free; the other, not so much.

• Free: <http://opencpn.org> (Windows or Macintosh)
• Not-free: <http://rosepointnav.com/coastalexplorer2011/default.htm> (Windows only)

[Note that Intel Macintoshes can run real Windows at ordinary Windows speeds.]

Mark_
08:51  05 May 2011

02 May 2011

_Lark_ update

In response to my query, Linda has just e-mailed an update:


• Back into the water tomorrow morning.  (Tuesday afternoon, our time.  I think.)
• More work, while moored between pilings @ Town Basin Marina, in the Hātea River, Whangarei, NZ. [Wikipedia article]
• Thursday: By car, retrieve the last of personal effects left in Watawhiwhi.
• Sell car back in Whangarei.
• Shakedown to Opua, NZ [35°18'46.85"S 174° 6'45.75"E].
• If everything works, sail for Tonga as weather permits.


She says that they have been working hard, and are ready to relax with a "nice tropical winter".


I have asked to be advised when they sail for Tonga.


Mark_