Valse virusmeldingen

Op mijn iMac M1 24" Monterey 12 6 4 met 8 GB ram krijg ik sinds ongeveer een week een aantal keer per dag meldingen (dus geen e-mails) re boven in het scherm dat er “virussen zijn gevonden” of “systeem is geïnfecteerd” en zo nog enkele varianten die je uitlokken de melding te bekijken en dan een scan uit te voeren. Dat doe ik dus NIET, want het zullen wel weer lieden zijn die niet veel goeds van plan zijn.
Het systeem werkt overigens prima zoals voorheen en zonder vertragingen.
Ik heb op internet gezocht en daar wel aanbevelingen gezien “wat (niet) te doen” maar de meldingen blijven doorgaan.
Wat heb ik al gedaan? Malwarebytes geeft geen bedreigingen aan, Etrecheck geeft geen bijzonderheden, bij extensies op Safari en Firefox is niets veranderd, ik heb geen nieuwe apps gevonden die zichzelf hebben geïnstalleerd en heb ook zelf niets geïnstalleerd.
Vraag is: hoe kom ik van die voortdurende meldingen af?
Ik hoor het graag en bij voorbaat dank.

Verstandig om deze meldingen te negeren, maar je hebt deze meldingen echt zelf (ooit) binnengehaald. Zonder verdere gegevens of schermafdruk kan ik er verder niets mee…

Waarschijnlijk binnengehaald via Safari, dus wis alle geschiedenis eens, of ga met Find Any File zoeken op de naam van de veroorzaker.

Op je Mac zelf (berichtencentrum) of in een Safari venster?

vlg mij is dat in berichtencentrum.
Heb inmiddels mijn geschiedenis in Safari gewist. Maar vanmorgen stond er weer een hele serie.
Heb ook al in “voorkeuren - meldingen en focus” gekeken; daar staan geen vreemde dingen tussen en bij het merendeel staat meldingen op “uit”.

Hoe weet ik de naam van de veroorzaker ?

Kan je eens een schermafdruk maken van die meldingen ?, dan kunnen we daar misschien wat informatie uithalen.

Zou me ook niets verbazen, dat het met een instelling van MalwareBytes te maken heeft en dat er dus niets aan de hand is.

Kun je het overzicht hier eens plaatsen?

Heb een etrecheck rapport, maar hoe voeg ik dat bij ?

idem voor de printscreen

In het antwoordveld kies je voor een bestand: erin slepen en voor een plaatje idem, of jegebruikt een icoon uit de bovensterij.

Sorry, zal aan mij liggen. Krijg het etrecheck report niet in het antwoordveld. Zie ook niet “bestanden”. Wil het graag sturen maar hoe?

Het screenshot: zie aan de rechterkant een massa meldingen; iedere 20 min komt er weer een.

EtreCheckPro version: 6.8.1 (68024)
Report generated: 2023-04-04 22:03:31
Download EtreCheckPro from https://etrecheck.com
Runtime: 1:41
Performance: Excellent

Problem: No problem - just checking

Major Issues: None

Minor Issues:
These issues do not need immediate attention but they may indicate future problems or opportunities for improvement.
Apps crashing - There have been numerous app crashes.
Unsigned files - There are unsigned software files installed. These files could be old, incompatible, and cause problems. They should be reviewed.
Kernel extensions present - This computer has kernel extensions that may not work in the future.

Hardware Information:
iMac (24-inch, M1, 2021)
Status: Supported
iMac Model: iMac21,1
2.40 GHz Apple M1 (m1) CPU: 8-core
8 GB RAM - Not upgradeable

Video Information:
Apple M1
iMac (built-in) 4480 x 2520

Drives:
disk0 - APPLE SSD AP0512Q 500.28 GB (Solid State - TRIM: Yes)
Internal Apple Fabric NVM Express
disk0s1 [APFS Container] 524 MB
disk1 [APFS Virtual drive] 524 MB (Shared by 4 volumes)
disk1s1 - iSCPreboot (APFS) [APFS Preboot] (6 MB used)
disk1s2 - xART (APFS) (6 MB used)
disk1s3 - Hardware (APFS) (553 KB used)
disk1s4 - Recovery (APFS) [Recovery] (20 KB used)
disk0s2 [APFS Container] 494.38 GB
disk3 [APFS Virtual drive] 494.38 GB (Shared by 6 volumes)
disk3s1 (APFS) [APFS Container] (15.41 GB used)
disk3s1s1 - Macintosh HD (APFS) [APFS Snapshot] (15.41 GB used)
disk3s2 - Preboot (APFS) [APFS Preboot] (869 MB used)
disk3s3 - Recovery (APFS) [Recovery] (819 MB used)
disk3s4 - Update (APFS) (19 MB used)
disk3s5 - Data (APFS) [APFS Virtual drive] (164.31 GB used)
disk3s6 - VM (APFS) [APFS VM] (1.07 GB used)
disk0s3 [APFS Container] 5.37 GB
disk2 [APFS Virtual drive] 5.37 GB (Shared by 2 volumes)
disk2s1 - Recovery (APFS) [Recovery] (1.62 GB used)
disk2s2 - Update (APFS) (434 KB used)

disk4 - Generic- SD/MMC 8.05 GB
External USB 480 Mbit/s USB
disk4s1 - S*****n 8.04 GB (9 MB used)

disk6 - Samsung PSSD T7 500.11 GB (Solid State - TRIM: No)
External USB 10 Gbit/s+ USB
disk6s1 - K*******D 500.11 GB (84.23 GB used)

disk7 - Samsung PSSD T7 1.00 TB (Solid State - TRIM: No)
External USB 10 Gbit/s+ USB
disk7s1 - EFI (MS-DOS FAT32) [EFI] 210 MB
disk7s2 [APFS Container] 1000.00 GB
disk8 [APFS Virtual drive] 1000.00 GB (Shared by 1 volumes)
disk8s2 - B********M (APFS) (192.03 GB used)

Mounted Volumes:
disk1s1 - iSCPreboot [APFS Preboot]
Filesystem: APFS
Mount point: /System/Volumes/iSCPreboot
Used: 6 MB
Shared values
Size: 524 MB
Free: 506 MB

disk1s2 - xART
Filesystem: APFS
Mount point: /System/Volumes/xarts
Used: 6 MB
Shared values
Size: 524 MB
Free: 506 MB

disk1s3 - Hardware
Filesystem: APFS
Mount point: /System/Volumes/Hardware
Used: 553 KB
Shared values
Size: 524 MB
Free: 506 MB

disk3s1s1 - Macintosh HD [APFS Snapshot]
Filesystem: APFS
Mount point: /
Read-only: Yes
Used: 15.41 GB
Shared values
Size: 494.38 GB
Free: 311.72 GB
Available: 325.35 GB

disk3s2 - Preboot [APFS Preboot]
Filesystem: APFS
Mount point: /System/Volumes/Preboot
Used: 869 MB
Shared values
Size: 494.38 GB
Free: 311.72 GB

disk3s4 - Update
Filesystem: APFS
Mount point: /System/Volumes/Update
Used: 19 MB
Shared values
Size: 494.38 GB
Free: 311.72 GB

disk3s5 - Data [APFS Virtual drive]
Filesystem: APFS
Mount point: /System/Volumes/Data
Encrypted
Used: 164.31 GB
Shared values
Size: 494.38 GB
Free: 311.72 GB
Available: 325.35 GB

disk3s6 - VM [APFS VM]
Filesystem: APFS
Mount point: /System/Volumes/VM
Used: 1.07 GB
Shared values
Size: 494.38 GB
Free: 311.72 GB

disk4s1 - Sn
Mount point: /Volumes/S
n
Used: 9 MB
Size: 8.04 GB
Free: 8.03 GB

disk6s1 - KD
Mount point: /Volumes/K
D
Used: 84.23 GB
Size: 500.11 GB
Free: 415.86 GB

disk8s2 - BM
Filesystem: APFS
Mount point: /Volumes/B
M
Used: 192.03 GB
Shared values
Size: 1000.00 GB
Free: 807.76 GB

Network:
Interface en7: Ethernet Adaptor (en5)
Interface en0: Ethernet
Interface en5: Ethernet Adapter (en5)
Interface en4: Ethernet Adapter (en4)
Interface bridge0: Thunderbolt Bridge
Interface en1: Wi-Fi
802.11 a/b/g/n/ac/ax

System Software:
macOS Monterey 12.6.4 (21G526)
Time since boot: About 2 days

Notifications:
EtreCheck-2.app
2 notifications

Safari.app
34 notifications

Security:
Gatekeeper: App Store and identified developers
System Integrity Protection: Enabled

Antivirus software: Apple and Malwarebytes

Unsigned Files:
Apps: 2

Applications:
461 apps
27 x86-only apps
5 unsigned apps

Kernel Extensions:
/Library/Extensions
[Not Loaded] EPSONUSBPrintClass.kext - com.epson.print.kext.USBPrintClass (3.1.9)
[Not Loaded] SamsungPortableSSDDriver.kext - com.samsung.portablessd.driver (2.0.0 - SDK 11)

System Launch Daemons:
[Not Loaded] 43 Apple tasks
[Loaded] 195 Apple tasks
[Running] 143 Apple tasks
[Other] One Apple task

System Launch Agents:
[Not Loaded] 20 Apple tasks
[Loaded] 178 Apple tasks
[Running] 158 Apple tasks
[Other] One Apple task

Launch Daemons:
[Loaded] com.apple.installer.osmessagetracing.plist (Apple - installed 2021-05-10)
Executable: /System/Library/PrivateFrameworks/OSInstaller.framework/Resources/OSMessageTracer

[Loaded] com.epson.RemotePrintIODaemon.plist (Seiko Epson Corporation - installed 2022-10-17)
Executable: /Library/Printers/EPSON/InkjetPrinter2/Backend/RemotePrintIODaemon.app/Contents/MacOS/RemotePrintIODaemon

[Loaded] com.malwarebytes.HelperTool.plist (Malwarebytes Corporation - installed 2021-11-20)
Executable: /Library/PrivilegedHelperTools/com.malwarebytes.HelperTool

[Running] com.malwarebytes.mbam.rtprotection.daemon.plist (Malwarebytes Corporation - installed 2023-02-18)
Command: /Library/Application Support/Malwarebytes/MBAM/Engine.bundle/Contents/PlugIns/RTProtectionDaemon.app/Contents/MacOS/RTProtectionDaemon -i A4A549DF-2FCE-4407-9F9D-7530F5B8502E.pkg

[Running] com.malwarebytes.mbam.settings.daemon.plist (Malwarebytes Corporation - installed 2023-02-07)
Executable: /Library/Application Support/Malwarebytes/MBAM/Engine.bundle/Contents/PlugIns/SettingsDaemon.app/Contents/MacOS/SettingsDaemon

[Loaded] com.microsoft.OneDriveStandaloneUpdaterDaemon.plist (Microsoft Corporation - installed 2023-04-03)
Executable: /Applications/OneDrive.app/Contents/StandaloneUpdaterDaemon.xpc/Contents/MacOS/StandaloneUpdaterDaemon

[Loaded] com.microsoft.OneDriveUpdaterDaemon.plist (Microsoft Corporation - installed 2023-04-03)
Executable: /Applications/OneDrive.app/Contents/OneDriveUpdaterDaemon.xpc/Contents/MacOS/OneDriveUpdaterDaemon

[Loaded] com.microsoft.autoupdate.helper.plist (Microsoft Corporation - installed 2023-03-15)
Executable: /Library/PrivilegedHelperTools/com.microsoft.autoupdate.helper

[Loaded] com.microsoft.office.licensingV2.helper.plist (Microsoft Corporation - installed 2022-05-27)
Executable: /Library/PrivilegedHelperTools/com.microsoft.office.licensingV2.helper

Launch Agents:
[Running] com.epson.Epson_Low_Ink_Reminder.launcher.plist (Seiko Epson Corporation - installed 2022-05-08)
Executable: /Applications/Epson Software/Epson Low Ink Reminder.app/Contents/EpsonLowInkReminderAgent.app/Contents/MacOS/EpsonLowInkReminderAgent

[Loaded] com.epson.RemotePrintIOHelper.plist (Seiko Epson Corporation - installed 2022-10-17)
Executable: /Library/Printers/EPSON/InkjetPrinter2/Backend/RemotePrintIOHelper.app/Contents/MacOS/RemotePrintIOHelper

[Running] com.epson.edca.launcher.plist (Seiko Epson Corporation - installed 2022-01-17)
Command: /Applications/Epson Software/Epson Utilities/Epson Data Collection Agent.app/Contents/MacOS/Edca edca

[Loaded] com.epson.esua.launcher.plist (Seiko Epson Corporation - installed 2021-10-14)
Executable: /Applications/Epson Software/EPSON Software Updater.app/Contents/EPSON Software Updater Agent.app/Contents/MacOS/EPSON Software Updater Agent

[Running] com.epson.eventmanager.agent.plist (Seiko Epson Corporation - installed 2021-10-10)
Executable: /Applications/Epson Software/Event Manager.app/Contents/Resources/Assistants/Event Manager/EEventManager.app/Contents/MacOS/EEventManager

[Running] com.epson.scannermonitor.plist (Seiko Epson Corporation - installed 2021-10-10)
Executable: /Library/Application Support/EPSON/Scanner/ScannerMonitor/Epson Scanner Monitor.app/Contents/MacOS/Epson Scanner Monitor

[Running] com.malwarebytes.mbam.frontend.agent.plist (Malwarebytes Corporation - installed 2023-02-07)
Executable: /Library/Application Support/Malwarebytes/MBAM/Engine.bundle/Contents/PlugIns/FrontendAgent.app/Contents/MacOS/FrontendAgent

[Loaded] com.microsoft.OneDriveStandaloneUpdater.plist (Microsoft Corporation - installed 2023-04-03)
Executable: /Applications/OneDrive.app/Contents/StandaloneUpdater.app/Contents/MacOS/OneDriveStandaloneUpdater

[Loaded] com.microsoft.update.agent.plist (Microsoft Corporation - installed 2023-03-15)
Command: /Library/Application Support/Microsoft/MAU2.0/Microsoft AutoUpdate.app/Contents/MacOS/Microsoft Update Assistant.app/Contents/MacOS/Microsoft Update Assistant --launchByAgent

User Launch Agents:
[Running] com.samsung.portablessdplus.mon.plist (Samsung Electronics - installed 2023-02-15)
Executable: ~/Library/Application Support/Portable_SSD/SamsungPortableSSD_1.0.app/Contents/Resources/SamsungPortableSSDMon_1.0

User Login Items:
[Not Loaded] Launcher Disabler (Microsoft Corporation - installed 2023-04-03)
Modern Login Item
/Applications/OneDrive.app/Contents/Library/LoginItems/Launcher Disabler.app

[Not Loaded] OneDrive Launcher (Microsoft Corporation - installed 2023-04-03)
Modern Login Item
/Applications/OneDrive.app/Contents/Library/LoginItems/OneDrive Launcher.app

App Extensions:
Safari extensions:
ABP Control Panel - /Applications/Adblock Plus.app

Ad-blockers:
ABP - /Applications/Adblock Plus.app

Finder sync extensions:
OneDrive Finder Integration - /Applications/OneDrive.app

Share services:
OneNote - /Applications/Microsoft OneNote.app

File providers:
OneDrive File Provider - /Applications/OneDrive.app

QuickLook Previews (legacy):
EtreCheck4QL - /Applications/EtreCheck-2.app
com.etresoft.etrecheck4 *.etrecheck

Backup:
Skip System Files: No
Mobile backups: No
Auto backup: Yes
Destinations:
B********M [Local] (Last used)
Total size: 999.79 GB
Total number of backups: 51
Oldest backup: 2023-02-15 12:21:29
Last backup: 2023-04-04 21:11:51
20 local snapshots
Oldest local snapshot: 2023-04-03 22:07:54
Last local snapshot: 2023-04-04 21:11:37

Performance:
System Load: 1.37 (1 min ago) 1.14 (5 min ago) 1.14 (15 min ago)
Nominal I/O usage: 0.00 MB/s
File system: 7.13 seconds
Write speed: 3023 MB/s
Read speed: 2415 MB/s

CPU Usage Snapshot:
Type Overall
System: 2 %
User: 4 %
Idle: 94 %

Top Processes Snapshot by CPU:
Process (count) CPU (Source - Location)
EtreCheckPro 23.14 % (Etresoft, Inc.)
WindowServer 10.04 % (Apple)
kernel_task 4.08 % (Apple)
com.apple.WebKit.WebContent (6) 1.52 % (Apple)
launchd 0.72 % (Apple)

Top Processes Snapshot by Memory:
Process (count) RAM usage (Source - Location)
com.apple.WebKit.WebContent (6) 609 MB (Apple)
EtreCheckPro 416 MB (Etresoft, Inc.)
plugin-container (7) 232 MB (Mozilla Corporation)
Mail 160 MB (Apple)
firefox 151 MB (Mozilla Corporation)

Top Processes Snapshot by Network Use:
Process (count) Input / Output (Source - Location)
mDNSResponder 15 MB / 9 MB (Apple)
Mail 919 KB / 83 KB (Apple)
netbiosd 353 KB / 23 KB (Apple)
com.apple.WebKit.Networking 44 KB / 107 KB (Apple)
rapportd 22 KB / 44 KB (Apple)

Top Processes Snapshot by Energy Use:
Process (count) Energy (0-100) (Source - Location)
WindowServer 7 (Apple)
EEventManager 0 (Seiko Epson Corporation)
RTProtectionDaemon 0 (Malwarebytes Corporation)
com.apple.WebKit.WebContent (6) 0 (Apple)
Microsoft Excel 0 (Microsoft Corporation)

Virtual Memory Information:
Physical RAM: 8 GB

Free RAM: 60 MB
Used RAM: 6.12 GB
Cached files: 1.82 GB

Available RAM: 1.88 GB
Swap Used: 185 MB

Software Installs (past 60 days):
Install Date Name (Version)
2023-02-07 Epson Event Manager (2.51.82)
2023-02-07 Epson Scanner Monitor (1.0.0)
2023-02-07 EpsonScanSmart (3.7.1)
2023-02-08 macOS 12.6.3 (12.6.3)
2023-02-15 Samsung Portable SSD Software 1.0 (1.7.4.3)
2023-02-15 Samsung Portable SSD Software 1.0 Setup (1.7.4.3)
2023-02-18 Malwarebytes for Mac (1.0)
2023-02-20 EPSON Software Updater (2.6.2)
2023-02-20 EPSON Printer (12.62)
2023-03-07 GarageBand (10.4.8)
2023-03-09 Adblock Plus (2.2.4)
2023-03-15 Microsoft AutoUpdate (4.57.23031200)
2023-03-15 Microsoft OneNote (16.71.23031200)
2023-03-15 Microsoft Excel (16.71.23031200)
2023-03-15 Microsoft PowerPoint (16.71.23031200)
2023-03-15 Microsoft Word (16.71.23031200)
2023-03-28 Safari (16.4)
2023-03-29 Microsoft Outlook (16.71.23032500)
2023-03-30 RosettaUpdateAuto (1.0.0.0.1.1678956458)
2023-03-30 macOS 12.6.4 (12.6.4)
2023-03-30 XProtectPlistConfigData (2167)
2023-03-30 XProtectPayloads (95)
2023-03-31 Keynote (13.0)
2023-03-31 Numbers (13.0)
2023-03-31 Pages (13.0)

Diagnostics Information (past 7-30 days):
2023-04-01 11:26:03 signpost_reporter High CPU Use (3 times)
Executable: /usr/libexec/signpost_reporter

2023-03-31 09:30:54 backupd High CPU Use
Executable: /System/Library/CoreServices/backupd.bundle/Contents/Resources/backupd

2023-03-30 17:14:41 mdsync High CPU Use
Executable: /System/Library/Frameworks/CoreServices.framework/Versions/A/Frameworks/Metadata.framework/Versions/A/Support/mdsync

2023-03-30 16:58:19 PerfPowerServices Crash (10 times)
nieuwe poging

Executable: /usr/libexec/PerfPowerServices
Details:
libsystem_c.dylib: abort() called

End of report

Ik vermoed dat dit een notificatie is van een website. Je kunt naar de instellingen gaan, en dan deze (of alle) notificaties voor websites uitzetten.

Conform je verwijzing naar de Apple support pagina een enkele aanpassing gedaan. Tot nu toe geen meldingen meer gekregen. Hoop dat het zo blijft

Hartelijk dank voor je hulp

:+1:t2: Graag gedaan!