Worm.Mac.Opener.A
* copy itself into "/System/Library/StartupItems"
* add an entry in StartupParameters.plist so as to run at the startup of the OS
* copy the startup script to mounted startup volumes
* disable System Accounting
* disable OS-X firewall
* disable Software Update
* download and install ohPhoneX (software for video conferencing)
* disable LittleSnitch (firewall software)
* change access rights to hostconfig, ssh and cron file so any user can write to them
* turn on File Sharing
* turn on remote login
* turn on Windows Sharing (samba)
* collect user information such as: public and private ip addresses, name of the accounts on the computer, OS-X version, uptime, open-firmware password
* get password file for: OSXvnc, Mail, webservers keychain, Windows shared printers, samba, netinfo,
* modifies LimeWire settings
* download and install John the Ripper (password cracking software)
* download and install Dnsniff (software for sniffing passwords)
* create a hidden admin named: "LDAP-daemon"
SHARE
THIS ON