How To Check For And Remove mshelper Malware From Your Mac
Did you ever know anyone – or did you happen to be that person – that passionately insisted that Macs just couldn’t get viruses or suffer from malware infections?
Well, hopefully, you, or that person, has bee re-educated, and now understand that it’s not the case and that Macs can suffer these afflictions, as highlighted by the recent case of mshelper which has been going around.
Recently, some Mac owners have started to wonder why their battery life has been essentially non-existent and why the internal Mac fans appear to be going full-speed without any apps or processes running on a purposeful level which would consume a lot of CPU.
If you fall into that category, then it may perturb you to learn that a new malware called mshelper has been discovered on Mac computers, and has been shown to be a particularly CPU intensive strain which consumes a lot of machine resources.
There is currently no information to suggest that this is a virus or that it’s doing anything overly malicious on the computer itself, with the best guess being that it’s either adware or some form of cryptocurrency miner that’s spreading onto machines around the world and using the computing power of host devices to mine currencies for its creators. There’s also no real information on how it comes to get onto machines, so it’s very worthwhile being careful with installations and installing software from sources that you don’t trust one-hundred-percent.
However, if you have it, you’re going to want to know about it, so here’s what you need to do. We first need to start off by determining whether your Mac is infected or not.
Step 1: Launch the Activity Monitor app on your Mac.
Step 2: Click on the CPU tab in the app to make sure that all of the processes are sorted in order of the ones consuming the most resource. At the top of that list, look for a process by the name of mshelper.
If it is there, you can’t simply kill the process as it will act like the proverbial phoenix from the flames and ensure that it can raise itself from the ashes. What you need to do is delete the following two files at the given paths to get rid of mshelper entirely: