If you follow @NakedSecurity on Twitter, you’ll have noticed that we warned last week about an old WhatsApp hoax that suddenly reappeared.
Sophos Bootable Anti-Virus is an emergency solution that may cause data loss in specific situations. Do not use this tool until all other options have been exhausted. Once the virus outbreak has been contained and eliminated from the network, delete the downloaded program, and destroy the CD or reformat the USB pen drive. How Sophos Can Help. While there’s no silver bullet when it comes to phishing, we can help you at every point in the attack chain. Start with phishing visibility and education, and back up with pre- and post-delivery protection. Plus, you can control everything through a single Sophos Central management console. By submitting this form, you consent to be contacted about Sophos products and services from members of the Sophos group of companies and selected companies who partner with us to provide our products and services. Sophos is committed to safeguarding your privacy. Sophos Anti-Virus for Mac Home Edition. Malware Beta CyberoamOS. Join the Community. Check out our product forums where you can browse a variety of topics, post questions, and get solutions for our entire range of Sophos products. Discussion Forums. Advisory Articles. Sophos Home for Mac Antivirus - Free Download. Includes a 30 day trial of Sophos Home for Mac Premium, with advanced ransomware scanning in real time.
The bogus news is generally known as the “Martinelli hoax”, because it starts like this:
When we last wrote about “Martinelli”, back in 2018, we noted that the hoax was given a breath of believability because the text above was immediately followed by this:
This part of the hoax has a ring of truth to it.
Back in 2016, hoax-checking site Snopes reported that malware dubbing itself WhatsApp Gold, was doing the rounds.
The fake WhatsApp was promoted by bogus messages that claimed, “Hey Finally Secret WhatsApp golden version has been leaked, This version is used only by big celebrities. Now we can use it too.”
So WhatsApp Gold was actual malware, and the advice to avoid it was valid, so the initiator of the Martinelli hoax used it to give an element of legitimacy to their otherwise fake warning about the video.
The latest reincarnation of the hoax has kept the text of the original precisely, including the five-fold exclamation points and the weird extra spaces before punctuation marks.
The new hoax even claims that the video first mentioned several years ago still “comes out tomorrow.”
Sophos Antivirus For Mac
But there’s a new twist this time, with yet another hoax tacked on the end referring to yet another video “that formats your mobile.”
This time, the video is called Dance of the Pope:
Ironically, Snopes suggests that this piece of the hoax – which is basically the same as the Martinelli hoax but with a different video name – is even older than the Martinelli part, dating back to 2015.
Quite why the hoax has reappeared now is not clear, though it may have been triggered by March 2020 news headlines about wunderkind Brazilian footballer Martinelli.
Martinelli currently plays for Arsenal in England, but has been tipped to appear in the Brazilian national squad at just 18 years of age; he’s also been the subject of media speculation that he might get poached from Arsenal by Spanish heavyweights Real Madrid.
Is it even possible?
In theory, playing a deliberately booby-trapped video file on your mobile phone could end up in a malware infection, if your phone has an unpatched bug in its media player software that a crook could exploit.
In practice, however, that sort of bug is very rare these days – and typically gets patched very rapidly and reported very widely.
In other words, if the creator of this warning knew enough about the “bug” to predict that it could infect any mobile phone, and could warn you about this “attack” in a video that isn’t even out yet, it’s highly unlikely that you wouldn’t have heard about the actual bug itself either from the vendor of your phone or from the world’s cybersecurity news media.
Additionally, even if there were a dangerous bug of this sort on your phone and your phone were at risk, it’s unlikely that “nothing would fix it”.
As for the imminent and unconquerable danger of an alleged double-whammy video attack of “threats” that first surfaced in 2015 and 2016…
…well, if the videos were supposed to “come out tomorrow” more than four years ago, we think you can ignore them today.
What to do?
- Don’t spread unsubstantiated or already-debunked stories online via any messaging app or social network. There’s enough fake news at the moment without adding to it!
- Don’t be tricked by claims to authority. Anyone can write “they announced it today on BBC radio,” but that doesn’t tell you anything. For all you know, the BBC didn’t mention it at all, or announced it as part of a hoax warning. Do your own research independently, without relying on links or claims in the message itself.
- Don’t use the “better safe than sorry” excuse. Lots of people forward hoaxes with the best intentions, but you can’t make someone safer by “protecting” them from something that doesn’t exist. All you are doing is wasting everyone’s time.
- Don’t forward a cybersecurity hoax because you think it’s an obvious joke. What’s obvious to you might not be to other people, and your comments may get repeated as an earnest truth by millions of people.
- Don’t follow the advice in a hoax “just in case”. Cybersecurity hoaxes often offer bogus advice that promises a quick fix but simply won’t help, and will certainly distract you from taking proper precautions.
- Patch early, patch often. Security updates for mobile phones typically close off lots of holes that crooks could exploit, or shut down software tricks that adware and other not-quite-malicious apps abuse to make money off you. Take prompt advantage of updates!
- Use a third-party anti-virus in addition to the standard built-in protection. Sophos Intercept X for Mobile is free, and it gives you additional protection not only against unsafe system settings and malware, but also helps to keep you away from risky websites in the first place.
- Don’t grant permissions to an app unless it genuinely needs them. Mobile malware doesn’t need to use fancy, low-level programming booby-traps if you invite it in yourself and then give it more power that it needs or deserves.
Anti-Virus software is vital to help keep both University computers and your own personal computer secure. Sophos Anti-Virus software is the UW’s preferred choice for UW faculty, staff and students. The Sophos product suite includes stand-alone and managed anti-virus clients for all current (and many older) versions of Windows and Mac OS, and most of the popular UNIX and Linux distributions. It also provides apps for both Android and iOS based mobile devices.
Get Sophos
Sophos Anti-Virus protection is available to UW faculty, staff, students and departments. Which version of Sophos you download depends on the ownership of your computer. Choose the appropriate option:
UW-owned computers
Sophos Antivirus Free
The UW Sophos license allows UW students, faculty, and staff to download the UW’s Sophos software on University-owned computers, servers, and workstations. The software can be installed on unlimited UW-owned computers at no cost.
Get Sophos for UW-owned computers:
Note: Sophos Antivirus is now compatible with Mac OS 11 (Big Sur). You can now update your Mac OS to Big Sur to run on Sophos.
- Download Sophos after agreeing to the terms and conditions.
Your personal computer or device
Sophos Antivirus 9
UW students, faculty, and staff can get Sophos Home Premium for free on their personal computers and devices. To get Sophos Home Premium, enter your UW email address on the page linked below. You will receive an email with a coupon code and a link to register for your license and download Sophos Home Premium. You can also download basic Sophos Home instead.
Get Sophos Home Premium for your personal computer or device:
Get basic Sophos Home instead:
Departmental IT
Sophos Central, a web-based Enterprise Console, is available to UW departmental IT and system administrators to install and manage Sophos Endpoint Protection suite on their departmental computers.
Get Sophos Central:
License Details
The UW Sophos license grants faculty and staff at UW the rights to use the software on UW owned computers, servers, and workstations.
- There is no charge for the software.
- UW-IT administers this site license.
Sophos Home Premium (or “Sophos Home Commercial Use Edition”) is provided courtesy of Sophos to students, faculty, and staff. With an affiliated UW email address, users can get Sophos Home Premium at no cost for their personal computers and devices. This offer may end at any time and without warning. If that happens, please switch to the basic version of Sophos Home. UW employees or students interested in participating in this offer should go to Sophos Home Download Page, agree to the terms, and use their @uw.edu or @u.washington.edu email address to request a coupon code. Sophos will then send an email to that UW address with a coupon code and instructions on next steps. The UW email address is only required for receiving the coupon code–UW users are then welcome to use any email address they choose for registering their account with Sophos.
The Sophos Home Premium software listed below is for use on your personal computer and should not be installed on the UW-owned equipment. Once you have separated from the UW, you must remove the software from your computer.
Sophos Antivirus for home Windows and Macintosh computers provides the same level of protection as the UW licensed package does. The application can be installed on up to three computers. After free registration, you will get a web portal where you can monitor your devices and act on detected issues when needed. Sophos provides free Linux antivirus software. Sophos Antivirus for Linux
More information is available from Sophos:
Documentation and support
Online documentation and support
Need help?
Contact UW-IT at help@uw.edu or call 206-221-5000.