I guess I was right, man-in-the-middle on the updater. It would be a pretty weak virus, not being able to expand itself beyond a LAN and requiring physical or trusted network access to that LAN to initiate. What does they group say, any think that would qualify?
Would that work?
If it did, I think we'd at least have seen a proof of concept, and maybe reports of compromise.
Ah, there is a proof on concept :-)
It doesn't have a vector... it requires the user to download an app that will do a modification to the Syystem and install and run it. Even installing updates requires an Administrator Name and Password. At worst it is a trojan, not a virus. After the trojan is run, it then becomes a hack. Nope, not a virus.
Besides, it was never in the wild.