MacOS.Sevendust

Risk Level 1: Very Low

Printer Friendly Page

Discovered: October 29, 1998
Updated: February 13, 2007 11:34:33 AM
Also Known As: MDEF 9806, MDEF 666, Graphics Accelerator, SevenDust
Type: Virus
Systems Affected: Macintosh


There are 6 variants of this virus, including 4 polymorphic, encrypted ones. The differences are described below. What they have in common is that they all infect applications by modifying MDEF and MENU resources, and they can create a System Extension (with an invisible character at the beginning of the name so it loads early) or add an INIT resource to the System file. The existence of the extension is the easiest way of identifying its presence without using NAV.

Protection

  • Initial Rapid Release version December 21, 2000
  • Latest Rapid Release version August 20, 2008 revision 017
  • Initial Daily Certified version December 21, 2000
  • Latest Daily Certified version August 20, 2008 revision 016
  • Initial Weekly Certified release date pending

Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy

Damage

  • Damage Level: Low

Distribution

  • Distribution Level: Low

Writeup By: Lee Gummerman
Search by name
Example: W32.Beagle.AG@mm
Limited Time Offers! Save up to 50%
Windows Vista Security