Home Malware Programs Worms Brontok.S@mm

Brontok.S@mm

Posted: February 19, 2011

Threat Metric

Ranking: 5,718
Threat Level: 5/10
Infected PCs: 3,099
First Seen: February 19, 2011
Last Seen: October 16, 2023
OS(es) Affected: Windows

Brontok.S@mm (Worm:Win32/Brontok.S@mm) is a mass-mailing email worm that alters certain computer settings, such as how hidden files are displayed, and disables Windows Registry editing. Brontok.S@mm proliferates by sending a copy of itself, as an email attachment, to contacts stored on the vulnerable computer. Brontok.S@mm can also copy itself to USB and removable drives. Brontok.S@mm makes system changes on the corrupted PC by dropping potentially malicious files and making registry modifications. When executed, Brontok.S@mm opens a Windows Explorer window to the 'My Documents' folder. Brontok.S@mm uses the Windows 'new folder' icon for its copies. This may cause the file to appear as if it were a new folder rather than an executable file, seducing a victim into inadvertently running Brontok.S@mm.

Aliases

W32/Brontok.GS.worm [Panda]I-Worm/Brontok.X [AVG]W32/PackedBrontok.A@mm [Fortinet]Email-Worm.Win32.Brontok [Ikarus]Win32/Brontok.worm.47347 [AhnLab-V3]Worm:Win32/Brontok.S@mm [Microsoft]Worm/Win32.Brontok [Antiy-AVL]Win32/Robknot.BD [eTrust-Vet]W32/Brontok-D [Sophos]Heuristic.LooksLike.Win32.Suspicious.J [McAfee-GW-Edition]Worm/Brontok.C [AntiVir]Win32.Virut.5 [DrWeb]Packed.Win32.Packer.~GEN [Comodo]Win32.Generic.497796 [BitDefender]Email-Worm.Win32.Brontok.q [Kaspersky]
More aliases (34)
Loading...