Brontoks » Permagnus.com - Brontoks »

Brontoks


Lately, our computer lab is attacked by Brontoks (or brontox or well known as W32.rontobro). Somehow, our newest database of AVG still cannot detected this virus. We already tried to update it several times and the result is that some computer manages to detect the virus while some others can’t (even when they are using the very same database).

This somehow touches my nerves. My closest friends must’ve known that I’m a very paranoid person regarding the healthiness of my computer. Although I use Ubuntu alot lately, I also use Windows just for casual computing. And I have this weird messages lately from my server that indicates that my computer somehow sent messages with unscannable attachments.

This is the very indications that maybe my computer is infected with that worm. I think I’ll just use this method instead to check wether this computer is clean or not.

Information and Links

Join the fray by commenting, tracking what others have to say, or linking to it from your blog.


Related Posts
No related posts

Write a Comment

Take a moment to comment and tell us what you think. Some basic HTML is allowed for formatting.

Reader Comments

yes, that brontok thingie’s quite made a stir in itb itself.
anyway, i haven’t got that brontox though i use flashdisk a lot.
just lucky, i guess.

@seven: Are you sure? My computer hasn’t had any brontox since I always cleanse the disk first using my Ubuntu installations.

how to deal with brontox? our computers in d’class are still infected, and our virus cannot be removed by PengusirBrontoks. Do you have any powerful Brontox removal program? plisss….give us. Thank you :)

You can always use Norman virus control. I used it and it detects all brontoks (rontokbro) variant up until variant G.

my computer has invected by brontox,i try to get Norman virus control in internet but i cant download that anivirus,do have a solutions?thanks

You could try to download it via http://www.vaksin.com . It’s pretty big (around 12 mb), so if you are using a dial-up, prepare a 1-2 hours downloading time.

somebody help me…..after i’ve got brontox my computer now is vey strange….
1. inside every folder..there are one shortcut with the same name as the folder’s name itself
2. i can’t download anything from the net (with dial up), it start to restarting everytime i tried
3. i can’t open my regedit….it says that regedit disabled by the administrator an it will restart it’s own…

i’m sick of all of this……..please help me

Well, that is affirmatively virus brontoks. I think you can easily delete it using the latest antivirus database.

well, to be honest i still have that virus in my computer by the time i wrote this. i already use norman virus control 5.08 but still can’t detect brontoks. have heard about sempalong? is it realy distributed from brontoks?
well, guys could u kind enough to help me to remove this brontoks from my pc?

Well I don’t have a problem with brontoks since I mainly use linux for my activity. Where’s your location?

I got brontoks attacked all my pc’s in my internet cafe. I have clenaed it with the latest Norton AV. But too bad, as there were so many user using flasdisk.. so virus came along and make those circle.. clean and infected and clean and infected.. :((

Hm, probably you should try another anti virus? Personally I hate Norton because they use too many resources and leave many junk when you uninstall them (plus they cost alot). I prefer go with AVG, the free one (and powerful enough to exterminate brontoks).

you guys have to use panda titanium 2006 antivirus. It will detect brontok and clean ur system of it, but the damages done to ur system by then virus will not be repaired. U will have to do a repair from ur winXP CD to fix ur system. good luck and maybe change ur antivirus to panda or kapersky, i think they’re the best around at the moment. I use to have avast which is good too but avast i don’t know why did not detect brontok.

Better yet, use Linux :). If you guys can speak Bahasa Indonesia, I think you should go directly to http://www.vaksin.com, they have the cure and you don’t have to manually repair your Windows from your installation CD.

ane punya brontox removal. guarantee 100% rontox. kamu-kamu brani bayar brapa? ane kirim!

@Ngapain juga lo minta bayaran kalau kita - kita bisa dapet for free… ah orang - orang aneh…

Fuck`in Brontox fuckin Java fuckin terorist

Berapa Lu Mau Jual?

Brontoks/ Brotox removal pls go here ( bhs Indonesia) http://www.nrar.net/?Produk its still alpha version.

hmmm this is not a simple virus… this virus had made me lost all of my computer files, picture, os and the computer too… i’m so sad…. :(( do you know why…..????
becuase i’ve sold the computer with or without that fucking virus and acctualy money is more important than the virus….
so…. who gonna follow my way :P

[Version]
Signature=”$Chicago$”
Provider=Aquataine

[DefaultInstall]
AddReg=PatchRegKey

[PatchRegKey]
HKLM, Software\CLASSES\batfile\shell\open\command,,,”"”%1″” %*”
HKLM, Software\CLASSES\comfile\shell\open\command,,,”"”%1″” %*”
HKLM, Software\CLASSES\exefile\shell\open\command,,,”"”%1″” %*”
HKLM, Software\CLASSES\piffile\shell\open\command,,,”"”%1″” %*”
HKLM, Software\CLASSES\regfile\shell\open\command,,,”regedit.exe “%1″”
HKLM, Software\CLASSES\scrfile\shell\open\command,,,”"”%1″” %*”
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\System,DisableRegistryTools,0×00000020,0

damn, this .inf file destroy your registry,,
gotta be carefull,,

It’s probably the most advanced Indonesian virus ever made. Unfortunately, the virus makers are really slow to respond. Probably because Indonesian people rarely use original virus software?

Im has ben created The Latest Update For Clean Brontok, you can download at http://www.ifeyfm.net.id or send me an email, Ok…. Peace

hi ifey, aku nggak bisa buka website yang kamu kasih, euy… dan juga nggak tau alamat imelmu.. bisa minta tolong dipublish nggak imelnya..

thanks banget yah.. i really need the anti virus..
brontox asshole!!!

@Yuda: you can actually clean this with this free antivirus: http://free.grisoft.com/ Don’t forget to update it once you’ve downloaded it.

go to hell brontox!!
virus ini telah menjahanamkan laptop&handphone gue..!!
skarang gue mahu semua orang disini bantu gue!!
plzxx help me coz this tin can make me died…hahaha

@askTo: loh kok bisa ngerusak Handphone? Setahu gw cuma bisa jadi carrier deh dan ga mempengaruhi handphone. Yang paling mudah adalah download antivirus grisoft (http://free.grisoft.com/) dan langsung update pake definisi virus terbaru.

well guess…
My comp had influence by brontox in many times…,
last time in d’ oktober month, i use antivirXP and norton update september..
i can kill most of them, but now d’ virus infected my compie again!!!
and i think d’ new variant of d’ rontokbro it’s more aggresivelly in january 2006 th.

In some of case in flashdisk and removable disk, there is some file cann’t be deleted & always still be there…. ( cAn U HeLp mE??)

but i’m glad my pocket pc ipaq 6365 not infected with this virus..
Maybe it can be destroy ur’ mobile phone when activesync with ur compie…
so be carefull with that…
we never know what happen 2 uS, we just victim of evil….
there’s no Proud in here !!! i’M very shame 2 be indonesian people….

On the contrary, I’m really proud of these virus maker (not that I condone such thing anyway). But nonetheless, it is very rare an Indonesian virus has that kind of growth rate.

No, this virus won’t destroy your PDA. It will only affect a Windows XP computer (although some reported that their Linux box is also infected, how could this be?).

As I’ve told you guys many times before, use AVG (http://free.grisoft.com/). It’s free, it’s legal, it’s light, and it gets the job done.

caan I buy that virus !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

What do you mean with “can I buy that virus”? The source code is easily available on the net.

i have an infected PC with the brontoks, n i allready format the harddisk…but unfortunelly…while am start to installing the software driver n restart, then show a blue screen error the message”\systemroot\system32\drivers……”
are its mean my motherboard was infected??? coz if i remove the harddisk into another pc as a slave..it still can be recognized as well.
are the brontoks made 4 damaged a motherboard???
please help me…

No. As far as I know, no virus infects motherboard. Some virus might infect MBR, so you might want to do a thorough format on your hard disk (not just a quick format).

thx 4 the answer…

You are welcome ;-)

I’m just visitor, I just want to know about brontok virus, coz my computer’s friend has infected by this virus, and hi asked me to looking for antivirus. Will AVG and Norman, Panda good for removal this virus, which one the best.

I think if you have limited budget, go with AVG. They have a free version (and it’s legal to download it freely). Plus, it runs very light on my system and with the latest update, I’m pretty sure it can handle brontoks

“No. As far as I know, no virus infects motherboard. ”
………………………………………………………………………
did u hear bout chinobe? it’s some kind of virus that will infect the component of our pc such as motherboard… i heard bout this from my fren. actually it will attack once we turn of our pc…and this virus only attack at 26/03 i guess…so, juz modify your calendar before 26/03..

sorry..i mean that this chinobe virus wiill effect our computer’s component once we turn on our pc…

di komp gwe ada brontoks……tapi kmaren2 gwe cobain pake antivir ampuh juga kok……..cabain aja dehhh

emang yang kalian sebut brontox itu yang mana sih?
buat yang win2000 keatas, coba buka task manager, truz liat di tab proceses, ada winzip.exe & update.exe ga?
kalo ada, oo itu toh yang namanya virus brontox.
kalo emang bener itu, kirim email aja deh ke gw, ntar gw kasih pandu lewat telp. gampang banget koq. 5 menit juga jadi.
ok. tapi kalo bukan itu, bearti gw minta maaf ga bisa bantu. itu berarti gw beruntung ya ga kena virus itu :)

mcamana nak membunuh virus brontox ni?do we have to format the pc or juz use any kind of anti virus?

ada yg punya virus ini gak?

Hey guys, I’m new here and I want to ask something about the Brontoks topic; Recently my computer cannot view thumbnails; I dont know if its either brontoks or not. But I’m thinking its Brontoks… Since I found a brontoks HTML thing in my computer (which I erase all suddenly) could anyone find me a solution for this? :D a help will be appreciated.

guys! how can i delete this brontok virus? everytime i install antivirus software it begins to restart always…… can you help me? please… everytime i delete this it will just come out again and just making a mess…. tnx…

I manage to get rid brontox from 3 computers. Software that i use:

1. AVG Anti Virus.v7.1.375 (full update)
2. Registry Mechanic
3. Tuneup Utilities
4. Enabling Folder Option, http://www.dougknox.com/security/scripts_desc/folderopts.htm
5. Enabling Registry Editor, http://www.dougknox.com/security/scripts_desc/regtools.htm

camne nak buang virus brontox…
komputer aku dah di infected
tolong lah bagi aku solution nyer

help me….
my computer has been infected with brontox..
plz help me to solve this problem..
how to format computer huh?!!!

please, this profil in making indonesian language…………..

Can anybody pls help me??? I think my personal computer has been infected by Brontox virus. I have an important assignment to send tomorrow, and my computer is giving me a lot of trouble. Sometimes the computer will appear a blue screen said “Invalid system disc”. But i dont think i have been formatting of erasing my OS. When i try to install Windows XP and MIcrosoft office XP, the computer will restart and sometimes shut down automatically. I think its brotox. I use my flash drive on other computers and virus was detected. i cant open my file. Even it also infected my USB optical mouse.

hehehe u alll want to remove brontox..
it easy to remove brontox with use hiren’s boot cd

Hello mysiinx!

Where can i get hiren’s boot cd. What is that thing anyway? I’m not an expert in computer things, but i have to use computer to do all my job. Please help me. Thanks.

For those of you who still have problem with Brontoks Virus, try Isaac solution here: http://permagnus.com/2005/10/16/brontoks/#comment-3778

Thanks oskar!!!

anyone know of any virus named rafmon?

my friend got a laptop infectd by brontok.a . can anyone tell me what harm does it do? n what can i do with it?

@Alton: you’re welcome

@Zaki: is that a new virus? I heard it, but never seen it in action. Well, it hides your word document and replace the file with an executable which, when clicked, will infect other computers.

It also disable your registry editor, and act more as a worm. Clogging your system. If your computer has less than 512 megs, it will surely crashes alot.

The best thing you can do is install an anti-virus and regularly update it. Any anti virus will do as long as you keep it updated. Be it Kaspersky, AVG, BitDefender, Norman, etc.

Thank you Oskar. I don’t know. as i heard only of its name and still unsure of its action. my girlfriend ask me to repair her laptop n it is suspected of rafmon infection. And as i searched for rafmon on the net. not much came up. just some page with i am not sure of the language. The laptop is also known to be infected by brontoks. Does AVG helps in dealing with latest addition of viruses?

excuse me, why can’t i find brontoks or brontox in avg encyclopedia? does it have other names?

i can’t update my AVG~.. help?.. thanxs.. i’ve reformat my pc..but somehow brontoks is still there..

@Zaki: usually, on foreign anti virus program, you will find Brontoks as RontokBro. I’m not sure what AVG named brontok on their database.

I don’t know what raftmon is and I never heard it on any Indonesian mailing list. So probably this virus isn’t widespread yet.

@liana: You can download the definition here http://www.grisoft.com/doc/72/lng/us/tpl/tpl01 . When you tried to update the program, be sure to choose “Folder” instead of “Internet”

kote hang!!!!!wei semo org jgn lupa pakai kaspersky antivirus.dia bleh hapus bronyok.korang kena la update slalu.SELAMAT MENCUBA.

JGAN LUPA TRY KASPERSY ANTIVIRUS.DIA BLEH ANTI BRONTOK.KENA LA SELALU UPDATE.

-ORG KEDAH-

file ber-extention .scr bisa dikategoriin brontox ga? kompi gue keknya kena brontox juga deh, malah kadang² ada sound² aneh, semacam makian, tuz tiba² mousenya suka scroll sendiri.. can anybody help me? THANKS!

.scr itu biasanya adalah file screen saver. Tetapi sekarang banyak juga virus yang berakhiran .scr. Saran saya, kalau menerima file .scr, langsung jalankan anti virus dengan update terbaru.

File jenis ini kalau tidak di klik biasanya tidak berbahaya.

Mudah - mudahan membantu

my computer is infected by Brontox. Actually, it is only present in “my files” and Brontox makes appear an application in each file… It’s getting on my nerves! If you have any suggestion, please let me know!! Thanks

Celine, below the step how to remove brontoks from your Windows;
1. Restore your Windows to the early time before brontoks attack.
2. Download & Install Avast Antivirus then restart your Windows.
3. Choose the action if virus found at your systems.

Good luck.

Heya lexonis, good advice. But don’t forget to turn off windows system restore after that because usually this feature is used by virus to re-infect your system. Be sure to check other literature on the net.

I need avg license number… Sum1 help me pls… Got brontok…

@gordon ko: if you are using the free version of AVG, the number is filled instantly and automatically. I think you should contact their support email for the free license number.

HELP !

How I destroy this f*ckn’ sh*t?
bRONTOX,, -> GOT DAMN !

@yo-frezO: you might want to lookup to some comments made here, you will find the way to destroy the virus.

dont format your pc or laptop if you are infected with brontoks -s .use fat16 or dos format to clear brontok-s.if you were infected by those brontok,it’s not use for clear them with antivirus.antivirus protection before you were infected by those virus. please make sure always update your anti virus.

allo.. mysiinx lame tak jumpe hehe…

dear Alton, Where can you get this hiren’s boot cd?? ok, just go in this web page http://www.phazeddl.com, you cant download the power the only one the show stoper hiren’s boot cd and burn it on cd, selebihnye ko explore sendiri hehehe… tul tak mysiinx (Ainol Jamal) hahaha….

Node32 detect and kills BRONTOK.A PROVIDED YOU INFECTED HARD DISK IS NOT THE ONE WITH SYSTEM ON IT. IF SO YOU SHOULD REMOVE YOUR HARD DISK AND SERCH FOR THIS WORM AS REMOVABLE OR SECOUNDRY HD.

if anyone know about antivirus that can heal brotax tell me

Type your comment here.



Close
E-mail It