Swen (computer worm)

Swen worm
Technical nameWin32/Swen
Alias
  • Win32/Swen.worm.106496 (AhnLab)
  • W32/Swen.A@mm (Authentium Command)
  • I-Worm/Swen.A (AVG)
  • Win32/Swen.A@mm (BitDefender)
  • Win32/Swen.A.Worm (CA)
  • Win32/Swen.A (ESET)
  • Email-Worm.Win32.Swen (Kaspersky)
  • W32/Swen@MM (McAfee)
  • W32/Swen.A@mm (Norman)
  • W32/Gibe.C.worm (Panda)
  • W32/Gibe-F (Sophos)
  • Email-Worm.Win32.Swen (Sunbelt Software)
  • W32.Swen.A@mm (Symantec)
  • WORM_SWEN.A (Trend Micro)
  • I-Worm.Swen.A1 (VirusBuster)
TypeComputer worm
SubtypeMass mailer
Technical details
PlatformWindows 95 to Windows XP
Size106-496 bytes
Preview warning: Page using Template:Infobox computer virus with unknown parameter "Isolation"
Preview warning: Page using Template:Infobox computer virus with unknown parameter "Fullname"

Swen is a mass mailing computer worm written in C++. It sends an email which contains the installer for the virus, disguised as a Microsoft Windows update, although it also works on P2P filesharing networks, IRC and newsgroups' websites. It was first analyzed on September 18, 2003, however, it might have infected computers before then. It disables firewalls and antivirus programs.