Need help? Ask the community or hire an expert.
Go to Avira Answers
Alias:P2P/Mandragore
Type:Worm 
Size: 
Origin: 
Date:02-27-2001 
Damage:Worm/Gnutella.MG spreads through Gnutella networks. 
VDF Version:6.23.00.00 
Danger:Low 
Distribution:Low 

DistributionWorm/Gnutella.MG spreads through Gnutella networks.

Technical DetailsThis worm attacks only users of Gnutella related programs. So, the worm is dangeorus for Gnutella networks only.

When activated, the worm is copied in Autostart folder of every user, as GSPOT.EXE system hidden file. The next time Windows is started, the worm is executed and becomes a background memory resident process.

On Windows 9x, the worm registers in tasklist as hidden process. The worm contacts Gnutella network. The infected computer answers as 'server' enquiry to files and so it can be easily overloaded with many enquiries.

The worm creates a single file, containing the womrm code, available for download. The name of the file is randomly chosen.
Description inserted by Crony Walker on Tuesday, June 15, 2004

Back . . . .