Damage:Worm/Gnutella.MG spreads through Gnutella networks. 
DistributionWorm/Gnutella.MG spreads through Gnutella networks.

Technical DetailsThis worm attacks only users of Gnutella related programs. So, the worm is dangeorus for Gnutella networks only.

When activated, the worm is copied in Autostart folder of every user, as GSPOT.EXE system hidden file. The next time Windows is started, the worm is executed and becomes a background memory resident process.

On Windows 9x, the worm registers in tasklist as hidden process. The worm contacts Gnutella network. The infected computer answers as 'server' enquiry to files and so it can be easily overloaded with many enquiries.

The worm creates a single file, containing the womrm code, available for download. The name of the file is randomly chosen.
Descrição enviada por Crony Walker em terça-feira, 15 de junho de 2004

