Welcome to the Virus Encyclopedia of Panda Security.
It downloads from a certain IP address the Trojan Alanchum.MU, which downloads W32/Duel.A, W32/Nuwar.B.worm and Trj/Spammer.ER to the affected computer. It does not spread automatically by its own means.
|First detected on:||Dec. 31, 2006|
|Detection updated on:||Jan. 2, 2007|
|Yes, using TruPrevent Technologies
Gagar.CC is a Trojan that connects to a certain IP address and downloads a file that belongs to Trj/Alanchum.MU. This Trojan downloads the following malware to the affected computer:
- W32/Nuwar.B.worm, which spreads via email and drops the Trojan Gagar.CB in the affected computer.
- Trj/Spammer.ER, which provides email addresses to Nuwar.B.
Gagar.CC does not spread automatically using its own means. It needs an attacking user's intervention in order to reach the affected computer. The means of transmission used include, among others, floppy disks, CD-ROMs, email messages with attached files, Internet downloads, FTP, IRC channels, peer-to-peer (P2P) file sharing networks, etc.
Gagar.CC is difficult to recognize, as it does not display any messages or warnings that indicate it has reached the computer.>>>