Amirecivel.e, also known as Amircivil.e, is a worm that spreads by e-mail through messages with infected attachments, and via file sharing networks using popular peer-to-peer clients. Once executed, the parasite installs itself to the system and runs a spreading routine. Amirecivel.e searches local hard drives for text and web files, and gathers e-mail addresses from them. Then it sends a malicious letter to each of those addresses. It also creates multiple copies of itself, and shares infected files with users of file sharing networks. Amirecivel.e terminates running antiviruses, firewalls and other security-related programs. It also overwrites Windows standard text editor (Notepad) with a copy of itself. The worm runs on every Windows startup. It requires Microsoft .NET Framework 2.0 in order to work as intended.