W32.HLLW.Gaobot.BT is a variant of W32.HLLW.Gaobot.AE
that attempts to spread to network shares that have weak passwords, and allows access to an infected computer through an IRC channel. The worm also attempts to terminate the processes of various antivirus and firewall programs.
The worm uses multiple vulnerabilities to spread, including:
W32.HLLW.Gaobot.BT is packed with ExeStealth and ASPack.
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.