We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Backdoor:Win32/Gaobot
Detected by Microsoft Defender Antivirus
Aliases: W32.HLLW.Gaobot (Symantec) W32/Gaobot.worm (McAfee) WORM_AGOBOT (Trend Micro)
Summary
Backdoor:Win32/Gaobot is family of worms that can spread across network connections by breaking weak passwords or by exploiting vulnerabilities described in Microsoft Security Bulletins MS03-001, MS03-007, or MS03-026. After a variant copies and runs itself on a remote computer, it connects to an IRC server to receive commands.