Backdoor

What is “Backdoor:Linux/Mirai.be!MTB”?

Malware Removal

The Backdoor:Linux/Mirai.be!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Linux/Mirai.be!MTB virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Backdoor:Linux/Mirai.be!MTB?


File Info:

crc32: 008DDD4A
md5: a10124a40da7c78017025045bedbf5c6
name: upload_file
sha1: ef04faea22558be4669001666ec084bec65c7765
sha256: 2740fa4b6d40ff4af42c180e3fdd3b9cdc125195ce2bd4eef54cfec93b29be91
sha512: 7b430d4384d9fd98d899e255236d3e4dd9554364e5054d21460cc9eb2bc7c05204317bfd45d8aa4ac375b061a7a7511cd89cb028c121b445a2f061cde859dbf4
ssdeep: 768:0d78ykw0/RCgm5dY+6GtVbZHFGH1OlhKMG4bNnbcuyD7UryqA:K7RLHY+5tVbKH16KMG4bNnouy8mqA
type: ELF 32-bit LSB executable, Intel 80386, version 1 (GNU/Linux), statically linked, stripped

Version Info:

0: [No Data]

Backdoor:Linux/Mirai.be!MTB also known as:

MicroWorld-eScanTrojan.GenericKD.34630082
FireEyeTrojan.GenericKD.34630082
ALYacTrojan.GenericKD.34630082
AegisLabTrojan.Linux.Gafgyt.m!c
SymantecTrojan.Gen.NPE
ESET-NOD32a variant of Linux/Gafgyt.AWN
TrendMicro-HouseCallBackdoor.Linux.MIRAI.USELVIU20
AvastOther:Malware-gen [Trj]
ClamAVUnix.Trojan.DarkNexus-7679166-0
KasperskyHEUR:Backdoor.Linux.Gafgyt.a
BitDefenderTrojan.GenericKD.34630082
NANO-AntivirusTrojan.Elf32.Gafgyt.hyhllm
Ad-AwareTrojan.GenericKD.34630082
SophosMal/Generic-S
F-SecureMalware.LINUX/Gafgyt.mljtq
DrWebLinux.BackDoor.Fgt.3239
TrendMicroBackdoor.Linux.MIRAI.USELVIU20
McAfee-GW-EditionGenericRXKJ-CN!A10124A40DA7
EmsisoftTrojan.GenericKD.34630082 (B)
IkarusTrojan.Linux.Mirai
GDataTrojan.GenericKD.34630082
JiangminTrojanDDoS.Linux.nk
AviraLINUX/Gafgyt.mljtq
Antiy-AVLTrojan[Backdoor]/Linux.Mirai.cn
MicrosoftBackdoor:Linux/Mirai.be!MTB
ArcabitTrojan.Generic.D21069C2
ZoneAlarmHEUR:Backdoor.Linux.Gafgyt.a
CynetMalicious (score: 85)
McAfeeGenericRXKJ-CN!A10124A40DA7
FortinetELF/Mirai.A!tr
AVGOther:Malware-gen [Trj]
Qihoo-360Linux/Backdoor.812

How to remove Backdoor:Linux/Mirai.be!MTB?

Backdoor:Linux/Mirai.be!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment