Malware

What is “DDoS:Linux/Lightaidra”?

Malware Removal

The DDoS:Linux/Lightaidra is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What DDoS:Linux/Lightaidra virus can do?

  • Injection (inter-process)
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • A potential decoy document was displayed to the user
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine DDoS:Linux/Lightaidra?


File Info:

crc32: B90D0FC8
md5: 6baf5aff0b030e255ca71585de775ea4
name: tmp2uf0ce_x
sha1: 490f1e9f351959d903e0216a59bade239c7baa2a
sha256: 92a54cdcfe25a27deb9eb596821f58398efad2e11c995dedbe1e083ea523a5f2
sha512: 2cf66913683dbe22972123fa5641d2bad014d5993cefdbe198e3ca8d77b16803cea7412c9a7e871a633714837d4c8c835731398c6932b7d7b167129c159ed22e
ssdeep: 1536:P0wk0o/zssT43BPK95//g1xqlyoQOL5vCx5hsdecTGpMnhR090jUeQfXm:vSzCxS95sqlykvE5hsdMMhR090QeQfXm
type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, not stripped

Version Info:

0: [No Data]

DDoS:Linux/Lightaidra also known as:

DrWebLinux.BackDoor.Fgt.199
MicroWorld-eScanGen:Variant.Trojan.Linux.Gafgyt.5
FireEyeGen:Variant.Trojan.Linux.Gafgyt.5
McAfeeLinux/Gafgyt.h
SangforMalware
ArcabitTrojan.Trojan.Linux.Gafgyt.5
BitDefenderThetaGen:NN.Mirai.34128
ESET-NOD32a variant of Linux/Gafgyt.AMV
TrendMicro-HouseCallBackdoor.Linux.BASHLITE.SMJC
AvastELF:Gafgyt-DZ [Trj]
ClamAVUnix.Trojan.Gafgyt-6981154-0
KasperskyHEUR:Backdoor.Linux.Gafgyt.av
BitDefenderGen:Variant.Trojan.Linux.Gafgyt.5
TencentBackdoor.Linux.Gafgyt.df
Ad-AwareGen:Variant.Trojan.Linux.Gafgyt.5
EmsisoftGen:Variant.Trojan.Linux.Gafgyt.5 (B)
TrendMicroBackdoor.Linux.BASHLITE.SMJC
McAfee-GW-EditionLinux/Gafgyt.h
SophosLinux/DDoS-BI
CyrenELF/Gafgyt.C.gen!Camelot
JiangminBackdoor.Linux.blvy
FortinetELF/Gafgyt.QE!tr
MicrosoftDDoS:Linux/Lightaidra
AhnLab-V3Linux/Gafgyt.Gen25
ZoneAlarmHEUR:Backdoor.Linux.Gafgyt.av
Avast-MobileELF:Gafgyt-EA [Trj]
ALYacGen:Variant.Trojan.Linux.Gafgyt.5
MAXmalware (ai score=85)
RisingBackdoor.Gafgyt!1.BB55 (CLASSIC)
IkarusTrojan.Linux.Gafgyt
GDataLinux.Trojan.Gafgyt.B
AVGELF:Gafgyt-DZ [Trj]

How to remove DDoS:Linux/Lightaidra?

DDoS:Linux/Lightaidra removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment