Malware

About “ELF:Mirai-AYG [Trj]” infection

Malware Removal

The ELF:Mirai-AYG [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ELF:Mirai-AYG [Trj] virus can do?

  • Injection (inter-process)
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • A potential decoy document was displayed to the user
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine ELF:Mirai-AYG [Trj]?


File Info:

crc32: 554C6888
md5: c2f63bf45e93506f1f841d17bd68dafe
name: upload_file
sha1: 45734157269f5ed139d2ed998c66e2f382f3432b
sha256: 84fd640e63d79373239de0dab8fdb4e663d1c5f8f49898210d42d9a869aed11a
sha512: c897bf02a5e9fa05c3bf9413ecba61f3c7cd8a85659d826c17e7221a9d69b7dac618c9fea30f0a5f68b1dc85017a75f71f88dc4ce26fd1affc5d5feb0398a71b
ssdeep: 768:ZcGI4XmMJYi5kwv4whP+pXmB4lknrjKGefVjMqCfIkc:uGIgK44fXm2Ii3pMd1c
type: ELF 32-bit LSB executable, ARM, version 1, statically linked, stripped

Version Info:

0: [No Data]

ELF:Mirai-AYG [Trj] also known as:

MicroWorld-eScanTrojan.GenericKD.34259195
FireEyeTrojan.GenericKD.34259195
McAfeeRDN/Generic BackDoor
AegisLabTrojan.Linux.Mirai.K!c
ESET-NOD32a variant of Linux/Mirai.AYO
TrendMicro-HouseCallBackdoor.Linux.ZYX.USELVGU20
AvastELF:Mirai-AYG [Trj]
GDataLinux.Trojan.Mirai.D
KasperskyHEUR:Backdoor.Linux.Mirai.cs
BitDefenderTrojan.GenericKD.34259195
Ad-AwareTrojan.GenericKD.34259195
EmsisoftTrojan.GenericKD.34259195 (B)
F-SecureMalware.LINUX/Mirai.ccjpd
TrendMicroBackdoor.Linux.ZYX.USELVGU20
SophosMal/Generic-S
IkarusTrojan.Linux.Mirai
CyrenELF/Gafgyt.C.gen!Camelot
AviraLINUX/Mirai.ccjpd
MicrosoftTrojan:Win32/Bluteal!rfn
ArcabitTrojan.Generic.D20AC0FB
ZoneAlarmHEUR:Backdoor.Linux.Mirai.cs
Avast-MobileELF:Mirai-AYG [Trj]
ALYacTrojan.GenericKD.34259195
MAXmalware (ai score=88)
BitDefenderThetaGen:NN.Mirai.34144
AVGELF:Mirai-AYG [Trj]

How to remove ELF:Mirai-AYG [Trj]?

ELF:Mirai-AYG [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment