Malware

What is “ELF:Mirai-DH [Trj]”?

Malware Removal

The ELF:Mirai-DH [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ELF:Mirai-DH [Trj] virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Harvests information related to installed mail clients

How to determine ELF:Mirai-DH [Trj]?


File Info:

crc32: 99D2299F
md5: 17c34e89f1f3050568173a4c69ab3e71
name: upload_file
sha1: f8a22366ad9e336a5ca2b4eca78c8a26ea6191bc
sha256: 1771baaa6f13248265c17125a564950f1c74483ab26962f1236fcb394ef90c47
sha512: ff6f1c60cccf09370e54f6dfbf5765780e0cc02b9d24aaf2d123d68a154dc897e6af62b185c825f6423efb8c016487a3b2e29514ae85b24e263e18460bee4e58
ssdeep: 24:FlL8M855ZdW42ZO4l2ZWrR3+Ej6Gk2/47GtruQrVfNfL:fABZM4wOewWrp+Ej6t2/4yRHhND
type: ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped

Version Info:

0: [No Data]

ELF:Mirai-DH [Trj] also known as:

McAfeeGenericRXID-MY!17C34E89F1F3
TrendMicroPossible_MIRAIDLOD.SMLBAT5
SymantecTrojan.Gen.NPE
TrendMicro-HouseCallPossible_MIRAIDLOD.SMLBAT5
AvastELF:Mirai-DH [Trj]
KasperskyHEUR:Trojan-Downloader.Linux.Mirai.d
RisingDownloader.Mirai!8.DF69 (TFE:14:pyaEYDNyA7K)
DrWebLinux.DownLoader.339
McAfee-GW-EditionGenericRXID-MY!17C34E89F1F3
SentinelOneDFI – Malicious ELF
JiangminTrojanDownloader.Linux.iz
ZoneAlarmHEUR:Trojan-Downloader.Linux.Mirai.d
BitDefenderThetaGen:NN.Mirai.34590
FortinetELF/Mirai.D
AVGELF:Mirai-DH [Trj]
Qihoo-360Linux/Trojan.Downloader.fef

How to remove ELF:Mirai-DH [Trj]?

ELF:Mirai-DH [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment