Malware

Generic.Bash.MiraiA.90C8CA47 (file analysis)

Malware Removal

The Generic.Bash.MiraiA.90C8CA47 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Bash.MiraiA.90C8CA47 virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Harvests information related to installed mail clients

How to determine Generic.Bash.MiraiA.90C8CA47?


File Info:

crc32: 6F3735B8
md5: 4ff8b1e6342d06ca5f6e2fc8a2d19edb
name: tmpzm142h2t
sha1: e5dc49616e42b94c3d7e84e42b79aa7b516154f1
sha256: 87aeda00ae3c786b73eb48f63f22d058b7308cde91006fc1a0e8027c3022f8e1
sha512: ec9094df5da17c52140cba433108dbacf8bd4ca35b6d599ec2f3ff8021f2307217bebe78ce6dc176f0dc0c7f272c4ec7fdcc101eb04ddc7797afc248e2bc772d
ssdeep: 48:v45ITF4XhG4lCL4c4RgJ4w4234M4U4e34Q4FN:vUI5zMWDKCPzTTLXwN
type: Bourne-Again shell script, ASCII text executable

Version Info:

0: [No Data]

Generic.Bash.MiraiA.90C8CA47 also known as:

MicroWorld-eScanGeneric.Bash.MiraiA.90C8CA47
FireEyeGeneric.Bash.MiraiA.90C8CA47
McAfeeLinux/Downloader.k
SangforMalware
ArcabitGeneric.Bash.MiraiA.90C8CA47
SymantecDownloader.Trojan
TrendMicro-HouseCallELF_MIRAILOD.SM
AvastBV:Downloader-AAN [Drp]
KasperskyHEUR:Trojan-Downloader.Shell.Agent.p
BitDefenderGeneric.Bash.MiraiA.90C8CA47
NANO-AntivirusTrojan.Script.Downloader.hjbjdt
RisingDownloader.SH!1.C0ED (CLASSIC)
Ad-AwareGeneric.Bash.MiraiA.90C8CA47
EmsisoftGeneric.Bash.MiraiA.90C8CA47 (B)
ComodoTrojWare.Script.TrojanDownloader.Agent.SH@7q1bln
F-SecureMalware.HTML/ExpKit.Gen2
DrWebLinux.DownLoader.664
TrendMicroELF_MIRAILOD.SM
McAfee-GW-EditionLinux/Downloader.k
SophosMal/ShellDl-A
IkarusTrojan-Downloader.Linux.Sh
AviraHTML/ExpKit.Gen2
FortinetLinux/ShellDLoader.RMF!tr
MicrosoftTrojanDownloader:Linux/Morila!MTB
ZoneAlarmHEUR:Trojan-Downloader.Shell.Agent.p
CynetMalicious (score: 85)
AhnLab-V3Shell/ElfDownloader.S1
ALYacGeneric.Bash.MiraiA.90C8CA47
ESET-NOD32Linux/TrojanDownloader.SH.S
TencentHeur:Trojan.Linux.Downloader.e
MAXmalware (ai score=83)
GDataGeneric.Bash.MiraiA.90C8CA47
AVGBV:Downloader-AAN [Drp]

How to remove Generic.Bash.MiraiA.90C8CA47?

Generic.Bash.MiraiA.90C8CA47 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment