Trojan

Trojan.Linux.Generic.112629 (file analysis)

Malware Removal

The Trojan.Linux.Generic.112629 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Linux.Generic.112629 virus can do?

  • Injection (inter-process)
  • At least one process apparently crashed during execution
  • Injection with CreateRemoteThread in a remote process
  • Uses Windows utilities for basic functionality
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Trojan.Linux.Generic.112629?


File Info:

crc32: CE0B710F
md5: 23750d42ab5f93502b19deb2b03b06d2
name: tmpn3vx3dxj
sha1: dc4c71673e6dd7ef1f84f2ac832a4abb928b76a1
sha256: 64c39615448781696a72f605a5c58ad390d00ec054dbf1fbc6118a95a40ead44
sha512: 22696219ad1058b2b17bb5d8b6d80b9aa9331ad2301674f176dca67c579f8773767331556ecedb09dee098699f6dda1dab8eba006b99af4fc8e4f575ac180ba1
ssdeep: 1536:SbHmkTSo3BOIqS5aq+Dc035R9QuEk6vNNTKjfcFRo:omcjaq+Dcc5J+vNwjfko
type: ELF 32-bit MSB executable, SPARC version 1 (SYSV), statically linked, stripped

Version Info:

0: [No Data]

Trojan.Linux.Generic.112629 also known as:

MicroWorld-eScanTrojan.Linux.Generic.112629
FireEyeTrojan.Linux.Generic.112629
McAfeeLinux/Mirai.f
SangforMalware
SymantecLinux.Mirai
ESET-NOD32a variant of Linux/Mirai.A
TrendMicro-HouseCallBackdoor.Linux.MIRAI.SMBEM
AvastELF:Mirai-ACT [Trj]
ClamAVUnix.Trojan.Mirai-6976991-0
GDataTrojan.Linux.Generic.112629
KasperskyHEUR:Backdoor.Linux.Mirai.b
BitDefenderTrojan.Linux.Generic.112629
RisingBackdoor.Mirai/Linux!1.BBED (CLASSIC)
Ad-AwareTrojan.Linux.Generic.112629
EmsisoftTrojan.Linux.Generic.112629 (B)
F-SecureMalware.LINUX/Mirai.bonb
DrWebLinux.Mirai.1954
ZillyaBackdoor.Mirai.Linux.66662
TrendMicroBackdoor.Linux.MIRAI.SMBEM
SophosLinux/DDoS-CI
IkarusTrojan.Linux.Gafgyt
CyrenELF/Mirai.E.gen!Camelot
JiangminBackdoor.Linux.bnrb
AviraLINUX/Mirai.bonb
Antiy-AVLTrojan[Backdoor]/Linux.Mirai.b
MicrosoftBackdoor:Linux/Mirai.YA!MTB
ArcabitTrojan.Linux.Generic.D1B7F5
AhnLab-V3Linux/Mirai.Gen10
ZoneAlarmHEUR:Backdoor.Linux.Mirai.b
Avast-MobileELF:Mirai-DN [Trj]
CynetMalicious (score: 85)
BitDefenderThetaGen:NN.Mirai.34128
ALYacTrojan.Linux.Generic.112629
TencentBackdoor.Linux.Mirai.waz
MAXmalware (ai score=87)
FortinetELF/Mirai.L!tr
AVGELF:Mirai-ACT [Trj]
Qihoo-360virus.elf.mirai.c

How to remove Trojan.Linux.Generic.112629?

Trojan.Linux.Generic.112629 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment