Concrete signature match: Trojan - Appears legitimate but performs malicious actions for Linux platform, family Mirai
This is a concrete detection of Trojan:Linux/Mirai.HAF, a confirmed variant of the notorious Mirai botnet family. This malware targets Linux-based IoT devices, transforming them into bots to launch distributed denial-of-service (DDoS) attacks. The detection leverages machine learning behavioral analysis (!MTB) for high confidence and low false positive risk.
No detailed analysis available from definition files.
7948a099bfa5e5ffb60a1c94a64cbbae5b2f359a0a61159f39b54973b8f9bcfffe95a35a549a6e1783f30a0727ad1b7823f7607775a34865336752a266ed304a647aaf7e6621d2c6bea078aa0f3238892deea798aff553143310550a93400327f28ff115079db6cd81b52775a337d2f694b53d130a2c1e52a247585c55ef7e7125dfee5653da397003abc1261c970e69545a73867bd6028772160ee09e30d1b2Immediately isolate the identified Linux device from the network. Thoroughly scan and remove the detected malware using a robust security solution. Apply all available security patches, disable unnecessary services (e.g., Telnet), change all default credentials, and implement strong, unique passwords for all administrative interfaces to prevent re-infection and secure the device.