Crack Trojan

Trojan.Patcher information

Malware Removal

The Trojan.Patcher is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Patcher virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Trojan.Patcher?


File Info:

crc32: 694BD33F
md5: 72b6ffd32fa627be14146efd09e2ddef
name: 72B6FFD32FA627BE14146EFD09E2DDEF.mlw
sha1: 8b9fce183a0773e54465637a99513c8711fa35ad
sha256: 132c898fdc1495902df6da7ec37bec56939d739b9bcfbcba2fa0b5d9b2d47597
sha512: 1bdf28eefd0ebf04a4754a43c4fb6cac0ab90c01aaa6b4335004ed4ce2242a51a8324bd242eee052a624526dd95a53131a1d5b93cca7869b25ed1c80f74020a2
ssdeep: 6144:eEiFWqQH+jkbYonUUuIQTUw/uMwlWbkEEC8k0iPTBFn9V5+n0WoABqzMoRXZWd2:J/bYoUUTCm9lWbk80iPTBFn9VEnEFZ
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2013 Simon Tatham.
InternalName: Plink
FileVersion: Release 0.63
CompanyName: Simon Tatham
ProductName: PuTTY suite
ProductVersion: Release 0.63
FileDescription: Command-line SSH, Telnet, and Rlogin client
OriginalFilename: Plink
Translation: 0x0809 0x04b0

Trojan.Patcher also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.CryptZ.Gen
FireEyeGeneric.mg.72b6ffd32fa627be
Qihoo-360Win32/Trojan.Swrort.HxQBkHcA
McAfeeSwrort.d
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Swrort.4ea8dee9
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
ArcabitTrojan.CryptZ.Gen
BitDefenderThetaGen:NN.ZexaF.34590.tq0@aKFk3gdi
CyrenW32/Swrort.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.ED
APEXMalicious
AvastWin32:SwPatch [Wrm]
ClamAVWin.Trojan.Swrort-5710536-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.CryptZ.Gen
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
Paloaltogeneric.ml
TencentWin32.Trojan.Generic.Ahoo
Ad-AwareTrojan.CryptZ.Gen
SophosML/PE-A + Mal/EncPk-ACE
ComodoTrojWare.Win32.Rozena.A@4jwdqr
F-SecureTrojan.TR/Patched.Gen2
TrendMicroBKDR_SWRORT.SM
McAfee-GW-EditionSwrort.d
EmsisoftTrojan.CryptZ.Gen (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen2
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.Kryptik.FA1A1G
CynetMalicious (score: 100)
ALYacTrojan.CryptZ.Gen
MAXmalware (ai score=89)
MalwarebytesTrojan.Patcher
TrendMicro-HouseCallBKDR_SWRORT.SM
RisingHackTool.Swrort!1.6477 (CLOUD)
IkarusTrojan.Win32.Rozena
FortinetW32/Swrort.C!tr
AVGWin32:SwPatch [Wrm]
Cybereasonmalicious.32fa62
PandaTrj/Genetic.gen

How to remove Trojan.Patcher?

Trojan.Patcher removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment