Trojan

About “Trojan.Swisyn.OD5” infection

Malware Removal

The Trojan.Swisyn.OD5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Swisyn.OD5 virus can do?

  • Loads a driver
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan.Swisyn.OD5?


File Info:

crc32: E6BF79BE
md5: a2afd3aafeb0be462d270e33f78d7dbd
name: A2AFD3AAFEB0BE462D270E33F78D7DBD.mlw
sha1: 5c436dd0d2e530052b5ac04f717afd570716afb7
sha256: 0c2d08a3085012104f33984a8539fe5564f1afc54f01e91ed6d05d1cddb820d4
sha512: da7d75b885d1b8e9ae0613d3faea978c96aca3497148ca2bb2442bac67808af066ccfe5f1a2b9f9253cc9586c8a2b84f9b030393b8c289d7dd7997277d031c31
ssdeep: 6144:vnTYvevqfmrLF1QicLu/i+4zlf0RQ9ukho5Y7e:vTaevOK1Qiz/HuB8K1i
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2005-2006 Bryce Cogswell and Mark Russinovich
InternalName:
FileVersion: 1.70
CompanyName: Sysinternals - www.sysinternals.com
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Sysinternals Rootkitrevealer
SpecialBuild:
ProductVersion: 1.70
FileDescription: Rootkit detection utility
OriginalFilename:
Translation: 0x0409 0x04b0

Trojan.Swisyn.OD5 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Swisyn.OD5
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.0d2e53
CyrenW32/Swisyn.R.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Swisyn-6888356-0
NANO-AntivirusTrojan.Win32.Swisyn.eyennn
FireEyeGeneric.mg.a2afd3aafeb0be46
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Generic.ASMalwS.2BB7A94
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Trojan.PSE.14A82VQ
AhnLab-V3Malware/Win.Evo-gen.R448950
McAfeeGenericRXAA-AA!A2AFD3AAFEB0
MalwarebytesMalware.AI.4128632056
RisingTrojan.Generic@ML.100 (RDML:6FL0kRG2n6oLe+6Cp8zo3w)
YandexTrojan.Vilsel!DYnMUgokP1U
FortinetW32/Swisyn.R!tr
AVGWin32:Malware-gen

How to remove Trojan.Swisyn.OD5?

Trojan.Swisyn.OD5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment