Trojan

What is “Trojan:Win32/Swotter.BB!MTB”?

Malware Removal

The Trojan:Win32/Swotter.BB!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Swotter.BB!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Swotter.BB!MTB?


File Info:

crc32: 5445BE6F
md5: 41fc354c5ad49ad6750c5cc5348cefcc
name: upload_file
sha1: 6f9f76730eb11f6ef42fd6ad210f01c633069bc4
sha256: 8df5858f489a1dd9f113eda4dbe0aded3fd5a128dd32e991e94c5a2b7623ba64
sha512: afa6bdb440e953a2a4da62d59c507470debb4fd3cdc4aef34c4ea11536ef73678058ff47462170d8a1bd067c240bfaa6be632c2a419f71d023cc4a7b0bb6feea
ssdeep: 6144:3PCganNInU6GyDFDRhxXpi2j+C4lvj/3uC3z1c88pR2TruNElCYrr9gr:NanCU61lRz5iM4Z3Vz15SOrYYr6r
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan:Win32/Swotter.BB!MTB also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanDropped:Trojan.GenericKD.34249763
FireEyeDropped:Trojan.GenericKD.34249763
Qihoo-360Generic/HEUR/QVM42.3.E528.Malware.Gen
McAfeeArtemis!41FC354C5AD4
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderDropped:Trojan.GenericKD.34249763
K7GWTrojan ( 0056b5b61 )
K7AntiVirusTrojan ( 0056b5b61 )
TrendMicroPUA.Win32.Uwasson.USXVPGT20
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan.Win32.BypassUAC.gen
AlibabaTrojan:Win32/BypassUAC.4f8e1877
ViRobotTrojan.Win32.Z.Injector.345851
AegisLabTrojan.Win32.BypassUAC.4!c
Ad-AwareDropped:Trojan.GenericKD.34249763
SophosMal/Generic-S
ComodoTrojWare.Win32.UMal.ldvro@0
F-SecureTrojan.TR/Injector.bfteo
DrWebTrojan.Siggen9.62970
EmsisoftDropped:Trojan.GenericKD.34249763 (B)
IkarusTrojan-Spy.FormBook
WebrootW32.Trojan.Gen
AviraTR/Injector.bfteo
MAXmalware (ai score=87)
ArcabitTrojan.Generic.D20A9C23
ZoneAlarmHEUR:Trojan.Win32.BypassUAC.gen
MicrosoftTrojan:Win32/Swotter.BB!MTB
ALYacDropped:Trojan.GenericKD.34249763
MalwarebytesTrojan.Injector
ESET-NOD32Win32/Injector.EMTP
TrendMicro-HouseCallPUA.Win32.Uwasson.USXVPGT20
GDataDropped:Trojan.GenericKD.34249763
AVGFileRepMalware
Cybereasonmalicious.30eb11
Paloaltogeneric.ml

How to remove Trojan:Win32/Swotter.BB!MTB?

Trojan:Win32/Swotter.BB!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment