Trojan:Win32/Swrort.A is a detection for files that try to connect to a remote server. Once connected, an attacker can perform malicious routines such as downloading other files.
Trojan:Win32/Swrort.A may arrive in the system as a downloaded file from a malicious site or may be used as payloads of exploit files.
Once executed, Trojan:Win32/Swrort.A may connect to a remote server using different port numbers. Once connected, an attacker can perform malicious routines such as downloading other malware and executing them.
In the wild, Trojan:Win32/Swrort.A is known to connect to the following servers:
184.108.40.206 via TCP port 4444
10.10.10.31 via TCP port 443
220.127.116.11 via TCP port 1234
Analysis by Elda Dimakiling
Alert notifications or detections of this malware from installed antivirus or security software may be the only other symptom(s).