Spy

Spyware.Agent.FD removal

Malware Removal

The Spyware.Agent.FD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Spyware.Agent.FD virus can do?

  • Unconventionial language used in binary resources: Arabic (Qatar)
  • Steals private information from local Internet browsers
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Spyware.Agent.FD?


File Info:

crc32: 62D1FA1F
md5: a61d1724e03bc2d75cc52115b64e1bb1
name: A61D1724E03BC2D75CC52115B64E1BB1.mlw
sha1: 0a9da914b2b2ed147f9ff1b286d9c2977cfe5937
sha256: d57847db5458acabc87daee6f30173348ac5956eb25e6b845636e25f5a56ac59
sha512: 1375305a95804bd67b30caa69044637d399905f49e0d0b69b7dcc606c70ccdff0dd3e491745548b324fbd9a10feca35582745fd0f027fa26b4a2676dc7e7e0ce
ssdeep: 24576:3QZ1knLkB4qet7cAlI7/xXBMSgm0Eyt2y:3QekGPlUXd07t2
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2007-2017 SecurityXploded, All rights reserved
InternalName: BrowserPasswordDump
FileVersion: 5.5.0.0
CompanyName: SecurityXploded
ProductName: BrowserPasswordDump
ProductVersion: 5.5.0.0
FileDescription: Browser Password Dump
OriginalFilename: BrowserPasswordDump.exe
Translation: 0x0409 0x04b0

Spyware.Agent.FD also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.PWS.Siggen1.65290
MicroWorld-eScanSpyware.Agent.FD
CAT-QuickHealTrojan.IGENERIC
ALYacMisc.Riskware.SecurityXploded
CylanceUnsafe
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.4e03bc
TrendMicroHKTL_BROWPASSDUMP
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/SecurityXploded.AF potentially unsafe
AvastWin32:PasswordDump-A [Tool]
ClamAVWin.Dropper.Securityxploded-6871294-0
GDataWin32.Riskware.PassBrowserDumper.A
Kasperskynot-a-virus:HEUR:PSWTool.Win32.SecurityXploded.gen
BitDefenderSpyware.Agent.FD
NANO-AntivirusTrojan.Win32.Agent.equwhg
SUPERAntiSpywareHack.Tool/Gen-PasswordStealer
Ad-AwareSpyware.Agent.FD
SophosSecurity Xploded (PUA)
F-SecureTrojan.TR/Agent.yhigi
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionPUP-XCE-BI
FireEyeGeneric.mg.a61d1724e03bc2d7
EmsisoftSpyware.Agent.FD (B)
SentinelOneDFI – Suspicious PE
Endgamemalicious (high confidence)
WebrootW32.Suspicious.Heur
AviraTR/Agent.yhigi
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Occamy.C
JiangminPSWTool.SecurityXploded.g
ArcabitSpyware.Agent.FD
AegisLabRiskware.Win32.SecurityXploded.1!c
ZoneAlarmnot-a-virus:HEUR:PSWTool.Win32.SecurityXploded.gen
AhnLab-V3HackTool/Win32.PassViewer.C2698008
McAfeePUP-XDX-VG
MAXmalware (ai score=99)
VBA32BScope.Trojan.Occamy
MalwarebytesRiskWare.SecurityXploded
PandaTrj/CI.A
TrendMicro-HouseCallHKTL_BROWPASSDUMP
RisingTrojan.Vagger!8.ED74 (CLOUD)
YandexRiskware.Agent!
IkarusPUA.SecurityXploded
eGambitHackTool.Samples
FortinetRiskware/SecurityXploded
AVGFileRepMalware [PUP]
Paloaltogeneric.ml

How to remove Spyware.Agent.FD?

Spyware.Agent.FD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment