Spy

Win32/Spy.Agent.PDM removal

Malware Removal

The Win32/Spy.Agent.PDM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.Agent.PDM virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Spy.Agent.PDM?


File Info:

crc32: 7F34852B
md5: 022d881f555a044d4870078157bfddd2
name: 022D881F555A044D4870078157BFDDD2.mlw
sha1: 74519086ea0a0fa03914ec6902066fca2705b546
sha256: 1db0fc1fc5a0d71b0840eb347f9c73dce8f2ed2fb422b22237bf5e407cf3324c
sha512: ce990625cf10b4ef28fcbf4d81d5c51b9fdbe71a7b1bc99eae401a7f88ce40758fb1c668a02d04a290c193729817929da6579a09c28d40a9ee91490cdaf67a69
ssdeep: 12288:XA8h8lIqzE5mrRYjMialLRxUV3rppX7ErdpVTRGS8deHkC3hZe1DNYs8:XA82ngErziafirPoaScWkC3D+N8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x800cx8fdbx5165x633ax5e78x798f
InternalName: x4ebax7684x7a7ax8c03x70edx540cx6837x7684x80fdx591f
FileVersion: 5, 9, 5, 8
ProductName: sjdke6rdtn
ProductVersion: 5, 9, 5, 8
FileDescription: x53d1x7684x5f00x901ax79fbx52a8x96c6x56e2
OriginalFilename: x4f46x745ex79d1x633ax70edx95f9
Translation: 0x0804 0x04b0

Win32/Spy.Agent.PDM also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan-Downloader ( 004edccf1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Inject3.1002
MicroWorld-eScanTrojan.GenericKD.6337805
CAT-QuickHealTrojan.MauvaiseRI.S5252172
ALYacTrojan.GenericKD.6337805
CylanceUnsafe
ZillyaDownloader.VB.Win32.111604
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanSpy:Win32/Generic.379daa30
K7GWTrojan-Downloader ( 004edccf1 )
Cybereasonmalicious.f555a0
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Spy.Agent.PDM
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKD.6337805
NANO-AntivirusTrojan.Win32.Inject3.ewqcuw
TencentMalware.Win32.Gencirc.11494703
Ad-AwareTrojan.GenericKD.6337805
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trickbot.jc
EmsisoftTrojan.GenericKD.6337805 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bwwtp
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Generic.ASMalwS.24E92ED
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Generic.D60B50D
GDataTrojan.GenericKD.6337805
AhnLab-V3Trojan/Win.Inject.R440382
McAfeeArtemis!022D881F555A
VBA32Trojan.Inject
MalwarebytesTrojan.Agent
PandaTrj/CI.A
RisingTrojan.Generic@ML.98 (RDML:RDaeztufHFEZafh5jtJJ4A)
YandexTrojan.GenAsa!gw6EtET0GDk
IkarusTrojan-Downloader.Win32.VB
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GBGF!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Win32/Spy.Agent.PDM?

Win32/Spy.Agent.PDM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment